top of page
All Posts


The Link Between Trust and Theft: Inside Sri Lanka’s Latest Digital Scams
Inside Sri Lanka’s wave of fake GovPay fines, instant-loan funnels, railway lookalikes and authority impersonation Today’s most persuasive scams do not invent credibility from scratch. They borrow real laws, real services and familiar institutions-then place one malicious link in the middle. A driver crosses a single road line near Kottawa, receives a paper fine and is told that GovPay is available. The driver decides to pay the next day. At 10:50 the following morning, an
dehansa7
1 day ago10 min read


Understanding CVSS Scores: Why a Critical Vulnerability Isn't Always Critical for You
Picture two vulnerabilities landing in your scanner report on the same Tuesday morning. Both are rated CVSS 9.8. Both say "Critical" in angry red text. Both, on paper, look like the kind of thing that should stop your sprint planning and pull your whole team into a war room. One of them gets weaponized within 72 hours, shows up in ransomware playbooks, and lands on CISA's Known Exploited Vulnerabilities list before the week is out. The other sits quietly for the next three ye
dehansa7
Aug 287 min read


FortiBleed vs FortiClient EMS RCE: Two Fortinet Incidents, Two Very Different Lessons
Fortinet has been in the security spotlight more than once, but not every Fortinet-related incident tells the same story. Two cases stand out: FortiClient EMS Remote Code Execution in 2024 and the more recent FortiBleed credential compromise campaign. Both involve Fortinet technologies. Both created serious risk for organizations. Both were capable of opening the door to deeper compromise. But the way they worked was very different. One was a critical vulnerability that allow
dehansa7
Jun 266 min read


steve70904
May 310 min read


steve70904
May 300 min read


Drupal Issues Urgent Security Update as Attack Concerns Grow
The Drupal security team has announced an important security release for supported versions of Drupal core, warning administrators that public exploitation could happen very quickly after the patches become available. That wording alone has caught the attention of security teams across the industry because it usually means the issue is serious enough that attackers may move fast once technical details are disclosed. Drupal continues to power a large number of websites around
steve70904
May 192 min read


The Rise of Shai Hulu Clones After the Team PCP Leak
The underground streaming ecosystem is evolving fast after Team PCP released portions of the Shai Hulu codebase as open source. What started as a niche IPTV-style platform has now triggered a wave of emerging clones, modified panels, and rebranded streaming infrastructures appearing across Telegram groups, underground forums, and private reseller networks. Several of these newer clones are no longer simple copies. Developers are actively adding anti-analysis techniques, encry
steve70904
May 191 min read


Inside the New AI Cyber Battlefield
As enterprises rapidly adopt Large Language Models (LLMs) for automation, customer support, software development, and decision-making, a new cyber battlefield is emerging. This post explores the growing world of LLM security, uncovering how intelligent systems can be manipulated, poisoned, hijacked, or even turned against the organizations that deploy them. The case study dives deep into real-world and emerging threats such as prompt injection, jailbreak attacks, malicious pl
steve70904
May 181 min read


Microsoft Exchange Zero-Day Under Active Exploitation: What Organizations Need to Know
The vulnerability is tied to Outlook Web Access (OWA) and involves a cross-site scripting (XSS) and spoofing issue that could allow attackers to execute malicious JavaScript through specially crafted emails. Microsoft confirmed active exploitation but has not yet released full details on the threat actors or attack campaigns behind it. What makes this particularly concerning is the timing. Just days earlier, Microsoft’s Patch Tuesday updates were celebrated for having no act
steve70904
May 152 min read
bottom of page