DEV Community

kozhevniko profile picture

kozhevniko

Stay curious, keep researching.

Joined Joined on 
GitOps control planes: the Argo CD exposure question

GitOps control planes: the Argo CD exposure question

1
Comments
2 min read

Want to connect with kozhevniko?

Create an account to connect with kozhevniko. You can also sign in below to proceed if you already have an account.

Already have an account? Sign in
Group-IB's August 2026 APAC Ransomware Data: What 190 Incidents Actually Tell You

Group-IB's August 2026 APAC Ransomware Data: What 190 Incidents Actually Tell You

Comments
2 min read
Detection and verification for CVE-2026-102795 in Apache Traffic Server

Detection and verification for CVE-2026-102795 in Apache Traffic Server

Comments
2 min read
FusionAuth: 2,411 title matches on the authentication server that issues your tokens

FusionAuth: 2,411 title matches on the authentication server that issues your tokens

Comments
2 min read
CVE-2026-80097: The Authenticator App Is a Credential Store, Not Just a Prompt

CVE-2026-80097: The Authenticator App Is a Credential Store, Not Just a Prompt

Comments
2 min read
Container Registries and Orchestration: 57,017 Harbor and 78,059 Consul Fingerprints

Container Registries and Orchestration: 57,017 Harbor and 78,059 Consul Fingerprints

Comments
2 min read
Drupal Contributed Modules: 36 CVEs in One September 2026 Advisory Batch

Drupal Contributed Modules: 36 CVEs in One September 2026 Advisory Batch

Comments
2 min read
Jupyter Notebooks on the Open Internet: 408,240 Body Matches

Jupyter Notebooks on the Open Internet: 408,240 Body Matches

Comments
2 min read
Why vul.cve Returns Zero for CVE-2026-96365: Reading Exposure Data Honestly

Why vul.cve Returns Zero for CVE-2026-96365: Reading Exposure Data Honestly

Comments
2 min read
Triage Order After a Credential-Exposure Advisory: What to Fix First on Fortinet Edge Devices

Triage Order After a Credential-Exposure Advisory: What to Fix First on Fortinet Edge Devices

Comments
6 min read
One Console, Every Firewall: What Cisco FMC CVE-2026-20079 Teaches About Management-Plane Risk

One Console, Every Firewall: What Cisco FMC CVE-2026-20079 Teaches About Management-Plane Risk

Comments
4 min read
Hardening SSH Against Brute Force with Fail2ban and Rate Limiting

Hardening SSH Against Brute Force with Fail2ban and Rate Limiting

Comments
6 min read
Windows AppContainer: a sandbox that depends on how the application is written

Windows AppContainer: a sandbox that depends on how the application is written

Comments
3 min read
What the CISA KEV Listing for CVE-2026-104286 Tells Defenders

What the CISA KEV Listing for CVE-2026-104286 Tells Defenders

Comments
2 min read
Dot-Form Header Aliases: How Traefik ForwardAuth Identity Spoofing Reached Backends Before 2.11.56

Dot-Form Header Aliases: How Traefik ForwardAuth Identity Spoofing Reached Backends Before 2.11.56

Comments
3 min read
MFP Web Management Interfaces and CVE-2026-78249: Why Reachability Decides the Risk

MFP Web Management Interfaces and CVE-2026-78249: Why Reachability Decides the Risk

Comments
3 min read
Four Stages, One Payload: The Code Delivery Chain CERT Polska Unpacked

Four Stages, One Payload: The Code Delivery Chain CERT Polska Unpacked

Comments
5 min read
Telling Docker Daemons Apart from Other Docker-Facing Services

Telling Docker Daemons Apart from Other Docker-Facing Services

Comments
3 min read
Container Image Provenance: Signing Is Half the Control

Container Image Provenance: Signing Is Half the Control

Comments
2 min read
The Suffix That Skipped Authentication: Kestra CVE-2026-49869 and Why Path Matching Is Not Authorisation

