Resources

All official content published by AI SPERA is gathered in one place. From product updates to reports and case studies, you can explore it all here.

June 17, 2025

Roundcube Webmail Vulnerability CVE-2025-49113: Over 50,000 Exposed Assets Identified

CVE-2025-49113, a newly disclosed vulnerability in the Roundcube webmail platform, allows for remote code execution (RCE) and is currently being actively exploited. Its ability to execute code through email subject lines makes it particularly dangerous, allowing attackers to…

Blog
Roundcube Webmail Vulnerability CVE-2025-49113: Over 50,000 Exposed Assets Identified

June 16, 2025

Criminal IP Dorks Cheat Sheet: A Practical Guide to Threat Intelligence Queries (Part 1)

※ This article is based on an analysis shared by the Twitter-based threat intelligence specialist, Clandestine. As cyber threats become increasingly sophisticated, relying solely on automated detection systems often misses early signs of malicious activity. In this context,…

Blog
Criminal IP Dorks Cheat Sheet: A Practical Guide to Threat Intelligence Queries (Part 1)

June 5, 2025

Exposed Docker API Ports: ‘Dero’ Cryptocurrency Mining Malware Alert

Kaspersky, a global cybersecurity company, recently identified a cryptocurrency mining malware campaign exploiting exposed Docker API ports. The attack goes beyond simple mining operations by featuring propagation capabilities that pose a serious threat to entire cloud…

Blog
Exposed Docker API Ports: ‘Dero’ Cryptocurrency Mining Malware Alert

May 29, 2025

[Criminal IP v1.80.0] 2025-05-29 Release Note

An update to Criminal IP v1.80.0 has been released. [Criminal IP v1.80.0] Regular Maintenance and Update Release Note Maintenance Period: 2025.05.29 05:00~10:00 AM (UTC) [New Changes] Criminal IP DarkWeb Product Page Launched Criminal IP DarkWeb enables real-time monitoring of…

Release Note
[Criminal IP v1.80.0] 2025-05-29 Release Note

May 28, 2025

CVE-2025-31324 in SAP NetWeaver: Critical RCE and Server Hijacking Alert

SAP NetWeaver vulnerability CVE-2025-31324 recently received the highest CVSS score of 10.0. This unrestricted file upload flaw can be exploited to hijack servers and perform remote code execution, with large-scale abuse already reported across multiple industries. This blog…

Notice
CVE-2025-31324 in SAP NetWeaver: Critical RCE and Server Hijacking Alert

May 19, 2025

Accelerate IP Intelligence in Splunk with the Criminal IP Search App

While analyzing countless logs in your enterprise security environment, you’ve likely found yourself wondering: “Is this IP address safe?” “Who is accessing our network?” “Is this connection coming through a VPN or the Tor network?” Now, you can get instant answers to these…

Notice
Accelerate IP Intelligence in Splunk with the Criminal IP Search App

May 15, 2025

[Criminal IP v1.79.0] 2025-05-15 Release Note

An update to Criminal IP v1.79.0 has been released. [Criminal IP v1.79.0] Regular Maintenance and Update Release Note Maintenance Period: 2025.05.15 05:00~10:00 AM (UTC) [New Changes] Added Checksum Detection Data to Domain Search Network Logs Checksum detection data has been…

Notice
[Criminal IP v1.79.0] 2025-05-15 Release Note

May 7, 2025

Malicious IP Identification in Hacking Attacks: Criminal IP’s Advanced Infrastructure Detection Technology

The Korea Internet & Security Agency (KISA) has released a security report that includes attack IP addresses and malware from recent hacking cases. At the time of disclosure, the attack IP addresses were analyzed via VirusTotal using various security solutions and threat…

Notice
Malicious IP Identification in Hacking Attacks: Criminal IP’s Advanced Infrastructure Detection Technology

April 30, 2025

CVE-2025-32433: Critical RCE Vulnerability in Erlang/OTP SSH

A critical remote code execution (RCE) vulnerability has recently been discovered in Erlang/OTP SSH servers. Identified as CVE-2025-32433, this flaw arises from improper handling of pre-authentication SSH messages, allowing attackers to execute arbitrary code without…

Notice
CVE-2025-32433: Critical RCE Vulnerability in Erlang/OTP SSH

April 25, 2025

What’s the Real Solution for Email Security?

A single link can drain your crypto wallet or shut down your business. AI-powered phishing is getting smarter — here’s how to fight back with the Criminal IP Malicious Link Detector. ▶️Download: https://appsource.microsoft.com/en-us/product/office/WA200007637?tab=Overview Visit…

Videos
What’s the Real Solution for Email Security?

April 24, 2025

[Notice] Criminal IP Free Plan Feature Enhancement (Scheduled Release: April 28, 2025)

Dear Criminal IP Users, Thank you for using Criminal IP. To deliver more powerful threat intelligence, we are enhancing the user experience across our plans effective April 28, 2025. In particular, we’ve made adjustments so that more users can experience the value of Criminal IP…

Notice
[Notice] Criminal IP Free Plan Feature Enhancement (Scheduled Release: April 28, 2025)

April 18, 2025

Response Strategy for Ivanti VPN Vulnerability CVE-2025-22457: CTI-Based Attack Surface Detection

Ivanti has released a patch for a critical vulnerability identified as CVE-2025-22457, which affects several of its security products, including Ivanti Connect Secure, Pulse Connect Secure, Ivanti Policy Secure, and ZTA Gateways. This stack-based buffer overflow vulnerability…

Blog
Response Strategy for Ivanti VPN Vulnerability CVE-2025-22457: CTI-Based Attack Surface Detection

Business Customer Reports

Experienced any inconvenience?

Let us know right away.

Contact US

Join AI SPERA

Be part of the AI SPERA journey.

Contact US