Resources

All official content published by AI SPERA is gathered in one place. From product updates to reports and case studies, you can explore it all here.

September 13, 2024

How To Prevent Internal Management System Exposure With OSINT Threat Intelligence

Criminal IP recently confirmed that the internal management system of a South Korean restaurant chain was exposed. The management system, which should be accessible only from within the organization, was exposed to the outside, allowing hackers to easily access internal systems.…

Notice
How To Prevent Internal Management System Exposure With OSINT Threat Intelligence

September 6, 2024

The Importance of Attack Surface Management Viewed Through NXDomain Hunter Subdomain Scanning Attacks

Recently, the Financial Security Institute (FSI) of South Korea released a detailed analysis report on a new cyber threat targeting financial institutions, called NXDomain Hunter. This hacking group focuses on identifying and exploiting systems with poor security and management…

Blog
The Importance of Attack Surface Management Viewed Through NXDomain Hunter Subdomain Scanning Attacks

September 5, 2024

[Criminal IP v1.64.1] 2024-09-05 Release Note

An update to Criminal IP v1.64.1 has been released. [Criminal IP v1.64.1] Regular Maintenance and Update Release Maintenance Period: 2024.09.05 05:00~10:00 AM (UTC) [New Changes] Update on PCI DSS 4.0 Level 1 Certification on the Pricing Page Criminal IP has obtained PCI DSS 4.0…

Release Note
[Criminal IP v1.64.1] 2024-09-05 Release Note

September 4, 2024

CIP Half-year Report: Criminal IP in H1 2024

As of the first half of 2024, Criminal IP has reached its one-year anniversary of global official launch. This milestone marks a year of significant enhancements, including the addition of extensive new data, refined search functions, and successful integrations worldwide. We…

Notice
CIP Half-year Report: Criminal IP in H1 2024

September 2, 2024

Criminal IP Secures PCI DSS v4.0 Certification, Enhancing Payment Security with Top-Level Compliance

Criminal IP has achieved PCI DSS v4.0 certification for its flagship search engine solution, building on last year’s attainment of PCI DSS v3.2.1 (Payment Card Industry Data Security Standard) certification. This accomplishment represents a significant milestone in the company’s…

Notice
Criminal IP Secures PCI DSS v4.0 Certification, Enhancing Payment Security with Top-Level Compliance

August 23, 2024

[Criminal IP v1.63.1] 2024-08-22 Release Note

An update to Criminal IP v1.63.1 has been released. [Criminal IP v1.63.1] Regular Maintenance and Update Release Maintenance Period: 2024.08.22 05:00~10:00 AM (UTC) [New Changes] Improvements to Asset Search Results Data and UI A new feature allows users to view the full banner…

Release Note
[Criminal IP v1.63.1] 2024-08-22 Release Note

August 22, 2024

CVE-2024-43044: A Critical RCE Vulnerability in Jenkins With 80,000 Exposed Devices Found

A critical security vulnerability, CVE-2024-43044, was recently discovered in Jenkins, an open-source automation tool. This serious flaw could lead to Remote Code Execution (RCE). In this article, we will explore how the CVE-2024-43044 vulnerability can be exploited, the devices…

Blog
CVE-2024-43044: A Critical RCE Vulnerability in Jenkins With 80,000 Exposed Devices Found

August 14, 2024

Multi-Stage Malware Attack Exploiting Bing Search Engine: Analyzing Attack IP Addresses and Domains with Threat Hunting Tools

A recent article by GBHackers reveals a new malware attack exploiting the Bing search engine. This multi-stage malware attack involves distributing malicious files, executing installers, connecting to C2 domains, and downloading and inserting backdoors to carry out attacks such…

Blog
Multi-Stage Malware Attack Exploiting Bing Search Engine: Analyzing Attack IP Addresses and Domains with Threat Hunting Tools

August 9, 2024

Analyzing Quasar RAT Attacks in Home Trading Systems: C2 IP Address Investigation Using Threat Hunting Tools

In this article, we will analyze a recent trend in financial software attacks where Quasar RAT is distributed via personal trading systems, specifically using home trading systems (HTS). We will also examine the IP addresses used in these attacks through threat hunting tools.…

Blog
Analyzing Quasar RAT Attacks in Home Trading Systems: C2 IP Address Investigation Using Threat Hunting Tools

August 8, 2024

[Criminal IP v1.62.0] 2024-08-08 Release Note

An update to Criminal IP v1.62.0 has been released. [Criminal IP v1.62.0] Regular Maintenance and Update Release Note Maintenance Period: 2024.08.08 05:00~10:00 AM (UTC) [New Changes] New API Integration – Maltego Maltego is the all-in-one investigation platform that accelerates…

Release Note
[Criminal IP v1.62.0] 2024-08-08 Release Note

August 2, 2024

Trello Data Breach: Collaboration Tool Exposed to Attacks Due to API Vulnerability

A significant data breach recently impacted Trello, a task management tool by Atlassian, known for its team collaboration software. The personal information of around 15 million Trello users was exposed on the dark web after hackers exploited an API vulnerability. This article…

Blog
Trello Data Breach: Collaboration Tool Exposed to Attacks Due to API Vulnerability

August 1, 2024

Rising Paris Olympic Ticket Scams: How to Prevent Them With AI-Powered URL Scanners

Amidst the intense excitement surrounding the 2024 Paris Olympics, phishing attacks impersonating ticket sales for the Olympics are spreading rapidly. Recently, 708 fake domains were reported to have been involved in a massive Olympics ticket scam and phishing attack primarily…

Blog
Rising Paris Olympic Ticket Scams: How to Prevent Them With AI-Powered URL Scanners

Business Customer Reports

Experienced any inconvenience?

Let us know right away.

Contact US

Join AI SPERA

Be part of the AI SPERA journey.

Contact US