Cybersecurity Research & Threat Intelligence
Research active vulnerabilities, cloud and application security, cybercrime, and supply chain risk with practical guidance for defenders.
Cybersecurity Research Coverage
Explore the research areas where Invaders publishes recurring analysis, from active exploitation and vulnerability management to cloud risk and supply chain security.
144 articles
Vulnerability Research
Active exploitation, CVEs, patch priorities, and exposure analysis.
36 articles
Threat Hunting & Intelligence
Threat actor activity, detection context, and defensive investigation guidance.
16 articles
Cloud & Application Security
Cloud platforms, web applications, identity, and engineering security risk.
11 articles
Cybercrime
Operational reporting on criminal ecosystems, breaches, and attacker activity.
5 articles
Supply Chain Security
Software delivery, third-party dependencies, and CI/CD trust boundaries.
Microsoft Defender RoguePlanet fix closes a SYSTEM-level escalation path
Microsoft Defender RoguePlanet fix closes a SYSTEM-level escalation path Microsoft has released a fix for CVE-2026-50656, the Microsoft Defender vulnerability p...
Lucas Oliveira
Research
Unpatched Tenda router backdoor turns home gateways into a trust problem
Unpatched Tenda router backdoor turns home gateways into a trust problem CERT/CC has disclosed an undocumented authentication backdoor in several Tenda router f...
Lucas Oliveira
Research
CISA's July KEV batch puts Joomla page builders and Langflow on emergency patch lists
CISA's July KEV batch puts Joomla page builders and Langflow on emergency patch lists CISA added three vulnerabilities to its Known Exploited Vulnerabilities ca...
Lucas Oliveira
Research
Adobe ColdFusion CVE-2026-48282 moves from patch advisory to active exploitation
Adobe ColdFusion CVE-2026-48282 moves from patch advisory to active exploitation Adobe ColdFusion administrators have a narrow patch window for CVE-2026-48282,...
Lucas Oliveira
Research
Vect and TeamPCP show how stolen build secrets become ransomware access
Vect and TeamPCP show how stolen build secrets become ransomware access Sophos says two cybercrime groups, Vect and TeamPCP, have formalized a partnership that...
Lucas Oliveira
Research
JADEPUFFER shows how agentic AI can turn exposed Langflow into ransomware
JADEPUFFER shows how agentic AI can turn exposed Langflow into ransomware Sysdig has documented what it assesses as one of the first clear examples of agentic r...
Lucas Oliveira
Research
CitrixBleed-style NetScaler flaw CVE-2026-8451 is already being tested in the wild
CitrixBleed-style NetScaler flaw CVE-2026-8451 is already being tested in the wild Citrix NetScaler administrators have another edge-appliance exposure to triag...
Lucas Oliveira
Research
SharePoint CVE-2026-45659 active exploitation puts on-prem servers on urgent patch path
SharePoint CVE-2026-45659 active exploitation puts on-prem servers on urgent patch path Microsoft SharePoint Server is back in the active-exploitation lane. CIS...
Lucas Oliveira
Research
Progress Kemp LoadMaster CVE-2026-8037 exploitation moves fast after public PoC
Progress Kemp LoadMaster CVE-2026-8037 exploitation moves fast after public PoC Progress Kemp LoadMaster appliances are now in the familiar danger zone for edge...
Lucas Oliveira
Research
SimpleHelp CVE-2026-48558 exploitation turns RMM into a credential-theft path
SimpleHelp CVE-2026-48558 exploitation turns RMM into a credential-theft path SimpleHelp has moved from patched vulnerability to active intrusion path. Attacker...
Lucas Oliveira
Research
Oracle E-Business Suite CVE-2026-46817 is now an active exploitation risk
Oracle E-Business Suite CVE-2026-46817 is now an active exploitation risk Oracle E-Business Suite has another critical exposure that defenders should move out o...
Lucas Oliveira
Research
Actively exploited UniFi OS flaws turn network controllers into root-level targets
Actively exploited UniFi OS flaws turn network controllers into root-level targets CISA has added three Ubiquiti UniFi OS vulnerabilities to its Known Exploited...
Lucas Oliveira
Research











