explainx.ainewsletter3.5k
TrendingNewsPathwaysSkills
Pricing
explainx.ai

Upskill in AI — 16 free pathways, live workshops & bootcamps, and 50+ courses from practitioners. Plus the skills, tools, and MCP servers to practice on.

follow us

custom AI agents

[email protected]

get started

Find your pathTake Free Evaluation

learn

pathways — start freeworkshopsbootcampscoursescertificationsmock testsexplainx universitycorporate traininglearn skills & mcp

discover

skillsmcp serversexplainx mcptoolsagentsllmsdesignsagi trackerranks

company

aboutvisionmissionteaminstructorscommunityhackathonscareers

content

daily AI newsstate of AI — live resultsblogreleasespromptsgeneratorsresource librarydemofor LLMs

solutions

all solutionsdeveloper upskillingmarketing upskillingproduct manager upskillingleadership upskilling

More from us

InfloqInfluencer marketingBgBlurPrivacy-first blurOlly SocialSocial AI copilotCeptoryVideo intelligenceBgRemoverBackground removal

newsletter · weekly

Get AI news, tools, and insights in your inbox.

supportprivacytermsdata rightssubmission guidelines

© 2026 AISOLO Technologies Pvt Ltd

catch up on ai/2026-05-25

Monday, May 25, 2026

Merged timeline of 501 items — blog publish times and listing timestamps, cut at midnight UTC. Page 5 of 11.

← 2026-05-242026-05-26 →Calendar
Skill
detecting-wmi-persistence
detecting-wmi-persistence

Detect WMI event subscription persistence by analyzing Sysmon Event IDs 19, 20, and 21 for malicious EventFilter, EventConsumer, and FilterToConsumerBinding creation.

by Yash @ Explainx0 comments
listed May 25, 11:27 UTC
  • Skillconfiguring-pfsense-firewall-rules
    configuring-pfsense-firewall-rules

    Configures pfSense firewall rules, NAT policies, VPN tunnels, and traffic shaping to enforce network segmentation, control traffic flow, and protect internal network zones in enterprise and small-to-medium business envi…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skilltriaging-security-alerts-in-splunk
    triaging-security-alerts-in-splunk

    Triages security alerts in Splunk Enterprise Security by classifying severity, investigating notable events, correlating related telemetry, and making escalation or closure decisions using SPL queries and the Incident R…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillimplementing-purdue-model-network-segmentation
    implementing-purdue-model-network-segmentation

    Implement network segmentation based on the Purdue Enterprise Reference Architecture (PERA) model to separate industrial control system networks into hierarchical security zones from Level 0 physical process through Lev…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skilldeploying-palo-alto-prisma-access-zero-trust
    deploying-palo-alto-prisma-access-zero-trust

    Deploying Palo Alto Networks Prisma Access for SASE-based zero trust network access using GlobalProtect agents, ZTNA Connectors, security policy enforcement, and integration with Strata Cloud Manager for unified securit…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillanalyzing-browser-forensics-with-hindsight
    analyzing-browser-forensics-with-hindsight

    Analyze Chromium-based browser artifacts using Hindsight to extract browsing history, downloads, cookies, cached content, autofill data, saved passwords, and browser extensions from Chrome, Edge, Brave, and Opera for fo…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skilldetecting-lateral-movement-with-zeek
    detecting-lateral-movement-with-zeek

    Detect lateral movement in network traffic using Zeek (formerly Bro) log analysis. Parses conn.log, smb_mapping.log, smb_files.log, dce_rpc.log, kerberos.log, and ntlm.log to identify SMB file transfers, NTLM account sp…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillanalyzing-network-covert-channels-in-malware
    analyzing-network-covert-channels-in-malware

    Detect and analyze covert communication channels used by malware including DNS tunneling, ICMP exfiltration, steganographic HTTP, and protocol abuse for C2 and data exfiltration.

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skilldetecting-mobile-malware-behavior
    detecting-mobile-malware-behavior

    Detects and analyzes malicious behavior in mobile applications through behavioral analysis, permission abuse detection, network traffic monitoring, and dynamic instrumentation. Use when analyzing suspicious mobile appli…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skilltriaging-vulnerabilities-with-ssvc-framework
    triaging-vulnerabilities-with-ssvc-framework

    Triage and prioritize vulnerabilities using CISA's Stakeholder-Specific Vulnerability Categorization (SSVC) decision tree framework to produce actionable remediation priorities.

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillperforming-dynamic-analysis-of-android-app
    performing-dynamic-analysis-of-android-app

    Performs runtime dynamic analysis of Android applications using Frida, Objection, and Android Debug Bridge to observe application behavior during execution, intercept function calls, modify runtime values, and identify…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skilltesting-jwt-token-security
    testing-jwt-token-security

    Assessing JSON Web Token implementations for cryptographic weaknesses, algorithm confusion attacks, and authorization bypass vulnerabilities during security engagements.

