<?xml version="1.0" encoding="UTF-8"?><?xml-stylesheet href="/pretty-feed.xsl" type="text/xsl"?><rss version="2.0"><channel><title>Siddhesh Lakhani</title><description>Developer, builder, tinkerer. Notes on code, Linux, and things worth reading.</description><link>https://sidlakhani.in/</link><language>en-us</language><item><title>Anatomy of a Fake CAPTCHA Infostealer</title><link>https://sidlakhani.in/blog/anatomy-fake-captcha-infostealer/?utm_source=rss&amp;utm_medium=feed/</link><guid isPermaLink="true">https://sidlakhani.in/blog/anatomy-fake-captcha-infostealer/?utm_source=rss&amp;utm_medium=feed/</guid><description>How a colleague nearly fell for a ClickFix social engineering attack, and what we found when we reverse-engineered the clipboard malware.</description><pubDate>Thu, 04 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Hunting a Cryptominer on My VPS</title><link>https://sidlakhani.in/blog/vps-cryptomining-compromise/?utm_source=rss&amp;utm_medium=feed/</link><guid isPermaLink="true">https://sidlakhani.in/blog/vps-cryptomining-compromise/?utm_source=rss&amp;utm_medium=feed/</guid><description>A quick investigation into a root-level XMRig cryptomining compromise: how we detected, analyzed, and mitigated it.</description><pubDate>Fri, 02 Jan 2026 00:00:00 GMT</pubDate></item></channel></rss>