DEV Community

kozhevniko profile picture

kozhevniko

Stay curious, keep researching.

Joined Joined on 
Hardening SSH Against Brute Force with Fail2ban and Rate Limiting

Hardening SSH Against Brute Force with Fail2ban and Rate Limiting

Comments
6 min read

Want to connect with kozhevniko?

Create an account to connect with kozhevniko. You can also sign in below to proceed if you already have an account.

Already have an account? Sign in
Windows AppContainer: a sandbox that depends on how the application is written

Windows AppContainer: a sandbox that depends on how the application is written

Comments
3 min read
What the CISA KEV Listing for CVE-2026-104286 Tells Defenders

What the CISA KEV Listing for CVE-2026-104286 Tells Defenders

Comments
2 min read
Dot-Form Header Aliases: How Traefik ForwardAuth Identity Spoofing Reached Backends Before 2.11.56

Dot-Form Header Aliases: How Traefik ForwardAuth Identity Spoofing Reached Backends Before 2.11.56

Comments
3 min read
MFP Web Management Interfaces and CVE-2026-78249: Why Reachability Decides the Risk

MFP Web Management Interfaces and CVE-2026-78249: Why Reachability Decides the Risk

Comments
3 min read
Four Stages, One Payload: The Code Delivery Chain CERT Polska Unpacked

Four Stages, One Payload: The Code Delivery Chain CERT Polska Unpacked

Comments
5 min read
Telling Docker Daemons Apart from Other Docker-Facing Services

Telling Docker Daemons Apart from Other Docker-Facing Services

Comments
3 min read
Container Image Provenance: Signing Is Half the Control

Container Image Provenance: Signing Is Half the Control

Comments
2 min read
The Suffix That Skipped Authentication: Kestra CVE-2026-49869 and Why Path Matching Is Not Authorisation

The Suffix That Skipped Authentication: Kestra CVE-2026-49869 and Why Path Matching Is Not Authorisation

Comments
3 min read
A Deactivated User With a Live Token: Reading Concrete CMS CVE-2026-85387 as a Revocation Gap

A Deactivated User With a Live Token: Reading Concrete CMS CVE-2026-85387 as a Revocation Gap

Comments
3 min read
CVE-2026-63292: A Configuration-Dependent Stack Overflow in Apache httpd 2.4

CVE-2026-63292: A Configuration-Dependent Stack Overflow in Apache httpd 2.4

Comments
2 min read
SonarQube: 92,810 title matches on the platform that holds your source code and your pipeline tokens

SonarQube: 92,810 title matches on the platform that holds your source code and your pipeline tokens

Comments
2 min read
Continuous Monitoring of Public Assets: Turning a One-Off Scan into a Change Signal

Continuous Monitoring of Public Assets: Turning a One-Off Scan into a Change Signal

1
Comments
3 min read
The OAuth Grants Nobody Reviews: Governing Third-Party SaaS Access

The OAuth Grants Nobody Reviews: Governing Third-Party SaaS Access

Comments
4 min read
Tornado 6.5.9: A Symlink, a Response Ceiling, and a Query String

Tornado 6.5.9: A Symlink, a Response Ceiling, and a Query String

Comments
3 min read
CVE-2026-96358: A Module Inventory Checklist from the CERT-BUND Record

CVE-2026-96358: A Module Inventory Checklist from the CERT-BUND Record

Comments
2 min read
Sudo and the timezone that rewrites the clock: CVE-2026-96512

Sudo and the timezone that rewrites the clock: CVE-2026-96512

Comments
3 min read
Two Flaws, One Chain: How JFrog Artifactory Was Pushed to Admin

Two Flaws, One Chain: How JFrog Artifactory Was Pushed to Admin

Comments
4 min read
Cross-Site Scripting in the WID-SEC-2026-3554 Batch: The CVE-2026-96369 Angle

Cross-Site Scripting in the WID-SEC-2026-3554 Batch: The CVE-2026-96369 Angle

Comments
3 min read
F5 BIG-IP APM CVE-2026-94127: an unauthenticated RCE that a hardening setting does not stop

