DEV Community

Mark0 profile picture

Mark0

404 bio not found

Joined Joined on 
waf-fu, or Some Log Replay Nonsense

waf-fu, or Some Log Replay Nonsense

Comments
1 min read
Overview of Content Published in August

Overview of Content Published in August

Comments
1 min read
CrowdStrike Extends Endpoint Security to Stop Software Supply Chain Attacks

CrowdStrike Extends Endpoint Security to Stop Software Supply Chain Attacks

Comments
1 min read
[webapps] Ghost_CMS 6.19.0 - Remote Code Execution

[webapps] Ghost_CMS 6.19.0 - Remote Code Execution

Comments
1 min read
This month in security with Tony Anscombe – August 2026 edition

This month in security with Tony Anscombe – August 2026 edition

Comments
1 min read
Spring Ring: An Inside Look at Voice Phishing Campaigns in Microsoft Teams

Spring Ring: An Inside Look at Voice Phishing Campaigns in Microsoft Teams

Comments
1 min read
An AI-Assisted Cyber Attack: Inside a Unit 42 Investigation

An AI-Assisted Cyber Attack: Inside a Unit 42 Investigation

Comments
1 min read
Breaking the Seal: Static Deobfuscation of JSCeal’s Compiled V8 Bytecode

Breaking the Seal: Static Deobfuscation of JSCeal’s Compiled V8 Bytecode

Comments
1 min read
Authorities Turn Sality's P2P Network Against Itself, Cutting Off New Malware Payloads

Authorities Turn Sality's P2P Network Against Itself, Cutting Off New Malware Payloads

Comments
1 min read
GeoNetwork Fixes Unauthenticated RCE Chain Affecting Government Geoportal Backends

GeoNetwork Fixes Unauthenticated RCE Chain Affecting Government Geoportal Backends

Comments
1 min read
Red Team AI Skills

Red Team AI Skills

Comments
1 min read
Researchers Use Claude to Port Pre-Auth RCE Exploit From One PLC Model to Another

Researchers Use Claude to Port Pre-Auth RCE Exploit From One PLC Model to Another

Comments
1 min read
Mirage Kitten targeting aviation and FinTech sectors across the Middle East and Africa with a new malware set

Mirage Kitten targeting aviation and FinTech sectors across the Middle East and Africa with a new malware set

Comments
1 min read
This month in security with Tony Anscombe – August 2026 edition

This month in security with Tony Anscombe – August 2026 edition

Comments
1 min read
Spring Ring: An Inside Look at Voice Phishing Campaigns in Microsoft Teams

Spring Ring: An Inside Look at Voice Phishing Campaigns in Microsoft Teams

Comments
1 min read
Russia-Aligned UAC-0099 Plants Nuclear Weapon Prompt in Malware to Disrupt AI Analysis

Russia-Aligned UAC-0099 Plants Nuclear Weapon Prompt in Malware to Disrupt AI Analysis

Comments
1 min read
Nearly 22,000 Microsoft Exchange servers vulnerable to hijack attacks

Nearly 22,000 Microsoft Exchange servers vulnerable to hijack attacks

Comments
1 min read
Critical Langflow flaw exploited to steal OpenAI and AWS keys

Critical Langflow flaw exploited to steal OpenAI and AWS keys

Comments
1 min read
Breaking the Seal: Static Deobfuscation of JSCeal’s Compiled V8 Bytecode

Breaking the Seal: Static Deobfuscation of JSCeal’s Compiled V8 Bytecode

Comments
1 min read
Mirage Kitten targeting aviation and FinTech sectors across the Middle East and Africa with a new malware set

Mirage Kitten targeting aviation and FinTech sectors across the Middle East and Africa with a new malware set

Comments
1 min read
31th August – Threat Intelligence Report

31th August – Threat Intelligence Report

Comments
1 min read
ValleyRAT masquerading as adware

ValleyRAT masquerading as adware

Comments
1 min read
Agents of Chaos: A New $100K Agentic Security Challenge

Agents of Chaos: A New $100K Agentic Security Challenge

Comments
1 min read
[webapps] CubeCart 6.7.4 - SQL injection

[webapps] CubeCart 6.7.4 - SQL injection

Comments
1 min read
Spring Ring: An Inside Look at Voice Phishing Campaigns in Microsoft Teams

Spring Ring: An Inside Look at Voice Phishing Campaigns in Microsoft Teams

Comments
1 min read
Five Critical WordPress Plugin and Theme Flaws Enable Site Takeover or RCE

Five Critical WordPress Plugin and Theme Flaws Enable Site Takeover or RCE

Comments
1 min read
China-Linked Fire Ant Hijacks Cisco Routers to Steal Credentials and Blind Security Logs

China-Linked Fire Ant Hijacks Cisco Routers to Steal Credentials and Blind Security Logs

Comments
1 min read
Breaking the Seal: Static Deobfuscation of JSCeal’s Compiled V8 Bytecode

Breaking the Seal: Static Deobfuscation of JSCeal’s Compiled V8 Bytecode

Comments
1 min read
Anthropic warns infostealer malware is hijacking Claude sessions to drain usage

Anthropic warns infostealer malware is hijacking Claude sessions to drain usage

Comments
1 min read
When it Snows it Pours – Anatomy of a ServiceNow Red Team

When it Snows it Pours – Anatomy of a ServiceNow Red Team

Comments
1 min read
The Good, the Bad and the Ugly in Cybersecurity – Week 35

The Good, the Bad and the Ugly in Cybersecurity – Week 35

Comments
1 min read
Perturbation Probing: A New Diagnostic for the Fragility of LLM Safety

