Blog
Blog
Gartner UK from the Practitioner’s Seat: Everyone Wants to Be an Orchestrator. Now What?
Be an orchestrator. Don’t buy, build. Automate the low-level tasks so your team can focus on the work that matters. Those are just a few of the buzzwords…
Blog
Life of a CISO in the Frontier AI Era : The Thankless Job With 24/7 Stress and What Must Change
What breach cases, boardroom pressure, budget gaps and AI-enabled attacks reveal about the world’s most exposed executive role A CISO’s job can feel thankless. The organization expects continuous…
Threat Research
CVE-2026-87902 WordPress: Unauthenticated Path Traversal Leading to Conditional RCE
1. Introduction CVE-2026-87902 is an unauthenticated path traversal vulnerability in WordPress page-template resolution. Under specific theme and server conditions, a remote attacker can include a readable local PHP…
Threat Research
CVE-2026-63077 : JetBrains TeamCity On-Premises – Unauthenticated Remote Code Execution via Agent Polling Deserialization
1. Introduction This document illustrates an unauthenticated Remote Code Execution (RCE) vulnerability in JetBrains TeamCity On-Premises – the widely deployed commercial Continuous Integration and Continuous Delivery (CI/CD) server…
Threat Research
CVE-2026-62201 OpenClaw: Sandbox Exec-Server SSRF and Network Policy Bypass
1. Introduction This article examines a Server-Side Request Forgery (SSRF) and network policy bypass in OpenClaw, a local-first AI assistant platform that supports execution through sandboxed backends. Tracked…
TPRM
From Months to Weeks: How a Manufacturer Cut Vendor Risk Assessments to Less than 2 Weeks
For most manufacturing organizations, suppliers and service providers are a growing concern. They host data, connect to internal systems, and keep operations running smoothly. And the risk keeps…