Resources

All official content published by AI SPERA is gathered in one place. From product updates to reports and case studies, you can explore it all here.

June 30, 2026

Criminal IP Threat Intelligence Integration with OpenCTI

Criminal IP is now integrated with OpenCTI by Filigran, an open-source cyber threat intelligence platform. OpenCTI uses a graph-based model to structure, store, and analyze cyber threat data. It connects indicators, vulnerabilities, threat actors, attack campaigns, and other…

Notice
Criminal IP Threat Intelligence Integration with OpenCTI

June 25, 2026

Managing the External Attack Surface with ASM and DNS Records

DNS Record-Based External Attack Surface Management The IT assets maintained in an organization’s internal inventory may not fully match the assets that are actually exposed to the internet. Cloud instances, abandoned subdomains, systems created by external partners, shared…

Report
Managing the External Attack Surface with ASM and DNS Records

June 23, 2026

FortiBleed Campaign Analysis: Why Internet-Exposed FortiGate Devices Become the Starting Point for Credential Theft

In June 2026, the FortiBleed campaign came to light after a dataset containing a large volume of login information associated with Fortinet FortiGate and SSL VPN devices was exposed publicly. The leaked data reportedly included credentials that could be used to access actual…

Blog
FortiBleed Campaign Analysis: Why Internet-Exposed FortiGate Devices Become the Starting Point for Credential Theft

June 22, 2026

CVE-2026-0257: PAN-OS GlobalProtect Authentication Bypass Vulnerability and Externally Exposed VPN Assets

On May 13, 2026, Palo Alto Networks disclosed CVE-2026-0257, an authentication bypass vulnerability affecting PAN-OS GlobalProtect Portal and Gateway components. Just four days after disclosure, active exploitation attempts were already being observed in the wild. Following the…

Blog
CVE-2026-0257: PAN-OS GlobalProtect Authentication Bypass Vulnerability and Externally Exposed VPN Assets

June 19, 2026

CVE-2026-35273: Analysis of Oracle PeopleSoft Zero-Day Vulnerability

In 2026, CVE-2026-35273, a critical zero-day vulnerability affecting Oracle PeopleSoft PeopleTools, was publicly disclosed and confirmed to be under active exploitation. Oracle PeopleSoft is a widely used enterprise application suite covering human resources, finance, student…

Blog
CVE-2026-35273: Analysis of Oracle PeopleSoft Zero-Day Vulnerability

June 17, 2026

CVE-2026-20245: Cisco Catalyst SD-WAN Manager Root Privilege Escalation Vulnerability

In June 2026, CVE-2026-20245, a privilege escalation vulnerability that can lead to root-level command execution in Cisco Catalyst SD-WAN Manager, was publicly disclosed. The vulnerability is rated CVSS 7.8 (High) and stems from insufficient validation of user-supplied input…

Blog
CVE-2026-20245: Cisco Catalyst SD-WAN Manager Root Privilege Escalation Vulnerability

June 15, 2026

CVE-2026-23479 Redis RCE Vulnerability: A Two-Year Use-After-Free Flaw Discovered by AI

In May 2026, Redis patched CVE-2026-23479, a use-after-free vulnerability affecting its blocking client processing logic. Under specific conditions, an authenticated attacker may be able to trigger remote code execution (RCE) on the host system running the Redis server.…

Blog
CVE-2026-23479 Redis RCE Vulnerability: A Two-Year Use-After-Free Flaw Discovered by AI

June 11, 2026

CVE-2026-44825: Analysis of Apache Solr Default Credential Vulnerability

In June 2026, CVE-2026-44825, a vulnerability related to Apache Solr’s Basic Authentication configuration tool, was publicly disclosed. Apache Solr is a widely used open-source search platform for enterprise search, indexing, log analytics, and document retrieval, often serving…

Blog
CVE-2026-44825: Analysis of Apache Solr Default Credential Vulnerability

June 8, 2026

Samba CVSS 10.0 Vulnerability Analysis: Why Externally Accessible SMB Services are Dangerous

On May 26, 2026, the Samba Team released Samba 4.22.10, 4.23.8, and 4.24.3 security releases, fixing multiple vulnerabilities. Among them, CVE-2026-4480 and CVE-2026-4408 are both remote code execution vulnerabilities rated CVSS 10.0. Under specific configuration conditions,…

Blog
Samba CVSS 10.0 Vulnerability Analysis: Why Externally Accessible SMB Services are Dangerous

June 4, 2026

Automatic Banner Identifier Extraction and Chip UI Update

Maintenance Schedule v1.100.0: 2026.06.04 (05:00–10:00 UTC) Summary 📄 This update introduces a new feature that automatically extracts key identifiers from banner content in Asset Search and IP Report and displays them as chip-style UI elements. Previously, users had to…

Release Note
Automatic Banner Identifier Extraction and Chip UI Update

June 1, 2026

The Rise of AI-Generated Phishing Sites: Analyzing Phishing Infrastructure with Criminal IP

Generative AI-powered web development tools are rapidly changing how web services are built. The ability to create web pages and UI components through natural language prompts significantly improves development productivity. At the same time, however, it also provides attackers…

Blog
The Rise of AI-Generated Phishing Sites: Analyzing Phishing Infrastructure with Criminal IP

May 27, 2026

SonicWall SSL-VPN MFA Bypass Vulnerability: The Attack Surface Between “Patched” and “Protected”

In May 2026, ransomware-linked attacks associated with CVE-2024-12802 targeting SonicWall Gen6 SSL-VPN devices regained attention. The vulnerability stems from a structural flaw in how SSL-VPN authentication handles UPN (User Principal Name) and SAM (Security Account Manager)…

Blog
SonicWall SSL-VPN MFA Bypass Vulnerability: The Attack Surface Between “Patched” and “Protected”

Business Customer Reports

Experienced any inconvenience?

Let us know right away.

Contact US

Join AI SPERA

Be part of the AI SPERA journey.

Contact US