en
GeoServer's jsonArrayContains Unauthenticated SQL Injection and RCE Zero-Day
Technical breakdown of the actively exploited jsonArrayContains SQL injection zero-day in GeoServer leading to PostGIS/Oracle database compromise and RCE.
en
Technical breakdown of the actively exploited jsonArrayContains SQL injection zero-day in GeoServer leading to PostGIS/Oracle database compromise and RCE.
en
Under the hood of ojo's zero-dependency engine: manifest parsing, Tree-sitter SAST queries, OS package diffing, and offline vulnerability databases.
en
Introducing ojo: a single static binary for vulnerability scanning, secret detection, SAST, and IaC misconfiguration checks with zero external dependencies.
en
An investigation into how threat actors exploited on-premises SharePoint patch latency to compromise 200 Swiss federal government IT accounts.
en
Technical root cause and active scanning telemetry for the CVSS 9.6 pre-auth root command injection in Progress Kemp LoadMaster appliances.
en
Technical breakdown of the actively exploited remote unauthenticated VPN denial-of-service vulnerability in Cisco ASA and FTD firewalls.
en
Technical root cause and remediation for the unauthenticated CVSS 10.0 SQL injection in Metabase password reset endpoint exploited as a zero-day.
en
How Lazarus Group weaponized a Windows afd.sys kernel zero-day for 5 weeks in Operation Dream Job to bypass EDR defenses.
en
Weekly threat intelligence briefing: Lazarus 5-week Windows zero-day, Metabase CVSS 10.0 unauth SQL injection, Cisco firewall crashes, and Swiss BIT breach.
en
How attackers breached Liechtenstein's beneficial-ownership register, exposing 31,000 corporate and trust entity records.
en
Technical breakdown of the unauthenticated PostgreSQL sidecar file write/truncation flaw in Splunk Enterprise.
en
How Qilin ransomware operators exploited a Check Point VPN zero-day to gain initial network access.