home.social

#vulnerabilitylookup β€” Public Fediverse posts

Live and recent posts from across the Fediverse tagged #vulnerabilitylookup, aggregated by home.social.

  1. πŸš€ Vulnerability-Lookup 5.5.0 is out!

    πŸ” Full Role-Based Access Control replaces the legacy admin flags
    πŸ€– AI-suggested MITRE ATT&CK techniques on the vulnerability page, powered by our model trained with VulnTrain
    πŸ‡ͺπŸ‡Ί EUVD ID allocation pipeline
    πŸ› οΈ Feeder supervision, new VEX sources & feeders

    πŸ‘‰ vulnerability-lookup.org/2026/

    #VulnerabilityLookup #cybersecurity #opensource #CVE #MITREATTACK

  2. πŸš€ Vulnerability-Lookup 5.5.0 is out!

    πŸ” Full Role-Based Access Control replaces the legacy admin flags
    πŸ€– AI-suggested MITRE ATT&CK techniques on the vulnerability page, powered by our model trained with VulnTrain
    πŸ‡ͺπŸ‡Ί EUVD ID allocation pipeline
    πŸ› οΈ Feeder supervision, new VEX sources & feeders

    πŸ‘‰ vulnerability-lookup.org/2026/

    #VulnerabilityLookup #cybersecurity #opensource #CVE #MITREATTACK

  3. πŸš€ Vulnerability-Lookup 5.5.0 is out!

    πŸ” Full Role-Based Access Control replaces the legacy admin flags
    πŸ€– AI-suggested MITRE ATT&CK techniques on the vulnerability page, powered by our model trained with VulnTrain
    πŸ‡ͺπŸ‡Ί EUVD ID allocation pipeline
    πŸ› οΈ Feeder supervision, new VEX sources & feeders

    πŸ‘‰ vulnerability-lookup.org/2026/

    #VulnerabilityLookup #cybersecurity #opensource #CVE #MITREATTACK

  4. πŸš€ Vulnerability-Lookup 5.5.0 is out!

    πŸ” Full Role-Based Access Control replaces the legacy admin flags
    πŸ€– AI-suggested MITRE ATT&CK techniques on the vulnerability page, powered by our model trained with VulnTrain
    πŸ‡ͺπŸ‡Ί EUVD ID allocation pipeline
    πŸ› οΈ Feeder supervision, new VEX sources & feeders

    πŸ‘‰ vulnerability-lookup.org/2026/

    #VulnerabilityLookup #cybersecurity #opensource #CVE #MITREATTACK

  5. πŸš€ Vulnerability-Lookup 5.5.0 is out!

    πŸ” Full Role-Based Access Control replaces the legacy admin flags
    πŸ€– AI-suggested MITRE ATT&CK techniques on the vulnerability page, powered by our model trained with VulnTrain
    πŸ‡ͺπŸ‡Ί EUVD ID allocation pipeline
    πŸ› οΈ Feeder supervision, new VEX sources & feeders

    πŸ‘‰ vulnerability-lookup.org/2026/

    #VulnerabilityLookup #cybersecurity #opensource #CVE #MITREATTACK

  6. You can now browse VEX statements in Vulnerability-Lookup!

    The new VEX page lets you explore 220k+ vendor VEX records (Red Hat, Microsoft MSRC, more coming), filter by source, search by CVE ID or title, see product statuses at a glance (fixed, known affected, not affected, under investigation) and pivot straight to the related vulnerability.

    πŸ”Ž vulnerability.circl.lu/vex/
    🧩 API: vulnerability.circl.lu/api/vex/

    #VEX #VulnerabilityLookup #CVE #GCVE #OpenSource #CyberSecurity

  7. You can now browse VEX statements in Vulnerability-Lookup!

    The new VEX page lets you explore 220k+ vendor VEX records (Red Hat, Microsoft MSRC, more coming), filter by source, search by CVE ID or title, see product statuses at a glance (fixed, known affected, not affected, under investigation) and pivot straight to the related vulnerability.

    πŸ”Ž vulnerability.circl.lu/vex/
    🧩 API: vulnerability.circl.lu/api/vex/

    #VEX #VulnerabilityLookup #CVE #GCVE #OpenSource #CyberSecurity

  8. You can now browse VEX statements in Vulnerability-Lookup!

    The new VEX page lets you explore 220k+ vendor VEX records (Red Hat, Microsoft MSRC, more coming), filter by source, search by CVE ID or title, see product statuses at a glance (fixed, known affected, not affected, under investigation) and pivot straight to the related vulnerability.

