Sitemap
102 articlesA complete index of every article on this site.
Cybersecurity
- Two Wiz Filings This Week Point Past Agentless Scanning, Toward the Runtime and the Data
- AdaptHealth Determines a Cyber Incident Is Material — Here Is What the 8-K Actually States
- Aflac Discloses a Security Incident at Its Japan Unit in an 8-K, With Forensics Engaged and Scope Still Open
- Cisco’s June 30 Patent Grants Cluster Around Detecting Traffic It Can’t Decrypt
- What 'Risk Factors' Mean in an S-1 or 10-K: The SEC Rule Behind the Section
- Free Cash Flow vs Operating Cash Flow: What a Security Vendor's Filing Actually Subtracts
- 8-K Item 2.02 Explained: How a Security Vendor's Earnings Release Reaches the SEC
- Deferred Revenue and Billings in a SaaS Filing: What the Contract-Liability Line Actually Means
- 10-Q vs 10-K: The Difference Between a Quarterly and Annual SEC Report, From the Form's Own Rules
- GAAP vs Non-GAAP: What 'Adjusted' Means in a Security Vendor's Earnings, From the SEC's Own Rule
- RPO Explained: What Remaining Performance Obligations Tell You in a Security Software Filing
- What Net Revenue Retention Means for a Security Software Company, Read From a Real 10-Q
- Deserialization Flaw in iba ibaPDA and ibaDatCoordinator Can Give Remote Attackers Full System Access, NVD Records
- Unauthenticated Template Injection in JTL Shop Can Yield Webshell and Code Execution, NVD Records
- CrowdStrike's Newest Filings Read Like a Bet That the Detection Model Should Run the Response, Too
- An Unauthenticated Pickle on a ZMQ Socket: CVE-2026-49121 Hands Attackers Every AITER Worker
- trust_remote_code=False Wasn't: CVE-2026-5241 Lets a Malicious Model Run Code in Hugging Face Transformers
- Chrome's FileSystem Use-After-Free Opens a Sandbox-Escape Path in CVE-2026-10931
- When Turning Off Unsafe Made Netty Unsafe: CVE-2026-48040 in the OHTTP Codec
- Capsule's Cluster-Admin Controller Became a Tenant Escape Hatch in CVE-2026-22872
- A Perfect 10.0: MISP's LDAP-Plus-OTP Setup Let Attackers Skip the Second Factor Entirely
- When a Filename Runs Code: Vim's tar.vim Command Injection
- Leaking the Tail of a Buffer: The ws WebSocket Library's Uninitialized Memory Disclosure
- From Self-Registered Editor to Admin: The Frontend Admin WordPress Privilege Escalation
- A Race to Root: VMware Fusion's SETUID TOCTOU Privilege Escalation
- Opening the Wrong Repo Could Run Code: Turborepo's VS Code Extension Command Injection
- Tabby's tabby:// URL Scheme Turned a Single Click Into Remote Code Execution
- CISA Flags an Unauthenticated PeopleSoft Takeover as Ransomware-Linked
- Comp Sheet: How the Six Security Anchors Report the Numbers That Matter
- CrowdStrike's Dollar-Based Net Retention: How the 10-Q Actually Defines the Number
- What Cloud Security Posture Management Actually Does — Read Through a Granted Patent
- Subscription Is the Whole Business: Reading CrowdStrike's Revenue Through the 10-Q
- Inside Zscaler's Cash Flow: A $120 Million Receivables Swing and What It Signals
- Zscaler's Calculated Billings: Why the Metric the Market Loves Can Mislead
- Okta's $4.83 Billion Subscription Backlog: Reading RPO the Way the Filing Reports It
- How Data Loss Prevention Works, Read Through Zscaler and Netskope Patents
- What a SIEM Does — and Why Triage Is the Hard Part
- SentinelOne Stopped Burning Operating Cash. The 10-K Shows When the Turn Happened.
- EDR and Behavioral Threat Detection, Explained Through an IBM Patent
- Fortinet's 10-K Names the Risk Behind the Growth: Billings and Margins Can Slow Together
- Container and Kubernetes Security, Explained Through Granted Patents
- Identity and Access Management, Explained Through Two Granted Patents
- Post-Quantum Cryptography, Explained Through a Granted Patent
- Palo Alto's Platformization Bet, Read Through the Filings — Including the Risk It Names
- What SASE Actually Is, Read Through the Patents Behind It
- Fortinet Reported $1.81 Billion in Total Billings — Here's What the Filing's Own Definition Means
- Palo Alto Now Pays Its Executives on NGS ARR. The Proxy Explains the Realignment.
