Skip to content

Blog

The Art of Keytab Files

A keytab file is a file containing pairs of Kerberos principals and encrypted keys. These files are used to authenticate a principal on a network. Kerberos is a network authentication protocol that allows individuals communicating over a non-secure network to prove their identity to one another in a secure manner. Brief Overview of Keytab Files… Read More »The Art of Keytab Files

Critical CVEs and Active Threats: IBM, ALEOS, JetBrain & More

Critical CVEs and Active Threats: IBM, ALEOS, JetBrain & More

During the week spanning December 04 to 09, the FireCompass research team uncovered a substantial number of Common Vulnerabilities and Exposures (CVEs) marked as high severity. Notably, ransomware, botnets, and various threat actors were causing significant disruptions. Among the identified CVEs were vulnerabilities found in widely-used commercial products across various industries. Additionally, new and familiar… Read More »Critical CVEs and Active Threats: IBM, ALEOS, JetBrain & More

Securing Your Code: Unraveling the Secrets of Race Condition Vulnerabilities

Securing Your Code: Unraveling the Secrets of Race Condition Vulnerabilities

Race conditions, a critical vulnerability, arise when multiple processes or threads execute concurrently within a software system. This blog aims to provide a comprehensive understanding of race conditions and effective prevention strategies, accompanied by practical examples. Misconception – Is it commonly believed that Race Condition Bugs primarily result in Denial of Service (DoS)? Contrary to… Read More »Securing Your Code: Unraveling the Secrets of Race Condition Vulnerabilities

Critical CVEs and Active Threats: OwnCloud, Apache, SolarWinds, Qlik Sense & More

Critical CVEs and Active Threats: OwnCloud, Apache, SolarWinds, Qlik Sense & More

This week from November 27 to December 02, Firecompass’s research team identified a huge number of CVEs that are high in severity and ransomware, botnets, and threat actors creating havoc. Some of the CVEs identified are of popular commercial products used by variants of industries and somenew & well known malwares targeting industries for this… Read More »Critical CVEs and Active Threats: OwnCloud, Apache, SolarWinds, Qlik Sense & More