Security News & Analysis
Context and analysis on the security and OSINT news that matters, minus the hype.
-
Canada's UN Cybercrime Convention Signing: What It Costs
2026-08-02
Kate Robertson's Citizen Lab analysis of Canada's UN Cybercrime Convention signing and what the treaty's surveillance architecture means for OSINT and security practitioners.
-
Felons Running a Zero-Day Broker: What It Means
2026-07-13
The KrebsOnSecurity report on convicted felons operating a zero-day broker exposes a known-vendor problem in offensive security. Here's the practical read.
-
FBI Seizes NetNut and Popa Botnet: Practitioner Analysis
2026-07-05
The FBI seized NetNut's proxy infrastructure and the Popa botnet. Here's what the action means for red teamers, SOC analysts, and OSINT practitioners.
-
WhatsApp vs. NSO: What the Contempt Motion Signals
2026-06-22
Meta's contempt motion against NSO Group shows Pegasus ops continued through WhatsApp during active litigation. Here's what the record means for defenders and researchers.
-
CISA's Leaked GovCloud Keys: What Practitioners Should Do
2026-05-25
A CISA contractor deliberately pushed AWS GovCloud keys to public GitHub. Here's the offensive and defensive analysis—and the concrete steps that follow.
-
Patch Tuesday May 2026: What the Volume Spike Signals
2026-05-15
Near-record patch volumes from five major vendors in May 2026 aren't a fluke. Here's what the data signals for offensive and defensive security workflows.