DEV Community

StarkMan profile picture

StarkMan

404 bio not found

Joined Joined on 
A Date Filter Is Not an Install Date: Reading Time-Bounded Exposure Queries

A Date Filter Is Not an Install Date: Reading Time-Bounded Exposure Queries

Comments
2 min read

Want to connect with StarkMan?

Create an account to connect with StarkMan. You can also sign in below to proceed if you already have an account.

Already have an account? Sign in
Internal certificate authorities fail on lifecycle, not on cryptography

Internal certificate authorities fail on lifecycle, not on cryptography

Comments
4 min read
What a database port count does and does not tell you

What a database port count does and does not tell you

1
Comments
3 min read
Why API Gateways Keep Failing Authentication: Lessons From Cisco ISE CVE-2026-76460

Why API Gateways Keep Failing Authentication: Lessons From Cisco ISE CVE-2026-76460

Comments
3 min read
Build Agents and Developer Workstations: The Docker Bind That Leaks Into Production

Build Agents and Developer Workstations: The Docker Bind That Leaks Into Production

Comments 1
2 min read
SNI, Host headers and the limits of name-based virtual hosting: CVE-2026-102795 explained

SNI, Host headers and the limits of name-based virtual hosting: CVE-2026-102795 explained

Comments
2 min read
Cloud IAM: Reading a Policy Before You Trust It

Cloud IAM: Reading a Policy Before You Trust It

Comments
2 min read
CVE-2026-100727: unauthenticated file read in GROWI's local upload mode

CVE-2026-100727: unauthenticated file read in GROWI's local upload mode

Comments
3 min read
OpenWrt: 2,317,463 Fingerprint Matches Where the Home Router Becomes the Edge

OpenWrt: 2,317,463 Fingerprint Matches Where the Home Router Becomes the Edge

Comments
2 min read
17,884 Artifactory Matches and 400 Title Matches: Why Query Choice Changes the Answer

17,884 Artifactory Matches and 400 Title Matches: Why Query Choice Changes the Answer

Comments
3 min read
pfSense: 446,010 Fingerprint Matches on the Edge of the Network

pfSense: 446,010 Fingerprint Matches on the Edge of the Network

Comments
3 min read
CVE-2026-96358: What Remote Exploitability Means for a Drupal Extension Flaw

CVE-2026-96358: What Remote Exploitability Means for a Drupal Extension Flaw

1
Comments
2 min read
Cluster State Tampering: The Operational Risk of Unauthenticated Znode Deletion

Cluster State Tampering: The Operational Risk of Unauthenticated Znode Deletion

Comments
1 min read
Detection Engineering Starts With the Logs You Decided to Keep

Detection Engineering Starts With the Logs You Decided to Keep

Comments
2 min read
Recursive Parsers and Stack Limits: The Design Lesson Behind CVE-2026-103552

Recursive Parsers and Stack Limits: The Design Lesson Behind CVE-2026-103552

Comments
2 min read
Cisco Secure Email Gateway CVE-2026-76442: Quantity Validation Flaw That Turns a Number Field Into a Denial-of-Service Switch

Cisco Secure Email Gateway CVE-2026-76442: Quantity Validation Flaw That Turns a Number Field Into a Denial-of-Service Switch

Comments
5 min read
Third Parties in the Incident Path: The Response Plan Gap CISA Documented

Third Parties in the Incident Path: The Response Plan Gap CISA Documented

Comments
3 min read
Admission Control in Kubernetes: Where Policy Actually Gets Enforced

Admission Control in Kubernetes: Where Policy Actually Gets Enforced

Comments
3 min read
What a build provenance attestation verifies, and what it leaves open

What a build provenance attestation verifies, and what it leaves open

Comments
4 min read
Designing SOAR Playbooks That Hold Up During a Real Incident

Designing SOAR Playbooks That Hold Up During a Real Incident

1
Comments 3
3 min read
Two Denial-of-Service Vectors in One Apache Round: NiFi and MyFaces Compared

Two Denial-of-Service Vectors in One Apache Round: NiFi and MyFaces Compared

Comments
2 min read
Command Injection in Legacy CPE: A Technical Walkthrough of CVE-2026-95675

