NEXUSNIMBUS
  • Research
  • Projects
  • Games
  • Tools
  • Contact
  • About
// research_archive

SOC Research Papers

RESEARCH
2026-07-26

Adversarial Machine Learning Against Security Detection Systems

Machine learning is now embedded throughout the detection pipeline, where it faces an adversary who is aware of it and motivated to defeat it. This paper examines the attack surface…

Read full paper →
RESEARCH
2026-07-26

Automating Cyber Threat Attribution: A Framework for Machine-Assisted Actor Identification

Attribution remains one of the least automated functions in security operations. This paper examines why, surveys the representations and methods available for machine-assisted attribution, and proposes an evaluation framework that…

Read full paper →
RESEARCH
2026-07-25

Container and Kubernetes Security: The Attack Paths That Actually Matter

Containers are not a security boundary in the way most teams assume. Understanding what isolates a container — and what does not — determines whether one compromised pod is contained…

Read full paper →
RESEARCH
2026-07-25

API Security: Why the OWASP API Top 10 Is a Different Problem

APIs fail differently from web applications. The dominant vulnerabilities are not injection flaws — they are authorisation flaws, and no scanner can find them because only your business logic knows…

Read full paper →
RESEARCH
2026-07-22

Threat Modelling with STRIDE: Finding Design Flaws Before You Write Code

Scanners find bugs in code. They cannot find a flaw in your design, because the code implements the flaw perfectly. Threat modelling is the only practice that catches problems no…

Read full paper →
RESEARCH
2026-07-18

Network Detection: What DNS, Proxy and Flow Logs Reveal That Endpoints Miss

Endpoint telemetry stops at the devices you manage. Network data covers everything that talks, including the printer, the contractor's laptop and the appliance nobody can install an agent on.

Read full paper →
RESEARCH
2026-07-15

Cloud Security Fundamentals: Shared Responsibility and Where Breaches Actually Happen

Cloud providers run some of the best-defended infrastructure on earth, and cloud breaches remain routine. Almost none of them are the provider's fault — they happen in the half of…

Read full paper →
RESEARCH
2026-07-11

Software Supply Chain Attacks: From Dependency Confusion to Build Pipeline Compromise

You can write flawless code and still ship a backdoor. Modern applications are assembled from thousands of components you did not write, built by pipelines with more privilege than most…

Read full paper →
RESEARCH
2026-07-08

Phishing-Resistant MFA: Why Passkeys Beat Every Code You Can Type

Most multi-factor authentication stops password reuse and nothing else. If a user can read a code and type it somewhere, an attacker can ask them to. The distinction between MFA…

Read full paper →
RESEARCH
2026-07-05

Threat Hunting: From Hypothesis to Detection

Hunting is not staring at dashboards waiting for something to look wrong. It is a structured search for activity your detections were never built to catch — and every hunt…

Read full paper →
1 2 3 NEXT »
© 2026 NEXUSNIMBUS.COM — ALL SYSTEMS OPERATIONAL
  • Privacy Policy
  • Research Projects Tools Contact