The Suffix That Skipped Authentication: Kestra CVE-2026-49869 and Why Path Matching Is Not Authorisation

Comments
3 min read
A Deactivated User With a Live Token: Reading Concrete CMS CVE-2026-85387 as a Revocation Gap

A Deactivated User With a Live Token: Reading Concrete CMS CVE-2026-85387 as a Revocation Gap

Comments
3 min read
CVE-2026-63292: A Configuration-Dependent Stack Overflow in Apache httpd 2.4

CVE-2026-63292: A Configuration-Dependent Stack Overflow in Apache httpd 2.4

Comments
2 min read
SonarQube: 92,810 title matches on the platform that holds your source code and your pipeline tokens

SonarQube: 92,810 title matches on the platform that holds your source code and your pipeline tokens

Comments
2 min read
Continuous Monitoring of Public Assets: Turning a One-Off Scan into a Change Signal

Continuous Monitoring of Public Assets: Turning a One-Off Scan into a Change Signal

1
Comments
3 min read
The OAuth Grants Nobody Reviews: Governing Third-Party SaaS Access

The OAuth Grants Nobody Reviews: Governing Third-Party SaaS Access

Comments
4 min read
Tornado 6.5.9: A Symlink, a Response Ceiling, and a Query String

Tornado 6.5.9: A Symlink, a Response Ceiling, and a Query String

Comments
3 min read
CVE-2026-96358: A Module Inventory Checklist from the CERT-BUND Record

CVE-2026-96358: A Module Inventory Checklist from the CERT-BUND Record

Comments
2 min read
Sudo and the timezone that rewrites the clock: CVE-2026-96512

Sudo and the timezone that rewrites the clock: CVE-2026-96512

Comments
3 min read
Two Flaws, One Chain: How JFrog Artifactory Was Pushed to Admin

Two Flaws, One Chain: How JFrog Artifactory Was Pushed to Admin

Comments
4 min read
Cross-Site Scripting in the WID-SEC-2026-3554 Batch: The CVE-2026-96369 Angle

Cross-Site Scripting in the WID-SEC-2026-3554 Batch: The CVE-2026-96369 Angle

Comments
3 min read
F5 BIG-IP APM CVE-2026-94127: an unauthenticated RCE that a hardening setting does not stop

F5 BIG-IP APM CVE-2026-94127: an unauthenticated RCE that a hardening setting does not stop

Comments
3 min read
Upgrading past CVE-2026-88772: version mapping and rollout order for NetScaler ADC and Gateway

Upgrading past CVE-2026-88772: version mapping and rollout order for NetScaler ADC and Gateway

Comments
3 min read
Secure Private Access and managed services: scoping CVE-2026-88771 beyond the appliance

Secure Private Access and managed services: scoping CVE-2026-88771 beyond the appliance

Comments
3 min read
Managed file transfer keeps returning to the news, and the findings look similar each time

Managed file transfer keeps returning to the news, and the findings look similar each time

Comments
2 min read
Penetration Test Findings That Never Get Fixed: Running a Retest Programme

Penetration Test Findings That Never Get Fixed: Running a Retest Programme

Comments
2 min read
When the AI Gateway Becomes the Weakest Link: Command Execution in LiteLLM's MCP Test Endpoints

When the AI Gateway Becomes the Weakest Link: Command Execution in LiteLLM's MCP Test Endpoints

Comments
4 min read
CVE-2026-32996 Under Active Exploitation: What Defenders Should Do Now

CVE-2026-32996 Under Active Exploitation: What Defenders Should Do Now

Comments
2 min read
350,527 Elasticsearch Matches and 161,615 Kibana Matches: Where Logging Data Actually Lives

350,527 Elasticsearch Matches and 161,615 Kibana Matches: Where Logging Data Actually Lives

Comments
2 min read
Small Numbers, Real Findings: AWX, NiFi, Pulsar and CockroachDB

Small Numbers, Real Findings: AWX, NiFi, Pulsar and CockroachDB

Comments
3 min read
Assessing CVE-2026-86510: Severity, Reachability and the Limits of the Public Record

