en
GeoServer's jsonArrayContains Unauthenticated SQL Injection and RCE Zero-Day
Technical breakdown of the actively exploited jsonArrayContains SQL injection zero-day in GeoServer leading to PostGIS/Oracle database compromise and RCE.
en
Technical breakdown of the actively exploited jsonArrayContains SQL injection zero-day in GeoServer leading to PostGIS/Oracle database compromise and RCE.
en
An investigation into how threat actors exploited on-premises SharePoint patch latency to compromise 200 Swiss federal government IT accounts.
en
Technical root cause and active scanning telemetry for the CVSS 9.6 pre-auth root command injection in Progress Kemp LoadMaster appliances.
en
Technical breakdown of the actively exploited remote unauthenticated VPN denial-of-service vulnerability in Cisco ASA and FTD firewalls.
en
Technical root cause and remediation for the unauthenticated CVSS 10.0 SQL injection in Metabase password reset endpoint exploited as a zero-day.
en
How Lazarus Group weaponized a Windows afd.sys kernel zero-day for 5 weeks in Operation Dream Job to bypass EDR defenses.
en
Weekly threat intelligence briefing: Lazarus 5-week Windows zero-day, Metabase CVSS 10.0 unauth SQL injection, Cisco firewall crashes, and Swiss BIT breach.
en
How attackers breached Liechtenstein's beneficial-ownership register, exposing 31,000 corporate and trust entity records.
en
Technical breakdown of the unauthenticated PostgreSQL sidecar file write/truncation flaw in Splunk Enterprise.
en
How Qilin ransomware operators exploited a Check Point VPN zero-day to gain initial network access.
en
Technical root cause and active exploitation details for the CVSS 9.8 unauthenticated remote code execution flaw in IBM Langflow.
en
Weekly threat intelligence briefing: IBM Langflow CVSS 9.8 RCE, Check Point Qilin zero-day, Splunk Enterprise file write, and Liechtenstein breach.