Skip to content
SQUID SEC
Menu
  • Home
  • Cheat Sheets
  • Hire SquidSec
  • SquidSec Team
  • Squid Sec Twitter
  • SquidSec Podcast
  • Home
  • Cheat Sheets
  • Hire SquidSec
  • SquidSec Team
  • Squid Sec Twitter
  • SquidSec Podcast

Tag: pentesting

Anthropic’s Double Leak: Misconfigurations, npm Packaging Blunders, and the Rising Cyber Risks of “Agentic” AI Development
Educational

Anthropic’s Double Leak: Misconfigurations, npm Packaging Blunders, and the Rising Cyber Risks of “Agentic” AI Development

In the span of just five days in late March 2026, Anthropic—one of the AI industry’s most vocal proponents of

by ☣️ Mr. The Plague ☣️
Read More
Data Sovereignty Battles in the Cloud: Securing Cross-Border Operations Without Getting Crushed by Privacy Laws or Misconfigs
Cyber Security

Data Sovereignty Battles in the Cloud: Securing Cross-Border Operations Without Getting Crushed by Privacy Laws or Misconfigs

Part 4 of “Building Resilience in a Globalized Digital Economy.” After geopolitics weaponized your supply chain, the next battlefield is

by ☣️ Mr. The Plague ☣️
Read More
NPM Attacks in 2026: Escalating Supply Chain Threats in the Globalized JavaScript Ecosystem – And Why Your SBOM Still Won’t Save You
weekly-brief

NPM Attacks in 2026: Escalating Supply Chain Threats in the Globalized JavaScript Ecosystem – And Why Your SBOM Still Won’t Save You

If you read my last deep-dive on NPM supply-chain risks, you remember the punchline: the JavaScript ecosystem is a house

by ☣️ Mr. The Plague ☣️
Read More
BloodBash: A Lightweight Python Alternative to BloodHound for Active Directory Analysis
Tools

BloodBash: A Lightweight Python Alternative to BloodHound for Active Directory Analysis

Active Directory (AD) reconnaissance is a critical step in red team engagements, penetration testing, and security assessments. Traditionally, tools like

by ☣️ Mr. The Plague ☣️
Read More
The December 2025 Ubisoft Incident: Rainbow Six Siege Backend Compromise and Exaggerated Breach Claims
red-team

The December 2025 Ubisoft Incident: Rainbow Six Siege Backend Compromise and Exaggerated Breach Claims

Ubisoft data breach 2025 In the world of enterprise information security, few incidents highlight the perils of backend misconfigurations and

by ☣️ Mr. The Plague ☣️
Read More
HackMap: A Powerful Local Penetration Testing Mapping Tool for Advanced Graph Note Keeping
Educational

HackMap: A Powerful Local Penetration Testing Mapping Tool for Advanced Graph Note Keeping

In the world of ethical hacking and penetration testing, visualizing attack paths and managing command history can make all the

by ☣️ Mr. The Plague ☣️
Read More
NPM Attacks in 2025: Escalating Supply Chain Threats in the JavaScript Ecosystem
Cyber Security

NPM Attacks in 2025: Escalating Supply Chain Threats in the JavaScript Ecosystem

The Node Package Manager (npm) registry faced unprecedented supply chain attacks throughout 2025, marking a significant escalation in threats targeting

by ☣️ Mr. The Plague ☣️
Read More
HTTP Request Smuggling in 2025: How to Distinguish Real Desync Vulnerabilities from HTTP Request Pipelining (And Stop Wasting Everyone’s Time)
Cyber Security

HTTP Request Smuggling in 2025: How to Distinguish Real Desync Vulnerabilities from HTTP Request Pipelining (And Stop Wasting Everyone’s Time)

Introduction We saw this in 2019 after James popularized modern desync attacks. We saw it again in 2024 after his

by ☣️ Mr. The Plague ☣️
Read More
CyberDeck: The Ultimate Retro Sci-Fi Hacker’s Cookbook for Red Teamers & Pentesters
Educational

CyberDeck: The Ultimate Retro Sci-Fi Hacker’s Cookbook for Red Teamers & Pentesters

In the ever-evolving landscape of offensive security—where cloud misconfigs, Active Directory attacks, and living-off-the-land binaries dominate engagements—speed and muscle memory

by ☣️ Mr. The Plague ☣️
Read More
New Episode of SquidSec Podcast is Live! –
blue-team

New Episode of SquidSec Podcast is Live! –

by ☣️ Mr. The Plague ☣️
Read More

Posts pagination

1 2 … 5 Next
SQUID SECURITY LLC 2026