Assessing CVE-2026-86510: Severity, Reachability and the Limits of the Public Record

Comments
2 min read
From p=none to Enforcement: A Working Sequence for DMARC Rollout

From p=none to Enforcement: A Working Sequence for DMARC Rollout

Comments
3 min read
983,992 Indexed FortiGate Instances: Reading an Edge-Appliance Count Against CVE-2025-25249

983,992 Indexed FortiGate Instances: Reading an Edge-Appliance Count Against CVE-2025-25249

Comments
3 min read
Request smuggling in NetScaler: why the backend's parsing rules decide the impact

Request smuggling in NetScaler: why the backend's parsing rules decide the impact

Comments
2 min read
Why moderately critical advisories like CVE-2026-96360 get postponed

Why moderately critical advisories like CVE-2026-96360 get postponed

Comments
2 min read
Where the Panels Live: Network Footprint Patterns of Exposed AI Gateways After the CISA Advisory

Where the Panels Live: Network Footprint Patterns of Exposed AI Gateways After the CISA Advisory

1
Comments
1 min read
Why stored XSS in Drupal Webform (CVE-2026-96367) reaches other users

Why stored XSS in Drupal Webform (CVE-2026-96367) reaches other users

Comments
2 min read
Authentication and Privilege Escalation Paths in the Drupal Extension Advisory WID-SEC-2026-3554

Authentication and Privilege Escalation Paths in the Drupal Extension Advisory WID-SEC-2026-3554

Comments 1
2 min read
Grafana Dashboards on the Internet: A Title Match Beats a Fingerprint Here

Grafana Dashboards on the Internet: A Title Match Beats a Fingerprint Here

Comments
3 min read
Why CVE-2026-96364 cannot be mapped to a single Drupal module from public records

Why CVE-2026-96364 cannot be mapped to a single Drupal module from public records

Comments
3 min read
Assessing CVE-2026-67278 Risk: Why Trust Failures Outrank Their CVSS Label

Assessing CVE-2026-67278 Risk: Why Trust Failures Outrank Their CVSS Label

Comments 1
2 min read
CVE-2026-96359 Explained for Defenders: What WID-SEC-2026-3554 Does and Does Not Tell You

CVE-2026-96359 Explained for Defenders: What WID-SEC-2026-3554 Does and Does Not Tell You

Comments 1
3 min read
CVE-2026-48842: Pre-Auth SQL Injection in Roundcube's virtuser_query Plugin

CVE-2026-48842: Pre-Auth SQL Injection in Roundcube's virtuser_query Plugin

Comments 1
4 min read
OpenCTI Readers Can Open Cases: Inside CVE-2026-76822's Missing Capability Check

OpenCTI Readers Can Open Cases: Inside CVE-2026-76822's Missing Capability Check

Comments 1
3 min read
Measuring Internet-Exposed Email Security Gateways With ZoomEye

Measuring Internet-Exposed Email Security Gateways With ZoomEye

Comments
3 min read
174 Unauthenticated Docker Daemons and the Control-Plane Exposure Behind Them

174 Unauthenticated Docker Daemons and the Control-Plane Exposure Behind Them

Comments
3 min read
Nomad's API without an access control list

Nomad's API without an access control list

Comments
2 min read
What the September 2026 IBM advisory means for teams running Langflow OSS in production

What the September 2026 IBM advisory means for teams running Langflow OSS in production

Comments 1
2 min read
5,873,669 Hosts on Port 1433: The Database Port That Still Faces the Internet

5,873,669 Hosts on Port 1433: The Database Port That Still Faces the Internet

Comments 1
3 min read
SAP's September 2026 patch day: a CVSS 10.0 in the passport layer

SAP's September 2026 patch day: a CVSS 10.0 in the passport layer

Comments
4 min read
152,655 Matches for ownCloud and the CVE That Matches It Exactly

152,655 Matches for ownCloud and the CVE That Matches It Exactly

1
Comments
3 min read
loading...