Resources

All official content published by AI SPERA is gathered in one place. From product updates to reports and case studies, you can explore it all here.

August 9, 2022

Searching for Security Vulnerabilities Revealed in HTTP Status Code

The HTTP status code tells the client about the current status of their request. These codes can be divided into five major classes, and each of them can tell the client which actions were taken by the server with these requests. 1xx (Data/Information): Request/Input accepted;…

Blog
Searching for Security Vulnerabilities Revealed in HTTP Status Code

August 8, 2022

How Hackers Find Your Default Password

Default Password, a pre-configured password for a device, can be easily found on the internet and instruction manuals, thus must be changed during the initial setup.In this video, we cover how hackers use an OSINT search engine to find servers with exposed default passwords. ▶️…

Notice
How Hackers Find Your Default Password

August 4, 2022

Open Port Vulnerability Detection: the More Open Ports You Have, the More Cyber Threats Exist

Criminal IP (https://www.criminalip.io) collects global IP address data, which includes synthetic CTI intelligence such as connected domains, Whois information, location information, and vulnerability and port information. Port is primarily used in software as a unit to…

Blog
Open Port Vulnerability Detection: the More Open Ports You Have, the More Cyber Threats Exist

July 29, 2022

How to Search for Defaced Website With Title Filter

Website Defacement is a widely used cyber attack where a hacker penetrates a website and changes its visual appearance, leaving evidence that the hacker has completely taken over the website. In this video, we cover how you can find these defaced websites, as well as those owned…

Notice
How to Search for Defaced Website With Title Filter

July 27, 2022

DDoS Attack Case Study: 20 Hours of Unprovoked Aggression

Recently, there was a GET Flooding Attack–type DDoS attack case on a web services company for about 20 hours. Various attack traffic was detected on the login page, which caused a serious load on the server and ultimately paralyzed the entire login function. The CIP Team was…

Blog
DDoS Attack Case Study: 20 Hours of Unprovoked Aggression

July 25, 2022

Exposed SCADA Server, a Shortcut to Unleashing Chaos on Entire Infrastructure

When creating a website, usually use tools such as WordPress or code directly. Whatever ways that you use, HTML is an essential language for creating a website. There is an element called a meta tag in HTML. This is a tag that summarizes the main point about the website, which…

Blog
Exposed SCADA Server, a Shortcut to Unleashing Chaos on Entire Infrastructure

July 21, 2022

[Criminal IP Release Note] v1.2.1 2022-07-20

An update to Criminal IP v1.2.1 has been released. The major changes include: [Criminal IP v1.2.1] Release Note Release Date: Jul 20, 06:00~08:00 (UTC) [New Change] Added favicon data to Asset Search and Element Analysis Added most-searched favicons list to Asset Search’s…

Release Note
[Criminal IP Release Note] v1.2.1 2022-07-20

July 20, 2022

VPN Detection: Finding Unwelcomed Guests on Your Network

One of the most powerful features of Criminal IP API, the VPN Detection API, is used to identify anonymous intruders using VPNs regardless of their intentions. With Criminal IP (https://www.criminalip.io)‘s API capability, you can apply our entire data, including but not limited…

Blog
VPN Detection: Finding Unwelcomed Guests on Your Network

July 20, 2022

API Key, a Key to Credential Leakage & Manipulation

Upon searching for Django web applications with enabled Debug Mode on Criminal IP (https://www.criminalip.io/), Database (hereinafter referred to as DB) accounts information and API Keys of more than 3,100 applications were found to be exposed on the internet. This implies that…

Blog
API Key, a Key to Credential Leakage & Manipulation

July 19, 2022

How to Find Fake PayPal Login Page with Favicon Filter

Tutorial on finding fake PayPal login pages going after your money, using favicon.Try Criminal IP to search for internet assets and their related threat information that can’t be on found on Google. ▶️ https://www.criminalip.io▶️ CIP Twitter: https://twitter.com/CriminalIP_US…

Notice
How to Find Fake PayPal Login Page with Favicon Filter

July 12, 2022

Unsecured Jenkins Servers: A Gateway to Major Cybersecurity Flaws

Jenkins is an open-source software designed to create a continuous integration (CI) and continuous delivery and deployment environment for all language combinations and source code repositories. To using Jenkins automates the build, testing, and deployment to increase software…

Blog
Unsecured Jenkins Servers: A Gateway to Major Cybersecurity Flaws

July 6, 2022

Did You Forget to Renew Your SSL Certificate?

SSL (Secure Sockets Layer) is a protocol that uses encryption to transmit data between servers and browsers securely. The electronic file that this protocol enables is called an SSL certificate, and by installing the SSL certificate on the server, secure communication using the…

Blog
Did You Forget to Renew Your SSL Certificate?

Business Customer Reports

Experienced any inconvenience?

Let us know right away.

Contact US

Join AI SPERA

Be part of the AI SPERA journey.

Contact US