    πŸ”Ž vulnerability.circl.lu/vex/
    🧩 API: vulnerability.circl.lu/api/vex/

    #VEX #VulnerabilityLookup #CVE #GCVE #OpenSource #CyberSecurity

  9. You can now browse VEX statements in Vulnerability-Lookup!

    The new VEX page lets you explore 220k+ vendor VEX records (Red Hat, Microsoft MSRC, more coming), filter by source, search by CVE ID or title, see product statuses at a glance (fixed, known affected, not affected, under investigation) and pivot straight to the related vulnerability.

    πŸ”Ž vulnerability.circl.lu/vex/
    🧩 API: vulnerability.circl.lu/api/vex/

    #VEX #VulnerabilityLookup #CVE #GCVE #OpenSource #CyberSecurity

  10. You can now browse VEX statements in Vulnerability-Lookup!

    The new VEX page lets you explore 220k+ vendor VEX records (Red Hat, Microsoft MSRC, more coming), filter by source, search by CVE ID or title, see product statuses at a glance (fixed, known affected, not affected, under investigation) and pivot straight to the related vulnerability.

    πŸ”Ž vulnerability.circl.lu/vex/
    🧩 API: vulnerability.circl.lu/api/vex/

    #VEX #VulnerabilityLookup #CVE #GCVE #OpenSource #CyberSecurity

  11. Vulnerability-Lookup 5.4.0 released! πŸš€

    Highlights:
    πŸ”Ž VEX enrichment from Red Hat CSAF VEX documents β€” new /api/vex endpoints, a VEX tab and a VEX badge on vulnerability pages
    πŸ” Per-user enable/disable of CNA publication
    πŸ“¬ Admin overview for KEV catalog e-mail subscriptions, richer digest e-mails
    πŸ› οΈ Feeder robustness fixes

    vulnerability-lookup.org/2026/

  12. Vulnerability-Lookup 5.4.0 released! πŸš€

    Highlights:
    πŸ”Ž VEX enrichment from Red Hat CSAF VEX documents β€” new /api/vex endpoints, a VEX tab and a VEX badge on vulnerability pages
    πŸ” Per-user enable/disable of CNA publication
    πŸ“¬ Admin overview for KEV catalog e-mail subscriptions, richer digest e-mails
    πŸ› οΈ Feeder robustness fixes

    vulnerability-lookup.org/2026/

    #VulnerabilityLookup #VEX #CSAF #CVE

  13. Vulnerability-Lookup 5.4.0 released! πŸš€

    Highlights:
    πŸ”Ž VEX enrichment from Red Hat CSAF VEX documents β€” new /api/vex endpoints, a VEX tab and a VEX badge on vulnerability pages
    πŸ” Per-user enable/disable of CNA publication
    πŸ“¬ Admin overview for KEV catalog e-mail subscriptions, richer digest e-mails
    πŸ› οΈ Feeder robustness fixes

    vulnerability-lookup.org/2026/

    #VulnerabilityLookup #VEX #CSAF #CVE

  14. Vulnerability-Lookup 5.4.0 released! πŸš€

    Highlights:
    πŸ”Ž VEX enrichment from Red Hat CSAF VEX documents β€” new /api/vex endpoints, a VEX tab and a VEX badge on vulnerability pages
    πŸ” Per-user enable/disable of CNA publication
    πŸ“¬ Admin overview for KEV catalog e-mail subscriptions, richer digest e-mails
    πŸ› οΈ Feeder robustness fixes

    vulnerability-lookup.org/2026/

    #VulnerabilityLookup #VEX #CSAF #CVE

  15. Vulnerability-Lookup 5.4.0 released! πŸš€

    Highlights:
    πŸ”Ž VEX enrichment from Red Hat CSAF VEX documents β€” new /api/vex endpoints, a VEX tab and a VEX badge on vulnerability pages
    πŸ” Per-user enable/disable of CNA publication
    πŸ“¬ Admin overview for KEV catalog e-mail subscriptions, richer digest e-mails
    πŸ› οΈ Feeder robustness fixes

    vulnerability-lookup.org/2026/

    #VulnerabilityLookup #VEX #CSAF #CVE

  16. Bon, ce matin j’ai jouΓ© avec la jolie Apfel (apfel.franzai.com/), la petite passerelle CLI qui expose le framework LLM de la 🍎 sous macOS.

