SOC Incident Analysis Report 1. Analyst Information Analyst Name: Shreiya ChintalwarDate of Analysis: 14 March 2026SIEM Tool Used: WazuhAnalysis Period: 27 Feb 2026 – 28 Feb 2026 2. Executive Summary During the investigation periMar 14, 2026·4 min read
ABG Shipyard ScamBig Loan Fraud: ABG Shipyard took loans of more than ₹22,842 crore from a group of 28 banks, including ICICI Bank, SBI, IDBI Bank, BoB, PNB, etc. Money Misused: Instead of using the money to build ships, the owners diverted the funds to: Their ow...Nov 26, 2025·3 min read
Web Security Audit Report On "ABG Shipyard Ltd"Using OWASP ZAP ScanTarget Website: https://www.new-ships.comDate: 24 Nov 2025Scanner: ZAP by Checkmarx (Passive Scan) 1. What This Report Means You scanned a website using OWASP ZAP, a tool that looks for weaknesses in websites. The tool scans the w...Nov 24, 2025·4 min read
Internal Red Team Reconnaissance ReportDate: 2025-11-13 Scope: Internal Network 10.10.10.0/24 Mission: Discovery and Asset Mapping (No Exploitation) 1. Network Topology and Active Hosts The scan targeted the entire Class C subnet (10.10.10.0/24) to establish the network map. IP Range Sca...Nov 13, 2025·4 min read
🛡️ Cybersecurity Threat Analysis Report: PromptLock (AI-Powered Ransomware Prototype)Date: October 28, 2025 Threat: PromptLock (AI-Powered Ransomware Proof-of-Concept) 1. Introduction This document provides a comprehensive analysis of modern cybersecurity threat models and applies them to the newly reported PromptLock threat. PromptL...Oct 28, 2025·8 min read
The Malicious Postmark-MCP Package: One-Line Email Exfiltration AttackIncident Summary – Describe the attack or vulnerability. The incident involves a malicious npm (Node Package Manager) package named postmark-mcp that impersonated the official Model Context Protocol (MCP) server connector for Postmark, a popular tran...Oct 13, 2025·5 min read
Open Web Analytics (OWA) Unauthenticated SQL Injection in Password Reset Functionality (CVE-2014-1206).Incident Summary:- This case study examines a critical unauthenticated SQL Injection (SQLi) vulnerability discovered in Open Web Analytics (OWA), a popular open-source web analytics platform. The flaw was identified in the application's password rese...Oct 13, 2025·5 min read