Practitioner-grade cybersecurity content
Technical playbooks, war stories, and how-to-think guides — written by practitioners, anchored to the Indian context.
Want structured, step-by-step learning instead? Explore the Academy (guided courses) or the AI security hub.
Latest articles
Most recent practitioner playbooks across every track. Filter by topic in the sidebar, or use search.
The First AI-Developed Exploit: What an AI-Built 2FA Bypass Means for Defenders
AI just wrote a working exploit to bypass 2FA. The bar for exploit development dropped — here is the realistic threat picture.
NewsThe SharePoint Zero-Day (CVE-2026-32201): Detection, Patching, and Hunt Guide
An actively-exploited SharePoint RCE hit 1,300+ servers. If you run on-prem SharePoint, act today.
NewsPost-Quantum Ransomware and Harvest-Now-Decrypt-Later: The 2026 Crypto Clock
Attackers are adopting post-quantum crypto faster than defenders. Here is why the migration clock is already running.
NewsInitial Access Brokers: The Hidden Economy Behind Almost Every Breach
Ransomware crews rarely break in themselves — they buy the access. Meet the Initial Access Broker economy.
NewsEncryptionless Extortion: Why Ransomware Stopped Encrypting and Started Leaking
More crews now steal and threaten to leak instead of encrypting. Your backups will not save you from this one.
NewsEDR Killers and BYOVD: How 2026 Ransomware Disables Your Defences First
Before the ransomware fires, the operator kills your EDR. Here is how BYOVD works and how to block it.
AI SecurityMindgard and the Rise of AI-Native Offensive Security Platforms
A new category arrived in 2026: AI-native offensive security platforms that test models, agents, and multimodal apps continuously, inside the SDLC.
AI SecurityPyRIT: Microsoft’s Python Risk Identification Tool for Generative AI
PyRIT gives red-teamers a programmable framework — orchestrators, prompt converters, and scorers — to automate generative-AI attacks at scale.
AI SecurityPromptfoo for Red Teamers: Automated GenAI Attack Testing in Your Pipeline
Promptfoo turns LLM red-teaming into repeatable, CI-friendly test suites — prompt injection, data leaks, and jailbreaks on every build.
AI SecurityGarak: NVIDIA’s LLM Vulnerability Scanner — A Practitioner’s Guide
Garak probes LLMs for prompt injection, jailbreaks, toxicity, and data leakage with hundreds of built-in attack probes. A hands-on primer.