Blog
Threat research, vulnerability breakdowns, and practical security guidance from Clear Infosec.
What you will find here
Threat Intelligence Bulletins
Weekly roundups of new CVEs, active exploits, and defensive guidance.
Case Studies
Real engagements and measurable outcomes from our security work.
White Papers
In-depth research and practical frameworks for security and compliance teams.
Blogs
Threat research, vulnerability breakdowns, and practical guidance.
-

CISA’s Top 30 Bugs from oldest to recent : Get patch immediately
Government agencies in the US, UK, and Australia are encouraging public and private-sector organizations to secure their networks by ensuring firewalls, VPNs, and other…
-

NIST Recommendations for Computer Security Incident Handling
Computer security incident response is a very important component of information technology programs. Because performing incident response effectively is a complex and time-consuming task,…
-

Cybersecurity terms that everyone should know
Cybersecurity, being very important from the invention of computers and networks, is gaining more attention as even the most advanced organizations have fallen victim…
-

PRIMER ON MITRE ATT&CK 101
I am here with a blog on the MITRE ATT&CK because it has gained a lot of attention and popularity in recent years. ATT&CK…
-

The PrintNightmare
As a security researcher, I used to search for new exploits and vulnerabilities daily or more often. In the past few days, I have…
-
How Ransomware Targets Your Organization in 2021
Ransomware is a malware that in the last two years has become an important threat to US companies and people. Any business, government, organization,…
-

Infosec insights to the new normal
A paradigm shift towards Work from Home
-
Canada Post data breach exposes 950,000 customers
A third-party supplier of Canada Post Corporation faced a major data breach giving the attacker 950,000 parcel recipients’ data. This was announced by the…
-
SUMO 1 – Vulnhub Walkthrough
This write up is about a simple vulnerable machine Sumo 1. It is a boot2root challenge from Vulnhub for beginners. In this vulnerable machine…
-
Ghostcat Vulnerability CVE-2020-1938 explained and exploited with Try-Hack-Me Tomghost machine
Today, I am back with an interesting blog on vulnerability named Ghostcat. The Apache Ghostcat vulnerability is an LFI (Local File Inclusion) vulnerability which…