DEV Community

kozhevniko profile picture

kozhevniko

Stay curious, keep researching.

Joined Joined on 
What an attacker gains from CVE-2026-7273 on a Zyxel GS1900 switch

What an attacker gains from CVE-2026-7273 on a Zyxel GS1900 switch

Comments
4 min read

Want to connect with kozhevniko?

Create an account to connect with kozhevniko. You can also sign in below to proceed if you already have an account.

Already have an account? Sign in
Hardening Beyond 7.1.1: Reducing the Surfaces Click2Shell Relies On

Hardening Beyond 7.1.1: Reducing the Surfaces Click2Shell Relies On

Comments
2 min read
Cache Poisoning and Zone Injection: The Integrity Risks in the September 2026 BIND Advisory

Cache Poisoning and Zone Injection: The Integrity Risks in the September 2026 BIND Advisory

Comments
3 min read
Triaging Codex Exposure: What a Count of 164 Does and Does Not Tell You

Triaging Codex Exposure: What a Count of 164 Does and Does Not Tell You

Comments
3 min read
The Artifactory Token Chain: Why Build Repositories Are a Credential Store

The Artifactory Token Chain: Why Build Repositories Are a Credential Store

Comments
4 min read
API Security: The Attack Surface That Grows Without a Firewall

API Security: The Attack Surface That Grows Without a Firewall

Comments
2 min read
A Defender's Checklist for CVE-2026-81657 in IBM Guardium Data Protection

A Defender's Checklist for CVE-2026-81657 in IBM Guardium Data Protection

Comments
2 min read
Measuring exposed industrial control panels on the public internet

Measuring exposed industrial control panels on the public internet

Comments
5 min read
When an AI Gateway Becomes the Credential Store: Securing MCP Endpoints After CVE-2026-59822

When an AI Gateway Becomes the Credential Store: Securing MCP Endpoints After CVE-2026-59822

2
Comments 1
3 min read
The Management Plane Is the Attack Plane: What Three Clusters on One Cisco FMC Tell Defenders

The Management Plane Is the Attack Plane: What Three Clusters on One Cisco FMC Tell Defenders

Comments
4 min read
Water utility PLC attacks: the control layer that was never designed to authenticate

Water utility PLC attacks: the control layer that was never designed to authenticate

Comments
3 min read
How a Pre-Authentication Stack Overflow in Check Point Log Servers Leads to Root Code Execution

How a Pre-Authentication Stack Overflow in Check Point Log Servers Leads to Root Code Execution

Comments
2 min read
Gunra Ransomware: What the Joint Advisory Says About Edge Devices, MFA Bypass and Recovery

Gunra Ransomware: What the Joint Advisory Says About Edge Devices, MFA Bypass and Recovery

Comments
4 min read
Print Servers and Artifact Repositories: Measuring Two Overlooked Attack Surfaces

Print Servers and Artifact Repositories: Measuring Two Overlooked Attack Surfaces

Comments
3 min read
ZcopyReaper: A Local Privilege Escalation in the Linux Kernel RDS Path

ZcopyReaper: A Local Privilege Escalation in the Linux Kernel RDS Path

Comments
3 min read
From KEV to Exposure: Mapping the September 2026 Batch to Measurable Services

From KEV to Exposure: Mapping the September 2026 Batch to Measurable Services

Comments
4 min read
CVE-2026-76443: Injection Flaws in Cisco Secure Email Gateway Management Interfaces

CVE-2026-76443: Injection Flaws in Cisco Secure Email Gateway Management Interfaces

Comments
2 min read
Why a Single Email Is Enough to Root a Cisco Secure Email Gateway

Why a Single Email Is Enough to Root a Cisco Secure Email Gateway

Comments
4 min read
Rotating Secrets After an AI-Tooling Compromise: A Checklist for the September 2026 KEV Wave

Rotating Secrets After an AI-Tooling Compromise: A Checklist for the September 2026 KEV Wave

Comments
3 min read
Eight Million RouterOS Devices: Sizing the MikroTik Chained-Exploitation Problem from Measurement Data

Eight Million RouterOS Devices: Sizing the MikroTik Chained-Exploitation Problem from Measurement Data

Comments
3 min read
Defending Cisco Secure Email Gateway Against CVE-2026-76442: What to Check Before and After the Patch

Defending Cisco Secure Email Gateway Against CVE-2026-76442: What to Check Before and After the Patch

Comments 1
3 min read
The AI Gateway Becomes a Target: Measuring LiteLLM and Kestra Exposure

The AI Gateway Becomes a Target: Measuring LiteLLM and Kestra Exposure

Comments
3 min read
Using CISA KEV Deadlines as a Triage Clock for Vulnerability Backlogs

