CipherTest
boot sequence
loading offensive platform0%
CipherTest
Research Labs

Interactive security operations dashboard

A live view of the intelligence, detections, and disclosures produced by CipherTest Research. Feeds shown are illustrative and update continuously.

LIVE — stream activetick 0
24h
0

Tracked CVEs

24h
0

Active Threat Actors

24h
0

Detection Rules

24h
0

Public Disclosures

CVE Feed

curated by CipherTest Research
CVE-2025-9182New
Apache · Tomcat
9.8
CVSS
CVE-2025-9170Patched
Atlassian · Confluence
8.6
CVSS
CVE-2025-9144Analyzing
VMware · vCenter
9.1
CVSS
CVE-2025-9121Patched
Cisco · ISE
7.5
CVSS
CVE-2025-9088New
Fortinet · FortiOS
8.8
CVSS

Threat Intelligence

adversary tracking
UNC5321Finance · T1078 Valid Accounts
activity
Scattered SpiderSaaS · T1566 Phishing
activity
AkiraManufacturing · T1486 Data Encrypted
activity
Black BastaHealthcare · T1190 Exploit Public App
activity

Detection Rules

sigma · ATT&CK-mapped
Suspicious Kerberoast Ticket RequestT1558.003
94%
AWS AssumeRole by Untrusted PrincipalT1078.004
88%
Persistence via WMI Event SubscriptionT1546.003
91%
LSASS Memory Access by Non-system PIDT1003.001
86%

Security Tools

open-source releases
CipherReconAttack-surface mapping utility
Go
jwt-fuzzJWT parser and token fuzzer
Python
shadow-proxyTransparent interception proxy
Rust
sigma-genSigma rule scaffolding from ATT&CK
Python

Technical Articles

most-read this month
01Breaking Trust: Abuse in Modern SaaS SSO
4.2k
02Container Escape via Kernel Keyring
3.1k
03Detecting C2 Over Legitimate CDNs
5.7k

Public Disclosures

coordinated & patched
A popular BPM vendorCT-2025-014
Patched
A cloud identity providerCT-2025-009
Patched
A managed Kubernetes distroCT-2025-002
Patched

Feeds are illustrative and shown for demonstration. For production threat intelligence, contact our research team.