CVE-2026-16617: Unauthenticated Stored XSS in Simple File List WordPress Plugin
Discovered and responsibly disclosed an unauthenticated stored cross-site scripting (XSS) vulnerability (CVSS 8.8) in Simple File List <= 6.3.11.
Vulnerability research, CVE disclosures, security advisories, and technical security writeups.
Discovered and responsibly disclosed an unauthenticated stored cross-site scripting (XSS) vulnerability (CVSS 8.8) in Simple File List <= 6.3.11.
Anthropic released Claude Opus 4.7 on April 16, 2026, delivering meaningful gains in agentic coding, high-resolution vision, and long-running tasks while remaining less capable than the restricted Claude Mythos Preview.
Exploring proactive threat hunting methodologies that focus on attacker behaviors and TTPs rather than just static Indicators of Compromise (IoCs).
Analyzing the impact of Large Language Models on the sophistication and scale of modern phishing and social engineering campaigns.
Reflections on transitioning from vulnerability assessment to adversary simulation, and why thinking like an attacker is more important than knowing how to use a specific tool.