Resources

All official content published by AI SPERA is gathered in one place. From product updates to reports and case studies, you can explore it all here.

October 7, 2025

Cisco ASA Zero-Day: 90,000 FTD Devices Exposed, Threat Hunting Guide (CVE-2025-20333 · CVE-2025-20362)

On September 25, 2025, Cisco warned that it had discovered two zero-day vulnerabilities in Cisco ASA (Adaptive Security Appliance) that are being exploited in the wild. In this post, we examine the threats and impacts of CVE-2025-20333 and CVE-2025-20362, and discuss recommended…

Notice
Cisco ASA Zero-Day: 90,000 FTD Devices Exposed, Threat Hunting Guide (CVE-2025-20333 · CVE-2025-20362)

October 2, 2025

AI SPERA Achieves PCI DSS 4.0.1 Top Rating(Level 1) for 3rd Year

AI SPERA’s cyber threat intelligence search engine, Criminal IP, has successfully obtained the PCI DSS v4.0.1 (Payment Card Industry Data Security Standard) certification. This achievement marks the third consecutive year the platform has earned the highest rating (Level 1),…

Notice
AI SPERA Achieves PCI DSS 4.0.1 Top Rating(Level 1) for 3rd Year

October 1, 2025

Illegal Webtoon Sites Evading Blocks with Domain Swaps — How to Detect Fraudulent Sites

In South Korea, illegal webtoon platforms like Blacktoon have become notorious for causing both copyright infringement and financial harm.Whenever authorities block access to these sites, operators immediately register new domains—often by simply changing a number in the domain…

Notice
Illegal Webtoon Sites Evading Blocks with Domain Swaps — How to Detect Fraudulent Sites

September 18, 2025

How Criminal IP is Securing the Expanding Attack Surface — Before It’s Too Late

In today’s fast-moving cyber threat landscape, traditional defenses are no longer enough.AI SPERA’s Criminal IP, developed out of Korea University’s Hacking Response Research Center, provides a new approach—rooted in the attacker’s perspective.By combining automation, anomaly…

Report
How Criminal IP is Securing the Expanding Attack Surface — Before It’s Too Late

September 17, 2025

Telegram QR Phishing Threat – Account Takeover with a Single Scan

Telegram QR code phishing has recently been spreading rapidly, emerging as a significant cybersecurity threat. While Telegram is recognized for its strong security and privacy features, attackers are now exploiting its QR login functionality to compromise user accounts. With…

Notice
 Telegram QR Phishing Threat – Account Takeover with a Single Scan

September 16, 2025

CVE-2017-10271: Oracle WebLogic Server Vulnerability

On August 14, 2025, Lotte Card’s online payment server in South Korea was compromised, leading to large-scale data exfiltration attempts. The attack persisted for two days, with signs that at least 1.7GB of internal data was about to be extracted. The critical issue was delayed…

Blog
CVE-2017-10271: Oracle WebLogic Server Vulnerability

September 5, 2025

Exploring Threat Infrastructures Detected by Security Professionals Through Criminal IP’s Top 10 Keywords

The Criminal IP search engine, used in over 180 countries worldwide, collects a vast amount of search data every day.What are the most common keywords entered by security professionals? In this post, we highlight four of the Top 10 Criminal IP keywords as of August 2025,…

Notice
Exploring Threat Infrastructures Detected by Security Professionals Through Criminal IP’s Top 10 Keywords

September 5, 2025

[Criminal IP v1.87.0] 2025-09-04 Release Note

An update and maintenance to Criminal IP v1.87.0 has been released. [Criminal IP v1.87.0] Regular Maintenance and Update Release Note Maintenance and Update Period: 2025.09.04 05:00~10:00 AM (UTC) [New Changes] Criminal IP Pricing Plan Restructuring As previously announced, the…

Notice
[Criminal IP v1.87.0] 2025-09-04 Release Note

September 1, 2025

N-central Zero-Day Attack — How Safe Is Your Server?

Two critical security vulnerabilities (CVE-2025-8875, CVE-2025-8876) recently discovered in N-able’s N-central platform are being actively exploited, posing severe risks to Managed Service Providers (MSPs) and IT departments worldwide. N-central is a Remote Monitoring and…

Notice
N-central Zero-Day Attack — How Safe Is Your Server?

August 21, 2025

[Criminal IP v1.86.0] 2025-08-21 Release Note

An update and maintenance to Criminal IP v1.86.0 has been released. [Criminal IP v1.86.0] Regular Maintenance and Update Release Note Maintenance and Update Period: 2025.08.21 05:00~10:00 AM (UTC) [New Changes] Previous Notice of Criminal IP Pricing Plan Update (Effective…

Notice
[Criminal IP v1.86.0] 2025-08-21 Release Note

August 21, 2025

[Important] Criminal IP Plans Unified – New Starter Plan & End of Existing Plans

Announcement Date: August 21, 2025 Effective Date: September 4, 2025 Hello, this is Criminal IP.We would like to inform you in advance about the upcoming changes to Criminal IP’s paid subscription plans, scheduled to take effect on September 4, 2025. Purpose of the Plan…

Notice
[Important] Criminal IP Plans Unified – New Starter Plan & End of Existing Plans

August 7, 2025

[Criminal IP v1.85.0] 2025-08-07 Release Note

An update and maintenance to Criminal IP v1.85.0 has been released. [Criminal IP v1.85.0] Regular Maintenance and Update Release Note Maintenance and Update Period: 2025.08.07 05:00~10:00 AM (UTC) [New Changes] New API Integration – Palo Alto Networks​ ​​The collaboration…

Notice
[Criminal IP v1.85.0] 2025-08-07 Release Note

Business Customer Reports

Experienced any inconvenience?

Let us know right away.

Contact US

Join AI SPERA

Be part of the AI SPERA journey.

Contact US