Research
-
Blog, Research, STRIKEBeyond the Hype: Moltbot’s Real Risk Is Exposed Infrastructure, Not AI Superintelligence
February 9, 2026While the world debates Moltbook's role in the AI ecosystem, it is just the tip of the iceberg of Titanic risk. SecurityScorecard's STRIKE team uncovered what lurks beneath: Thousands of exposed OpenClaw (Moltbot) control panels vulnerable to takeover through misconfigured access and known exploits.
More DetailsSTRIKE Team -
Blog, Research, Resources, STRIKEOperation WrtHug, The Global Espionage Campaign Hiding in Your Home Router
November 19, 2025SecurityScorecard’s STRIKE team uncovers how attackers turned thousands of ASUS routers into a worldwide spy network.
More DetailsGilad Friedenreich Maizles, Marty Kareem
STRIKE Team -
ResearchHow to Prepare for the UK Cyber Security and Resilience Bill in 2025
September 30, 2025The UK’s proposed Cyber Security and Resilience Bill is set to transform cybersecurity accountability, and many organizations aren’t ready. SecurityScorecard’s new whitepaper delivers a critical roadmap for UK businesses to get ahead of the regulation and protect against the rising tide of supply chain threats.
More Details -
ResearchThe State of Cyber Resilience in India’s Supply Chains
September 25, 2025SecurityScorecard’s new research, Third-Party Cyber Risks to Global Supply Chains: An Assessment of Key Indian Suppliers, highlights the critical role India plays in powering global industries such as IT services, manufacturing, pharmaceuticals, and aerospace — and the heightened cyber risks these supplier ecosystems face.
More Details -
Blog, Learning Center, Research, Resources, STRIKEFrom the Depths of the Shadows: IRGC and Hacker Collectives Of The 12-Day War
August 5, 2025From reconnaissance to propaganda to payloads, this is how Iran’s digital foot soldiers mobilized across borders and platforms during the war with Israel in June 2025.
More DetailsSTRIKE Team -
ResearchThe State of Cyber Resilience in Singapore
July 23, 2025SecurityScorecard has released its new report, The State of Cyber Resilience in Singapore, revealing that every one of Singapore’s top 100 companies by market capitalization was impacted by third-party cyber breaches over the past year. The findings underscore systemic weaknesses in digital supply chain oversight and fourth-party risk — despite relatively strong internal security ratings.
More Details -
Research, Research Reports2025 Supply Chain Cybersecurity Trends: Why Visibility Is the Next Competitive Advantage
Against this backdrop of rising systemic risk, SecurityScorecard set out to assess how enterprises are managing their third-party risk. The responses from nearly 550 CISOs and cybersecurity leaders worldwide reveal a dangerous gap in organizational preparedness.
More DetailsSupply Chain Cyber Risk, Third-Party Risk Management -
Blog, Learning Center, Research, Resources, STRIKEUnmasking A New China-Linked Covert ORB Network: Inside the LapDogs Campaign
June 23, 2025SecurityScorecard’s STRIKE team uncovered a new China-Nexus ORB Network targeting the United States and Southeast Asia. Read the report to gain an in-depth look at the LapDogs ORB network, its custom malware, and its role in cyberespionage.
More DetailsSTRIKE Team -
ResearchThe Cybersecurity of Europe’s Top 100 Financial Institutions 2025
June 4, 2025SecurityScorecard has released its second Europe Financial Cybersecurity Report in two years, revealing that nearly every major financial institution across Europe has been impacted by third-party and fourth-party cyber breaches in the past year.
More Details -
ResearchDefending The Financial Supply Chain
2025 Report: Strengths and Vulnerabilities in Top Fintech Companies
More Details -
ResearchMassive Botnet Targets M365 with Stealthy Password Spraying Attacks
February 24, 2025A Technical Breakdown of Large-Scale Password Spraying Through Non-Interactive Sign-Ins
More DetailsSTRIKE Team -
ResearchLazarus Group is Infecting Open-Source Code. Are You at Risk?
February 13, 2025North Korea’s Lazarus Group is hiding malware inside GitHub repositories and NPM packages, compromising developers and cryptocurrency platforms. Their targets: your code, your wallets, your users.
More DetailsSTRIKE Team