ShellCodeX
Tools • Events • News • Insights
Radar
Practitioner-first cyber intelligence hub

Turn cyber intelligence into practical decisions.

Investigate vulnerabilities, follow source-backed threat signals and move from evidence to action with practical research, detection context and privacy-aware security tools.

Live threat board Updated continuously from ShellCodeX trackers & CISA KEV
Ransomware pressure
4,092 victim claims tracked
  • +217 in the last 7 days
  • 74 groups active this month
Signals today
20 intel signals in 24h
  • 18 rated high or critical
  • Peak CVSS 10
Daily threat climate
65 / 100
Elevated ▼ 2 vs yesterday

Updated 22 hours ago

Cyber Weather

A daily reading of the global cyber threat climate.

Improving

Critical AI signals are shaping today's risk

The current stream is above normal baseline. ShellCodeX Pulse reviewed 19 published signals from the last 24 hours, with AI as the dominant theme and critical as the highest observed severity.

Dominant threat AI
Signals reviewed 19 · 24h
Ransomware Severe
Vulnerabilities Severe
Malware Severe
Cloud Severe
AI Severe

Activity is easing off; AI should keep receding unless a new disclosure lands.

Technology Pulse

Live signals from the cybersecurity and infrastructure ecosystem.

Articles

All
Prioritizing and Remediating CVE-2026-21962 in Oracle WebLogic An operational playbook to prioritise and remediate CVE-2026-21962 in Oracle WebLogic. Includes triage heuristics, detection queries, WAF rules and timeline SLAs to act fast.
Cyber Security Tools • 7 min

Prioritizing and Remediating CVE-2026-21962 in Oracle WebLogic

An operational playbook to prioritise and remediate CVE-2026-21962 in Oracle WebLogic. Includes triage heuristic...

Read ▸
Hunting and Containing Live AWS Access Keys in Production A public leak lands in your ticketing system: a repo, a build artifact, or a dataset contains an AWS access key. This article shows the exact commands, CloudTrail queries and conta...
Cyber Security Blog • 8 min

Hunting and Containing Live AWS Access Keys in Production

A public leak lands in your ticketing system: a repo, a build artifact, or a dataset contains an AWS access key....

Read ▸
Keycloak CVE-2026-18963 Testing & Hunting Guide A practical, hands-on guide for application security testers and defenders to test, detect and remediate Keycloak CVE-2026-18963. Includes exploit checks, DB and event queries, SIE...
Cyber Security Blog • 8 min

Keycloak CVE-2026-18963 Testing & Hunting Guide

A practical, hands-on guide for application security testers and defenders to test, detect and remediate Keycloa...

Read ▸
Detecting CVE-2026-19478 Exploitation in GitLab GraphQL When a self‑hosted GitLab project disappears after an unauthenticated GraphQL POST, this guide shows where to look and what rules to run. Includes SIEM queries, Sigma rules and an...
Cyber Security Blog • 7 min

Detecting CVE-2026-19478 Exploitation in GitLab GraphQL

When a self‑hosted GitLab project disappears after an unauthenticated GraphQL POST, this guide shows where to lo...

Read ▸
Hunting and Containing Zimbra CVE-2026-73570 with IDS, SIEM and EDR If your org runs Zimbra Collaboration Suite with the zimbra-snmp package installed, CVE-2026-73570 lets unauthenticated attackers execute OS commands when SNMP notifications are en...
Cyber Security Blog • 7 min

Hunting and Containing Zimbra CVE-2026-73570 with IDS, SIEM and EDR

If your org runs Zimbra Collaboration Suite with the zimbra-snmp package installed, CVE-2026-73570 lets unauthen...

Read ▸

Tools

Curated open-source picks
All
atomic-red-team Small and highly portable detection tests based on MITRE's ATT&CK.
22 Aug 2026

atomic-red-team

Small and highly portable detection tests based on MITRE's ATT&CK.

Open ▸
adversaryemulation-gems A not so awesome list of adversary emulation gems for aspiring red/blue/purple teamers
22 Aug 2026

adversaryemulation-gems

A not so awesome list of adversary emulation gems for aspiring red/blue/purple teamers

Open ▸
BlueTeam-Tools Tools and Techniques for Blue Team / Incident Response
22 Aug 2026

BlueTeam-Tools

Tools and Techniques for Blue Team / Incident Response

Open ▸
awesome-cybersecurity-blueteam :computer:🛡️ A curated collection of awesome resources, tools, and other shiny things for cybersecurity blue teams.
22 Aug 2026

awesome-cybersecurity-blueteam

:computer:🛡️ A curated collection of awesome resources, tools, and other shiny things for cybersecurity blue tea...

Open ▸
certSniff A certificate transparency log keyword sniffer written in python
18 Aug 2026

certSniff

A certificate transparency log keyword sniffer written in python

Open ▸

Build, Share, and Grow with the Community.

ShellCodeX is evolving into a practical technology hub for builders and teams. We publish high-signal articles, curate useful tools, and spotlight real community events in one place.

Guides Open-Source Tools Community Events