Practitioner-grade cybersecurity content
Technical playbooks, war stories, and how-to-think guides — written by practitioners, anchored to the Indian context.
Want structured, step-by-step learning instead? Explore the Academy (guided courses) or the AI security hub.
Latest articles
Most recent practitioner playbooks across every track. Filter by topic in the sidebar, or use search.
Prompt Injection Defense Architecture: Beyond Input Filtering
Why input filtering cannot be the primary control Prompt injection is not a fixed signature; it is any natural-language text that redirects…
AI SecurityAgentic AI Red Teaming: A Methodology for Testing Autonomous Agents
The agentic attack surface is bigger than the prompt A tool-using agent has five components an attacker can reach, and each is…
AI SecurityMCP Server Security Architecture: Threat Model and Hardening
The MCP trust model, and why it breaks MCP standardises how an LLM client discovers and invokes external tools — functions exposed…
NewsAvalon Malware Framework Packs CrownX Ransomware and EDR-Killing Evasion
Researchers have documented a previously undocumented modular malware framework codenamed Avalon that bundles a full ransomware payload internally named CrownX. Rather than…
NewsSimpleHelp RMM Auth Bypass CVE-2026-48558 (CVSS 10.0) Exploited in MSP Supply-Chain Attacks
Attackers are actively exploiting CVE-2026-48558, a maximum-severity authentication-bypass flaw (CVSS 10.0) in SimpleHelp’s Remote Monitoring and Management (RMM) software, to deploy the…
NewsKemp LoadMaster Command Injection CVE-2026-8037 Under Active Exploitation
Attackers are actively probing and exploiting CVE-2026-8037, a critical operating-system command injection flaw in Progress Kemp LoadMaster, the load balancer and application…
NewsBad Epoll: Linux Kernel Flaw CVE-2026-46242 Hands Local Users Root
A newly disclosed Linux kernel vulnerability dubbed Bad Epoll (CVE-2026-46242) allows an ordinary local user — no special group memberships, no sudo…
AI SecurityJadePuffer: The First Ransomware Operation Run Entirely by an LLM Agent
Security researchers at Sysdig have documented what they assess to be the first ransomware operation conducted end-to-end by a large language model…
NewsDecades-Old FAT32 Filesystem Flaws Put Millions of Embedded Devices at Risk
Researchers have disclosed unpatched vulnerabilities in a filesystem implementation bundled into millions of embedded devices, headlined by CVE-2026-6682 — an integer overflow…
NewsCISA Flags Actively Exploited SharePoint RCE CVE-2026-45659 — Patch Now
CISA has added a high-severity Microsoft SharePoint Server flaw to its Known Exploited Vulnerabilities (KEV) catalog after confirming it is being exploited…