Blog· 203 articles
Field notes from the offensive side
Attack chains, vulnerability deep dives, and hard-won lessons in API security from the Axeploit team.

9 min read
The Klue SaaS Supply Chain Attack: How Icarus Abused OAuth to Siphon Salesforce Data
By Harsh Nandanwar

10 min read
What Happens After a Breach: The Timeline Founders Wish They Had Seen Before
By Pallavi M

6 min read
The Death of the Traditional SIEM: Why Data Logging is Yielding to Active AI Defense
By Harsh Nandanwar

6 min read
The MCP Security Problem: Why AI Tool Integrations Are the New Shadow IT
By Pallavi M

11 min read
The Cartel Convergence: How Interlock and Rhysida’s Shared Ecosystem is Redefining Ransomware in 2026
By Harsh Nandanwar

11 min read
How Logging Becomes a Liability: When Your Observability Stack Leaks Secrets
By Pallavi M

7 min read
The Agency’s Guide to an Affordable Pre-Handover Security Audit in 2026
By Harsh Nandanwar

7 min read
The Secrets Sprawl Epidemic: Securing Hardcoded Credentials in the Era of Multi-Cloud
By Harsh Nandanwar

11 min read
From Vibe Code to Production: The Security Checklist Nobody Gives You
By Pallavi M
