CVE-2026-5231
Featured · 19 min read
Microsoft has officially launched the Security Detection Report in the Teams Admin Center (Roadmap ID 560702), giving SOC teams and IT admins centralized visibility into impersonation, malicious URLs,…
Read Full Post →
APT Analysis
Deep technical analysis of the Salt Typhoon APT campaign that breached nine US telecom carriers and accessed CALEA…
APT Analysis
A complete threat hunting guide for detecting Volt Typhoon living-off-the-land techniques. Includes verified KQL queries for Microsoft Sentinel,…
CVE-2026-5158
Blue Team
LegacyHive is an unpatched Windows 0-day (July 2026) targeting the User Profile Service. Full technical analysis of the…
🔐
CVE-2025-5156
Red Team
CVE-2021-36934 (HiveNightmare) continues powering Hunters International ransomware campaigns in 2025. Full exploitation chain, MITRE mapping, 4 validated Microsoft…