    Comme pour le wrapper de virtualisation, j’adore ce genre de bidouille qui ouvre l’accΓ¨s aux ressources internes du systΓ¨me. C’est franchement cool Γ  voir tourner, et surtout il y a un avantage immΓ©diat : pas de tokens externes cramΓ©s, pas de donnΓ©es qui vadrouillent, tout reste sur mon Mac.

    Dans l’usage quotidien en revanche, on reste sur quelque chose d’à peu prΓ¨s aussi limitΓ© qu’une conversation actuelle avec Siri πŸ˜…

    Les traductions FR/IT sont parfois… crΓ©atives, et cΓ΄tΓ© assistant de dev Python, je ne l’ai pas trouvΓ© particuliΓ¨rement flamboyant.

    Mais Γ§a ouvre quand mΓͺme des possibilitΓ©s trΓ¨s sympas pour bricoler des raccourcis locaux sur macOS, Γ  condition de rΓ©ussir quelques tours de passe-passe pour ne pas se faire satelliser par les SystemLanguageModel.Guardrails d’Apple, qui ont le dΓ©clencheur franchement sensible dΓ¨s qu’on prononce β€œinfosec” ou β€œvulnΓ©rabilité” πŸ‘€ 😁

    LΓ  par exemple, je fais traiter les donnΓ©es d’une vulnΓ©rabilitΓ© via la trΓ¨s belle passerelle VulnMCP : github.com/vulnerability-looku

    #macOS #Apple #LLM #Apfel #MCP #FastMCP #VulnMCP
    #VulnerabilityLookup #brew

  17. Bon, ce matin j’ai jouΓ© avec la jolie Apfel (apfel.franzai.com/), la petite passerelle CLI qui expose le framework LLM de la 🍎 sous macOS.

    Comme pour le wrapper de virtualisation, j’adore ce genre de bidouille qui ouvre l’accΓ¨s aux ressources internes du systΓ¨me. C’est franchement cool Γ  voir tourner, et surtout il y a un avantage immΓ©diat : pas de tokens externes cramΓ©s, pas de donnΓ©es qui vadrouillent, tout reste sur mon Mac.

    Dans l’usage quotidien en revanche, on reste sur quelque chose d’à peu prΓ¨s aussi limitΓ© qu’une conversation actuelle avec Siri πŸ˜…

    Les traductions FR/IT sont parfois… crΓ©atives, et cΓ΄tΓ© assistant de dev Python, je ne l’ai pas trouvΓ© particuliΓ¨rement flamboyant.

    Mais Γ§a ouvre quand mΓͺme des possibilitΓ©s trΓ¨s sympas pour bricoler des raccourcis locaux sur macOS, Γ  condition de rΓ©ussir quelques tours de passe-passe pour ne pas se faire satelliser par les SystemLanguageModel.Guardrails d’Apple, qui ont le dΓ©clencheur franchement sensible dΓ¨s qu’on prononce β€œinfosec” ou β€œvulnΓ©rabilité” πŸ‘€ 😁

    LΓ  par exemple, je fais traiter les donnΓ©es d’une vulnΓ©rabilitΓ© via la trΓ¨s belle passerelle VulnMCP : github.com/vulnerability-looku

    #macOS #Apple #LLM #Apfel #MCP #FastMCP #VulnMCP
    #VulnerabilityLookup #brew

  18. Bon, ce matin j’ai jouΓ© avec la jolie Apfel (apfel.franzai.com/), la petite passerelle CLI qui expose le framework LLM de la 🍎 sous macOS.

    Comme pour le wrapper de virtualisation, j’adore ce genre de bidouille qui ouvre l’accΓ¨s aux ressources internes du systΓ¨me. C’est franchement cool Γ  voir tourner, et surtout il y a un avantage immΓ©diat : pas de tokens externes cramΓ©s, pas de donnΓ©es qui vadrouillent, tout reste sur mon Mac.

    Dans l’usage quotidien en revanche, on reste sur quelque chose d’à peu prΓ¨s aussi limitΓ© qu’une conversation actuelle avec Siri πŸ˜…

    Les traductions FR/IT sont parfois… crΓ©atives, et cΓ΄tΓ© assistant de dev Python, je ne l’ai pas trouvΓ© particuliΓ¨rement flamboyant.

