Otto Support - Testing MCP Servers
Jun 3, 2026
By Michael Cheng
Looting UniFi Controllers: Detecting and Weaponizing CVE-2026-22557
May 29, 2026
By Jon Williams
Sparkplug B Protocol Fuzzing with AI Assistance
May 26, 2026
By David Colón, Shad Malloy
Detecting CVE-2026-0265 at Scale: PAN-OS CAS Authentication Bypass
May 22, 2026
By Jon Williams, John Untz, Bishop Fox Researchers
CVE-2026-27886: Unauthenticated Boolean-Oracle Exfiltration of Administrator Secrets in Strapi
May 22, 2026
By Nate Robb
Otto Support - Logging and Visibility in MCP Servers
May 14, 2026
By Derek Rush
Otto-Support - Supply Chain Risks in MCP Servers
May 13, 2026
By Derek Rush
Otto Support - The Confused Deputy
May 8, 2026
By Derek Rush
Otto Support - SSRF and Token Passthrough with MCP
May 7, 2026
By Derek Rush
CVE-2026-42208: Pre-Authentication SQL Injection in LiteLLM Proxy
May 6, 2026
By Nate Robb
Otto Support - Excessive Agency and Tool Privileges
May 6, 2026
By Derek Rush
Otto Support – An MCP, Agentic-AI Security Challenge
Apr 23, 2026
By Derek Rush
Taking Maestro in Stride: AI Threat Modeling Frameworks
Apr 16, 2026
By Shad Malloy
Inside Cirro: Attack Paths, Cloud Graphs, and Extensible Schemas
Apr 9, 2026
By Leron Gray
API Authentication Bypass in FortiClient EMS 7.4.5-7.4.6–CVE-2026-35616
Apr 7, 2026
By John Untz
Delivered by Trust: What the Axios Supply Chain Attack Means for Security Leaders
Apr 6, 2026
By Dillon Sparks
strongSwan CVE-2026-25075: Integer Underflow in VPN Authentication
Mar 26, 2026
By Jon Williams
Pre-Authentication SQL Injection in FortiClient EMS 7.4.4 - CVE-2026-21643
Mar 9, 2026
By John Untz
Beyond Electron: Attacking Alternative Desktop Application Frameworks
Mar 3, 2026
By Carlos Yanez
The Total Cost of AI Ownership: The Costs Not on Your Budget Sheet
Jan 13, 2026
By Kelly Albrink
GenAI DevOps: More Code, More Problems
Dec 30, 2025
By Derek Rush
MITRE AADAPT Framework as a Red Team Roadmap
Dec 17, 2025
By Bishop Fox
Arista NextGen Firewall XSS to RCE Chain
Dec 4, 2025
By Jon Williams, Ronan Kervella, Bishop Fox Researchers
Fortinet FortiWeb Authentication Bypass – CVE-2025-64446
Nov 19, 2025
By Jon Williams, John Untz
This site uses cookies to provide you with a great user experience. By continuing to use our website, you consent to the use of cookies. To find out more about the cookies we use, please see our Privacy Policy.