DEV Community

kozhevniko profile picture

kozhevniko

Stay curious, keep researching.

Joined Joined on 
Small Numbers, Real Findings: AWX, NiFi, Pulsar and CockroachDB

Small Numbers, Real Findings: AWX, NiFi, Pulsar and CockroachDB

Comments
3 min read

Want to connect with kozhevniko?

Create an account to connect with kozhevniko. You can also sign in below to proceed if you already have an account.

Already have an account? Sign in
Assessing CVE-2026-86510: Severity, Reachability and the Limits of the Public Record

Assessing CVE-2026-86510: Severity, Reachability and the Limits of the Public Record

Comments
2 min read
From p=none to Enforcement: A Working Sequence for DMARC Rollout

From p=none to Enforcement: A Working Sequence for DMARC Rollout

Comments
3 min read
983,992 Indexed FortiGate Instances: Reading an Edge-Appliance Count Against CVE-2025-25249

983,992 Indexed FortiGate Instances: Reading an Edge-Appliance Count Against CVE-2025-25249

Comments
3 min read
Request smuggling in NetScaler: why the backend's parsing rules decide the impact

Request smuggling in NetScaler: why the backend's parsing rules decide the impact

Comments
2 min read
Why moderately critical advisories like CVE-2026-96360 get postponed

Why moderately critical advisories like CVE-2026-96360 get postponed

Comments
2 min read
Where the Panels Live: Network Footprint Patterns of Exposed AI Gateways After the CISA Advisory

Where the Panels Live: Network Footprint Patterns of Exposed AI Gateways After the CISA Advisory

1
Comments
1 min read
Why stored XSS in Drupal Webform (CVE-2026-96367) reaches other users

Why stored XSS in Drupal Webform (CVE-2026-96367) reaches other users

Comments
2 min read
Authentication and Privilege Escalation Paths in the Drupal Extension Advisory WID-SEC-2026-3554

Authentication and Privilege Escalation Paths in the Drupal Extension Advisory WID-SEC-2026-3554

Comments 1
2 min read
Grafana Dashboards on the Internet: A Title Match Beats a Fingerprint Here

Grafana Dashboards on the Internet: A Title Match Beats a Fingerprint Here

Comments
3 min read
Why CVE-2026-96364 cannot be mapped to a single Drupal module from public records

Why CVE-2026-96364 cannot be mapped to a single Drupal module from public records

Comments
3 min read
Assessing CVE-2026-67278 Risk: Why Trust Failures Outrank Their CVSS Label

Assessing CVE-2026-67278 Risk: Why Trust Failures Outrank Their CVSS Label

Comments 1
2 min read
CVE-2026-96359 Explained for Defenders: What WID-SEC-2026-3554 Does and Does Not Tell You

CVE-2026-96359 Explained for Defenders: What WID-SEC-2026-3554 Does and Does Not Tell You

Comments 1
3 min read
CVE-2026-48842: Pre-Auth SQL Injection in Roundcube's virtuser_query Plugin

CVE-2026-48842: Pre-Auth SQL Injection in Roundcube's virtuser_query Plugin

Comments 1
4 min read
OpenCTI Readers Can Open Cases: Inside CVE-2026-76822's Missing Capability Check

OpenCTI Readers Can Open Cases: Inside CVE-2026-76822's Missing Capability Check

Comments 1
3 min read
Measuring Internet-Exposed Email Security Gateways With ZoomEye

Measuring Internet-Exposed Email Security Gateways With ZoomEye

Comments
3 min read
174 Unauthenticated Docker Daemons and the Control-Plane Exposure Behind Them

174 Unauthenticated Docker Daemons and the Control-Plane Exposure Behind Them

Comments
3 min read
Nomad's API without an access control list

Nomad's API without an access control list

Comments
2 min read
What the September 2026 IBM advisory means for teams running Langflow OSS in production

What the September 2026 IBM advisory means for teams running Langflow OSS in production

Comments 1
2 min read
5,873,669 Hosts on Port 1433: The Database Port That Still Faces the Internet

