DEV Community

yutianle profile picture

yutianle

404 bio not found

Joined Joined on 
Three JFrog Artifactory Flaws in One KEV Cycle: Authentication Failures in the Build Supply Chain

Three JFrog Artifactory Flaws in One KEV Cycle: Authentication Failures in the Build Supply Chain

Comments
3 min read

Want to connect with yutianle?

Create an account to connect with yutianle. You can also sign in below to proceed if you already have an account.

Already have an account? Sign in
MemTensor: When an AI Memory Plugin Becomes the Credential Collector

MemTensor: When an AI Memory Plugin Becomes the Credential Collector

Comments
2 min read
ZooKeeper Flaws Ripple Through Hadoop and Kafka Dependency Chains

ZooKeeper Flaws Ripple Through Hadoop and Kafka Dependency Chains

Comments
1 min read
How many worker processes can a single WebDAV lock loop take down

How many worker processes can a single WebDAV lock loop take down

Comments
2 min read
Dependency Verification: What Pinning Buys and What It Does Not

Dependency Verification: What Pinning Buys and What It Does Not

Comments
2 min read
Citrix NetScaler CVE-2026-19490: The Second Authentication Bypass in a Single Quarter

Citrix NetScaler CVE-2026-19490: The Second Authentication Bypass in a Single Quarter

Comments
3 min read
1,577,590 F5 BIG-IP Matches: Sizing the Management Plane After Two KEV Entries

1,577,590 F5 BIG-IP Matches: Sizing the Management Plane After Two KEV Entries

Comments 1
3 min read
Akaunting: 1,511 fingerprints and 480 titles for an accounting system online

Akaunting: 1,511 fingerprints and 480 titles for an accounting system online

Comments
2 min read
Elasticsearch on 351,041 observed hosts: search clusters and the data they were never meant to expose

Elasticsearch on 351,041 observed hosts: search clusters and the data they were never meant to expose

Comments
2 min read
The Malvertising Supply Chain Behind the Toll Fraud Campaign: 1,235 Ads, 74 Profile Names

The Malvertising Supply Chain Behind the Toll Fraud Campaign: 1,235 Ads, 74 Profile Names

Comments
4 min read
Dolibarr: 4,209 title matches against 829 fingerprint matches on the same ERP

Dolibarr: 4,209 title matches against 829 fingerprint matches on the same ERP

Comments
3 min read
Alluxio's S3 proxy skipped signature verification, and everyone was root

Alluxio's S3 proxy skipped signature verification, and everyone was root

Comments
3 min read
Contributed module risk in Drupal: the lesson behind CVE-2026-96360

Contributed module risk in Drupal: the lesson behind CVE-2026-96360

Comments
2 min read
Detection content as code: reviewing a change the way you review software

Detection content as code: reviewing a change the way you review software

Comments
2 min read
Cacti, LibreNMS, Icinga and Observium: measuring the monitoring tier nobody replaces

Cacti, LibreNMS, Icinga and Observium: measuring the monitoring tier nobody replaces

Comments
2 min read
Patch or Shield? Choosing an Upgrade Path for CVE-2026-76471

Patch or Shield? Choosing an Upgrade Path for CVE-2026-76471

Comments
2 min read
Proving log coverage instead of assuming it

Proving log coverage instead of assuming it

Comments
2 min read
SaltStack at 60,140 observed assets: remote execution as a standing capability

SaltStack at 60,140 observed assets: remote execution as a standing capability

Comments
3 min read
CVE-2026-75937: why a management interface decides the risk

CVE-2026-75937: why a management interface decides the risk

Comments
2 min read
Canary tokens are a detection control, and detection controls can be measured

Canary tokens are a detection control, and detection controls can be measured

Comments
4 min read
Two Critical Bugs, One Router: What the D-Link DIR-822A Disclosures Mean for Home Networks

Two Critical Bugs, One Router: What the D-Link DIR-822A Disclosures Mean for Home Networks

1
Comments 1
3 min read
SPDX or CycloneDX: Choosing an SBOM Format You Can Actually Operate

SPDX or CycloneDX: Choosing an SBOM Format You Can Actually Operate

Comments
4 min read
DNS Tunneling and Egress Control: Closing the Channel That Almost Always Works

DNS Tunneling and Egress Control: Closing the Channel That Almost Always Works

Comments
4 min read
Detection and response notes for CVE-2026-85714

Detection and response notes for CVE-2026-85714

Comments
2 min read
ShowDoc 3.9.2 and the username field that ends up as PHP

ShowDoc 3.9.2 and the username field that ends up as PHP

Comments
3 min read
3,331,906 on Port 7001 and 1,037,743 on Port 7199: Java Middleware and Its Management Ports

3,331,906 on Port 7001 and 1,037,743 on Port 7199: Java Middleware and Its Management Ports

Comments
2 min read
Sizing the Kestra Attack Surface: What Internet Measurement Shows About Workflow Orchestration Exposure

Sizing the Kestra Attack Surface: What Internet Measurement Shows About Workflow Orchestration Exposure

Comments
4 min read
Fingerprint or Not: Choosing the Right ZoomEye Query for a GeoServer Investigation

Fingerprint or Not: Choosing the Right ZoomEye Query for a GeoServer Investigation

Comments
3 min read
256,996 MinIO Fingerprints and 198,176 Prometheus Fingerprints

256,996 MinIO Fingerprints and 198,176 Prometheus Fingerprints

Comments
2 min read
CVE-2026-5430: the JWT validator that skipped signature checking when it met an algorithm it did not know

CVE-2026-5430: the JWT validator that skipped signature checking when it met an algorithm it did not know

Comments
2 min read
111 and 2049: RPC and NFS Endpoints in an Internet-Facing Population

