Tags

Browse research by ecosystem, incident class, and response context.

#active-exploitation (1) #ai-assistants (1) #ai-ml (1) #ai-tooling (1) #ai-tools (1) #android (1) #apex-one (1) #arch (1) #arista (1) #aur (1) #authentication-bypass (2) #azure (1) #backdoor (2) #bitwarden (1) #brandjacking (1) #browser (1) #buffer-overflow (1) #bun (1) #cascading-trust (1) #certificate-theft (1) #cgroups (1) #checkpoint (1) #chromium (2) #ci-cd (11) #cisa-kev (31) #cisco (3) #clickfix (1) #command-injection (1) #composer (1) #compromise (3) #container-escape (1) #content-supply-chain (1) #cors (1) #cpanel (3) #crates.io (1) #credential-exposure (1) #credential-theft (29) #credentials-theft (1) #cross-site-scripting (1) #crypto (1) #crypto-stealer (1) #cryptocurrency (1) #cwe-306 (1) #daemon-tools (1) #dependency-confusion (1) #developer-profiling (1) #dns (1) #dns-exfiltration (1) #domain-takeover (1) #dos (1) #dotnet (1) #drupal (1) #ebpf (2) #ecommerce (1) #eos (1) #exfiltration (1) #exploit-delivery (1) #exploited-vulnerability (1) #extension (1) #fastapi (1) #file-write (1) #filesystem-integrity (1) #financial-services (1) #framework (1) #ghcr (1) #ghost-cms (1) #github (4) #github-actions (7) #globalprotect (1) #go (1) #google-chrome (2) #hades (1) #hades-cluster (1) #hosting (2) #infostealer (1) #ivanti (1) #javascript (1) #joomla (1) #kernel (1) #kernel-exploit (1) #langflow (1) #laravel (1) #lazarus-group (1) #linux (2) #litellm (1) #litespeed (2) #magento (1) #maintainer-hijacking (1) #malicious-package (1) #malware (2) #management-plane (1) #mastra (1) #miasma (1) #microsoft (4) #microsoft-defender (2) #microsoft-exchange (1) #mini-shai-hulud (1) #monkey-patching (1) #network-security (1) #node (1) #node-gyp (1) #npm (19) #nuget (1) #oauth (1) #oidc (2) #open-vsx (1) #oracle (2) #owa (1) #package-compromise (5) #package-impersonation (1) #packagist (2) #palo-alto-networks (2) #pan-os (2) #path-traversal (1) #peoplesoft (1) #peopletools (1) #php (1) #postinstall (2) #privilege-escalation (7) #public-sector (1) #pypi (11) #python (1) #ransomware (2) #rat (2) #rce (3) #redhat (1) #remote-code-execution (2) #repository-compromise (1) #rootkit (1) #ruby (1) #rubygems (1) #rust (1) #sd-wan (2) #sdwan (1) #security-bypass (2) #segmentation-bypass (1) #sentry (1) #serv-u (1) #shai-hulud (3) #shared-hosting (1) #shinyhunters (1) #signed-malware (1) #slsa (1) #solana (1) #solarwinds (1) #splunk (1) #sql-injection (2) #starlette (2) #startup-hook (1) #supply-chain (36) #tag-hijack (1) #tag-poisoning (1) #teampcp (6) #trend-micro (1) #typosquatting (5) #unc1069 (1) #uncontrolled-resource-consumption (1) #v8 (1) #vpn (1) #vscode (2) #vulnerability-response (7) #waveshaper (1) #web-app (1) #weblogic (1) #windows (5) #wordpress (1) #workflow-injection (1) #workflow-secrets (1) #worm (1) #xinference (1) #zero-day (20)