๐ We've got News!!! ๐
Excited to unveil our first prototype of NEBULA, the ultimate endpoint security solution, tailored for SMEs!
#NEBULA#EndpointSecurity#SMEs
I didn't expect from my conversation with Parv to be so valuable for the people trying to get started in the field of cybersecurity.
For everyone in my DMs asking how to get started this is it.
We recorded the podcast last week, it went live this Sunday. Full episode below ๐๏ธ
This is why app security and cloud security cannot live in separate boxes anymore.
One server-side bug in a web app now becomes database access, cloud takeover, lateral movement, and potential supply-chain abuse.
Source: https://t.co/yUrgJzcwMX
React apps are becoming secret vacuums.
Attackers are now weaponising React2Shell to rip credentials out of vulnerable Next.js servers at scale, fast, and with almost no manual effort. ๐ด
If your web tier can expose cloud credentials, your breach radius is already too large.
Fix React2Shell, then rotate exposed secrets immediately.
https://t.co/egFJtE5EML
Your security scanner just became the weapon.
CVE-2026-33634 (CVSS 9.4): Aqua Trivy was compromised.
Every scan silently stole your AWS keys, SSH creds, and Kubernetes tokens. ๐ด
The real problem? Popular open-source tools under active surveillance.
If it powers your AI pipeline, assume it's in a threat actor's playbook.
Defense-in-depth isn't optional anymore.
20-hour median TTE (time-to-exploit) is now the norm, not the exception.
Your patch window is 20 days.
Threat actors exploit in 20 hours.
You're already behind before you know about it.
I asked my @openclaw AI agent "Riddler" to scan my home network.
It found my forgotten printer with an open admin panel and my router with UPnP still on.
Then it told me exactly how to fix the issues.
The security landscape is changing at a scary speed.
#Security#AI
@sentrinus@openclaw@karpathy After configuring it over & over again and really fine tuning it to my workflows, lately it has been surprising me frequently with it's capabilities.
Especially now that it has started working along with the employees at @secureu_in & @sentrinus as their colleague.
You clicked "I'm not a robot."
That one click just installed ransomware.
No phishing link. No suspicious email. No hacked password.
LeakNet's new ClickFix attack turns a fake CAPTCHA into a full ransomware deployment & your antivirus won't catch it.
Here's how it works. ๐งต
What actually stops ClickFix:
โ Updated social engineering training
โ Endpoint detection for in-memory loaders
โ Zero-trust execution policies
SECUREU runs full assessments in 2 weeks.
๐ฉ https://t.co/egFJtE5EML
Microsoft's own AI just became the attack vector.
A vulnerability in Excel lets attackers weaponise Copilot to silently exfiltrate your data.
Zero clicks. Zero warnings. Your AI assistant sends your files to the attacker.
CVE-2026-26144. Patch now. ๐งต
If your organization uses Microsoft 365 + Copilot, you need to:
1. Patch immediately
2. Disable preview pane in Outlook
3. Audit AI tool permissions & data access
Need help securing your Microsoft environment? Let us do this for you.
https://t.co/egFJtE5EML | +91-8329411829