Perturbation Probing: A New Diagnostic for the Fragility of LLM Safety

Comments
1 min read
Multiple Integer Overflows in U-Boot Filesystem Parsing (CVE-2025-70290 through CVE-2025-70293)

Multiple Integer Overflows in U-Boot Filesystem Parsing (CVE-2025-70290 through CVE-2025-70293)

Comments
1 min read
ServiceNow warns of three max severity security vulnerabilities

ServiceNow warns of three max severity security vulnerabilities

Comments
1 min read
Two Unitree G1 EDU Humanoid Robot Flaws Enable Root RCE, One Starts Over Bluetooth

Two Unitree G1 EDU Humanoid Robot Flaws Enable Root RCE, One Starts Over Bluetooth

Comments
1 min read
Anthropic warns infostealer malware is hijacking Claude sessions to drain usage

Anthropic warns infostealer malware is hijacking Claude sessions to drain usage

Comments
1 min read
“Sorry, I can’t help with that”: How your guardrails might become the attacker’s best friend

“Sorry, I can’t help with that”: How your guardrails might become the attacker’s best friend

Comments
1 min read
Five Critical WordPress Plugin and Theme Flaws Enable Site Takeover or RCE

Five Critical WordPress Plugin and Theme Flaws Enable Site Takeover or RCE

Comments
1 min read
ServiceNow warns of three max severity security vulnerabilities

ServiceNow warns of three max severity security vulnerabilities

Comments
1 min read
Two Unitree G1 EDU Humanoid Robot Flaws Enable Root RCE, One Starts Over Bluetooth

Two Unitree G1 EDU Humanoid Robot Flaws Enable Root RCE, One Starts Over Bluetooth

Comments
1 min read
SpooNMAP Grows Up: Findings, Local LLM Detection, and a Whole Lot Less Waiting

SpooNMAP Grows Up: Findings, Local LLM Detection, and a Whole Lot Less Waiting

Comments
1 min read
Infrared: How External Researchers Bring Tools into OST

Infrared: How External Researchers Bring Tools into OST

Comments
1 min read
Inside Elastic's agentic SOC: How we took AI alert triage from 60% to 92% accuracy

Inside Elastic's agentic SOC: How we took AI alert triage from 60% to 92% accuracy

1
Comments
1 min read
The Path to the Autonomous SOC: The Early Returns of AI & What It Means for Cybersecurity

The Path to the Autonomous SOC: The Early Returns of AI & What It Means for Cybersecurity

Comments
1 min read
Edge Infrastructure Under Siege: What Two Independent Datasets Reveal About Who’s Exploiting Your Perimeter

Edge Infrastructure Under Siege: What Two Independent Datasets Reveal About Who’s Exploiting Your Perimeter

Comments
1 min read
The safety penalty: Reclaiming operational sovereignty in the age of AI

The safety penalty: Reclaiming operational sovereignty in the age of AI

Comments
1 min read
Choose your fighter: Balancing competing requirements to select models for your AI SOC

Choose your fighter: Balancing competing requirements to select models for your AI SOC

Comments
1 min read
[NotCVE-2026-0013] CHIRP Kenwood ITM Driver Eval Injection Allows Arbitrary Code Execution via Crafted Radio File

[NotCVE-2026-0013] CHIRP Kenwood ITM Driver Eval Injection Allows Arbitrary Code Execution via Crafted Radio File

Comments
1 min read
The State of AI-Enabled Malware August 2026: From Brand Abuse to Agentic Execution

The State of AI-Enabled Malware August 2026: From Brand Abuse to Agentic Execution

Comments
1 min read
Exploits and vulnerabilities in Q2 2026

Exploits and vulnerabilities in Q2 2026

Comments
1 min read
Tricky 'SynkLoader' Multitool May Herald Ransomware

Tricky 'SynkLoader' Multitool May Herald Ransomware

Comments
1 min read
UAT-10147 Uses AI to Scale Server Attacks, Deploys SPECTRE With EDR Bypass and Linux Rootkit

UAT-10147 Uses AI to Scale Server Attacks, Deploys SPECTRE With EDR Bypass and Linux Rootkit

Comments
1 min read
E4del and PINHOLE RATs Turn FTP Banners Into Dead Drops for Malware Commands

E4del and PINHOLE RATs Turn FTP Banners Into Dead Drops for Malware Commands

Comments
1 min read
SpooNMAP Grows Up: Findings, Local LLM Detection, and a Whole Lot Less Waiting

SpooNMAP Grows Up: Findings, Local LLM Detection, and a Whole Lot Less Waiting

Comments
1 min read
Infrared: How External Researchers Bring Tools into OST

Infrared: How External Researchers Bring Tools into OST

Comments
1 min read
Update: base64dump.py Version 0.0.31

Update: base64dump.py Version 0.0.31

Comments
1 min read
How a team of entity maintainers monitors, connects and scores entities in Elastic Security

How a team of entity maintainers monitors, connects and scores entities in Elastic Security

Comments
1 min read
Inside Elastic's agentic SOC: How we took AI alert triage from 60% to 92% accuracy

Inside Elastic's agentic SOC: How we took AI alert triage from 60% to 92% accuracy

Comments
1 min read
The Path to the Autonomous SOC: The Early Returns of AI & What It Means for Cybersecurity

The Path to the Autonomous SOC: The Early Returns of AI & What It Means for Cybersecurity

Comments
1 min read
24th August – Threat Intelligence Report

24th August – Threat Intelligence Report

Comments
1 min read
loading...