DEV Community

jeffrey profile picture

jeffrey

Full-stack developer, love building side projects, write about what I learn, and connect with fellow coders.

Joined Joined on 
Windows Update Stack and ALPC: Two Exploited Local Privilege Escalation Flaws in the September 2026 Patch Tuesday

Windows Update Stack and ALPC: Two Exploited Local Privilege Escalation Flaws in the September 2026 Patch Tuesday

Comments
4 min read

Want to connect with jeffrey?

Create an account to connect with jeffrey. You can also sign in below to proceed if you already have an account.

Already have an account? Sign in
15,307,587 on Port 5985 and 1,019,437 on Port 5986: Two Windows Remote Management Faces

15,307,587 on Port 5985 and 1,019,437 on Port 5986: Two Windows Remote Management Faces

Comments
2 min read
Dagster: 1,712 Title Matches and a Zero Fingerprint

Dagster: 1,712 Title Matches and a Zero Fingerprint

Comments
3 min read
OpenCTI Case Queue Integrity: Reading CVE-2026-76822 as a Data Provenance Problem

OpenCTI Case Queue Integrity: Reading CVE-2026-76822 as a Data Provenance Problem

Comments
2 min read
Temporal at 1,992 Title Matches and 200 Application Fingerprints

Temporal at 1,992 Title Matches and 200 Application Fingerprints

1
Comments
3 min read
2590 MongoDB, 1469 Memcached and 387 CouchDB Results: Three Data Stores With Three Default Postures

2590 MongoDB, 1469 Memcached and 387 CouchDB Results: Three Data Stores With Three Default Postures

1
Comments
4 min read
Kestra's Path Suffix Bug: When a Framework Forgets to Check the Whole Route

Kestra's Path Suffix Bug: When a Framework Forgets to Check the Whole Route

1
Comments
4 min read
HDFS Web Interfaces: 24,511 Fingerprint Matches and 1,602,200 Answers on Port 9870

HDFS Web Interfaces: 24,511 Fingerprint Matches and 1,602,200 Answers on Port 9870

Comments 1
3 min read
CVE-2026-89078: What the Advisory Says and What It Does Not

CVE-2026-89078: What the Advisory Says and What It Does Not

Comments
2 min read
2,857,655 RouterOS Matches and 830,366 With SSH: Turning an Edge Device Baseline Into a Decision

2,857,655 RouterOS Matches and 830,366 With SSH: Turning an Edge Device Baseline Into a Decision

Comments 2
3 min read
CVE-2026-76442 and the Cost of an Unbounded Number in Cisco Secure Email Gateway

CVE-2026-76442 and the Cost of an Unbounded Number in Cisco Secure Email Gateway

Comments 1
3 min read
Public Exploit Code and No Patch: The D-Link DIR-822A L2TP Flaw in Context

Public Exploit Code and No Patch: The D-Link DIR-822A L2TP Flaw in Context

Comments 1
2 min read
Detecting and monitoring around CVE-2026-96360

Detecting and monitoring around CVE-2026-96360

Comments 1
2 min read
Replacing standing administrative access with brokered sessions

Replacing standing administrative access with brokered sessions

Comments
2 min read
Database Backups Are an Identity Problem Before They Are a Storage Problem

Database Backups Are an Identity Problem Before They Are a Storage Problem

Comments
4 min read
Chosen Brick and HEAVYGRAM: Iranian Spyware That Reports Through Telegram

Chosen Brick and HEAVYGRAM: Iranian Spyware That Reports Through Telegram

Comments
2 min read
CVE-2026-76441: Improper Access Control in Cisco Secure Email Gateway Exposes Restricted Functions

CVE-2026-76441: Improper Access Control in Cisco Secure Email Gateway Exposes Restricted Functions

Comments 1
4 min read
Exploitation Conditions in CVE-2026-75682: What a Low-Privileged Account Buys an Attacker

Exploitation Conditions in CVE-2026-75682: What a Low-Privileged Account Buys an Attacker

Comments 1
3 min read
CVE-2026-53266 Triage Guide: What the CISA KEV Listing Changes for Linux Kernel Patching

CVE-2026-53266 Triage Guide: What the CISA KEV Listing Changes for Linux Kernel Patching

Comments 1
3 min read
RouterOS Administrative Takeover Without Credentials: A Defensive Reading of CVE-2026-86060

