Blog· 203 articles
Field notes from the offensive side
Attack chains, vulnerability deep dives, and hard-won lessons in API security from the Axeploit team.

8 min read
Poisoning the Well: Securing Your CI/CD Pipeline Against Next-Gen Supply Chain Attacks
By Harsh Nandanwar

6 min read
AI Drift and Regression Management: How to Keep Your Codebase Stable with AI Coding Tools
By Pallavi M

7 min read
Shadow APIs: The Unseen Attack Vector That's Bypassing Your WAF
By Harsh Nandanwar

6 min read
Emotional Variables in Data Structures: When Your App Listens to How You Feel
By Pallavi M

6 min read
The “Copilot Blindspot”: Why AI-Generated Code is a Ticking Time Bomb for App Security
By Harsh Nandanwar

6 min read
How Claude's 200K Context Window Is Enabling Whole-System Refactors That Were Previously Impossible
By Pallavi M

7 min read
Is Your Phone Spying on You? How the FBI Tracks Deleted Messages (And How to Stop It)
By Harsh Nandanwar

8 min read
The Nightmare Eclipse Attack: How Hackers Breached FortiGate VPNs (And How to Protect Your Startup)
By Harsh Nandanwar

6 min read
Seiko USA's Press Lounge Was Defaced. The Shopify Breach Claims Are Still Unverified
By Jason Miller
