Skip to main content
LetsDefend Infosec LetsDefend Infosec
  • Home
  • Services
    • VAPT
    • Compliance
    • Virtual CISO
    • GRC Platform
    • Consulting
    • Managed Security
    • Anti-Phishing
    • Awareness Training
    View all services
    Products
    • TrueVigil
    • CyberIntellect
    View all products
  • About us
  • Blog
  • Contact
Our insights

Security insights that Cut Through the Noise. 

Timely breakdowns of breaches, vulnerabilities, and policy shifts, alongside practical write-ups on risk and compliance - the same plain-language approach we bring to every client engagement.

Illustration representing LetsDefend Infosec's insights and write-ups
All posts Cybercrime Data Breaches Law Enforcement Operations Nation-State Threats Phishing Policy & Compliance Threat Intelligence Vulnerabilities
Latest
Law Enforcement Operations 10 Sep 2026 · 4 min read

DOJ Takes Down Xinbi Guarantee Scam Marketplace and Freezes $52.8 Million

The U.S. Department of Justice announced a coordinated operation that seized Xinbi Guarantee’s Telegram channels, confiscated two crypto wallets, froze $52.8 million, and deployed a strike force to Madagascar to dismantle 13 scam compounds linked to Chinese organized crime.

Read article
Nation-State Threats
10 Sep 2026 4 min read

China‑Aligned Threat Groups Actively Exploit Zero‑Day Chain Across Multiple Sectors

Multiple China‑aligned threat groups have rapidly weaponized a series of undisclosed zero‑day flaws, targeting a broad set of organizations. The campaign is ongoing and expected to expand, underscoring the need for heightened vigilance and rapid mitigation.

#Threat Intelligence #Zero-Day Vulnerabilities #China
LetsDefend Infosec Read more
Vulnerabilities
10 Sep 2026 4 min read

Mythos Vulnerability Firehose Reveals Critical Disclosure Lag

Project Glasswing’s analysis shows that only a small fraction of the Mythos vulnerabilities have been disclosed and an even smaller portion remediated, exposing a human bottleneck in the security pipeline.

#Vulnerabilities #Disclosure #Remediation
LetsDefend Infosec Read more
Data Breaches
10 Sep 2026 5 min read

AdaptHealth Data Breach Exposes 4.1 Million Records, Linked to ShinyHunters

AdaptHealth confirmed that a cyberattack discovered in July exposed the personal data of 4.1 million individuals. The breach has been attributed to the ShinyHunters threat group, raising concerns for the healthcare sector and its patients.

#Data Breach #Healthcare #Threat Actors
LetsDefend Infosec Read more
Vulnerabilities
10 Sep 2026 4 min read

Cisco Secure FMC Authentication Bypass (CVE‑2026‑20079) Actively Exploited

Cisco has confirmed that CVE‑2026‑20079, a maximum‑severity authentication bypass in its Secure Firewall Management Center (FMC) software, is currently being leveraged in active attacks. The brief examines the technical nature of the flaw, the scope of impact, and immediate steps organizations should take.

#Cisco #Vulnerabilities #Authentication Bypass
LetsDefend Infosec Read more
Threat Intelligence
8 Sep 2026 5 min read

PEEP Toolkit Turns Chrome and Edge Into Post-Compromise Backdoors

Researchers have uncovered PEEP, a Chromium‑based post‑exploitation toolkit that masquerades as a bookmarks extension. It injects itself into Chrome and Edge profiles, bypasses store checks, and enables host command execution.

#Vulnerabilities #Browser Security #Threat Intelligence
LetsDefend Infosec Read more
Threat Intelligence
8 Sep 2026 4 min read

BigBear 2.0 Phishing‑as‑a‑Service Bypasses MFA at 258 Organizations

A phishing‑as‑a‑service platform dubbed BigBear 2.0 has actively bypassed multi‑factor authentication, stealing over 5,000 Microsoft 365 credentials across 258 victims. This brief outlines the operation, technical approach, impact, and immediate mitigations.

#Phishing-as-a-Service #MFA Bypass #Microsoft 365
LetsDefend Infosec Read more
Threat Intelligence
8 Sep 2026 4 min read

Microsoft 365 and SaaS Data Theft Campaign Leveraging Help‑Desk Vishing and Token Hijacking

Threat hunters have uncovered a coordinated extortion operation that steals credentials from Microsoft 365 and other SaaS platforms. The group uses help‑desk vishing, in‑the‑middle token theft, and residential‑proxy sign‑ins to target executives, then threatens exposure unless paid.

#Microsoft 365 #SaaS security #Threat intelligence
LetsDefend Infosec Read more
Data Breaches
8 Sep 2026 4 min read

Mathspace Breach Exposes Data of Over 1 Million Users via Metabase Compromise

Mathspace confirmed that attackers accessed its Metabase internal reporting system, extracting personal information for more than one million students, staff, and parents. The breach highlights risks inherent in third‑party analytics tools used by education platforms.

#Data Breaches #Education #Metabase
LetsDefend Infosec Read more
Data Breaches
8 Sep 2026 4 min read

Trezor Data Breach Expands to 81,000 Customers After ShipMonk Incident

Trezor confirmed that a breach at its logistics partner ShipMonk has now exposed personal data of 81,000 customers, including an additional 67,000 U.S. users. The report outlines the scope, impact, and recommended steps for affected individuals.

#Data Breach #Supply Chain #Trezor
LetsDefend Infosec Read more
  • « Previous
  • Next »
Showing 1 to 9 of 25 results
  • ‹
  • 1
  • 2
  • 3
  • ›
LetsDefend Infosec LetsDefend Infosec

Practical cybersecurity for organisations that need clarity, confidence, and room to grow.

Explore

  • Services
  • Products
  • About us
  • Blog
  • Contact

Services

  • VAPT
  • Compliance
  • Virtual CISO
  • GRC Platform
  • Consulting
  • Managed Security
  • Anti-Phishing
  • Awareness Training

Get in Touch

info@letsdefend.in

+91 7859957803

2nd Floor Ved Plaza Complex,
Meghraj Road, Modasa,
Gujarat-383315

© 2026 LetsDefend Infosec. Built around better security decisions.
Privacy policy Terms of use

Developer tools are open. Please close them to keep browsing.

Ready when you are.

Send us a quick note about your goals, timeline, or current challenge, and we’ll come back with a considered next step.

We only use the information you provide to respond to this enquiry. No credentials or sensitive data are requested here.

Talk to an expert.

Tell us a little about your goals, timeline, or current challenge, and one of our experts will come back with a considered next step.

Preferred contact method

We only use the information you provide to respond to this request. No credentials or sensitive data are requested here.