Tag: threat-research

AntiSquat – An AI-powered solution to prevent typosquatting and phishing
Intro Typosquatting and phishing are quite a headache for businesses. Creating fake websites that look almost identical to legitimate ones…

Thousands of Unsecured Kubernetes Clusters Exposed on the Internet — Wave 9
Wave 9 of Project Resonance was conducted to determine the security posture of the exposed Kubernetes clusters around the internet.…

Things You Should Know About the Spring4Shell Vulnerability (CVE-2022-22965)
The Spring4Shell (CVE-2022-22963) is a RCE vulnerability in the Spring framework affecting JDK versions >= 9. We analyse the vulnerability…

Making Sense of the Dirty Pipe Vulnerability (CVE-2022-0847)
CVE-2022-0847 dubbed the "Dirty Pipe", is a privilege escalation vulnerability in the Linux Kernel. We demonstrate the vulnerability and analyze…