Resources

All official content published by AI SPERA is gathered in one place. From product updates to reports and case studies, you can explore it all here.

April 15, 2025

Criminal IP Threat Intelligence Integrated with Fortinet: Automated FortiSOAR Connector Released

AI SPERA has officially launched the Criminal IP connector for Fortinet’s FortiSOAR, a leading Security Orchestration, Automation, and Response (SOAR) platform. Fortinet, a global cybersecurity leader, provides FortiSOAR with the ability to integrate diverse security tools and…

Notice
Criminal IP Threat Intelligence Integrated with Fortinet: Automated FortiSOAR Connector Released

April 10, 2025

[Criminal IP v1.77.0] 2025-04-10 Release Note

An update to Criminal IP v1.77.0 has been released. [Criminal IP v1.77.0] Regular Maintenance and Update Release Note Maintenance Period: 2025.04.10 05:00~10:00 AM (UTC) [New Changes] Added custom User Agent feature for full URL scan in Domain Search. You can now set a User…

Release Note
[Criminal IP v1.77.0] 2025-04-10 Release Note

April 8, 2025

Next.js Middleware Vulnerability Allows Authentication Bypass: Over 520K Assets at Risk

On March 21, 2025, an authentication bypass vulnerability in Vercel’s Next.js framework, identified as CVE-2025-29927, was disclosed. This article outlines the threat posed by the CVE-2025-29927 vulnerability in Next.js middleware, analyzes exposed instances affected by the…

Blog
Next.js Middleware Vulnerability Allows Authentication Bypass: Over 520K Assets at Risk

April 2, 2025

Analysis of AMI MegaRAC BMC Vulnerability: Criminal IP-Based Detection Strategies

A critical security vulnerability was recently discovered in the AMI MegaRAC Baseboard Management Controller (BMC), which is widely used by numerous server manufacturers. This vulnerability allows attackers to bypass authentication on the Redfish management interface, posing a…

Blog
Analysis of AMI MegaRAC BMC Vulnerability: Criminal IP-Based Detection Strategies

March 28, 2025

[Criminal IP v1.76.0] 2025-03-27 Release Note

An update to Criminal IP v1.76.0 has been released. [Criminal IP v1.76.0] Regular Maintenance and Update Release Note Maintenance Period: 2025.03.27 05:00~10:00 AM (UTC) [Improvement] Added GitHub Reference 43 new repositories have been added to the Open-source Use Cases and…

Release Note
[Criminal IP v1.76.0] 2025-03-27 Release Note

March 25, 2025

CVE-2025-24813: Apache Tomcat RCE Vulnerability and Data Exposure

A newly discovered vulnerability, CVE-2025-24813, has been found in Apache Tomcat. This flaw may lead to Remote Code Execution (RCE), data exposure, or file corruption. Under certain conditions, attackers could execute malicious code or access and modify sensitive files. The…

Blog
CVE-2025-24813: Apache Tomcat RCE Vulnerability and Data Exposure

March 14, 2025

CVE-2024-53900 & CVE-2025-23061 RCE Vulnerabilities in Mongoose: Security Threats Exposure and Countermeasures

Recently, OPSWAT analyzed the Proof of Concept (PoC) for two critical vulnerabilities, CVE-2024-53900 and CVE-2025-23061, in Mongoose, the Object Data Modeling (ODM) library for MongoDB and Node.js, on their blog. When exposed to the internet, Mongoose can pose serious security…

Blog
CVE-2024-53900 & CVE-2025-23061 RCE Vulnerabilities in Mongoose: Security Threats Exposure and Countermeasures

March 13, 2025

[Criminal IP v1.75.0] 2025-03-13 Release Note

An update to Criminal IP v1.75.0 has been released. [Criminal IP v1.75.0] Regular Maintenance and Update Release Note Maintenance Period : 2025.03.13 05:00~10:00 AM (UTC) [New Changes] Knowledge Hub New Categories – Report Criminal IP’s Knowledge Hub, which centralizes technical…

Release Note
[Criminal IP v1.75.0] 2025-03-13 Release Note

March 13, 2025

7 Ways to Leverage Threat Intelligence (TI) in Security Operations

Intergrating Threat Intelligence to Maximize Synergy Across Security Products Threat Intelligence (TI) is the foundation of modern cybersecurity, delivering real-time insights into emerging threats, hacker tactics, and malicious infrastructures. By integrating TI into security…

Report
7 Ways to Leverage Threat Intelligence (TI) in Security Operations

March 13, 2025

Why Attack Surface Management (ASM) is Essential for Cybersecurity

Proactive Prevention Through a Risk-Based Response Strategy As digital infrastructures expand across cloud, IoT, and remote environments, cyber threats continue to grow, exposing unknown vulnerabilities. Criminal IP ASM takes a proactive approach by continuously identifying,…

Report
Why Attack Surface Management (ASM) is Essential for Cybersecurity

February 28, 2025

Tracking Shell Companies With Criminal IP

This article explores how Criminal IP was used, citing an OSINT Team blog. The OSINT (Open Source Intelligence) team, UnderYourNoZ, successfully analyzed how Russian pharmaceutical companies Chimmed and Rusmedtorg were bypassing international sanctions, thanks to an anonymous…

Blog
Tracking Shell Companies With Criminal IP

February 27, 2025

[Criminal IP v1.74.0] 2025-02-27 Release Note

Criminal IP An update to Criminal IP v1.74.0 has been released. [Criminal IP v1.74.0] Regular Maintenance and Update Release Note Maintenance Period: 2025.02.27 05:00~10:00 AM (UTC) [New Changes] Criminal IP TI Product Page Launched Criminal IP TI provides advanced threat…

Release Note
[Criminal IP v1.74.0] 2025-02-27 Release Note

Business Customer Reports

Experienced any inconvenience?

Let us know right away.

Contact US

Join AI SPERA

Be part of the AI SPERA journey.

Contact US