Threat Intelligence · 71 articles

Threat Intelligence

Recent CVEs, active exploitation campaigns, threat actor TTPs, IOC analysis.

News

Apache HTTP/2 CVE-2026-23918: Double-Free RCE

May 30, 2026 · 1 min read
News

Cisco SD-WAN CVE-2026-20182 Zero-Day (10.0)

May 30, 2026 · 1 min read
News

Canvas LMS Breach 2026: ShinyHunters, 275M Records

May 30, 2026 · 1 min read
News

The SharePoint Zero-Day (CVE-2026-32201): Detection, Patching, and Hunt Guide

An actively-exploited SharePoint RCE hit 1,300+ servers. If you run on-prem SharePoint, act today.

May 25, 2026 · 1 min read
AI Security

The First AI-Developed Exploit: What an AI-Built 2FA Bypass Means for Defenders

AI just wrote a working exploit to bypass 2FA. The bar for exploit development dropped — here is the realistic threat picture.

May 25, 2026 · 1 min read
News

Initial Access Brokers: The Hidden Economy Behind Almost Every Breach

Ransomware crews rarely break in themselves — they buy the access. Meet the Initial Access Broker economy.

May 25, 2026 · 1 min read
News

Post-Quantum Ransomware and Harvest-Now-Decrypt-Later: The 2026 Crypto Clock

Attackers are adopting post-quantum crypto faster than defenders. Here is why the migration clock is already running.

May 25, 2026 · 1 min read
News

Encryptionless Extortion: Why Ransomware Stopped Encrypting and Started Leaking

More crews now steal and threaten to leak instead of encrypting. Your backups will not save you from this one.

May 25, 2026 · 1 min read
News

EDR Killers and BYOVD: How 2026 Ransomware Disables Your Defences First

Before the ransomware fires, the operator kills your EDR. Here is how BYOVD works and how to block it.

May 25, 2026 · 2 min read
Incident Response

Scenario Brief: Ransomware Tradecraft Against Indian Hospitals via Unpatched Backups

Tabletop-ready scenario: ransomware affiliates targeting Veeam backup servers as initial access. ABDM propagation risk and the hospital defender checklist.

May 22, 2026 · 2 min read
1 2 3 8