RedHunt Labs Blogs

Dive Deeper:
Uncover Insights in Our Latest Blogs

Security Risks

Sha1-Hulud: The Second Coming – GitHub Patterns Exposes a Deeper NPM Attack

On 24th Nov 2025, our Internet-scale monitoring systems detected a sharp and anomalous spike in newly indexed Git commits matching highly uniform characteristics. The volume of commits containing the message ...

Attack Surface Management

From Cost Center to ROI Engine: Making ASM a Security Investment That Pays for Itself

In today’s sprawling digital landscape, the question for security leaders isn’t whether Attack Surface Management (ASM) matters; it’s whether your ASM platform is doing enough to earn its place in ...

Security Best Practices

E-commerce Fraud-as-a-Service: How Scammers Exploit Brand Trust at Scale

In the rapidly evolving digital marketplace, e-commerce brands have become prime targets for cybercriminals. Beyond traditional data breaches, these brands now face sophisticated scams that exploit their reputation, deceive consumers, ...

Project Resonance

Echoes of AI Exposure: Thousands of Secrets Leaking Through Vibe Coded Sites | Wave 15 | Project Resonance

1. Introduction The vibe coding revolution has empowered millions to build and deploy websites using natural languages. Entrepreneurs, artists, and small businesses can now bring their ideas to life online ...

Security Best Practices

Agneyastra to the Rescue: Protecting your Firebase Projects before the Tea spills out!

In July 2025, the Tea app 🔗, a mental health and social community platform, experienced a devastating breach that spilled 72,000 images (including 13,000 driver’s license and verification selfies) and ...

News & Announcements

AI-Powered Celebrity Impersonation Scams: A Threat Intelligence Report by RedHunt Labs

Introduction A new wave of AI-powered investment scams is targeting Indian users on Facebook and Instagram, luring them with fake celebrity endorsements and deepfake interviews. Ads featuring figures like Nirmala ...

RedHunt Labs DSIT
News & Announcements

RedHunt Labs Contributes to UK Government Report on Commercial Offensive Cyber Capabilities

The UK Government has released a research paper that will feel particularly relevant to anyone working in offensive security or red teaming. Titled “Commercial Offensive Cyber Capabilities: Red Team Subsector ...

CISOGuides

OSINT, Recon, Dark Web & Threat Intel Talks, You Can’t Miss This Hacker Summer Camp

Every year, Hacker Summer Camp brings together the folks who live at the edge of visibility. If you care about mapping exposures, monitoring threats, and staying three steps ahead of ...

Attack Surface Management

Continuous Threat Exposure Management (CTEM), Explained: What It Is and How RedHunt Labs’ Platform Enables It

As organizations expand their digital footprint, their external attack surface becomes increasingly complex. Threats evolve faster than scheduled scans can catch them, and digital infrastructure now changes hourly, not quarterly. ...

Attack Surface Management

Take Precise Security Actions On Your Exposures: Powered by Notification & Ticketing Rules

Attack Surface Management (ASM) tools give you an unprecedented view into your organization’s exposures. They surface assets you forgot existed, show you vulnerabilities you didn’t know about, and reveal unexpected ...

Attack Surface Management

Category-Based Risk Scoring: Highlight the Key Security Areas, and Prioritise Where It Matters

Picture this: you’re a CISO. Your team is surrounded by signals every single day. Exposed IP addresses, misconfigured SaaS tools, forgotten cloud instances, and vendor connections you barely remember approving. ...

News & Announcements

Cleaner Layout, Better Experience: RedHunt Labs ASM Platform Just Got an UI Upgrade 🚀

We’ve rolled out a series of updates to the platform quietly, and deliberately. Not because someone filled out a feedback form. Over time, even the best tools start to pick ...

Subscribe to our newsletter &
stay updated.

Don't miss anything. Get all the latest posts delivered straight to your inbox.
It's free!