All Posts

Mullvad vs Proton VPN: The Ultimate Privacy-First Technical Breakdown
Mullvad vs Proton VPN - deep technical comparison: RAM servers, DAITA, GotaTun, 2023 police raid, ProtonMail controversy, audits, payments

How 144 Mastra npm Packages Got Poisoned in Under an Hour And Nobody Noticed Until It Was Too Late
144 Mastra npm packages were compromised on June 17, 2026 via easy-day-js, a typosquatted dependency that drops a cross-platform infostealer

How a Single Rogue BGP Announcement Took Telegram Offline Across Three Continents
A single unauthorized BGP route from Reliance AS18101 redirected Telegram's global traffic into a blackhole taking users offline in India and more

Proton’s Privacy Promise Has an Asterisk: what 40,000 government orders actually tell us
Proton’s privacy claims face scrutiny as 40,389 complied government orders, metadata exposure, IP logging, and MLAT cases reveal the limits of it

PSN’s One-Letter Username Glitch: What Actually Happened Under the Hood
A PSN glitch let users claim single-letter usernames blocked since 2006. Here's the validation failure behind it and what Sony will likely do next

The Instructure Canvas Breach (2026): How a Single Support Ticket Exposed 275 Million Students
The Instructure Canvas breach exposed 275M students through stored XSS, hijacked sessions, weak CSP, and ShinyHunters’ large-scale data theft

The VPN Authentication Bypass That Let Ransomware Actors Walk Right In: A Deep Dive into CVE-2026-50751
CVE-2026-50751 is a CVSS 9.3 auth bypass in Check Point VPN exploited since May 7, 2026. Full technical breakdown, IOCs, patches and more

CVE-2026-53435: Inside the Jenkins Deserialization Chain That’s Being Exploited Right Now
CVE-2026-53435 is a high-severity Jenkins deserialization flaw (CVSS 8.8) under active exploitation. Full technical breakdown: gadget chain, PoC

VPN Encryption Is Not Enough: How DPI, TLS Fingerprinting, and Active Probing Expose Your Traffic
Your VPN encrypts the payload but not the shape of your traffic. Here's exactly how DPI, JA3/4 TLS fingerprinting, and active probing expose VPN

HDFC AMC Got Breached. Here’s What Actually Happened And What Morpheus’s 680 GB Haul Means for Your Data
HDFC AMC's VMware infrastructure was breached by ransomware group Morpheus, exposing 680 GB of investor PAN, bank, and SIM data. Details





