vivek@kali:~/blog$ grep -r "threat-intel" ./posts/

Red Team

Security research, ethical hacking tutorials, cybercrime case studies, and threat intelligence from the field.

CVE-2025-0282: Ivanti Connect Secure Zero-Day Exploited by Nation-State Hackers Before Anyone Knew It Existed CVE-2026-5178
Featured · 7 min read
CVE-2025-0282 is a critical pre-authentication stack buffer overflow in Ivanti Connect Secure VPN (CVSS 9.0). Exploited by China-nexus nation-state actors since December 2024, deploying SPAWN, DRYHOOK, and PHASEJAM…
Jul 22, 2026 Exploits
China APT CISA emergency CVE-2025-0282 DRYHOOK
Read Full Post →
CVE-2024-3400: Palo Alto GlobalProtect Zero-Day with a Perfect CVSS 10.0 Score CVE-2026-5172
Exploits
CVE-2024-3400 is a command injection zero-day in Palo Alto Networks PAN-OS GlobalProtect with a perfect CVSS 10.0. Exploited…
5 min
command injection CVE-2024-3400 CVSS 10
🔐
CVE-2025-5156
Red Team
CVE-2021-36934 (HiveNightmare) continues powering Hunters International ransomware campaigns in 2025. Full exploitation chain, MITRE mapping, 4 validated Microsoft…
Jul 16, 2025 15 min
Blue Team Credential Dumping CVE-2021-36934