Cybersecurity

A joint advisory from 19 allied cybersecurity agencies published on 13 July 2026 warns that Russian state hackers are systematically compromising routers to gain access to critical infrastructure networks worldwide. I am breaking down what…

Simon White, Incident Response Analyst
July 14, 2026 2 Min Read

We track caller ID spoofing platforms in the Adversary Operations Group. Russian Coms was one of the biggest. On July 13, 2026, the National...

Simon White, Incident Response Analyst
July 13, 2026 2 Min Read

Insight into Cybersecurity Risks for Financial Services Financial services remains one of the most heavily targeted sectors in the threat ...

July 13, 2026 < 1 Min Read
Subscribe Via Email

We track active phishing campaigns in the Thrive Adversary Operations Group (AOG) all day, every day. And here is what we keep seeing. Defenders still think phishing means fake login pages asking for passwords. That…

Simon White, Incident Response Analyst
July 13, 2026 5 Min Read

I track underground cybercrime markets as an adversary operations group (AOG) analyst. In December 2025, I counted 38 dark web forum posts about AI hacking tools. In February 2026, I counted nearly 1,500. The explosion…

Simon White, Incident Response Analyst
July 9, 2026 5 Min Read

The primary objective of cybersecurity has traditionally been preventing attacks. While prevention remains essential, today’s threat landscape has made one thing clear: even organizations with mature security programs can experience cyber incidents. Ransomware attacks, insider…

Kevin Landt, VP of Product, Cybersecurity
July 8, 2026 4 Min Read

 CISA added four vulnerabilities to the Known Exploited Vulnerabilities catalogue in the last ten days of June and the first days of July...

Simon White, Incident Response Analyst
July 6, 2026 4 Min Read

How attackers steal Microsoft 365 tokens, register devices, add FIDO keys, and read your mail without ever knowing your password.  As an ad...

Simon White, Incident Response Analyst
July 3, 2026 5 Min Read

The Day the Keys to the Kingdom Went Missing  In the quiet architecture of the internet, cPanel and WebHost Manager (WHM) serve as the mana...

Thrive Incident Response Team
May 8, 2026 4 Min Read

CVE-2026-31431 is a serious vulnerability. But the more alarming fact is how it was found. The Xint Code AI scan surfaced this flaw in approximately one hour. Finding a bug of this depth previously required months of…

Christopher Clark, Cybersecurity Incident Responder and Threat Hunter
May 8, 2026 7 Min Read

The Ghost in the Memory  In high-stakes Linux kernel security, the discovery of a universal root exploit is the digital equivalent of a structural failure in a skyscraper. On May 7, 2026, the community was…

Thrive Incident Response Team
May 8, 2026 4 Min Read