Independent analysis of vulnerabilities and intrusion campaigns that are actually being exploited — written for the people who have to patch and detect them.
Every post answers the same five questions: what broke, who is affected, is it being exploited in the wild, what to patch, and how to detect it. No proof-of-concept code, no exploitation walkthroughs.