ONYPHE
banner
onyphe.io
ONYPHE
@onyphe.io
Provider of Attack Surface Discovery (ASD), Attack Surface Management (ASM) and CTI solutions. Scanning at Internet-scale since 2017 - contact at onyphe dot io
📣 We have added a new #vulnerability detection to our #ASM #AttackSurfaceManagement solution for #Ivanti product:

CVE-2025-4427+CVE-2025-4428 unauth RCE

search.onyphe.io/search?q=cat...

Thanks to watchTowr for detection method.
May 16, 2025 at 10:08 AM
The recovery continues, but things are not yet back to normal
April 29, 2025 at 4:54 AM
Things are not yet getting better in Spain and Portugal. General downward trend and some visible instability in the remaining networks that are reachable.

#PowerOutage
April 28, 2025 at 6:47 PM
The electrical power outage in Spain and Portugal as seen from the Internet (France included for reference)
April 28, 2025 at 4:03 PM
💥 Great news 💥

#ASD #AttackSurfaceDiscovery APIs are on their way to general availability.

It will never be as easy to create an asset inventory for any organization attack surface #EASM

Backed by 10th of billions of informations we collect.
March 1, 2025 at 5:37 PM
📣 We have added a new #vulnerability detection to our #ASM #AttackSurfaceManagement solution for #PaloAltoNetworks PA product:

CVE-2025-0108: authentication bypass on management interface

search.onyphe.io/search?q=cat...

Thanks to @assetnote.io for having shared the detection method.
February 14, 2025 at 9:16 AM
🎉 Retrospective 2024 and Roadmap 2025

👉 Over the last 12 months, we massively increased our visibility of Internet exposed assets. Until now, we focused on #ASM, but this year we will improve our automatic #ASD and expand into the #CTI segment.

Read more: search.onyphe.io/docs/write-u...
January 31, 2025 at 2:22 PM
And for the previous report, written in 2022:

www.greynoise.io/blog/new-sen...

Many thanks to @hrbrmstr.dev on X for this study.
January 21, 2025 at 1:21 PM
📣 We have added a new #vulnerability detection to our #ASM #AttackSurfaceManagement solution for #Fortinet FortiGate product:

CVE-2024-55591: unauthenticated remote issue allows to gain super-admin privileges

search.onyphe.io/search?q=cat...

Thanks to @WatchTowr for sharing detection method.
January 17, 2025 at 5:43 PM
📣 We have added a new #vulnerability detection to our #ASM #AttackSurfaceManagement solution for #SimpleHelp SimpleHelp product:

CVE-2024-57727: sensitive information disclosure caused by path traversal vulnerability

search.onyphe.io/search?q=cat...
January 17, 2025 at 3:13 PM
Just starting to scan #IPv6 at application layer and already found a compromised device running a #MeshCentral #C2 #Panel
January 12, 2025 at 3:47 PM
The Great #Honeypot of China in one picture:
December 21, 2024 at 9:01 AM
📣 We have added a new #vulnerability detection to our #ASM #AttackSurfaceManagement solution for #Mitel MiCollab product:

CVE-2024-35286: unauthenticated SQL injection on login page
CVE-2024-41713: unauthenticated arbitrary file read

www.onyphe.io/search?q=cat...
December 6, 2024 at 9:58 AM
📣 We have added a new #vulnerability detection to our #ASM #AttackSurfaceManagement solution for #PaloAltoNetworks PA product:

CVE-2024-0012: authentication bypass on mgmt interface
CVE-2024-9474: authenticated (bypassed) RCE on mgmt interface

www.onyphe.io/search?q=cat...
November 19, 2024 at 4:46 PM
Another day, another vuln. #JetBrains #TeamCity suffers from a critical unauth remote code execution flaw.

600+ unique IP vulnerable.

#CVE_2024_23917 #CVE202423917

#asm #iav #asd #attacksurfacemanagement
February 7, 2024 at 3:43 PM
"Data Breach Notifications" #citrixbleed

#CVE20234966 #CVE_2023_4966 #citrix is exploited by threat actors.

#iav #asm #attacksurfacemanagement #attacksurface

Still ~1.9K vulnerable IPs.

apps.web.maine.gov/online/aevie...
December 21, 2023 at 4:12 PM
"Imperva Detects Undocumented 8220 Gang Activities"

#CVE202014882 #CVE_2020_14882 #oracle #weblogic is exploited by threat actors.

Still 86 unique vulnerable IPs exposed.

#iav #asm #attacksurfacemanagement #attacksurface

Source: www.imperva.com/blog/imperva...
December 19, 2023 at 2:58 PM
"LockBit 3.0 #Ransomware Affiliates #Exploit #CVE-2023-4966 Citrix Bleed Vulnerability"

#CVE20234966 #CVE_2023_4966 #citrixbleed is exploited by threat actors.

Still 2.1K unique vulnerable IPs exposed.

#iav #asm #attacksurfacemanagement #attacksurface

Source: www.cisa.gov/news-events/...
December 15, 2023 at 7:11 AM
"Russian Foreign Intelligence Service (SVR) Exploiting #JetBrains #TeamCity #CVE Globally"

#CVE-2023-42793 #CVE202342793 is exploited by threat actors.

Still 800 unique vulnerable IPs exposed.

#iav #asm #attacksurfacemanagement

Source: www.cisa.gov/news-events/...
December 14, 2023 at 8:21 AM