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skilldetecting-aws-credential-exposure-with-trufflehog
    detecting-aws-credential-exposure-with-trufflehog

    Detecting exposed AWS credentials in source code repositories, CI/CD pipelines, and configuration files using TruffleHog, git-secrets, and AWS-native detection mechanisms to prevent credential theft and unauthorized acc…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillreverse-engineering-ios-app-with-frida
    reverse-engineering-ios-app-with-frida

    Reverse engineers iOS applications using Frida dynamic instrumentation to understand internal logic, extract encryption keys, bypass security controls, and discover hidden functionality without source code access. Use w…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillimplementing-browser-isolation-for-zero-trust
    implementing-browser-isolation-for-zero-trust

    Deploys remote browser isolation (RBI) as a core component of a Zero Trust architecture. Implements isolation policies with URL categorization and risk-based routing, content disarming and reconstruction (CDR) for file…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillperforming-api-fuzzing-with-restler
    performing-api-fuzzing-with-restler

    Uses Microsoft RESTler to perform stateful REST API fuzzing by automatically generating and executing test sequences that exercise API endpoints, discover producer-consumer dependencies between requests, and find securi…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillauditing-tls-certificate-transparency-logs
    auditing-tls-certificate-transparency-logs

    Monitors Certificate Transparency (CT) logs to detect unauthorized certificate issuance, discover subdomains via CT data, and alert on suspicious certificate activity for owned domains. Uses the crt.sh API and direct CT…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skilldetecting-email-account-compromise
    detecting-email-account-compromise

    Detect compromised O365 and Google Workspace email accounts by analyzing inbox rule creation, suspicious sign-in locations, mail forwarding rules, and unusual API access patterns via Microsoft Graph and audit logs.

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skilldetecting-rootkit-activity
    detecting-rootkit-activity

    Detects rootkit presence on compromised systems by identifying hidden processes, hooked system calls, modified kernel structures, hidden files, and covert network connections using memory forensics, cross-view detection…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillperforming-binary-exploitation-analysis
    performing-binary-exploitation-analysis

    Analyze binary exploitation techniques including buffer overflows and ROP chains using pwntools Python library. Covers checksec analysis, gadget discovery with ROPgadget, and exploit development for CTF and authorized s…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skilltesting-for-host-header-injection
    testing-for-host-header-injection

    Test web applications for HTTP Host header injection vulnerabilities to identify password reset poisoning, web cache poisoning, SSRF, and virtual host routing manipulation risks.

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillimplementing-zero-trust-in-cloud
    implementing-zero-trust-in-cloud

    This skill guides organizations through implementing zero trust architecture in cloud environments following NIST SP 800-207 and Google BeyondCorp principles. It covers identity-centric access controls, micro-segmentati…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillperforming-android-app-static-analysis-with-mobsf
    performing-android-app-static-analysis-with-mobsf

    Performs automated static analysis of Android applications using Mobile Security Framework (MobSF) to identify hardcoded secrets, insecure permissions, vulnerable components, weak cryptography, and code-level security f…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillanalyzing-pdf-malware-with-pdfid
    analyzing-pdf-malware-with-pdfid

    Analyzes malicious PDF files using PDFiD, pdf-parser, and peepdf to identify embedded JavaScript, shellcode, exploits, and suspicious objects without opening the document. Determines the attack vector and extracts embed…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillperforming-network-forensics-with-wireshark
    performing-network-forensics-with-wireshark

    Capture and analyze network traffic using Wireshark and tshark to reconstruct network events, extract artifacts, and identify malicious communications.

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillimplementing-cloud-trail-log-analysis
    implementing-cloud-trail-log-analysis

    Implementing AWS CloudTrail log analysis for security monitoring, threat detection, and forensic investigation using Athena, CloudWatch Logs Insights, and SIEM integration to identify unauthorized access, privilege esca…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillperforming-insider-threat-investigation
    performing-insider-threat-investigation

    Investigates insider threat incidents involving employees, contractors, or trusted partners who misuse authorized access to steal data, sabotage systems, or violate security policies. Combines digital forensics, user be…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillperforming-ios-app-security-assessment
    performing-ios-app-security-assessment

    Performs comprehensive iOS application security assessments using Frida for dynamic instrumentation, Objection for runtime exploration, SSL pinning bypass for traffic interception, keychain extraction for credential ana…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillanalyzing-campaign-attribution-evidence
    analyzing-campaign-attribution-evidence

    Campaign attribution analysis involves systematically evaluating evidence to determine which threat actor or group is responsible for a cyber operation. This skill covers collecting and weighting attr

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillauditing-aws-s3-bucket-permissions
    auditing-aws-s3-bucket-permissions

    Systematically audit AWS S3 bucket permissions to identify publicly accessible buckets, overly permissive ACLs, misconfigured bucket policies, and missing encryption settings using AWS CLI, S3audit, and Prowler to enfor…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillsecuring-serverless-functions
    securing-serverless-functions

    This skill covers security hardening for serverless compute platforms including AWS Lambda, Azure Functions, and Google Cloud Functions. It addresses least privilege IAM roles, dependency vulnerability scanning, secrets…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillimplementing-zero-trust-network-access
    implementing-zero-trust-network-access

    Implementing Zero Trust Network Access (ZTNA) in cloud environments by configuring identity-aware proxies, micro-segmentation, continuous verification with conditional access policies, and replacing traditional VPN-base…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillimplementing-mimecast-targeted-attack-protection
    implementing-mimecast-targeted-attack-protection

    Deploy Mimecast Targeted Threat Protection including URL Protect, Attachment Protect, Impersonation Protect, and Internal Email Protect to defend against advanced phishing and spearphishing attacks.