Using CISA KEV Deadlines as a Triage Clock for Vulnerability Backlogs

Comments
2 min read
Exposed Industrial Controllers: What ZoomEye Data Says About Internet-Facing PLCs

Exposed Industrial Controllers: What ZoomEye Data Says About Internet-Facing PLCs

Comments
3 min read
Proxmox VE Exposure: Why the Port 8006 Count Is Not the Number That Matters

Proxmox VE Exposure: Why the Port 8006 Count Is Not the Number That Matters

Comments
4 min read
Edge Appliances Are Now the Control Plane: What the SonicWall SMA1000 Zero-Day Chain Teaches Defenders

Edge Appliances Are Now the Control Plane: What the SonicWall SMA1000 Zero-Day Chain Teaches Defenders

Comments
3 min read
CVE-2026-76423: The Cisco ISE REST API Flaw That Hands Out Admin Without a Password

CVE-2026-76423: The Cisco ISE REST API Flaw That Hands Out Admin Without a Password

Comments
4 min read
Prioritizing Cisco's September Firewall Fixes: A Risk-Based Reading of 18 CVEs

Prioritizing Cisco's September Firewall Fixes: A Risk-Based Reading of 18 CVEs

Comments
2 min read
Jenkins Controller Compromise Is a Supply Chain Event: Lessons from 20 Plugin Flaws

Jenkins Controller Compromise Is a Supply Chain Event: Lessons from 20 Plugin Flaws

Comments
4 min read
Exposure Is Not a One-Time Finding: Monitoring Industrial Protocol Reachability After the CISA PLC Alert

Exposure Is Not a One-Time Finding: Monitoring Industrial Protocol Reachability After the CISA PLC Alert

Comments
4 min read
3,988 Hypervisor Consoles on the Open Internet: What ZoomEye Shows About Exposed Proxmox VE Management

3,988 Hypervisor Consoles on the Open Internet: What ZoomEye Shows About Exposed Proxmox VE Management

Comments
3 min read
The Bug That Sat Fixed for Three Years: Proxmox VE's Authentication Bypass and the Cost of Unsupported Hypervisors

The Bug That Sat Fixed for Three Years: Proxmox VE's Authentication Bypass and the Cost of Unsupported Hypervisors

Comments
3 min read
Print Servers Are Still Domain-Connected Servers: Lessons from the PaperCut Pre-Authentication RCE Chain

Print Servers Are Still Domain-Connected Servers: Lessons from the PaperCut Pre-Authentication RCE Chain

Comments
3 min read
Identity-First Remote Access for OT Networks: Replacing Flat VPNs Without Stopping the Plant

Identity-First Remote Access for OT Networks: Replacing Flat VPNs Without Stopping the Plant

Comments
3 min read
Citrix NetScaler SAML Authentication Bypass: Why CVE-2026-19490 Turns a Gateway Into an Open Door

Citrix NetScaler SAML Authentication Bypass: Why CVE-2026-19490 Turns a Gateway Into an Open Door

Comments
4 min read
Why a 2016 KGUARD DVR service is still handing out root to strangers

Why a 2016 KGUARD DVR service is still handing out root to strangers

Comments
3 min read
17,877 Artifact Repositories on the Internet: Mapping the JFrog Artifactory Surface Behind CVE-2026-82329

17,877 Artifact Repositories on the Internet: Mapping the JFrog Artifactory Surface Behind CVE-2026-82329

Comments
4 min read
Self-Hosted CI Runners Are Shared Secrets: Threat Modelling Your Build Infrastructure

Self-Hosted CI Runners Are Shared Secrets: Threat Modelling Your Build Infrastructure

Comments
3 min read
161,764 Assets on Port 102: Sizing the Industrial Control Surface That AA26-231A Described

161,764 Assets on Port 102: Sizing the Industrial Control Surface That AA26-231A Described

Comments
4 min read
1.8 Million Reachable MongoDB Services: Reading Exposure Numbers Without Overreading Them

1.8 Million Reachable MongoDB Services: Reading Exposure Numbers Without Overreading Them

Comments
3 min read
Two Ways Into mySCADA myPRO Manager: A Privileged API and an Open SMS Gateway

Two Ways Into mySCADA myPRO Manager: A Privileged API and an Open SMS Gateway

Comments
2 min read
CVE-2026-67277 and the MikroTrick Chain: When Two Flaws Become One Attack

CVE-2026-67277 and the MikroTrick Chain: When Two Flaws Become One Attack

Comments
3 min read
239,093 NetScaler Deployments in View: Measuring the Citrix Edge After CVE-2026-19490

239,093 NetScaler Deployments in View: Measuring the Citrix Edge After CVE-2026-19490

Comments
4 min read
Starting My Developer Journey on DEV.to

Starting My Developer Journey on DEV.to

Comments
1 min read
loading...