vivek@kali:~/blog$ grep -r "threat-intel" ./posts/

Exploits

Security research, ethical hacking tutorials, cybercrime case studies, and threat intelligence from the field.

Patch Now: VMware CVE-2026-59309 Auth Bypass, Cisco Zero-Day and NGINX RCE – August 2026 Critical Vulnerabilities CVE-2026-5222
Featured · 6 min read
Four critical vulnerabilities demand immediate attention: VMware CVE-2026-59309 enables unauthenticated vCenter takeover, Cisco firewall zero-day is actively exploited, NGINX heap overflow allows unauthenticated RCE, and Anthropic discloses Claude…
Aug 3, 2026 Cybersecurity News
CISA water infrastructure Cisco zero day 2026 Claude AI breach critical vulnerability August 2026
Read Full Post →
Krybit Ransomware Hits Indian Pharma and IT: LAXAI Life Sciences and Vibonum Technologies Attacked in 72 Hours CVE-2026-5186
Cyber Awareness
Emerging ransomware group Krybit has attacked two Indian companies in 72 hours: LAXAI Life Sciences (pharma CRDMO) on…
Jul 28, 2026 8 min
India IT security 2026 India ransomware 2026 Krybit ransomware
Hinduja Tech Ransomware Attack 2026: Global Secret Group Claims 515 GB of BMW and Skoda Auto Supply Chain Data CVE-2026-5184
Cyber Awareness
Ransomware group Global Secret Group claimed a major attack on Hinduja Tech on July 26, 2026, exfiltrating 515…
7 min
automotive cybersecurity BMW supply chain hack engineering services cyber attack
Kudankulam Nuclear Plant Breach: World Leaks Ransomware Exposes 19,000 Files Including Reactor Blueprints CVE-2026-5182
Cyber Awareness
The ransomware group World Leaks has dumped 19,000 files (14.3 GB) from Kudankulam Nuclear Power Plant including blueprints…
7 min
India critical infrastructure Kudankulam nuclear breach NPCIL breach
DRDO Data Breach 2026: 31 GB of Classified Missile Guidance Data Being Sold on Dark Web for $8,000 CVE-2026-5180
Cyber Awareness
A threat actor is selling 31 GB of allegedly stolen DRDO data including advanced missile guidance sensor electronics…
8 min
Babuk2 dark web data sale defence cybersecurity India
CVE-2025-0282: Ivanti Connect Secure Zero-Day Exploited by Nation-State Hackers Before Anyone Knew It Existed CVE-2026-5178
Exploits
CVE-2025-0282 is a critical pre-authentication stack buffer overflow in Ivanti Connect Secure VPN (CVSS 9.0). Exploited by China-nexus…
Jul 22, 2026 7 min
China APT CISA emergency CVE-2025-0282
CVE-2025-21298: Windows OLE Zero-Click RCE — Just Previewing an Email Triggers the Exploit CVE-2026-5176
Cyber Awareness
CVE-2025-21298 is a critical Windows OLE vulnerability with CVSS 9.8. Attackers send a malicious RTF email and viewing…
5 min
CVE-2025-21298 email attack OLE exploit
CVE-2024-4577: Critical PHP CGI Vulnerability on Windows Exploited by Ransomware Within Days CVE-2026-5174
Cyber Awareness
CVE-2024-4577 is a CVSS 9.8 argument injection in PHP CGI on Windows that bypasses the 12-year-old CVE-2012-1823 patch…
4 min
argument injection CGI exploit CVE-2024-4577
CVE-2024-3400: Palo Alto GlobalProtect Zero-Day with a Perfect CVSS 10.0 Score CVE-2026-5172
Exploits
CVE-2024-3400 is a command injection zero-day in Palo Alto Networks PAN-OS GlobalProtect with a perfect CVSS 10.0. Exploited…
5 min
command injection CVE-2024-3400 CVSS 10
CVE-2024-6387 (regreSSHion): The Critical OpenSSH RCE That Threatened 14 Million Servers CVE-2026-5170
Cyber Awareness
A signal handler race condition in OpenSSH allows unauthenticated remote code execution as root on millions of Linux…
5 min
CVE-2024-6387 ethical hacking Linux security