RouterOS Administrative Takeover Without Credentials: A Defensive Reading of CVE-2026-86060

1
Comments
2 min read
Palo Alto Networks at internet scale: 20,383 services, and 613 GlobalProtect portals

Palo Alto Networks at internet scale: 20,383 services, and 613 GlobalProtect portals

1
Comments
3 min read
Two XenForo Flaws in One Release: Empty OAuth2 Credentials and a Passkey That Belonged to Someone Else

Two XenForo Flaws in One Release: Empty OAuth2 Credentials and a Passkey That Belonged to Someone Else

1
Comments
3 min read
Home and Small Business Storage on the Public Internet: Synology, QNAP and Plex

Home and Small Business Storage on the Public Internet: Synology, QNAP and Plex

Comments
3 min read
72,819 internet-reachable Samba servers: the file-sharing layer that never got an inventory

72,819 internet-reachable Samba servers: the file-sharing layer that never got an inventory

Comments
4 min read
JFrog Artifactory CVE-2026-82329: The Default Join Key as an Authentication Bypass

JFrog Artifactory CVE-2026-82329: The Default Join Key as an Authentication Bypass

Comments
3 min read
917,080 Hosts on Port 623: The Out-of-Band Controller Nobody Inventoried

917,080 Hosts on Port 623: The Out-of-Band Controller Nobody Inventoried

Comments
3 min read
5,102,346 Hosts on Port 5900: VNC and the Legacy Remote-Access Surface

5,102,346 Hosts on Port 5900: VNC and the Legacy Remote-Access Surface

Comments
2 min read
Artifact Repositories Are Trust Anchors: Incident Response for a Compromised Build Pipeline

Artifact Repositories Are Trust Anchors: Incident Response for a Compromised Build Pipeline

Comments
3 min read
CVE-2026-93616: Why Check Point Management Servers Need Network-Level Protection

CVE-2026-93616: Why Check Point Management Servers Need Network-Level Protection

Comments
3 min read
Kubernetes Admission Control: From Pod Security Standards to Policy-as-Code Gates

Kubernetes Admission Control: From Pod Security Standards to Policy-as-Code Gates

Comments
2 min read
Apache Tomcat CVE-2026-77762: A Stale HPACK Emitter Leaks Trailers Between HTTP/2 Requests

Apache Tomcat CVE-2026-77762: A Stale HPACK Emitter Leaks Trailers Between HTTP/2 Requests

Comments
3 min read
Adobe Commerce RCE CVE-2026-75650: An Unauthenticated Path Into the Storefront

Adobe Commerce RCE CVE-2026-75650: An Unauthenticated Path Into the Storefront

Comments
4 min read
Patch Windows Measured in Days: Building an Edge-Device Response Plan That Survives Contact With Reality

Patch Windows Measured in Days: Building an Edge-Device Response Plan That Survives Contact With Reality

Comments
4 min read
Cyber Decoys After the CISA Guide: Turning an Assumed Breach into an Alert Pipeline

Cyber Decoys After the CISA Guide: Turning an Assumed Breach into an Alert Pipeline

Comments
3 min read
The Credential Relay Economy: How Supply Chain Attacks Chain Through SaaS Vendors

The Credential Relay Economy: How Supply Chain Attacks Chain Through SaaS Vendors

Comments
2 min read
CVE-2026-91843 Explained: Attack Path, Affected Builds and Hardening Steps

CVE-2026-91843 Explained: Attack Path, Affected Builds and Hardening Steps

Comments
1 min read
Software Supply Chains Have an Address: Mapping Exposed Artifact Repositories with ZoomEye

Software Supply Chains Have an Address: Mapping Exposed Artifact Repositories with ZoomEye

Comments
3 min read
CVE-2026-32996: Veeam Agent Named-Pipe Flaw Lets Local Users Become SYSTEM

CVE-2026-32996: Veeam Agent Named-Pipe Flaw Lets Local Users Become SYSTEM

Comments
2 min read
49,613 Management Interfaces on the Open Internet: The F5 Exposure Question Behind September's BIG-IP Advisories

49,613 Management Interfaces on the Open Internet: The F5 Exposure Question Behind September's BIG-IP Advisories

Comments
3 min read
CVE-2026-94127: What F5 BIG-IP Operators Need to Know About the Exploited APM Flaw

CVE-2026-94127: What F5 BIG-IP Operators Need to Know About the Exploited APM Flaw

