# Threat Intel &   Security Research

Stay ahead of emerging threats with insights from our security research team. Deep dives into attack techniques, defense strategies, and industry trends.

**Microsoft February 2026 Patch Tuesday**  
Microsoft's February 2026 Patch Tuesday with six actively exploited and three publicly disclosed zero-day vulnerabilities.  
[Read more](/content/blog/microsoft-february-2026-patch-tuesday/index.html)  
**Feb 10, 2026**

**Critical Vulnerabilities in React and Next.js**  
Critical RCE in React Server Components (CVE-2025-55182)  
[Read more](/content/blog/critical-vulnerabilities-in-react-and-next-js/index.html)  
**Dec 3, 2025**

**CitrixBleed 2: Honeypot Analysis**  
In June 2025, the cybersecurity community was alerted to a critical vulnerability dubbed CVE-2025-5777, also known as “CitrixBleed 2.”  
[Read more](/content/blog/citrixbleed-2-honeypot-analysis/index.html)  
**Jul 29, 2025**

**Honey Games**  
At the end of the last summer, we kicked of a small honeypot project where we deployed HoneyDB agents across 18 countries.  
[Read more](/content/blog/honey-games/index.html)  
**Jan 7, 2023**

**Patch Tuesday: Remote Code Execution Buffet**  
In yesterday’s Patch Tuesday, Microsoft released 128 new patches. Critical patches targeting protocols such as RPC, SMB, NFS, LDAP, Hyber-V, and should be patched immediately.  
[Read more](/content/blog/patch-tuesday-remote-code-execution-buffet/index.html)  
**Apr 13, 2022**

**Conti Leaks: Tools and Techniques**  
With recent events of the Russian invasion in Ukraine, we’ve seen a rise of cyber gangs choosing sides they support.  
[Read more](/content/blog/conti-leaks-tools-and-techniques/index.html)  
**Mar 2, 2022**

**Yet Another Global Ransomware Attack**  
On the morning of June 27th, a ransomware variant called Petya started spreading like wildfire globally. Currently, there are reports of infections in Russia, Ukraine, India and Europe.  
[Read more](/content/blog/yet-another-global-ransomware-attack/index.html)  
**Jun 27, 2017**

**Critical Samba Vulnerability**  
Developers of Samba have discovered a 7-year old critical vulnerability CVE-2017-7494.  
[Read more](/content/blog/critical-samba-vulnerability/index.html)  
**May 26, 2017**

**WannaCry Ransomware Utilizing NSA Exploits**  
Early morning, Friday May 12th, ransomware by the name of Wcry/WanaCrypt0r/WannaCry/WanaCypt0r/Wanacryptor started spreading viciously through Europe.  
[Read more](/content/blog/wannacry-ransomware-utilizing-nsa-exploits/index.html)  
**May 12, 2017**

**DoublePulsar Global Implants: On the rise?**  
Due to requests for DOUBLEPULSAR scanning, we put together a page where you can check if you're affected. Please patch, and adjust your firewall rules!  
[Read more](/content/blog/doublepulsar-global-implants/index.html)  
**Apr 24, 2017**
