Threat Intelligence
Recent CVEs, active exploitation campaigns, threat actor TTPs, IOC analysis.
Avalon Malware Framework Packs CrownX Ransomware and EDR-Killing Evasion
Researchers have documented a previously undocumented modular malware framework codenamed Avalon that bundles a full ransomware payload internally named CrownX. Rather than…
NewsKemp LoadMaster Command Injection CVE-2026-8037 Under Active Exploitation
Attackers are actively probing and exploiting CVE-2026-8037, a critical operating-system command injection flaw in Progress Kemp LoadMaster, the load balancer and application…
NewsBad Epoll: Linux Kernel Flaw CVE-2026-46242 Hands Local Users Root
A newly disclosed Linux kernel vulnerability dubbed Bad Epoll (CVE-2026-46242) allows an ordinary local user — no special group memberships, no sudo…
NewsDecades-Old FAT32 Filesystem Flaws Put Millions of Embedded Devices at Risk
Researchers have disclosed unpatched vulnerabilities in a filesystem implementation bundled into millions of embedded devices, headlined by CVE-2026-6682 — an integer overflow…
NewsCISA Flags Actively Exploited SharePoint RCE CVE-2026-45659 — Patch Now
CISA has added a high-severity Microsoft SharePoint Server flaw to its Known Exploited Vulnerabilities (KEV) catalog after confirming it is being exploited…
NewsEdge Device Exploitation: VPN and Firewall Appliances Remain Top Initial Access Vector in 2026
Network edge appliances — VPN gateways, firewalls, load balancers, and SSL inspection proxies — have become the most reliable initial access vector…
Threat IntelligenceThe Gentlemen: Inside the Fastest-Rising Ransomware-as-a-Service Operation of 2026
The Gentlemen rose to the second most active ransomware operation of 2026 on a 90/10 affiliate split and FortiGate exploits. What Indian…
Threat Intelligencenpm and PyPI Supply-Chain Compromise (Mini Shai-Hulud): How Indian Dev Teams Should Respond
A self-propagating worm poisoned 160+ npm and PyPI packages in 2026. Heres how Indian dev teams check exposure, rotate exposed secrets and…
AI SecurityAI Phishing in 2026: How Indian Organisations Must Defend
Generative AI has rewritten phishing in 2026 — here is why legacy defences fail and what Indian organisations must deploy instead.
Incident ResponseRansomware in India 2026: From Data Leaks to Shutdowns
The 2026 ransomware reality in India has shifted from data theft to shutting operations down — here is how to defend.