Preparing for the Quantum Era: How Companies Should Rethink Cybersecurity

Fake LastPass & Bitwarden Breach Alerts

The latest threat landscape On October 15 2025 BleepingComputer broke the news that attackers had launched a convincing phishing campaign aimed at users of LastPass and Bitwarden—two of the most popular password managers. E‑mails arriving from domains such as lastpasspulse[.]blog and bitwardenbroadcast[.]blog falsely warned users that the companies had suffered security breaches and urged recipients […]

Agentic AI – Ally or Adversary? Navigating the New Player in Cybersecurity

Agentic artificial intelligence – AI systems capable of setting goals, devising strategies and executing actions without constant human oversight – is no longer science fiction. As generative AI exploded into the mainstream and cybersecurity platforms began to sprinkle “AI‑powered” on every dashboard, a more advanced class of agents quietly emerged. These agentic AI systems are […]

RediShell (CVE‑2025‑49844)

Overview A critical remote‑code execution (RCE) vulnerability dubbed RediShell (CVE‑2025‑49844) recently sent shockwaves through the cloud‑security community. Discovered by the Wiz research team and demonstrated at Pwn2Own Berlin, the bug has been lurking in the Redis in‑memory database for more than 13 years. It arises from a use‑after‑free flaw in Redis’s embedded Lua scripting engine. […]

NIS2 – a new wave of cyber obligations

If you run a business in the EU (or have clients in the EU) and the word “cybersecurity” gives you a little shiver, you’ve come to the right place. Introducing NIS2 – a new EU directive that will come into force in 2024/2025 and will affect significantly more companies than its predecessor, NIS1. But don’t […]

Phishing

Phishing – Why Should We Still Care When 2025 Is Full of New Threats? The year 2025 is a real show of force for cybercriminals, who are constantly pulling out new tools and spectacular vulnerabilities from their sleeves. Just look at a few examples of attacks and zero-day vulnerabilities: RansomHub – a ransomware group that […]

Paweł

Cybersecurity professional with many years of experience in Incident Response, Threat Hunting, and Threat Intelligence. Started his career as a SOC Analyst in the banking sector, building a strong foundation in security monitoring and incident detection. Later, he worked for large organizations as an Incident Responder, handling complex security incidents and leading advanced threat-hunting operations across hybrid environments. He specializes in analyzing adversary tactics, techniques, and procedures (TTPs), correlating diverse telemetry sources, and leveraging Threat Intelligence to enhance organizational resilience. Outside of work, he experiments with OSINT, secret discovery in open sources, and the use of artificial intelligence for threat analysis. Holds industry certifications including GPEN, CompTIA CySA+, and specialized credentials in honeypot development and analysis.

Our knowledge, your security – a shield in the digital reality.

karacena.eu
Privacy Overview

This website uses cookies so that we can provide you with the best user experience possible. Cookie information is stored in your browser and performs functions such as recognising you when you return to our website and helping our team to understand which sections of the website you find most interesting and useful.