111 and 2049: RPC and NFS Endpoints in an Internet-Facing Population

Comments
3 min read
CVE-2026-59797: Why an Apache httpd Privilege Bug Outranks a Crash

CVE-2026-59797: Why an Apache httpd Privilege Bug Outranks a Crash

Comments
2 min read
Why an Authenticated GitLab Account Is Enough for Server-Side Code Execution

Why an Authenticated GitLab Account Is Enough for Server-Side Code Execution

Comments
2 min read
Woodpecker CI at 1,831 Titles and 2 Application Fingerprints: What a Narrow Signature Gap Means

Woodpecker CI at 1,831 Titles and 2 Application Fingerprints: What a Narrow Signature Gap Means

Comments
3 min read
Copy Fail (CVE-2026-31431): 732 bytes from a low-privilege shell to root on Linux

Copy Fail (CVE-2026-31431): 732 bytes from a low-privilege shell to root on Linux

Comments
2 min read
A photo library is an identity record that happens to contain pictures

A photo library is an identity record that happens to contain pictures

Comments
3 min read
Assessing Real-World Risk From CVE-2026-78249 Without Overstating It

Assessing Real-World Risk From CVE-2026-78249 Without Overstating It

Comments
2 min read
Certificate name verification: wildcards, SANs and the checks that fail open

Certificate name verification: wildcards, SANs and the checks that fail open

Comments
3 min read
Lateral Movement Across Zimbra Clusters via CVE-2026-73570

Lateral Movement Across Zimbra Clusters via CVE-2026-73570

Comments
2 min read
When an Agent Reaches Root: The Zammad Attack and Machine-Speed Intrusion

When an Agent Reaches Root: The Zammad Attack and Machine-Speed Intrusion

Comments
2 min read
Confluence exposure: 1.8 million fingerprint matches depend on which fingerprint you use

Confluence exposure: 1.8 million fingerprint matches depend on which fingerprint you use

Comments
2 min read
Zipkin at 40 Titles and 562 Fingerprints: When the Signature Finds More Than the Name

Zipkin at 40 Titles and 562 Fingerprints: When the Signature Finds More Than the Name

Comments
4 min read
6,918 Paperless matches: a document archive that was meant to replace the filing cabinet

6,918 Paperless matches: a document archive that was meant to replace the filing cabinet

Comments
2 min read
ShieldCrash: A Second Path Around the Microsoft Defender ShieldBreak Fix

ShieldCrash: A Second Path Around the Microsoft Defender ShieldBreak Fix

Comments
3 min read
GitLab CVE-2026-85706: When a Path Traversal Lands in the Software Delivery Chain

GitLab CVE-2026-85706: When a Path Traversal Lands in the Software Delivery Chain

Comments
4 min read
Measuring Edge Gateway Exposure: Why the Right ZoomEye Query Matters More Than the Number

Measuring Edge Gateway Exposure: Why the Right ZoomEye Query Matters More Than the Number

Comments
4 min read
Internet-Exposed RDP Is Still the Ransomware On-Ramp the Gunra Advisory Warns About

Internet-Exposed RDP Is Still the Ransomware On-Ramp the Gunra Advisory Warns About

Comments
3 min read
Microsoft SharePoint exposure: 163,266 matching assets and a code injection flaw that needs only a user account

Microsoft SharePoint exposure: 163,266 matching assets and a code injection flaw that needs only a user account

Comments
3 min read
Prioritizing a 974-CVE Patch Tuesday Without Freezing Your Deployment Pipeline

Prioritizing a 974-CVE Patch Tuesday Without Freezing Your Deployment Pipeline

Comments
3 min read
HAProxy: 49,691 Fingerprint Matches at the Front Door

HAProxy: 49,691 Fingerprint Matches at the Front Door

Comments
3 min read
Path filters that do not filter: CVE-2026-57441 and CVE-2026-57442 in MCPVault

Path filters that do not filter: CVE-2026-57441 and CVE-2026-57442 in MCPVault

Comments
3 min read
CVE-2026-89775: Reading Host Memory From an ARM64 KVM Guest

CVE-2026-89775: Reading Host Memory From an ARM64 KVM Guest

Comments
4 min read
Gitea: 116,010 fingerprints against 120,024 titles, and the self-hosted forge as an identity boundary

Gitea: 116,010 fingerprints against 120,024 titles, and the self-hosted forge as an identity boundary

Comments
3 min read
12,488,458 answers on port 9080 beside 77,076 WebSphere matches: reading a Java middleware estate

12,488,458 answers on port 9080 beside 77,076 WebSphere matches: reading a Java middleware estate

Comments
3 min read
GitLab CVE-2026-85706: Why an Arbitrary File Read on a DevSecOps Platform Is a Credential Incident

GitLab CVE-2026-85706: Why an Arbitrary File Read on a DevSecOps Platform Is a Credential Incident

Comments
3 min read
Prioritising CVE-2026-85706 Work: What a Read on a GitLab Host Is Worth

Prioritising CVE-2026-85706 Work: What a Read on a GitLab Host Is Worth

Comments
3 min read
Distributing the Risk: What Global Docker Exposure Numbers Do and Do Not Show

Distributing the Risk: What Global Docker Exposure Numbers Do and Do Not Show

1
Comments
3 min read
Key rotation as a scheduled operation

Key rotation as a scheduled operation

Comments
2 min read
Concourse: 3,767 title matches on the pipeline system that executes your build code

Concourse: 3,767 title matches on the pipeline system that executes your build code

Comments
2 min read
Availability risk on the VPN concentrator: the denial-of-service side of CVE-2026-88772

Availability risk on the VPN concentrator: the denial-of-service side of CVE-2026-88772

Comments
3 min read
loading...