Article Content
Browse articles
- •The 'threatcl' tool simplifies threat model documentation using HCL2.
- •A new threat hunting tool targets suspicious processes and network behaviors.
- •Both tools are free and enhance cybersecurity practices.
A new CLI tool named 'threatcl' has been released to assist cybersecurity professionals in documenting threat models. It integrates with version control systems and uses HCL2 for configuration, making it user-friendly. Another tool focuses on threat hunting, targeting suspicious processes and network behaviors, and is compatible with various SIEM systems. These tools aim to enhance the effectiveness of threat detection and response. The threat hunting tool is free to use and allows customization for specific scenarios. Both tools are designed to improve the overall security posture of organizations by facilitating better threat documentation and hunting capabilities.
Ask AI about this cluster
Answers cite the sources they use
Updated just now How this analysis works
Timeline
2026-09-19
Release of threatcl tool
The 'threatcl' CLI tool was released to help document threat models with an emphasis on DevOps integration.
Sploitus2026-09-21
Launch of threat hunting tool
A new tool for threat hunting was released, focusing on detecting suspicious activities and integrating with popular SIEM systems.
SploitusMore articles in this cluster (2)
Continue Reading
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…
Critical Linux Kernel Vulnerability CVE-2025-39682 Under Active Exploitation A critical vulnerability (CVE-2025-39682) in the Linux kernel allows remote code execution through mishandling of zero-length TLS records. This flaw affects kTLS-enabled hosts running vulnerable kernel versions, exposing them to attackers without authentication. CISA added this vulnerability to its Known Exploited…