THREAT INTELLIGENCE · SECURITY RESEARCH · FIELD NOTES

THE INTEL
BRIEFING.

Frontline research, real attack breakdowns, and security intelligence from the field.No fluff. No vendor noise. Just signal.

0
ARTICLES
0
CATEGORIES
SCROLL
CRITICAL: CVE-2025-0811 — Apache RCE — PATCH NOW HIGH: Phishing campaign targeting SA financial sector MEDIUM: Windows NTLM relay vector — limited exposure CRITICAL: FortiGate SSL-VPN auth bypass — exploit in wild SA CERT advisory: updated POPIA enforcement guidelines HIGH: LockBit 4.0 targeting construction sector in EMEA CRITICAL: CVE-2025-0811 — Apache RCE — PATCH NOW HIGH: Phishing campaign targeting SA financial sector MEDIUM: Windows NTLM relay vector — limited exposure CRITICAL: FortiGate SSL-VPN auth bypass — exploit in wild SA CERT advisory: updated POPIA enforcement guidelines HIGH: LockBit 4.0 targeting construction sector in EMEA
NEW POST
CVSS 9.8 · REAL FINDINGS
CRITICAL
NETWORK SECURITY · CASE STUDY

The Router That Could Have Taken Down the Entire Practice

A real Nessus scan. A TP-Link router running SSH from 2012. CVSS 9.8. Unauthenticated root access from the internet. Nobody knew. Here's the full breakdown.

22 MAR 2026 · 12 minREAD
CRITICAL
WIFI · NETWORK SECURITY

The Dangers of Your WiFi: Why Sharing Your Practice Password Could Cost You Everything

A patient connects to your waiting room WiFi and is instantly on the same network as your patient records. Full attack chain included.

03 MAR 2026 · 14 minREAD
NEW POST
OWASP · A01–A10
CRITICAL
WEB APP · DENTAL

OWASP Top 10 for Medical & Dental Practices: How Hackers Actually Break Into Your Web Apps

SQL injection, broken access control, SSRF — all 10 OWASP vulnerabilities mapped to real attack scenarios against SA practice portals. Code examples and POPIA implications included.

17 FEB 2026 · 18 minREAD
NEW POST
CRITICAL
PENTEST · DENTAL

We Hacked a Dental Practice in 11 Minutes — Here's Exactly How

USB hub at the patient's feet. Shared WiFi. Four PCs, one flat network. A dentist and pentester walks through every step — and every fix.

09 JAN 2026 · 10 minREAD
HIGH
PHYSICAL SECURITY

Hacker Gadgets Anyone Can Buy: What These Devices Do & Why You Should Be Worried

From Flipper Zero to the WiFi Pineapple — the tools professionals use for physical penetration testing are openly available. Here's what each one does and what it means for your security posture.

22 DEC 2025 · 12 minREAD
CRITICAL
RANSOMWARE · DENTAL

Ransomware for Under R80: Why Your Dental Practice Is the Perfect Target

A fully operational ransomware kit costs less than a cup of coffee. No expertise required. Here's what that means for your practice, your patients, and your POPIA obligations.

11 NOV 2025 · 10 minREAD
HIGH
THREAT INTEL

LockBit 4.0: What South African Businesses Need to Know Right Now

The latest LockBit variant is actively targeting EMEA SMEs. Here's the TTPs and how to harden against them before you're next.

29 OCT 2025 · 11 minREAD
NEW POST
HIGH
COMPLIANCE · DENTAL

Does a Pentest Make You POPIA Compliant? The Honest Answer.

No — but not getting one is a serious POPIA risk. From a dentist who pentests: here's exactly what a pentest covers under the Act, and what you still need to do.

07 AUG 2025 · 9 minREAD
INFO
OSINT

What an Attacker Learns About You Before Sending the First Packet

Passive recon is free, legal, and devastatingly effective. Here's exactly what we find before any engagement begins.

14 SEP 2025 · 10 minREAD
NEW POST
CRITICAL
MALWARE · CREDENTIALS

Infostealer Malware: The Silent Credential Harvesters in Your Network

Lumma, RedLine, Vidar, StealC — they run in memory, steal everything in 60 seconds, and delete themselves. Your MFA won't stop them. Here's why.

19 JUL 2025 · 13 minREAD
CRITICAL
AWARENESS · AI

Vishing in 2026: When AI Clones Your CEO's Voice to Call Your CFO

7 novel attack techniques — voice cloning, deepfake video, QR phishing, AiTM MFA bypass & more. If your team thinks they can spot a phish, read this first.

21 JAN 2026 · 13 minREAD
NEW POST
HIGH
AWARENESS · HIBP

Password Hygiene: Because Your Digital Health Matters Too

78% of common passwords crack in under 1 second. Troy Hunt, Have I Been Pwned, and why your toothbrush analogy might save your practice.

03 JUN 2025 · 9 minREAD
···

Get Intel Delivered Weekly

Curated threat intelligence, new posts, and security advisories. No spam. Unsubscribe any time.

WE RESPECT YOUR PRIVACY · NO THIRD-PARTY SHARING