The CyberSec Guru

Beginner’s Guide to Conquering Checkpoint on Hack the Box
Conquer Checkpoint on Hack The Box like a pro with the official HTB Writeup. Dominate this challenge and level up your cybersecurity skills

Blue Teaming Mindmap: Complete Guide to Defense, Detection & Response
Explore this Blue Teaming mindmap covering security monitoring, threat detection, incident response, log management, endpoint security and more

University of Nottingham Hit by ShinyHunters: 454,600 Students’ Data Stolen in Oracle PeopleSoft Attack
ShinyHunters stole 454,600 students' data from the University of Nottingham via Oracle PeopleSoft. Here's what happened, what was taken, and what to do now

ServiceNow Customers Hit by Unauthorized API Access – And the Company Knew for Months
A misconfigured ServiceNow REST endpoint exposed customer tenants in. Here's what happened, what attackers accessed, and what you need know

Miasma Just Went Open Source. Here’s What’s Actually Inside It
The Miasma supply chain worm just went open source. We analyzed the full source code - 5-layer obfuscation, GitHub-as-C2, AI tool hijacking etc

CVE-2026-23111: One Inverted Character in Linux’s nftables Hands Attackers Root
CVE-2026-23111 is a use-after-free in Linux's nftables that lets an unprivileged user escalate to root. Working exploits are public. Here's exactly how it works

Yoti Flagged A Playstation User to Authorities for Running GrapheneOS on their Phone
Sony's age-verification partner Yoti reportedly flagged a GrapheneOS user to authorities. Here's what actually happened and why it matters for everyone

Silent Persistence: How Chinese APT ‘VerdantBamboo’ Spent 18 Months Inside Microsoft 365 Using Custom Malware
Discover how Chinese espionage group UNC5221 (VerdantBamboo) used Brickstorm & Plenet to hide inside Microsoft 365 and MSP networks for over 18 months

Hades Descends to PyPI: Miasma Supply Chain Campaign Spreads via Malicious .pth Startup Hooks
Security researchers detect "Hades," a PyPI branch of the Mini Shai-Hulud / Miasma malware lineage. Over 37 packages compromised via .pth startup hooks.

The CyberSec Guru Is Expanding Into Hardware and Telecom Security
The CyberSec Guru is expanding into Electronics Hardware Security and Telecom Security, covering firmware, embedded systems, IoT and more





