Cybersecurity Research & Threat Intelligence
Research active vulnerabilities, cloud and application security, cybercrime, and supply chain risk with practical guidance for defenders.
Cybersecurity Research Coverage
Explore the research areas where Invaders publishes recurring analysis, from active exploitation and vulnerability management to cloud risk and supply chain security.
144 articles
Vulnerability Research
Active exploitation, CVEs, patch priorities, and exposure analysis.
36 articles
Threat Hunting & Intelligence
Threat actor activity, detection context, and defensive investigation guidance.
16 articles
Cloud & Application Security
Cloud platforms, web applications, identity, and engineering security risk.
11 articles
Cybercrime
Operational reporting on criminal ecosystems, breaches, and attacker activity.
5 articles
Supply Chain Security
Software delivery, third-party dependencies, and CI/CD trust boundaries.
Featured Posts
Cl0p Turns PTC Windchill Exploitation Into a Purpose-Built Extortion Platform
Cl0p Turns PTC Windchill Exploitation Into a Purpose-Built Extortion Platform Product lifecycle management systems are not usually the first asset class defende...
Lucas Oliveira
Research
BeyondTrust auth bypass flaws put remote support appliances on the urgent patch list
BeyondTrust auth bypass flaws put remote support appliances on the urgent patch list BeyondTrust has disclosed four vulnerabilities in its Remote Support and Pr...
Lucas Oliveira
Research
Gitea Docker flaw turns a trusted proxy header into account takeover
Gitea Docker flaw turns a trusted proxy header into account takeover Gitea has fixed a critical authentication bypass in its official Docker images that could l...
Lucas Oliveira
Research
U-Boot FIT signature flaws expose a fragile pre-OS trust boundary
U-Boot FIT signature flaws expose a fragile pre-OS trust boundary Firmware security company Binarly has disclosed six vulnerabilities in U-Boot's FIT signature...
Lucas Oliveira
Research
Chrome's Latest V8 Zero-Day Is a Patch Priority, Even If the Exploit Details Are Quiet
Chrome's Latest V8 Zero-Day Is a Patch Priority, Even If the Exploit Details Are Quiet Google has shipped a Chrome Stable Channel update that fixes CVE-2026-874...
Lucas Oliveira
Research
Microsoft’s September Patch Tuesday Turns Into a Triage Test
Microsoft’s September Patch Tuesday Turns Into a Triage Test Microsoft’s September 2026 Patch Tuesday is less a routine update cycle and more a prioritization d...
Lucas Oliveira
Research
Counterfeit Installer Campaign Shows Why Download Telemetry Matters
Counterfeit Installer Campaign Shows Why Download Telemetry Matters Microsoft's latest campaign analysis is a useful reminder that initial access does not alway...
Lucas Oliveira
Research
Citrix NetScaler auth bypass now faces exploitation attempts
Citrix NetScaler auth bypass now faces exploitation attempts Executive Summary Attackers have started probing for CVE-2026-19490, a critical Citrix NetScaler AD...
Lucas Oliveira
Research
WordPress Site Owners Face Mass Exploitation of Super Forms and Elementor Pro Upload Flaws
WordPress Site Owners Face Mass Exploitation of Super Forms and Elementor Pro Upload Flaws Two critical WordPress plugin flaws are now being exploited at scale,...
Lucas Oliveira
Research
Dropbox breach shows why third-party identity links need zero trust
Dropbox breach shows why third-party identity links need zero trust Dropbox has confirmed that roughly 5,000 user accounts were accessed without authorization i...
Lucas Oliveira
Research
CISA's New KEV Additions Put Edge and AI Control Planes on a Short Patch Clock
CISA's New KEV Additions Put Edge and AI Control Planes on a Short Patch Clock CISA's latest Known Exploited Vulnerabilities update is not just another list of...
Lucas Oliveira
Research
ServiceNow Critical Flaws Expose Enterprise Workflows
ServiceNow Critical Flaws Expose Enterprise Workflows | 2026 ServiceNow has patched a cluster of critical flaws in the Now Platform and AI Platform, including t...
Lucas Oliveira
Research
PaperCut NG/MF zero-day chain: CISA adds actively exploited flaws to KEV
PaperCut NG/MF zero-day chain: CISA adds actively exploited flaws to KEV Executive Summary CISA has added two actively exploited PaperCut NG/MF vulnerabilities...
Lucas Oliveira
Research
Citrix NetScaler CVE-2026-8452 is now a KEV patch priority
Citrix NetScaler CVE-2026-8452 is now a KEV patch priority Executive Summary CISA's latest Known Exploited Vulnerabilities update has turned CVE-2026-8452 from...
Lucas Oliveira
Research
McKesson Cyber Incident Raises Fresh Questions About Healthcare SaaS Exposure
McKesson Cyber Incident Raises Fresh Questions About Healthcare SaaS Exposure Executive Summary McKesson disclosed a cybersecurity incident on August 28, 2026,...
Lucas Oliveira
Research
Berlin Refuses Extortion After State Network Cyberattack
Berlin Refuses Extortion After State Network Cyberattack Berlin's state government says it will not submit to extortion after a cyberattack on the city's admini...
Lucas Oliveira
Research















