en
CVE-2026-35273 & CVE-2026-35278: The Oracle PeopleSoft Zero-Day Chain Behind 100+ Breaches
How threat actors chained two unauthenticated Oracle PeopleSoft zero-days to breach over 100 enterprise environments.
en
How threat actors chained two unauthenticated Oracle PeopleSoft zero-days to breach over 100 enterprise environments.
en
Technical root cause of the SharePoint deserialization RCE exploited within days of public proof-of-concept release.
en
Comprehensive post-mortem of the Klue OAuth compromise and a step-by-step Salesforce integration audit guide.
en
Detailed investigation into unauthorized third-party access to Accenture systems and recommended client security audits.
en
Deep dive into Microsoft's record 622-CVE Patch Tuesday featuring active SharePoint and Active Directory Federation Services zero-days.
en
Technical root cause and exploit chain analysis for the maximum-severity SonicWall SMA 1000 zero-day pair.
en
Weekly briefing: SonicWall SMA 1000 zero-day chain, Microsoft 622-CVE Patch Tuesday, Accenture breach, and GhostApproval AI trust flaws.
en
Weekly briefing: Adobe ColdFusion 6x CVSS 10.0 wave, SharePoint Warlock ransomware, and Cursor IDE DuneSlide prompt injection.
en
How Storm-2603 weaponized a SharePoint deserialization flaw to deploy Warlock ransomware across enterprise networks.
en
Weekly briefing: 630GB Apple/Tesla trade secrets leaked, Klue OAuth Salesforce data theft, Cisco UCM webshells, and Atomic Arch.
en
Investigation into Atomic Arch: over 1,500 Arch Linux AUR packages poisoned with eBPF stealth rootkits and credential grabbers.
en
Technical root cause of the Cisco Unified CM SSRF vulnerability exploited in the wild to drop Tor-routed root webshells.