Comments
3 min read
Transfer Stations in Plain Sight: Enumerating the API Resale Layer Described in the CISA Distillation Advisory

Transfer Stations in Plain Sight: Enumerating the API Resale Layer Described in the CISA Distillation Advisory

Comments
2 min read
D-Link DIR-822A Routers Expose Critical DHCP and L2TP Flaws With Public PoC

D-Link DIR-822A Routers Expose Critical DHCP and L2TP Flaws With Public PoC

Comments
2 min read
An Operational Playbook for the FomoPeek Event: Inventory, Version Hygiene, Verification

An Operational Playbook for the FomoPeek Event: Inventory, Version Hygiene, Verification

Comments
3 min read
Measuring unpatched VPN gateway footprints visible from the internet

Measuring unpatched VPN gateway footprints visible from the internet

Comments
5 min read
One Console, Every Firewall: Cisco FMC CVE-2026-20079 and Concentrated Management Risk

One Console, Every Firewall: Cisco FMC CVE-2026-20079 and Concentrated Management Risk

Comments
3 min read
Edge Appliance Zero-Days: What the SonicWall SMA1000 Chain Teaches About Patch Windows

Edge Appliance Zero-Days: What the SonicWall SMA1000 Chain Teaches About Patch Windows

Comments
4 min read
Exim 4.100.1 Remediation Guide: Patching, Workarounds and Verification

Exim 4.100.1 Remediation Guide: Patching, Workarounds and Verification

Comments
2 min read
IBM Guardium Data Protection 12.2: Patching CVE-2026-81657 and Its Siblings

IBM Guardium Data Protection 12.2: Patching CVE-2026-81657 and Its Siblings

Comments
2 min read
The AI Agent Trust Boundary: Lessons from the Codex Sandbox Escapes

The AI Agent Trust Boundary: Lessons from the Codex Sandbox Escapes

Comments 1
3 min read
Fingerprinting the MCP Ecosystem: 311,846 Indexed Assets and the Problem of Unmanaged Tool Endpoints

Fingerprinting the MCP Ecosystem: 311,846 Indexed Assets and the Problem of Unmanaged Tool Endpoints

Comments 1
3 min read
Suffix Matching Is Not Authorization: Lessons from CVE-2026-49869 in Kestra

Suffix Matching Is Not Authorization: Lessons from CVE-2026-49869 in Kestra

Comments
3 min read
The Artifact Repository Is a Trust Root: Reading the JFrog Artifactory Authentication Bypass

The Artifact Repository Is a Trust Root: Reading the JFrog Artifactory Authentication Bypass

Comments
4 min read
Data Stores on Reachable Addresses: 680,483 MongoDB, 350,304 Elasticsearch and 808,443 Solr Fingerprints

Data Stores on Reachable Addresses: 680,483 MongoDB, 350,304 Elasticsearch and 808,443 Solr Fingerprints

Comments
4 min read
The Cisco ISE API Attack Surface: SQL Injection, IPsec Flaws and Write Access

The Cisco ISE API Attack Surface: SQL Injection, IPsec Flaws and Write Access

Comments
2 min read
Code Hosting and CI on the Open Internet: Reading the GitLab and Jenkins Numbers

Code Hosting and CI on the Open Internet: Reading the GitLab and Jenkins Numbers

Comments
3 min read
One Console, Every Customer: What the N-able N-central Pre-Authentication RCE Says About RMM Concentration Risk

One Console, Every Customer: What the N-able N-central Pre-Authentication RCE Says About RMM Concentration Risk

Comments
3 min read
Why CVE-2026-87886 Turns a Hosting Backup Plugin Into a Privilege Escalation Path

Why CVE-2026-87886 Turns a Hosting Backup Plugin Into a Privilege Escalation Path

Comments
4 min read
Measuring the Edge: What ZoomEye Sees When You Search for Exposed Access Gateways

Measuring the Edge: What ZoomEye Sees When You Search for Exposed Access Gateways

Comments
3 min read
The Virtualization Control Plane on the Internet: What ZoomEye Shows About Management Exposure

The Virtualization Control Plane on the Internet: What ZoomEye Shows About Management Exposure

Comments
3 min read
When the Expertise Barrier Falls: What AI-Assisted ICS Tooling Changes for Defenders

When the Expertise Barrier Falls: What AI-Assisted ICS Tooling Changes for Defenders

Comments
4 min read
loading...