Knowledge Hub

Practitioner-grade cybersecurity content

Technical playbooks, war stories, and how-to-think guides — written by practitioners, anchored to the Indian context.

Want structured, step-by-step learning instead? Explore the Academy (guided courses) or the AI security hub.

Latest articles

Most recent practitioner playbooks across every track. Filter by topic in the sidebar, or use search.

AI Security

Prompt Injection Defense Architecture: Beyond Input Filtering

Why input filtering cannot be the primary control Prompt injection is not a fixed signature; it is any natural-language text that redirects…

Jul 6, 2026 · 4 min read
AI Security

Agentic AI Red Teaming: A Methodology for Testing Autonomous Agents

The agentic attack surface is bigger than the prompt A tool-using agent has five components an attacker can reach, and each is…

Jul 6, 2026 · 4 min read
AI Security

MCP Server Security Architecture: Threat Model and Hardening

The MCP trust model, and why it breaks MCP standardises how an LLM client discovers and invokes external tools — functions exposed…

Jul 6, 2026 · 4 min read
News

Avalon Malware Framework Packs CrownX Ransomware and EDR-Killing Evasion

Researchers have documented a previously undocumented modular malware framework codenamed Avalon that bundles a full ransomware payload internally named CrownX. Rather than…

Jul 6, 2026 · 2 min read
News

SimpleHelp RMM Auth Bypass CVE-2026-48558 (CVSS 10.0) Exploited in MSP Supply-Chain Attacks

Attackers are actively exploiting CVE-2026-48558, a maximum-severity authentication-bypass flaw (CVSS 10.0) in SimpleHelp’s Remote Monitoring and Management (RMM) software, to deploy the…

Jul 6, 2026 · 2 min read
News

Kemp LoadMaster Command Injection CVE-2026-8037 Under Active Exploitation

Attackers are actively probing and exploiting CVE-2026-8037, a critical operating-system command injection flaw in Progress Kemp LoadMaster, the load balancer and application…

Jul 6, 2026 · 2 min read
News

Bad Epoll: Linux Kernel Flaw CVE-2026-46242 Hands Local Users Root

A newly disclosed Linux kernel vulnerability dubbed Bad Epoll (CVE-2026-46242) allows an ordinary local user — no special group memberships, no sudo…

Jul 5, 2026 · 2 min read
AI Security

JadePuffer: The First Ransomware Operation Run Entirely by an LLM Agent

Security researchers at Sysdig have documented what they assess to be the first ransomware operation conducted end-to-end by a large language model…

Jul 4, 2026 · 2 min read
News

Decades-Old FAT32 Filesystem Flaws Put Millions of Embedded Devices at Risk

Researchers have disclosed unpatched vulnerabilities in a filesystem implementation bundled into millions of embedded devices, headlined by CVE-2026-6682 — an integer overflow…

Jul 3, 2026 · 2 min read
News

CISA Flags Actively Exploited SharePoint RCE CVE-2026-45659 — Patch Now

CISA has added a high-severity Microsoft SharePoint Server flaw to its Known Exploited Vulnerabilities (KEV) catalog after confirming it is being exploited…

Jul 2, 2026 · 2 min read
1 2 3 96