F5 BIG-IP APM CVE-2026-94127: an unauthenticated RCE that a hardening setting does not stop

Comments
3 min read
Upgrading past CVE-2026-88772: version mapping and rollout order for NetScaler ADC and Gateway

Upgrading past CVE-2026-88772: version mapping and rollout order for NetScaler ADC and Gateway

Comments
3 min read
Secure Private Access and managed services: scoping CVE-2026-88771 beyond the appliance

Secure Private Access and managed services: scoping CVE-2026-88771 beyond the appliance

Comments
3 min read
Managed file transfer keeps returning to the news, and the findings look similar each time

Managed file transfer keeps returning to the news, and the findings look similar each time

Comments
2 min read
Penetration Test Findings That Never Get Fixed: Running a Retest Programme

Penetration Test Findings That Never Get Fixed: Running a Retest Programme

Comments
2 min read
When the AI Gateway Becomes the Weakest Link: Command Execution in LiteLLM's MCP Test Endpoints

When the AI Gateway Becomes the Weakest Link: Command Execution in LiteLLM's MCP Test Endpoints

Comments
4 min read
CVE-2026-32996 Under Active Exploitation: What Defenders Should Do Now

CVE-2026-32996 Under Active Exploitation: What Defenders Should Do Now

Comments
2 min read
350,527 Elasticsearch Matches and 161,615 Kibana Matches: Where Logging Data Actually Lives

350,527 Elasticsearch Matches and 161,615 Kibana Matches: Where Logging Data Actually Lives

Comments
2 min read
Small Numbers, Real Findings: AWX, NiFi, Pulsar and CockroachDB

Small Numbers, Real Findings: AWX, NiFi, Pulsar and CockroachDB

Comments
3 min read
Assessing CVE-2026-86510: Severity, Reachability and the Limits of the Public Record

Assessing CVE-2026-86510: Severity, Reachability and the Limits of the Public Record

Comments
2 min read
From p=none to Enforcement: A Working Sequence for DMARC Rollout

From p=none to Enforcement: A Working Sequence for DMARC Rollout

Comments
3 min read
983,992 Indexed FortiGate Instances: Reading an Edge-Appliance Count Against CVE-2025-25249

983,992 Indexed FortiGate Instances: Reading an Edge-Appliance Count Against CVE-2025-25249

Comments
3 min read
Request smuggling in NetScaler: why the backend's parsing rules decide the impact

Request smuggling in NetScaler: why the backend's parsing rules decide the impact

Comments
2 min read
Why moderately critical advisories like CVE-2026-96360 get postponed

Why moderately critical advisories like CVE-2026-96360 get postponed

Comments
2 min read
Where the Panels Live: Network Footprint Patterns of Exposed AI Gateways After the CISA Advisory

Where the Panels Live: Network Footprint Patterns of Exposed AI Gateways After the CISA Advisory

1
Comments
1 min read
Why stored XSS in Drupal Webform (CVE-2026-96367) reaches other users

Why stored XSS in Drupal Webform (CVE-2026-96367) reaches other users

Comments
2 min read
Authentication and Privilege Escalation Paths in the Drupal Extension Advisory WID-SEC-2026-3554

Authentication and Privilege Escalation Paths in the Drupal Extension Advisory WID-SEC-2026-3554

Comments 1
2 min read
Grafana Dashboards on the Internet: A Title Match Beats a Fingerprint Here

Grafana Dashboards on the Internet: A Title Match Beats a Fingerprint Here

Comments
3 min read
Why CVE-2026-96364 cannot be mapped to a single Drupal module from public records

Why CVE-2026-96364 cannot be mapped to a single Drupal module from public records

Comments
3 min read
Assessing CVE-2026-67278 Risk: Why Trust Failures Outrank Their CVSS Label

Assessing CVE-2026-67278 Risk: Why Trust Failures Outrank Their CVSS Label

Comments 1
2 min read
CVE-2026-96359 Explained for Defenders: What WID-SEC-2026-3554 Does and Does Not Tell You

CVE-2026-96359 Explained for Defenders: What WID-SEC-2026-3554 Does and Does Not Tell You

