Cybersecurity Research & Threat Intelligence
Research active vulnerabilities, cloud and application security, cybercrime, and supply chain risk with practical guidance for defenders.
Cybersecurity Research Coverage
Explore the research areas where Invaders publishes recurring analysis, from active exploitation and vulnerability management to cloud risk and supply chain security.
144 articles
Vulnerability Research
Active exploitation, CVEs, patch priorities, and exposure analysis.
36 articles
Threat Hunting & Intelligence
Threat actor activity, detection context, and defensive investigation guidance.
16 articles
Cloud & Application Security
Cloud platforms, web applications, identity, and engineering security risk.
11 articles
Cybercrime
Operational reporting on criminal ecosystems, breaches, and attacker activity.
5 articles
Supply Chain Security
Software delivery, third-party dependencies, and CI/CD trust boundaries.
Cisco Breach Shows the Real Cost of the Trivy Supply-Chain Attack
Cisco Breach Shows the Real Cost of the Trivy Supply-Chain Attack The most important lesson from the Trivy incident is that a supply-chain attack on a trusted s...
Lucas Oliveira
Research
Axios npm compromise pushed a cross-platform RAT through a fake dependency
Axios npm compromise pushed a cross-platform RAT through a fake dependency A compromise of the widely used axios package on npm shows why defenders cannot rely...
Lucas Oliveira
Research
CVE-2026-21643: FortiClient EMS exploitation puts exposed endpoint managers at immediate risk
CVE-2026-21643: FortiClient EMS exploitation puts exposed endpoint managers at immediate risk CVE-2026-21643 is the kind of flaw defenders should treat as an im...
Lucas Oliveira
Research
CVE-2025-53521: F5 BIG-IP APM KEV warning raises urgent RCE risk
CVE-2025-53521: F5 BIG-IP APM KEV warning raises urgent RCE risk CVE-2025-53521 has become a much bigger operational problem than many defenders first assumed....
Lucas Oliveira
Research
Telegram zero-click flaw ZDI-CAN-30207 raises 9.8 risk
Telegram zero-click flaw ZDI-CAN-30207 raises 9.8 risk | 2026 ZDI-CAN-30207 is now listed on the Zero Day Initiative's upcoming advisory page as a Telegram issu...
Lucas Oliveira
Research
Crunchyroll confirms support data exposure after vendor incident
Crunchyroll confirms support data exposure after vendor incident | 2026 Executive Summary Crunchyroll says customer support ticket data was exposed after a Marc...
Lucas Oliveira
Research
LeakBase arrest is a warning to review stolen credential exposure now
LeakBase arrest is a warning to review stolen credential exposure now | 2026 The reported arrest of the alleged LeakBase administrator in Russia is the kind of...
Lucas Oliveira
Research
CVE-2026-4681: PTC warns of imminent Windchill and FlexPLM RCE risk
CVE-2026-4681: PTC warns of imminent Windchill and FlexPLM RCE risk CVE-2026-4681 deserves immediate attention because PTC is signaling urgency before full patc...
Lucas Oliveira
Research
CVE-2026-21992: Oracle emergency patch for pre-auth RCE
CVE-2026-21992: Oracle emergency patch for pre-auth RCE | 2026 CVE-2026-21992 puts two high-value Oracle products in the spotlight for the wrong reason. Oracle...
Lucas Oliveira
Research
Poisoned Trivy scanner led to malicious LiteLLM releases on PyPI
Poisoned Trivy scanner led to malicious LiteLLM releases on PyPI | 2026 The LiteLLM incident is what modern software supply-chain compromise looks like when one...
Lucas Oliveira
Research
CVE-2026-3055: Citrix warns NetScaler SAML deployments face critical memory leak risk
CVE-2026-3055: Citrix warns NetScaler SAML deployments face critical memory leak risk | 2026 CVE-2026-3055 puts Citrix NetScaler ADC and NetScaler Gateway defen...
Lucas Oliveira
Research
CVE-2026-20131: Interlock hit Cisco FMC before disclosure
CVE-2026-20131: Interlock hit Cisco FMC before disclosure | 2026 CVE-2026-20131 is the kind of firewall-management flaw defenders dread: an unauthenticated bug...
Lucas Oliveira
Research











