Analysis

ClearFake and the Evolution of Browser-Native C2

How ClearFake turns JavaScript into a browser-resident implant with blockchain-backed indirection.

CVE-2025-6514: How Old Bugs Hijacked the AI Hype

Breaking down the MCP remote command injection and why AI tooling just became an attacker playground.