Command Injection in Legacy CPE: A Technical Walkthrough of CVE-2026-95675

Comments
2 min read
Harbor at 57,117 observed hosts: the registry that supplies every container you run

Harbor at 57,117 observed hosts: the registry that supplies every container you run

Comments
2 min read
Apache Impala at 3,694 fingerprints: a query engine that runs with the warehouse's permissions

Apache Impala at 3,694 fingerprints: a query engine that runs with the warehouse's permissions

Comments
2 min read
Docker Sandboxes CVE-2026-77179 and CVE-2026-79994: when the agent VM can still reach the host

Docker Sandboxes CVE-2026-77179 and CVE-2026-79994: when the agent VM can still reach the host

Comments
3 min read
CVE-2026-103877 risk assessment: scoring the LDAP API deserialization flaw against your real attack surface

CVE-2026-103877 risk assessment: scoring the LDAP API deserialization flaw against your real attack surface

Comments
2 min read
CVE-2026-88772: a DTLS memory overflow in Citrix NetScaler ADC and Gateway is being exploited now

CVE-2026-88772: a DTLS memory overflow in Citrix NetScaler ADC and Gateway is being exploited now

Comments
5 min read
Chat Front Ends Are the Quiet Part of AI Exposure: 90,330 Open WebUI Instances

Chat Front Ends Are the Quiet Part of AI Exposure: 90,330 Open WebUI Instances

Comments
3 min read
12,251 Metasploit Matches: Mapping the Exploitation-Framework Attack Surface

12,251 Metasploit Matches: Mapping the Exploitation-Framework Attack Surface

Comments
2 min read
OpenCTI Case Creation Flaw CVE-2026-76822: A Permission Model Postmortem

OpenCTI Case Creation Flaw CVE-2026-76822: A Permission Model Postmortem

Comments
2 min read
MCP Atlassian Falls Back to Operator Credentials When No Identity Is Present

MCP Atlassian Falls Back to Operator Credentials When No Identity Is Present

1
Comments
3 min read
Langflow OSS against the rest of NCSC-2026-0392: ranking twelve fixes by real urgency

Langflow OSS against the rest of NCSC-2026-0392: ranking twelve fixes by real urgency

Comments
2 min read
CVE-2026-86326 in the Plant Network: What Persistent Unsigned Firmware Does to Operations

CVE-2026-86326 in the Plant Network: What Persistent Unsigned Firmware Does to Operations

Comments
2 min read
NTP: 19,066,332 Service Matches, 3,241,380 of Them in the United States

NTP: 19,066,332 Service Matches, 3,241,380 of Them in the United States

Comments
3 min read
Session Hijacking as a Beachhead: CVE-2026-102489 and the Zammad Root Chain

Session Hijacking as a Beachhead: CVE-2026-102489 and the Zammad Root Chain

Comments
2 min read
CVE-2026-96361 in Context: How This Drupal Batch Compares with Core Security Releases

CVE-2026-96361 in Context: How This Drupal Batch Compares with Core Security Releases

Comments
2 min read
Cross-Site Scripting in Drupal Extensions: The Quiet Half of WID-SEC-2026-3554

Cross-Site Scripting in Drupal Extensions: The Quiet Half of WID-SEC-2026-3554

1
Comments
2 min read
11010 RDP and 176914 VNC Results: Two Remote-Access Protocols With Different Histories

11010 RDP and 176914 VNC Results: Two Remote-Access Protocols With Different Histories

Comments
4 min read
SeaweedFS and the Object Store You Forgot You Deployed: 6,345 Matches

SeaweedFS and the Object Store You Forgot You Deployed: 6,345 Matches

Comments
2 min read
Cisco FMC CVE-2026-20079: a CVSS 10.0 management-plane bypass and the clusters behind it

Cisco FMC CVE-2026-20079: a CVSS 10.0 management-plane bypass and the clusters behind it