5,873,669 Hosts on Port 1433: The Database Port That Still Faces the Internet

Comments 1
3 min read
SAP's September 2026 patch day: a CVSS 10.0 in the passport layer

SAP's September 2026 patch day: a CVSS 10.0 in the passport layer

Comments
4 min read
152,655 Matches for ownCloud and the CVE That Matches It Exactly

152,655 Matches for ownCloud and the CVE That Matches It Exactly

1
Comments
3 min read
Sizing the Zimbra Perimeter That Email Attackers Actually Touch

Sizing the Zimbra Perimeter That Email Attackers Actually Touch

1
Comments
3 min read
Apache Tomcat 11.0.26 Closes an HTTP/2 Header Mix-Up Regression: CVE-2026-86350

Apache Tomcat 11.0.26 Closes an HTTP/2 Header Mix-Up Regression: CVE-2026-86350

1
Comments
3 min read
Stored XSS as a Privilege Ladder: CVE-2026-75684, CVE-2026-75689 and CVE-2026-75697 in Adobe Connect

Stored XSS as a Privilege Ladder: CVE-2026-75684, CVE-2026-75689 and CVE-2026-75697 in Adobe Connect

Comments
3 min read
5,497 Matches for SonicWall SMA1000: Remote Access Appliances That Administrators Already Trust

5,497 Matches for SonicWall SMA1000: Remote Access Appliances That Administrators Already Trust

Comments
2 min read
132,158 Observable Magento Stores: Sizing the Population Exposed in the StyleSmuggler Window

132,158 Observable Magento Stores: Sizing the Population Exposed in the StyleSmuggler Window

Comments
2 min read
Apache Tomcat: 5,853,642 Fingerprint Matches and 10,191 Manager Pages

Apache Tomcat: 5,853,642 Fingerprint Matches and 10,191 Manager Pages

Comments
2 min read
Home Assistant at Internet Scale: 2.7 Million Fingerprint Matches and the Automation Control Plane

Home Assistant at Internet Scale: 2.7 Million Fingerprint Matches and the Automation Control Plane

Comments
4 min read
From Internet-Facing Firewall to Root Shell: Why CVE-2026-20324 Matters

From Internet-Facing Firewall to Root Shell: Why CVE-2026-20324 Matters

Comments
2 min read
Citrix NetScaler CVE-2026-19490: Fifteen Days From Patch to Exploitation

Citrix NetScaler CVE-2026-19490: Fifteen Days From Patch to Exploitation

Comments
3 min read
CVE-2026-87886: Insecure File Permissions in the Acronis Backup Plugin on Shared Hosting

CVE-2026-87886: Insecure File Permissions in the Acronis Backup Plugin on Shared Hosting

Comments
3 min read
CVE-2026-77762 and the HTTP/2 Request-Mixup Family in Apache Tomcat

CVE-2026-77762 and the HTTP/2 Request-Mixup Family in Apache Tomcat

Comments
2 min read
Inside the MikroTik September 2026 Release: Three RouterOS Flaws, One Patch Cycle

Inside the MikroTik September 2026 Release: Three RouterOS Flaws, One Patch Cycle

Comments
2 min read
From Scanning to Self-Assessment: Using ZoomEye to Inventory Your Own Attack Surface

From Scanning to Self-Assessment: Using ZoomEye to Inventory Your Own Attack Surface

Comments
3 min read
Why CVE-2026-75650 Matters More Than Its CVE Number Suggests

Why CVE-2026-75650 Matters More Than Its CVE Number Suggests

Comments
3 min read
Redis on the Open Internet: What 3.1 Million Exposed Service Banners Reveal

Redis on the Open Internet: What 3.1 Million Exposed Service Banners Reveal

Comments
7 min read
Hunting MikroTrick: Log Indicators and Forensic Checks for the RouterOS Chain

Hunting MikroTrick: Log Indicators and Forensic Checks for the RouterOS Chain

Comments
3 min read
SharePoint CVE-2026-56164: Why a 7.8 Elevation of Privilege Reached KEV

SharePoint CVE-2026-56164: Why a 7.8 Elevation of Privilege Reached KEV

Comments
3 min read
Reading Your Own Kubernetes RBAC: A Least-Privilege Audit That Finds Real Grants