    Mais Γ§a ouvre quand mΓͺme des possibilitΓ©s trΓ¨s sympas pour bricoler des raccourcis locaux sur macOS, Γ  condition de rΓ©ussir quelques tours de passe-passe pour ne pas se faire satelliser par les SystemLanguageModel.Guardrails d’Apple, qui ont le dΓ©clencheur franchement sensible dΓ¨s qu’on prononce β€œinfosec” ou β€œvulnΓ©rabilité” πŸ‘€ 😁

    LΓ  par exemple, je fais traiter les donnΓ©es d’une vulnΓ©rabilitΓ© via la trΓ¨s belle passerelle VulnMCP : github.com/vulnerability-looku

    #macOS #Apple #LLM #Apfel #MCP #FastMCP #VulnMCP
    #VulnerabilityLookup #brew

  19. Bon, ce matin j’ai jouΓ© avec la jolie Apfel (apfel.franzai.com/), la petite passerelle CLI qui expose le framework LLM de la 🍎 sous macOS.

    Comme pour le wrapper de virtualisation, j’adore ce genre de bidouille qui ouvre l’accΓ¨s aux ressources internes du systΓ¨me. C’est franchement cool Γ  voir tourner, et surtout il y a un avantage immΓ©diat : pas de tokens externes cramΓ©s, pas de donnΓ©es qui vadrouillent, tout reste sur mon Mac.

    Dans l’usage quotidien en revanche, on reste sur quelque chose d’à peu prΓ¨s aussi limitΓ© qu’une conversation actuelle avec Siri πŸ˜…

    Les traductions FR/IT sont parfois… crΓ©atives, et cΓ΄tΓ© assistant de dev Python, je ne l’ai pas trouvΓ© particuliΓ¨rement flamboyant.

    Mais Γ§a ouvre quand mΓͺme des possibilitΓ©s trΓ¨s sympas pour bricoler des raccourcis locaux sur macOS, Γ  condition de rΓ©ussir quelques tours de passe-passe pour ne pas se faire satelliser par les SystemLanguageModel.Guardrails d’Apple, qui ont le dΓ©clencheur franchement sensible dΓ¨s qu’on prononce β€œinfosec” ou β€œvulnΓ©rabilité” πŸ‘€ 😁

    LΓ  par exemple, je fais traiter les donnΓ©es d’une vulnΓ©rabilitΓ© via la trΓ¨s belle passerelle VulnMCP : github.com/vulnerability-looku

    #macOS #Apple #LLM #Apfel #MCP #FastMCP #VulnMCP
    #VulnerabilityLookup #brew

  20. Bon, ce matin j’ai jouΓ© avec la jolie Apfel (apfel.franzai.com/), la petite passerelle CLI qui expose le framework LLM de la 🍎 sous macOS.

    Comme pour le wrapper de virtualisation, j’adore ce genre de bidouille qui ouvre l’accΓ¨s aux ressources internes du systΓ¨me. C’est franchement cool Γ  voir tourner, et surtout il y a un avantage immΓ©diat : pas de tokens externes cramΓ©s, pas de donnΓ©es qui vadrouillent, tout reste sur mon Mac.

    Dans l’usage quotidien en revanche, on reste sur quelque chose d’à peu prΓ¨s aussi limitΓ© qu’une conversation actuelle avec Siri πŸ˜…

    Les traductions FR/IT sont parfois… crΓ©atives, et cΓ΄tΓ© assistant de dev Python, je ne l’ai pas trouvΓ© particuliΓ¨rement flamboyant.

    Mais Γ§a ouvre quand mΓͺme des possibilitΓ©s trΓ¨s sympas pour bricoler des raccourcis locaux sur macOS, Γ  condition de rΓ©ussir quelques tours de passe-passe pour ne pas se faire satelliser par les SystemLanguageModel.Guardrails d’Apple, qui ont le dΓ©clencheur franchement sensible dΓ¨s qu’on prononce β€œinfosec” ou β€œvulnΓ©rabilité” πŸ‘€ 😁

    LΓ  par exemple, je fais traiter les donnΓ©es d’une vulnΓ©rabilitΓ© via la trΓ¨s belle passerelle VulnMCP : github.com/vulnerability-looku

    #macOS #Apple #LLM #Apfel #MCP #FastMCP #VulnMCP
    #VulnerabilityLookup #brew

  21. VulnMCP is an MCP server built with FastMCP that provides AI clients, chat agents, and other automated systems with tools for vulnerability management. It offers modular "skills" that can be easily extended or integrated, enabling intelligent analysis and automated insights on software vulnerabilities.

    A new component in the galaxy of tooling of vulnerability-lookup.

    Thanks to @cedric who is becoming an orchestrator for many AI tools nowadays.

