
Latest perspective · July 20, 2026
SonicWall SMA1000 zero-day: Patch, then prove the appliance is clean
How SMA1000 owners should patch CVE-2026-15409 and CVE-2026-15410, then verify the appliance was not used for internal access.
CulperSec perspectives
Practical analysis for teams making decisions about security, resilience, risk, and compliance.

Latest perspective · July 20, 2026
How SMA1000 owners should patch CVE-2026-15409 and CVE-2026-15410, then verify the appliance was not used for internal access.
The archive
Threat analysis, practical guidance, and lessons from the work of protecting modern organizations.

July 14, 2026 · 8 min read
The CMMC Phase II suspension pauses some third-party pressure, not CUI duties. Here is what SMB defense contractors should review and document.
Read article
March 17, 2026 · 9 min read
A practical lessons-learned look at the recent Stryker cyber incident, with concrete steps healthcare and medtech security teams can take to improve containment, continuity, and recovery.
Read article
March 3, 2026 · 10 min read
Dark web and breach monitoring is easy to dismiss in 2026, especially when old dumps and recycled lists create noise. This article explains where the skepticism comes from, what recent breach data still shows about exposed credentials, and what useful monitoring should do now.
Read article
August 6, 2025 · 5 min read
What you should know about the ongoing SonicWall SSLVPN attacks
Read article
July 23, 2025 · 5 min read
Strategies to protect patient data, ensure continuity, and comply with regulations amid rising Interlock ransomware threats.
Read article
July 4, 2025 · 5 min read
Read the latest news on CVE-2025-20309
Read article