Threat Intelligence · 82 articles

Threat Intelligence

Recent CVEs, active exploitation campaigns, threat actor TTPs, IOC analysis.

News

Avalon Malware Framework Packs CrownX Ransomware and EDR-Killing Evasion

Researchers have documented a previously undocumented modular malware framework codenamed Avalon that bundles a full ransomware payload internally named CrownX. Rather than…

Jul 6, 2026 · 2 min read
News

Kemp LoadMaster Command Injection CVE-2026-8037 Under Active Exploitation

Attackers are actively probing and exploiting CVE-2026-8037, a critical operating-system command injection flaw in Progress Kemp LoadMaster, the load balancer and application…

Jul 6, 2026 · 2 min read
News

Bad Epoll: Linux Kernel Flaw CVE-2026-46242 Hands Local Users Root

A newly disclosed Linux kernel vulnerability dubbed Bad Epoll (CVE-2026-46242) allows an ordinary local user — no special group memberships, no sudo…

Jul 5, 2026 · 2 min read
News

Decades-Old FAT32 Filesystem Flaws Put Millions of Embedded Devices at Risk

Researchers have disclosed unpatched vulnerabilities in a filesystem implementation bundled into millions of embedded devices, headlined by CVE-2026-6682 — an integer overflow…

Jul 3, 2026 · 2 min read
News

CISA Flags Actively Exploited SharePoint RCE CVE-2026-45659 — Patch Now

CISA has added a high-severity Microsoft SharePoint Server flaw to its Known Exploited Vulnerabilities (KEV) catalog after confirming it is being exploited…

Jul 2, 2026 · 2 min read
News

Edge Device Exploitation: VPN and Firewall Appliances Remain Top Initial Access Vector in 2026

Network edge appliances — VPN gateways, firewalls, load balancers, and SSL inspection proxies — have become the most reliable initial access vector…

Jun 20, 2026 · 2 min read
Threat Intelligence

The Gentlemen: Inside the Fastest-Rising Ransomware-as-a-Service Operation of 2026

The Gentlemen rose to the second most active ransomware operation of 2026 on a 90/10 affiliate split and FortiGate exploits. What Indian…

Jun 17, 2026 · 9 min read
Threat Intelligence

npm and PyPI Supply-Chain Compromise (Mini Shai-Hulud): How Indian Dev Teams Should Respond

A self-propagating worm poisoned 160+ npm and PyPI packages in 2026. Heres how Indian dev teams check exposure, rotate exposed secrets and…

Jun 17, 2026 · 8 min read
AI Security

AI Phishing in 2026: How Indian Organisations Must Defend

Generative AI has rewritten phishing in 2026 — here is why legacy defences fail and what Indian organisations must deploy instead.

Jun 16, 2026 · 6 min read
Incident Response

Ransomware in India 2026: From Data Leaks to Shutdowns

The 2026 ransomware reality in India has shifted from data theft to shutting operations down — here is how to defend.

Jun 15, 2026 · 6 min read
1 2 3 9