Reading Your Own Kubernetes RBAC: A Least-Privilege Audit That Finds Real Grants

Comments
4 min read
314 IPP and 44897 Raw Print Results: The Office Device Layer on the Open Internet

314 IPP and 44897 Raw Print Results: The Office Device Layer on the Open Internet

Comments
4 min read
1,436,696 Hosts on Port 2375: The Unauthenticated Docker API as a Persistent Surface

1,436,696 Hosts on Port 2375: The Unauthenticated Docker API as a Persistent Surface

Comments
2 min read
What an attacker gains from CVE-2026-7273 on a Zyxel GS1900 switch

What an attacker gains from CVE-2026-7273 on a Zyxel GS1900 switch

Comments
4 min read
Hardening Beyond 7.1.1: Reducing the Surfaces Click2Shell Relies On

Hardening Beyond 7.1.1: Reducing the Surfaces Click2Shell Relies On

Comments 1
2 min read
Cache Poisoning and Zone Injection: The Integrity Risks in the September 2026 BIND Advisory

Cache Poisoning and Zone Injection: The Integrity Risks in the September 2026 BIND Advisory

Comments
3 min read
Triaging Codex Exposure: What a Count of 164 Does and Does Not Tell You

Triaging Codex Exposure: What a Count of 164 Does and Does Not Tell You

Comments
3 min read
The Artifactory Token Chain: Why Build Repositories Are a Credential Store

The Artifactory Token Chain: Why Build Repositories Are a Credential Store

Comments
4 min read
API Security: The Attack Surface That Grows Without a Firewall

API Security: The Attack Surface That Grows Without a Firewall

Comments
2 min read
A Defender's Checklist for CVE-2026-81657 in IBM Guardium Data Protection

A Defender's Checklist for CVE-2026-81657 in IBM Guardium Data Protection

Comments
2 min read
Measuring exposed industrial control panels on the public internet

Measuring exposed industrial control panels on the public internet

Comments
5 min read
When an AI Gateway Becomes the Credential Store: Securing MCP Endpoints After CVE-2026-59822

When an AI Gateway Becomes the Credential Store: Securing MCP Endpoints After CVE-2026-59822

2
Comments 2
3 min read
The Management Plane Is the Attack Plane: What Three Clusters on One Cisco FMC Tell Defenders

The Management Plane Is the Attack Plane: What Three Clusters on One Cisco FMC Tell Defenders

Comments
4 min read
Water utility PLC attacks: the control layer that was never designed to authenticate

Water utility PLC attacks: the control layer that was never designed to authenticate

Comments
3 min read
How a Pre-Authentication Stack Overflow in Check Point Log Servers Leads to Root Code Execution

How a Pre-Authentication Stack Overflow in Check Point Log Servers Leads to Root Code Execution

Comments
2 min read
Gunra Ransomware: What the Joint Advisory Says About Edge Devices, MFA Bypass and Recovery

Gunra Ransomware: What the Joint Advisory Says About Edge Devices, MFA Bypass and Recovery

Comments
4 min read
Print Servers and Artifact Repositories: Measuring Two Overlooked Attack Surfaces

Print Servers and Artifact Repositories: Measuring Two Overlooked Attack Surfaces

Comments
3 min read
ZcopyReaper: A Local Privilege Escalation in the Linux Kernel RDS Path

ZcopyReaper: A Local Privilege Escalation in the Linux Kernel RDS Path

Comments
3 min read
From KEV to Exposure: Mapping the September 2026 Batch to Measurable Services

From KEV to Exposure: Mapping the September 2026 Batch to Measurable Services

Comments
4 min read
CVE-2026-76443: Injection Flaws in Cisco Secure Email Gateway Management Interfaces

CVE-2026-76443: Injection Flaws in Cisco Secure Email Gateway Management Interfaces

Comments
2 min read
Why a Single Email Is Enough to Root a Cisco Secure Email Gateway

Why a Single Email Is Enough to Root a Cisco Secure Email Gateway

Comments
4 min read
loading...