    #cve #gcve #vulnerability #vulnerabilitymanagement #opensource #ai #mcp #vulnerabilitylookup

    πŸ”— github.com/vulnerability-looku

  22. VulnMCP is an MCP server built with FastMCP that provides AI clients, chat agents, and other automated systems with tools for vulnerability management. It offers modular "skills" that can be easily extended or integrated, enabling intelligent analysis and automated insights on software vulnerabilities.

    A new component in the galaxy of tooling of vulnerability-lookup.

    Thanks to @cedric who is becoming an orchestrator for many AI tools nowadays.

    #cve #gcve #vulnerability #vulnerabilitymanagement #opensource #ai #mcp #vulnerabilitylookup

    πŸ”— github.com/vulnerability-looku

  23. πŸ“’ We’ve made some improvements to FediVuln (github.com/vulnerability-looku) – our tool for monitoring the Fediverse (sightings) and posting updates from our main Vulnerability-Lookup instance (vulnerability.circl.lu).

    Easily stay up-to-date with:

    - New vulnerabilities
    - Comments on existing vulnerabilities
    - New vulnerability bundles

    πŸ”” You can follow updates via the bot: @vulnerability_lookup

    #CyberSecurity #OpenSource #Fediverse #Vulnerability #Mastodon #VulnerabilityLookup

  24. πŸ“’ We’ve made some improvements to FediVuln (github.com/vulnerability-looku) – our tool for monitoring the Fediverse (sightings) and posting updates from our main Vulnerability-Lookup instance (vulnerability.circl.lu).

    Easily stay up-to-date with:

    - New vulnerabilities
    - Comments on existing vulnerabilities
    - New vulnerability bundles

    πŸ”” You can follow updates via the bot: @vulnerability_lookup

    #CyberSecurity #OpenSource #Fediverse #Vulnerability #Mastodon #VulnerabilityLookup

  25. Maybe some of you are not aware about the @enisa_eu Known Exploited Vulnerabilities Catalog. In any case, it is now available via Vulnerability-Lookup:

    vulnerability.circl.lu

    and with the API:
    vulnerability.circl.lu/api

    #KEV #Vulnerability #VulnerabilityLookup #OpenSource #ENISA

  26. Maybe some of you are not aware about the @enisa_eu Known Exploited Vulnerabilities Catalog. In any case, it is now available via Vulnerability-Lookup:

    vulnerability.circl.lu

    and with the API:
    vulnerability.circl.lu/api

    #KEV #Vulnerability #VulnerabilityLookup #OpenSource #ENISA

  27. Better late than never β€” we’ve just published the July Vulnerability Report.

    πŸ‘‰ vulnerability-lookup.org/2025/

    πŸ“Œ Key highlights:

    The most reported vulnerability this month is CVE-2025-53770, a critical flaw in #Microsoft SharePoint Enterprise Server 2016, with more than 400 sightings.

    Other high-impact issues include CVE-2025-5777 (#NetScaler ADC) and CVE-2025-25257 (#Fortinet #FortiWeb.

    #VulnerabilityLookup #CyberSecurity

  28. Better late than never β€” we’ve just published the July Vulnerability Report.

    πŸ‘‰ vulnerability-lookup.org/2025/

    πŸ“Œ Key highlights:

    The most reported vulnerability this month is CVE-2025-53770, a critical flaw in #Microsoft SharePoint Enterprise Server 2016, with more than 400 sightings.

    Other high-impact issues include CVE-2025-5777 (#NetScaler ADC) and CVE-2025-25257 (#Fortinet #FortiWeb.

    #VulnerabilityLookup #CyberSecurity

  29. Better late than never β€” we’ve just published the July Vulnerability Report.

    πŸ‘‰ vulnerability-lookup.org/2025/

    πŸ“Œ Key highlights:

    The most reported vulnerability this month is CVE-2025-53770, a critical flaw in #Microsoft SharePoint Enterprise Server 2016, with more than 400 sightings.

    Other high-impact issues include CVE-2025-5777 (#NetScaler ADC) and CVE-2025-25257 (#Fortinet #FortiWeb.

    #VulnerabilityLookup #CyberSecurity

  30. Better late than never β€” we’ve just published the July Vulnerability Report.

    πŸ‘‰ vulnerability-lookup.org/2025/

    πŸ“Œ Key highlights:

    The most reported vulnerability this month is CVE-2025-53770, a critical flaw in #Microsoft SharePoint Enterprise Server 2016, with more than 400 sightings.

    Other high-impact issues include CVE-2025-5777 (#NetScaler ADC) and CVE-2025-25257 (#Fortinet #FortiWeb.

    #VulnerabilityLookup #CyberSecurity