Lobsters
- Rust Won’t Save Us: An Analysis of 2023’s Known Exploited Vulnerabilities https://www.horizon3.ai/analysis-of-2023s-known-exploited-vulnerabilities/ 72 comments security
- Ivanti Endpoint Manager Credential Coercion Vulnerabilities Deep-Dive https://www.horizon3.ai/attack-research/attack-blogs/ivanti-endpoint-manager-multiple-credential-coercion-vulnerabilities/ 3 comments netsec
- Palo Alto Expedition: From N-Day to Full Compromise – Horizon3.ai https://www.horizon3.ai/attack-research/palo-alto-expedition-from-n-day-to-full-compromise/ 2 comments netsec
- CVE-2024-29847 Deep Dive: Ivanti Endpoint Manager AgentPortal Deserialization of Untrusted Data Remote Code Execution Vulnerability – Horizon3.ai https://www.horizon3.ai/attack-research/attack-blogs/cve-2024-29847-deep-dive-ivanti-endpoint-manager-agentportal-deserialization-of-untrusted-data-remote-code-execution-vulnerability/ 3 comments netsec
- CVE-2024-23108: Back Again! Fortinet FortiSIEM 2nd Order Command Injection Deep-Dive, IOCs, and Exploit https://www.horizon3.ai/attack-research/disclosures/cve-2024-23108-fortinet-fortisiem-2nd-order-command-injection-deep-dive/ 4 comments netsec
- Fortinet FortiWLM Multiple Vulnerabilities Deep-Dive and IOCs https://www.horizon3.ai/attack-research/attack-blogs/fortiwlm-the-almost-story-for-the-forti-forty/ 2 comments netsec
- Rust Won't Save Us: An Analysis of 2023's Known Exploited Vulnerabilities https://www.horizon3.ai/analysis-of-2023s-known-exploited-vulnerabilities/ 46 comments programming
- Rust Won't Save Us: An Analysis of 2023's Known Exploited Vulnerabilities – Horizon3.ai https://www.horizon3.ai/analysis-of-2023s-known-exploited-vulnerabilities/ 22 comments netsec
- MOVEit Transfer CVE-2023-34362 Deep Dive, Indicators of Compromise, and Exploit POC https://www.horizon3.ai/moveit-transfer-cve-2023-34362-deep-dive-and-indicators-of-compromise/ 2 comments netsec
- Papercut CVE-2023-27350 https://www.horizon3.ai/papercut-cve-2023-27350-deep-dive-and-indicators-of-compromise/ 19 comments sysadmin
- CVE-2023-27524: Insecure Default Configuration in Apache Superset Leads to Remote Code Execution https://www.horizon3.ai/cve-2023-27524-insecure-default-configuration-in-apache-superset-leads-to-remote-code-execution/ 5 comments netsec
- Veeam Backup and Replication CVE-2023-27532 Deep Dive and Linux POC Exploit https://www.horizon3.ai/veeam-backup-and-replication-cve-2023-27532-deep-dive/ 5 comments netsec
- FortiOS, FortiProxy, and FortiSwitchManager Authentication Bypass Technical Deep Dive (CVE-2022-40684) + PoC https://www.horizon3.ai/fortios-fortiproxy-and-fortiswitchmanager-authentication-bypass-technical-deep-dive-cve-2022-40684/ 2 comments netsec
- The Long Tail of Log4Shell Exploitation https://www.horizon3.ai/the-long-tail-of-log4shell-exploitation/ 7 comments netsec
- VMware Authentication Bypass Vulnerability (CVE-2022-22972) Technical Deep Dive and POC https://www.horizon3.ai/vmware-authentication-bypass-vulnerability-cve-2022-22972-technical-deep-dive/ 6 comments netsec