Skip to main content
LetsDefend Infosec LetsDefend Infosec
  • Home
  • Services
    • VAPT
    • Compliance
    • Virtual CISO
    • GRC Platform
    • Consulting
    • Managed Security
    • Anti-Phishing
    • Awareness Training
    View all services
    Products
    • TrueVigil
    • CyberIntellect
    View all products
  • About us
  • Blog
  • Contact
Our insights

Security insights that Cut Through the Noise. 

Timely breakdowns of breaches, vulnerabilities, and policy shifts, alongside practical write-ups on risk and compliance - the same plain-language approach we bring to every client engagement.

Illustration representing LetsDefend Infosec's insights and write-ups
All posts Cybercrime Data Breaches Data Privacy Law Enforcement Operations Malware Nation-State Threats Phishing Policy & Compliance Threat Actors Threat Intelligence Vulnerabilities
Latest
Vulnerabilities 28 Sep 2026 · 5 min read

Citrix NetScaler ADC & Gateway Critical RCE Vulnerabilities Actively Exploited

Citrix disclosed two critical remote code execution flaws in NetScaler ADC and NetScaler Gateway that are being exploited in the wild. Patches have been released, but one vulnerability affects every deployment, including default configurations.

Read article
Threat Intelligence
8 Sep 2026 4 min read

Microsoft 365 and SaaS Data Theft Campaign Leveraging Help‑Desk Vishing and Token Hijacking

Threat hunters have uncovered a coordinated extortion operation that steals credentials from Microsoft 365 and other SaaS platforms. The group uses help‑desk vishing, in‑the‑middle token theft, and residential‑proxy sign‑ins to target executives, then threatens exposure unless paid.

#Microsoft 365 #SaaS security #Threat intelligence
LetsDefend Infosec Read more
Data Breaches
8 Sep 2026 4 min read

Mathspace Breach Exposes Data of Over 1 Million Users via Metabase Compromise

Mathspace confirmed that attackers accessed its Metabase internal reporting system, extracting personal information for more than one million students, staff, and parents. The breach highlights risks inherent in third‑party analytics tools used by education platforms.

#Data Breaches #Education #Metabase
LetsDefend Infosec Read more
Data Breaches
8 Sep 2026 4 min read

Trezor Data Breach Expands to 81,000 Customers After ShipMonk Incident

Trezor confirmed that a breach at its logistics partner ShipMonk has now exposed personal data of 81,000 customers, including an additional 67,000 U.S. users. The report outlines the scope, impact, and recommended steps for affected individuals.

#Data Breach #Supply Chain #Trezor
LetsDefend Infosec Read more
Vulnerabilities
7 Sep 2026 3 min read

N-able Issues Emergency Hotfix for Actively Exploited RCE Flaw in N-central RMM

N-able released an emergency hotfix for a maximum‑severity remote code execution vulnerability in its N-central remote monitoring and management platform. The flaw is currently being actively exploited, prompting urgent patch deployment.

#Vulnerabilities #Remote Code Execution #RMM
LetsDefend Infosec Read more
Vulnerabilities
7 Sep 2026 5 min read

MikroTik Routers Hijacked via Unauthenticated SSH Access

Attackers are exploiting internet‑exposed SSH on MikroTik routers to obtain full administrative control without credentials. CERT Polska warned on September 5, and the activity has been observed since at least September 2.

#MikroTik #SSH #Exploitation
LetsDefend Infosec Read more
Phishing
7 Sep 2026 4 min read

ASCII Smuggling with Invisible Unicode Characters Fuels New Phishing Bypass

Threat actors are now embedding invisible Unicode characters in email bodies to hide malicious links, a technique known as ASCII smuggling. This method slips past conventional email security filters, demanding updated detection strategies.

#Phishing #Email Security #Threat Intelligence
LetsDefend Infosec Read more
Threat Intelligence
7 Sep 2026 4 min read

REVSTEALER Deploys Persistent Modules That Disable Defender and Launch Crypto Miner

Elastic Security Labs uncovered four new modules linked to the REVSTEALER Windows stealer. One module disables Windows Update and Microsoft Defender before starting a cryptocurrency miner, persisting after the original stealer removes itself.

#Threat Intelligence #Malware #Windows
LetsDefend Infosec Read more
Vulnerabilities
2 Sep 2026 4 min read

Unauthenticated RCE Chain in GeoNetwork Patched in Latest Releases

Two linked flaws in the open‑source GeoNetwork platform allowed unauthenticated remote code execution. Patches arrived in versions 4.4.12 and 4.2.17 on July 8 2026, mitigating the risk for government and agency geoportals.

#Vulnerabilities #Open Source #Geospatial
LetsDefend Infosec Read more
Cybercrime
2 Sep 2026 3 min read

Russian Hacker Extradited for Massive Excel Malware Campaign

A Russian national, Searzhudin Tamirlanovich Aktulaev, was extradited from Cyprus and charged by the U.S. Department of Justice for a 2016‑2017 operation that leveraged 255 fake freelance‑platform accounts to deliver malware‑laden Excel attachments to roughly 80,000 victims.

#Threat Intel #Malware #Cybercrime
LetsDefend Infosec Read more
  • « Previous
  • Next »
Showing 19 to 27 of 37 results
  • ‹
  • 1
  • 2
  • 3
  • 4
  • 5
  • ›
LetsDefend Infosec LetsDefend Infosec

Practical cybersecurity for organisations that need clarity, confidence, and room to grow.

Explore

  • Services
  • Products
  • About us
  • Blog
  • Contact

Services

  • VAPT
  • Compliance
  • Virtual CISO
  • GRC Platform
  • Consulting
  • Managed Security
  • Anti-Phishing
  • Awareness Training

Get in Touch

info@letsdefend.in

+91 7859957803

2nd Floor Ved Plaza Complex,
Meghraj Road, Modasa,
Gujarat-383315

© 2026 LetsDefend Infosec. Built around better security decisions.
Privacy policy Terms of use

Developer tools are open. Please close them to keep browsing.

Ready when you are.

Send us a quick note about your goals, timeline, or current challenge, and we’ll come back with a considered next step.

We only use the information you provide to respond to this enquiry. No credentials or sensitive data are requested here.

Talk to an expert.

Tell us a little about your goals, timeline, or current challenge, and one of our experts will come back with a considered next step.

Preferred contact method

We only use the information you provide to respond to this request. No credentials or sensitive data are requested here.