home.social

#shadowserver — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #shadowserver, aggregated by home.social.

fetched live
  1. 🚀 Vulnerability-Lookup 5.3.0 has landed with a new email notification service. 📬

    Pick any Known Exploited #Vulnerabilities catalog — #CISA, #ENISA, #Shadowserver, CIRCL, KEVIntel — and get a batched email digest the moment new entries land. Exploited-in-the-wild intel, delivered straight to your inbox. No polling, no scraping.

    Full release notes 👉 vulnerability-lookup.org/2026/

    Try it live at vulnerability.circl.lu

    Feel free to create an account if you want to use the email notification service.

  2. A new KEV Catalog built from real-world exploitation data !

    vulnerability.circl.lu/known-e

    We are excited to share the result of a fruitful collaboration with @shadowserver: a new Known Exploited Vulnerabilities (KEV) Catalog (BCP-07 compliant) built directly from their global honeypot telemetry.

    #ShadowServer #KEV #GCVE #Vulnerability #VulnerabilityManagement #Decentralization #Fragmentation

  3. Here is #Shadowserver's announcement on the global #OperationEastwood which aimed for the #NoName05716 #APT.

    infosec.exchange/@shadowserver

    There are various public statements, including Europol's post linked here. The members are also listed on Europe's most wanted list. Likewise, the #German #BKA published a multi-lingual statement on the #DDoSia operators and members.

    #Eastwood #DDoSia #DDoS #infosec

  4. Reading my selfhosted Mastodon Nginx server logs and I see that The Shadow Server Foundation scanned my instance today.

    I wonder if this is just a general search for flaws in Mastodon code or if there is something specific going on that flagged my instance.

    #infosec #ShadowServer

  5. And since we're here... A comparison of #Censys and #Shadowserver's #MSMQ probes. They are using the same probe except for the padding.

    How do I know all this? May have quickly set up a terrible #honeypot last night 😄​

    #QueueJumper

  6. Vulnerability with 9.8 severity in Control Web Panel is under active exploit

    Malicious #hackers have begun exploiting a critical #vulnerability in unpatched versions of the #ControlWebPanel , a widely used interface for web hosting.

    “This is an #unauthenticated #RCE ,” members of the #Shadowserver group wrote

    arstechnica.com/?p=1909755