- How a Malware Sandbox Works — and Why It's Moving to the Cloud
- Passkeys and Passwordless Login, Explained Through Granted Patents
- How LLM-Driven Cloud Posture Remediation Works, Read Through a Zscaler Patent
- How Phishing Detection Works, Read Through Cloudflare and Forcepoint Patents
- How Multi-Cloud Threat Correlation Works, Read Through a Zscaler Patent
- Why SentinelOne's 10-K Calls ARR Its 'Key Operating Metric'
- How Ransomware Detection Works, Read Through a Cybereason Patent
- How Machine-Learning Zero-Trust Policy Generation Works, Read Through a Zscaler Patent
- How ML Malicious-Attachment Detection Works, Read Through a Cloudflare Patent
- How Multiple Post-Quantum Key Encapsulations Work, Read Through a 2025 Patent
- CrowdStrike's Proxy Quietly Reveals How Deep the Platform Land-and-Expand Goes
- How Sensitive-Data Classification Works, Read Through a Securiti Patent
- How a Programmable Endpoint Data Recorder Works, Read Through a Sophos Patent
- How Hands-on-Keyboard Attack Detection Works, Read Through a Secureworks Patent
- How Static-Analysis Vulnerability Detection Works, Read Through a Lacework Patent
- How Ransomware Detection in Backups Works, Read Through a Commvault Patent
- Why Palo Alto's Own Filing Says to Stop Watching Billings During 'Platformization'
- How Agentless Cloud Malware Detection Works, Read Through an Orca Security Patent
- How Social-Engineering Attack Detection Works, Read Through a Social Safeguard Patent
- Okta's 10-K Names Its Own Breach: A Support-System Intrusion, In the Company's Words
- Zscaler's Free-Cash-Flow Margin Jumps to 45% — The Quality Tell Behind the Growth
- How Sandbox Stack-Execution Detection Works, Read Through a Malwarebytes Patent
- How Agentless Zero-Trust File Transfer Works, Read Through a Zscaler Patent
- How Microsegmentation for Serverless Computing Works, Read Through a Zscaler Patent
- How Proven-Access Authorization Works, Read Through a Microsoft Patent
- Calculated Billings Is the Number Zscaler Wants You to Watch. Here's Why.
- How Self-Learning Malware Detection Works, Read Through a Palo Alto Networks Patent
- How DLP Incident Forwarding Works, Read Through a Zscaler Patent
- How Cloud-Application-Agnostic DLP Works, Read Through a Netskope Patent
- How Ransomware Detection and Mitigation Works, Read Through a McAfee Patent
- How Multi-Cloud Compliance Controls Work, Read Through a Virtustream Patent
- How Pattern-Based Malicious URL Detection Works, Read Through a Palo Alto Networks Patent
- How Lateral Ransomware Containment Works, Read Through an Airgap Networks Patent
- How Endpoint-Assisted Encrypted Traffic Inspection Works, Read Through a Cisco Patent
- SentinelOne's First Annual Report Shows Net Retention Climbing Three Years Running
- Fortinet's 10-K Describes a Firewall, but the Business Is the Subscriptions Bolted to It
- How Physical-Token Multi-Factor Authentication Works, Read Through a Capital One Patent
- SentinelOne's Net Retention Hits 130% — The Expansion Half of the Case Shows Up
- How Synthetic Request Injection Works in Cloud Security, Read Through a Netskope Patent
- How Security Investigation Workflow Automation Works, Read Through a Splunk Patent
- How SIEM Log-Source Management Works, Read Through a JPMorgan Patent
- SentinelOne's First 10-Q as a Public Company: Retention Is the Whole Case
- How a Microservice Identity Architecture Works, Read Through a Cloudentity Patent
- How Container Process Profiling Works, Read Through a Twistlock Patent
- How Continuous Authentication Works, Read Through an Acceptto Patent
- How Runtime Container Vulnerability Detection Works, Read Through a Twistlock Patent
- CrowdStrike's Q3 Filing: A Pure Subscription Story Heading Into Year-End
- How Content Disarm and Retrospective Scanning Works, Read Through a Votiro Patent
- Zscaler Tells Investors Its Billings Growth Rate Will Fall. Read the Sentence.
- How Image-Based Data Loss Prevention Works, Read Through a Netskope Patent
- How Targeted-Malware Detection Works, Read Through a FireEye Patent
- How a Malware Detonation Sandbox Works — Palo Alto Networks' Honey-Network Patent
- CrowdStrike's First Pandemic Quarter: The Subscription Engine Holds
- How Endpoint Data Loss Prevention Works, Read Through a CA Technologies Patent
- How Automated Cloud Security Policy Enforcement Works — Read Through a FireEye Patent