Cybersecurity Research & Threat Intelligence
Research active vulnerabilities, cloud and application security, cybercrime, and supply chain risk with practical guidance for defenders.
Cybersecurity Research Coverage
Explore the research areas where Invaders publishes recurring analysis, from active exploitation and vulnerability management to cloud risk and supply chain security.
144 articles
Vulnerability Research
Active exploitation, CVEs, patch priorities, and exposure analysis.
36 articles
Threat Hunting & Intelligence
Threat actor activity, detection context, and defensive investigation guidance.
16 articles
Cloud & Application Security
Cloud platforms, web applications, identity, and engineering security risk.
11 articles
Cybercrime
Operational reporting on criminal ecosystems, breaches, and attacker activity.
5 articles
Supply Chain Security
Software delivery, third-party dependencies, and CI/CD trust boundaries.
DarkSword iOS Exploit Chain Hits Multiple Threat Actors
DarkSword shows how iPhone zero-days spread far beyond a single operator Executive Summary Google Threat Intelligence Group says DarkSword is a full-chain iOS [...
Lucas Oliveira
Research
CVE-2026-32746: Critical GNU Inetutils telnetd flaw exposes legacy systems to root RCE
CVE-2026-32746: Critical GNU Inetutils telnetd flaw exposes legacy systems to root RCE Executive Summary CVE-2026-32746 is a critical pre-authentication [vulner...
Lucas Oliveira
Research
RondoDox botnet shifts to focused exploitation across 174 flaws
RondoDox botnet shifts to focused exploitation across 174 flaws The RondoDox botnet is no longer just another noisy vulnerability spray-and-pray operation. New...
Lucas Oliveira
Research
VMware Aria Operations flaws enable credential theft and privilege escalation
VMware Aria Operations flaws enable credential theft and privilege escalation Two security flaws in Broadcom VMware Aria Operations show how quickly weak privil...
Lucas Oliveira
Research
CVE-2026-32746: telnetd flaw enables unauthenticated root RCE
CVE-2026-32746: Telnetd flaw enables unauthenticated root RCE CVE-2026-32746 is a critical flaw in GNU InetUtils telnetd that can allow an unauthenticated remot...
Lucas Oliveira
Research
CVE-2026-25769: Wazuh cluster flaw enables RCE on master
CVE-2026-25769: Wazuh cluster flaw enables remote code execution CVE-2026-25769 is a critical Wazuh vulnerability that turns trusted cluster communication into...
Lucas Oliveira
Research
Slopoly Shows How AI-Generated Malware Is Entering Ransomware Operations
Slopoly Shows How AI-Generated Malware Is Entering Ransomware Operations | 2026 Executive Summary IBM X-Force says a ransomware-linked intrusion involved a like...
Lucas Oliveira
Research
Microsoft March 2026 Patch Tuesday Fixes 2 Public Zero-Days and Copilot-Linked Excel Risk
Microsoft March 2026 Patch Tuesday Fixes 2 Public Zero-Days and Copilot-Linked Excel Risk | 2026 Executive Summary Microsoft's March 2026 Patch Tuesday is not j...
Lucas Oliveira
Research
Cisco SD-WAN Flaws CVE-2026-20122 and CVE-2026-20128 Face Active Exploitation
Cisco SD-WAN Flaws CVE-2026-20122 and CVE-2026-20128 Face Active Exploitation | 2026 Executive Summary CVE-2026-20122 and CVE-2026-20128 have turned Cisco's SD-...
Lucas Oliveira
Research
Google Warns Chrome Users to Update Now as Two Zero-Days Are Exploited
Google Warns Chrome Users to Update Now as Two Zero-Days Are Exploited | 2026 Executive Summary Google has pushed an emergency Chrome update after confirming th...
Lucas Oliveira
Research









