Aggregator
Quantifying Log4Shell: Vulnerability on a Massive Scale
4 years ago
The Log4Shell vulnerability is here to stay. There is a lot of speculation about the scope and true impact of the vulnerability: While many have labeled it “severe,” information is limited on how widespread the risk is. In order to shed some light on the issue, Akamai Threat Labs is utilizing its visibility into numerous data centers worldwide to assess the actual risk Log4Shell poses to organizations.
Akamai Security Intelligence Group
How to Get Started With Application Security
4 years ago
With a comprehensive security stack, Akamai’s application security solutions defend your entire ecosystem from threats. But before you can reap the benefits that come with application security, you need to create a configuration with Akamai’s APIs. Our Developer Advocacy team is here to walk you through the process so you can achieve Infrastructure as Code — or, as we like to call it here, Akamai as Code. Akamai as Code has the ability to support all the DevSecOps practices you know and love, such as automating repetitive tasks and streamlining configurations and workflows, along with reducing manual work and errors.
Mike Elissen
IIS日志隐藏
4 years ago
半块西瓜皮
Akamai Reports Another DoS in Log4j2 (CVE-2021-45105): What You Need to Know
4 years ago
The series of vulnerabilities recently discovered in Log4j2 has shocked the internet. As part of our continuing research, on December 17, Hideki Okamoto from Akamai found and responsibly reported an additional denial-of-service (DoS) vulnerability, which was assigned as CVE-2021-45105.
Akamai Threat Research Team
第十二周/20211220红队推送
4 years ago
【特别推荐】Zero Project:深入研究 NSO 的零点击 iMessage 漏洞
第十二周/20211220红队推送
4 years ago
【特别推荐】Zero Project:深入研究 NSO 的零点击 iMessage 漏洞
第十二周/20211220红队推送
4 years ago
【特别推荐】Zero Project:深入研究 NSO 的零点击 iMessage 漏洞
Apache Log4j2漏洞分析与利用
4 years ago
这是一个影响 Apache Log4j 2.14.1 及更早版本的关键 (CVSSv3 10) 远程代码执行 (RCE) 漏洞
Apache Log4j2漏洞分析与利用
4 years ago
这是一个影响 Apache Log4j 2.14.1 及更早版本的关键 (CVSSv3 10) 远程代码执行 (RCE) 漏洞
Apache Log4j2漏洞分析与利用
4 years ago
这是一个影响 Apache Log4j 2.14.1 及更早版本的关键 (CVSSv3 10) 远程代码执行 (RCE) 漏洞
Zero Trust migration: where do I start?
4 years ago
How to start the journey to zero trust architecture once you have decided it meets your business requirements.
国外网络演习思考
4 years ago
网络演习在最近几年被越来越多的单位重视,网络演习可以真正验证安全的水平,在攻防的真实对抗中,可以发现安全问题,提高安全建设和运营水平。同时,网络演习重点是考验单位的应急响应、协同合作的各种能力。
国外网络演习思考
4 years ago
网络演习在最近几年被越来越多的单位重视,网络演习可以真正验证安全的水平,在攻防的真实对抗中,可以发现安全问题,提高安全建设和运营水平。同时,网络演习重点是考验单位的应急响应、协同合作的各种能力。
国外网络演习思考
4 years ago
网络演习在最近几年被越来越多的单位重视,网络演习可以真正验证安全的水平,在攻防的真实对抗中,可以发现安全问题,提高安全建设和运营水平。同时,网络演习重点是考验单位的应急响应、协同合作的各种能力。
国外网络演习思考
4 years ago
网络演习在最近几年被越来越多的单位重视,网络演习可以真正验证安全的水平,在攻防的真实对抗中,可以发现安全问题,提高安全建设和运营水平。同时,网络演习重点是考验单位的应急响应、协同合作的各种能力。
国外网络演习思考
4 years ago
网络演习在最近几年被越来越多的单位重视,网络演习可以真正验证安全的水平,在攻防的真实对抗中,可以发现安全问题,提高安全建设和运营水平。同时,网络演习重点是考验单位的应急响应、协同合作的各种能力。
Why vulnerabilities are like buses
4 years ago
How organisations can address the growing trend in which multiple vulnerabilities within a single product are exploited over a short period.
提权-Redis&Postgre&令牌窃取&进程注入
4 years ago
提权-Redis&Postgre&令牌窃取&进程注入
提权-Redis&Postgre&令牌窃取&进程注入
4 years ago
提权-Redis&Postgre&令牌窃取&进程注入