Blog· 203 articles
Field notes from the offensive side
Attack chains, vulnerability deep dives, and hard-won lessons in API security from the Axeploit team.

5 min read
The Namespace Paradox: Why Your Build Pipeline is Implicitly Trusting the Internet
By Pallavi M

8 min read
Container Breakouts 101: How Hackers Escape Docker and Kubernetes
By Harsh Nandanwar

4 min read
Prompt Injection in Production: When Your AI Feature Becomes an Attack Vector
By Pallavi M

8 min read
The Architecture of Trust is Made of Glass: OAuth 2.0 Pitfalls That Bypass Auth Without a Single Password
By Pallavi M

4 min read
The Firewall is a Bouncer, Not a Private Investigator: Why Business Logic Abuse is Your Next Headache
By Pallavi M

8 min read
Deepfakes in the Boardroom: How AI is Supercharging Social Engineering Attacks
By Harsh Nandanwar

7 min read
The Signature is Not the Secret: Why Your JWT Implementation is Probably a Screen Door
By Pallavi M

7 min read
Beyond the Perimeter: A Developer’s Pragmatic Guide to Zero Trust Architecture
By Harsh Nandanwar

6 min read
Zero-Knowledge Prototyping: The Honest Evaluation of Vibe Coding for Non-Coders
By Pallavi M