Comments
4 min read
AI Agents as Intruders: What the JadePuffer Azure Cases Change About Incident Response

AI Agents as Intruders: What the JadePuffer Azure Cases Change About Incident Response

Comments
2 min read
Pgpool-II 3.5.x through 4.2.x: the branches that will not be patched

Pgpool-II 3.5.x through 4.2.x: the branches that will not be patched

Comments
3 min read
CVE-2026-63292 Timeline and Technical Anatomy: An Apache mod_vhost_alias Buffer Overflow

CVE-2026-63292 Timeline and Technical Anatomy: An Apache mod_vhost_alias Buffer Overflow

1
Comments
2 min read
Telnet, SSH and Port 8080: Identifying the Device Layer Where Payloads Hide

Telnet, SSH and Port 8080: Identifying the Device Layer Where Payloads Hide

Comments
3 min read
Adobe Connect Android App 4.5: The Mobile Half of APSB26-150

Adobe Connect Android App 4.5: The Mobile Half of APSB26-150

Comments
2 min read
Detecting Data Exfiltration Over DNS: Signals That Survive Encrypted Transport

Detecting Data Exfiltration Over DNS: Signals That Survive Encrypted Transport

Comments
3 min read
Choosing Between rsync and btrfs receive in LXD: Exposure Differences Under CVE-2026-87799

Choosing Between rsync and btrfs receive in LXD: Exposure Differences Under CVE-2026-87799

Comments
3 min read
Field-level encryption: choosing the layer that has to hold

Field-level encryption: choosing the layer that has to hold

Comments
2 min read
Why CISA gave agencies three days to patch CVE-2026-7273 in Zyxel GS1900 switches

Why CISA gave agencies three days to patch CVE-2026-7273 in Zyxel GS1900 switches

Comments
4 min read
55,812 SonicWall SSL-VPN Assets on HTTP and the Management Plane Problem

55,812 SonicWall SSL-VPN Assets on HTTP and the Management Plane Problem

Comments
2 min read
Edge Appliances Keep Being Targeted: Where CVE-2026-88774 Fits

Edge Appliances Keep Being Targeted: Where CVE-2026-88774 Fits

Comments
3 min read
Reading CVE-2026-96364 in the September 2026 Drupal contributed-module batch

Reading CVE-2026-96364 in the September 2026 Drupal contributed-module batch

1
Comments
4 min read
Measuring NetScaler exposure: what a 239,277-asset count does and does not tell you about CVE-2026-88771

Measuring NetScaler exposure: what a 239,277-asset count does and does not tell you about CVE-2026-88771

1
Comments
2 min read
CVE-2026-96355: Six Impact Classes, Only One of Which Is a Defacement Problem

CVE-2026-96355: Six Impact Classes, Only One of Which Is a Defacement Problem

Comments
5 min read
What Discloses From GitLab EE CVE-2026-87719: Advanced Search Configuration and Credentials

What Discloses From GitLab EE CVE-2026-87719: Advanced Search Configuration and Credentials

1
Comments
2 min read
Detecting Trouble from CVE-2026-88775 When No Trigger Is Public

Detecting Trouble from CVE-2026-88775 When No Trigger Is Public

Comments
3 min read
Why "Zimbra Web Client" Appears Half a Million Times and Almost None of It Is a Mail Server

Why "Zimbra Web Client" Appears Half a Million Times and Almost None of It Is a Mail Server

Comments
3 min read
Why CVE-2026-77762 Shows a Vendor Low Rating and a Third-Party 8.1 Score

Why CVE-2026-77762 Shows a Vendor Low Rating and a Third-Party 8.1 Score

Comments
2 min read
Default Credentials on Exposed VPN and SSH Gateways: The Gunra Path With the Faintest Audit Trail

Default Credentials on Exposed VPN and SSH Gateways: The Gunra Path With the Faintest Audit Trail

Comments
3 min read
CVE-2026-96362 and the Limits of Version-Based Drupal Scanning

CVE-2026-96362 and the Limits of Version-Based Drupal Scanning

Comments
3 min read
loading...