Sponsor of the Day:
Jerkmate
https://nefariousplan.com/posts/teampcp-they-came-for-the-scanners
TeamPCP Came for the Scanners · nefariousplan.com
Apr 26, 2026 - Your CI pipeline runs Trivy. It scans containers, scans IaC, flags vulnerable dependencies. It's the canary. It's trusted. It runs early in the pipeline with...
teampcpcamescannersnefariousplan
https://nefariousplan.com/posts/redsun-windows-defender-system-write
RedSun: How Windows Defender's Remediation Became a SYSTEM File Write · nefariousplan.com
Apr 20, 2026 - The comment is on the line where the Cloud Files provider name is set.
windows defenderfile writeredsunremediationbecame
https://nefariousplan.com/
nefariousplan.com
Security research by Kevlar. Mechanism-over-feeling analysis of vulnerability classes, broken trust models, and the quiet parts researchers don't say out loud.
nefariousplan