Threat Intelligence and Research
Start with vendor advisories, source commits, incident records, malware samples, and chain data, then preserve the links needed to check the conclusion.
SOSEC publishes security investigations and browser tools. Reports begin with advisories, source code, incident material, or chain records; tools state where data is processed, whether a network request occurs, and what the output can establish.
Reports name their sources, versions, and revision dates. Tools explain what leaves the browser before the first input.
Start with vendor advisories, source commits, incident records, malware samples, and chain data, then preserve the links needed to check the conclusion.
Put routine parsing, encoding, comparison, and first-pass triage in the browser, with the input, output, and limitations stated on the page.
Describe network access, logging, copy, and download behavior separately instead of covering every behavior with one privacy claim.
Browser tools parse the supplied material on the current device unless a page explicitly describes a separate request.
Application access logs keep the request path and omit pasted values, file bytes, and query values.
Every analysis page states whether it uploads, executes, resolves, or visits the material being examined.
Reports cite the advisory, commit, transaction, sample, or protocol material used to reach each technical conclusion.
We label direct source facts, source-grounded mechanism analysis, and hypotheses that still require local evidence.
SOSEC priority orders remediation by exposure, control-plane impact, exploit conditions, and evidence confidence; vendor severity is shown alongside it.
Articles show publication and update dates. Send factual corrections or source updates to [email protected] for review.
Copyable observables remain separate from actors, products, victims, techniques, and controls so triage does not turn context into a blocklist.
Read our research and notes
Collaborate, send feedback, or report issues
Send factual corrections, additional sources, and tool issues to [email protected]. Article revisions retain an updated date.