PurpleSec
Where offense meets defense — a living archive of real-world attack paths, Hack The Box pwns, and threat research, built to make defenders think like attackers.
PurpleSec — Cybersecurity Research & Enterprise Defense
Latest Drop
Featured Intel
Freshly published from the research desk.
Latest Post
Critical SAP Commerce Cloud RCE (CVE-2026-58231) Actively Exploited Post-Patch
This post details CVE-2026-58231, a critical unauthenticated Remote Code Execution vulnerability in SAP Commerce Cloud (Data Hub Adapter) with a CVSS score of 10.0. Actively exploited post-patch, this flaw allows attackers to compromise internal components, leading to full system compromise.
Read full analysis →
From the blog
Recent Posts
Writeups and research notes, newest first.
Aug 16, 2026Critical SAP Commerce Cloud RCE (CVE-2026-58231) Actively Exploited Post-PatchAug 16, 2026PHPSpreadsheet RCE Patch Bypass (CVE-2026-45034) via Phar DeserializationAug 16, 2026Pre-Authenticated Root RCE in macOS Screen Sharing (CVE-2026-65400) Actively ExploitedAug 15, 2026Critical Microsoft SharePoint JWT Token Authentication Bypass (CVE-2026-55040) Actively ExploitedAug 14, 2026Microsoft Windows AFD.sys Use-After-Free Zero-Day (CVE-2026-68820) Exploited by Lazarus Group for SYSTEM Privilege EscalationAug 14, 2026Cisco ASA & FTD Remote Access SSL VPN Denial of Service Zero-Day (CVE-2026-20349) Actively Exploited in the WildAug 14, 2026Critical Check Point SmartConsole Authentication Bypass (CVE-2026-16232) Zero-Day Exploited in the Wild
Ethos
Words to Hack By
Let's talk security.
Building something, breaking something, or hardening something? I'm always up for a sharp conversation on offensive tradecraft, detection engineering, or where the industry is heading next.