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillperforming-cloud-incident-containment-procedures
    performing-cloud-incident-containment-procedures

    Execute cloud-native incident containment across AWS, Azure, and GCP by isolating compromised resources, revoking credentials, preserving forensic evidence, and applying security group restrictions to prevent lateral mo…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skilltesting-api-for-broken-object-level-authorization
    testing-api-for-broken-object-level-authorization

    Tests REST and GraphQL APIs for Broken Object Level Authorization (BOLA/IDOR) vulnerabilities where an authenticated user can access or modify resources belonging to other users by manipulating object identifiers in API…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillanalyzing-typosquatting-domains-with-dnstwist
    analyzing-typosquatting-domains-with-dnstwist

    Detect typosquatting, homograph phishing, and brand impersonation domains using dnstwist to generate domain permutations and identify registered lookalike domains targeting your organization.

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillperforming-vlan-hopping-attack
    performing-vlan-hopping-attack

    Simulates VLAN hopping attacks using switch spoofing and double tagging techniques in authorized environments to test VLAN segmentation effectiveness and validate switch port security configurations against Layer 2 bypa…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillsecuring-helm-chart-deployments
    securing-helm-chart-deployments

    Secure Helm chart deployments by validating chart integrity, scanning templates for misconfigurations, and enforcing security contexts in Kubernetes releases.

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillreverse-engineering-ransomware-encryption-routine
    reverse-engineering-ransomware-encryption-routine

    Reverse engineer ransomware encryption routines to identify cryptographic algorithms, key generation flaws, and potential decryption opportunities using static and dynamic analysis.

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillimplementing-azure-ad-privileged-identity-management
    implementing-azure-ad-privileged-identity-management

    Configure Microsoft Entra Privileged Identity Management to enforce just-in-time role activation, approval workflows, and access reviews for Azure AD privileged roles.

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillperforming-container-escape-detection
    performing-container-escape-detection

    Detects container escape attempts by analyzing namespace configurations, privileged container checks, dangerous capability assignments, and host path mounts using the kubernetes Python client. Identifies CVE-2022-0492 s…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillperforming-disk-forensics-investigation
    performing-disk-forensics-investigation

    Conducts disk forensics investigations using forensic imaging, file system analysis, artifact recovery, and timeline reconstruction to support incident response cases. Utilizes tools such as FTK Imager, Autopsy, and The…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillimplementing-pam-for-database-access
    implementing-pam-for-database-access

    Deploy privileged access management for database systems including Oracle, SQL Server, PostgreSQL, and MySQL. Covers session proxy configuration, credential vaulting, query auditing, dynamic credentia

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillperforming-cloud-asset-inventory-with-cartography
    performing-cloud-asset-inventory-with-cartography

    Perform comprehensive cloud asset inventory and relationship mapping using Cartography to build a Neo4j security graph of infrastructure assets, IAM permissions, and attack paths across AWS, GCP, and Azure.

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillimplementing-siem-use-cases-for-detection
    implementing-siem-use-cases-for-detection

    Implements SIEM detection use cases by designing correlation rules, threshold alerts, and behavioral analytics mapped to MITRE ATT&CK techniques across Splunk, Elastic, and Sentinel. Use when SOC teams need to expand de…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skilldeploying-cloudflare-access-for-zero-trust
    deploying-cloudflare-access-for-zero-trust

    Deploying Cloudflare Access with Cloudflare Tunnel to provide zero trust access to self-hosted and private applications, configuring identity-aware access policies, device posture checks, and WARP client enrollment for…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillanalyzing-network-traffic-for-incidents
    analyzing-network-traffic-for-incidents

    Analyzes network traffic captures and flow data to identify adversary activity during security incidents, including command-and-control communications, lateral movement, data exfiltration, and exploitation attempts. Use…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillextracting-config-from-agent-tesla-rat
    extracting-config-from-agent-tesla-rat

    Extract embedded configuration from Agent Tesla RAT samples including SMTP/FTP/Telegram exfiltration credentials, keylogger settings, and C2 endpoints using .NET decompilation and memory analysis.

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillimplementing-policy-as-code-with-open-policy-agent
    implementing-policy-as-code-with-open-policy-agent

    This skill covers implementing Open Policy Agent (OPA) and Gatekeeper for policy-as-code enforcement in Kubernetes and CI/CD pipelines. It addresses writing Rego policies, deploying OPA Gatekeeper as a Kubernetes admiss…

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • Skillimplementing-proofpoint-email-security-gateway
    implementing-proofpoint-email-security-gateway

    Deploy and configure Proofpoint Email Protection as a secure email gateway to detect and block phishing, malware, BEC, and spam before messages reach user inboxes.

    by Yash @ Explainx0 comments
    listed May 25, 11:27 UTC
  • ← prev
    1…34567…11
    next →