Recently Posted
CredShields Blog
Latest articles
Centralized vs. Federated SOCs: How APAC HQs in Singapore Are Balancing Regional Compliance and Response Speed
APAC headquarters in Singapore choose between a centralized SOC, which gives one team unified visibility and consistent playbooks,...
If a Watermark Can be Detected, It Can be Removed
Who is going to build the watermark remover, and what it means to treat provenance as a security...
Navigating the Expanded Scope of Singapore’s Cybersecurity (Amendment) Act: What CISOs Need to Audit First
The Cybersecurity (Amendment) Act 2024 widened who counts as critical information infrastructure in Singapore. Since key provisions commenced...
What MAS Auditors Look for in Your Identity and Access Architecture
Monetary Authority of Singapore (MAS) examiners assess identity and access against the access control requirements of the MAS...
Browser Extension Security Lessons From the Belgian eID Flaws
A missing origin check in Belgium’s eID browser extension lets any web page forge legally binding signatures, steal...
Manual Vs Automated Penetration Testing: Pros, Cons, And When To Use Each
Automated penetration testing uses scanners to catch known CVEs, misconfigurations, and injection flaws on every deployment, at low...
Shai Hulud npm Supply Chain Attack: How To Check If The keyv Compromise Reached You
On August 4, 2026, a poisoned release of the npm package keyv spread the Shai Hulud credential-stealing worm...
Mobile Application Penetration Testing: What to Expect
A mobile application can function normally while still exposing sensitive data or privileged actions. Its security depends on...
AI Penetration Testing: What You Should Know Before Choosing A Vendor
AI has made its way into security testing, much like other industries. It is now used in penetration...
SOC 2 Penetration Testing: What You Should Expect Before An Audit
A SOC 2 report makes one guarantee to your customers: The data they give you is secure, and...