Threat Intelligence · 82 articles

Threat Intelligence

Recent CVEs, active exploitation campaigns, threat actor TTPs, IOC analysis.

News

Salt Typhoon — How a PRC APT Mapped the US Telecom Backbone (and What Indian Carriers Should Steal From It)

Salt Typhoon (UNC2286 / GhostEmperor) sat inside US telecom carriers for 18+ months exploiting Cisco IOS XE CVE-2023-20198. Technical breakdown of Demodex…

May 8, 2026 · 7 min read
News

Top 10 Latest Vulnerabilities — Theory, Technical Analysis & Remediation (April–May 2026)

In-depth ~10-page technical breakdown of the 10 most consequential vulnerabilities CISA added to its Known Exploited Vulnerabilities catalog in April–May 2026. For…

May 4, 2026 · 27 min read
Red Teaming

Adversarial ML Examples: Attacks and Defences

Adversarial examples — white-box (PGD), black-box (transfer, score-based, decision-based), physical-world attacks (patches, glasses, road signs), text adversarial. Adversarial training, defensive distillation, input…

Apr 25, 2026 · 3 min read
Security Guides

Model Theft and Extraction Attacks

Model theft via API querying — functional theft, architecture theft, membership inference, model inversion. Defences (rate limiting, output perturbation, watermarking, differential privacy).…

Apr 25, 2026 · 2 min read
Security Guides

Dark Web OSINT: Tor, I2P, and Investigation Workflow

Dark-web OSINT for security teams — Tor / I2P setup, ransomware blogs, marketplaces, IAB ads, Indian-context findings (leaked Aadhaar/PAN datasets), automated monitoring…

Apr 25, 2026 · 2 min read
Security Guides

Geolocation and Chronolocation Techniques for OSINT

Geolocation methods — EXIF, reverse search, visual cues, street view matching, satellite imagery. Chronolocation via sun/shadow position, advertisements, vehicles, vegetation, weather records.

Apr 25, 2026 · 2 min read
Security Guides

AI Model Poisoning: Training, Fine-Tuning, RAG

Model poisoning variants — training data, fine-tuning, RAG document poisoning, backdoor attacks. Detection (provenance, anomaly, activation analysis). Defences (data hygiene, robust training,…

Apr 25, 2026 · 3 min read
Blue Team

ATM and POS Skimming Investigations in 2026

ATM / POS skimming variants in 2026 — overlay devices, deep-insert skimmers, POS terminal manipulation, Magecart e-commerce skimming. Detection SQL queries, investigation…

Apr 25, 2026 · 2 min read
Blue Team

Insider Threat in Indian BFSI: Detection, UEBA, HR Coordination

Insider threat categories (malicious, negligent, compromised, departed). Detection SQL queries for anomalous access and outbound. UEBA + DLP + HR/Legal coordination workflow.…

Apr 25, 2026 · 3 min read
Blue Team

Credit Card Fraud Detection at Scale: Rules + ML in Real-Time

Credit card fraud detection pipeline at issuer-bank scale — rule engine high-leverage rules, ML feature engineering, challenge mechanism, RBI Customer Protection alignment,…

Apr 25, 2026 · 2 min read
1 3 4 5 6 7 9