Comments 1
3 min read
CVE-2026-48842: Pre-Auth SQL Injection in Roundcube's virtuser_query Plugin

CVE-2026-48842: Pre-Auth SQL Injection in Roundcube's virtuser_query Plugin

Comments 1
4 min read
OpenCTI Readers Can Open Cases: Inside CVE-2026-76822's Missing Capability Check

OpenCTI Readers Can Open Cases: Inside CVE-2026-76822's Missing Capability Check

Comments 1
3 min read
Measuring Internet-Exposed Email Security Gateways With ZoomEye

Measuring Internet-Exposed Email Security Gateways With ZoomEye

Comments
3 min read
174 Unauthenticated Docker Daemons and the Control-Plane Exposure Behind Them

174 Unauthenticated Docker Daemons and the Control-Plane Exposure Behind Them

Comments
3 min read
Nomad's API without an access control list

Nomad's API without an access control list

Comments
2 min read
What the September 2026 IBM advisory means for teams running Langflow OSS in production

What the September 2026 IBM advisory means for teams running Langflow OSS in production

Comments 1
2 min read
5,873,669 Hosts on Port 1433: The Database Port That Still Faces the Internet

5,873,669 Hosts on Port 1433: The Database Port That Still Faces the Internet

Comments 1
3 min read
SAP's September 2026 patch day: a CVSS 10.0 in the passport layer

SAP's September 2026 patch day: a CVSS 10.0 in the passport layer

Comments
4 min read
152,655 Matches for ownCloud and the CVE That Matches It Exactly

152,655 Matches for ownCloud and the CVE That Matches It Exactly

1
Comments
3 min read
Sizing the Zimbra Perimeter That Email Attackers Actually Touch

Sizing the Zimbra Perimeter That Email Attackers Actually Touch

1
Comments
3 min read
Apache Tomcat 11.0.26 Closes an HTTP/2 Header Mix-Up Regression: CVE-2026-86350

Apache Tomcat 11.0.26 Closes an HTTP/2 Header Mix-Up Regression: CVE-2026-86350

1
Comments
3 min read
Stored XSS as a Privilege Ladder: CVE-2026-75684, CVE-2026-75689 and CVE-2026-75697 in Adobe Connect

Stored XSS as a Privilege Ladder: CVE-2026-75684, CVE-2026-75689 and CVE-2026-75697 in Adobe Connect

Comments
3 min read
5,497 Matches for SonicWall SMA1000: Remote Access Appliances That Administrators Already Trust

5,497 Matches for SonicWall SMA1000: Remote Access Appliances That Administrators Already Trust

Comments
2 min read
132,158 Observable Magento Stores: Sizing the Population Exposed in the StyleSmuggler Window

132,158 Observable Magento Stores: Sizing the Population Exposed in the StyleSmuggler Window

Comments
2 min read
Apache Tomcat: 5,853,642 Fingerprint Matches and 10,191 Manager Pages

Apache Tomcat: 5,853,642 Fingerprint Matches and 10,191 Manager Pages

Comments
2 min read
Home Assistant at Internet Scale: 2.7 Million Fingerprint Matches and the Automation Control Plane

Home Assistant at Internet Scale: 2.7 Million Fingerprint Matches and the Automation Control Plane

Comments
4 min read
From Internet-Facing Firewall to Root Shell: Why CVE-2026-20324 Matters

From Internet-Facing Firewall to Root Shell: Why CVE-2026-20324 Matters

Comments
2 min read
Citrix NetScaler CVE-2026-19490: Fifteen Days From Patch to Exploitation

Citrix NetScaler CVE-2026-19490: Fifteen Days From Patch to Exploitation

Comments
3 min read
CVE-2026-87886: Insecure File Permissions in the Acronis Backup Plugin on Shared Hosting

CVE-2026-87886: Insecure File Permissions in the Acronis Backup Plugin on Shared Hosting

Comments
3 min read
CVE-2026-77762 and the HTTP/2 Request-Mixup Family in Apache Tomcat

CVE-2026-77762 and the HTTP/2 Request-Mixup Family in Apache Tomcat

Comments
2 min read
loading...