Black Lantern Security (BLSOPS)
Subscribe
Sign in
Home
Vulnerability Research
Detection Engineering
Products and Tools
Subscriber Requests
Archive
About
New
Top
Discussion
XSS and SQLi in Forecast® by Tideworks
Tideworks: CVE-2022-43112 & CVE-2022-43115: Forecast® (10.10.0.13153)
Sep 19
•
Jacob Holvick
Share this post
XSS and SQLi in Forecast® by Tideworks
blog.blacklanternsecurity.com
Copy link
Facebook
Email
Notes
Other
August 2023
Subdomain Enumeration Tool Face-off - 2023 Edition
Benchmarking the industry's top subdomain enumeration tools
Aug 7
•
TheTechromancer
Share this post
Subdomain Enumeration Tool Face-off - 2023 Edition
blog.blacklanternsecurity.com
Copy link
Facebook
Email
Notes
Other
BBOT - DEF CON Tool Release
BBOT 1.1.0 is here, and with it some exciting new developments!
Aug 7
•
TheTechromancer
1
Share this post
BBOT - DEF CON Tool Release
blog.blacklanternsecurity.com
Copy link
Facebook
Email
Notes
Other
July 2023
CVE-2023-3433 & CVE-2023-3434 - Jami Local Denial Of Service and Passing Strings to QRC URL Vulnerabilities
Public Disclosure of 2 Vulnerabilities found within GNU Jami (Multiple Versions)
Jul 14
•
Mason Corkern
Share this post
CVE-2023-3433 & CVE-2023-3434 - Jami Local Denial Of Service and Passing Strings to QRC URL Vulnerabilities
blog.blacklanternsecurity.com
Copy link
Facebook
Email
Notes
Other
March 2023
Introducing Badsecrets
A Library for Detecting Known or Weak Secrets Across Many Web Frameworks
Mar 20
•
Paul Mueller
Share this post
Introducing Badsecrets
blog.blacklanternsecurity.com
Copy link
Facebook
Email
Notes
Other
February 2023
The BLS-Bible
A knowledge-base management tool aimed to improve the lives of information security professionals in all walks of life.
Feb 8
•
Cody Martin
1
Share this post
The BLS-Bible
blog.blacklanternsecurity.com
Copy link
Facebook
Email
Notes
Other
January 2023
Introducing the ETM API: Enhanced Capabilities for Black Lantern Security's enter_the_matrix Tool
ETM API provides enhanced abilities for interacting directly on the data collected by ETM including the ability to produce actionable metrics for…
Jan 31
•
Cody Martin
Share this post
Introducing the ETM API: Enhanced Capabilities for Black Lantern Security's enter_the_matrix Tool
blog.blacklanternsecurity.com
Copy link
Facebook
Email
Notes
Other
October 2022
Yet Another Telerik UI Revisit
Introduction Several vulnerabilities with the popular ASP.NET web application add-on Telerik UI for ASP.NET AJAX have become a frequent source of…
Oct 19, 2022
•
Paul Mueller
Share this post
Yet Another Telerik UI Revisit
blog.blacklanternsecurity.com
Copy link
Facebook
Email
Notes
Other
Subdomain Enumeration Tool Face-off 2022
Comparing the industry's top subdomain enumeration tools
Oct 12, 2022
•
TheTechromancer
3
Share this post
Subdomain Enumeration Tool Face-off 2022
blog.blacklanternsecurity.com
Copy link
Facebook
Email
Notes
Other
Mapping Windows Audit Log Settings to MITRE Data Sources for Rabobank-CDC DeTT&CT
Use the DeTT&CT framework to assess TTP coverage, perform gap analysis, and prioritize detection engineering efforts
Oct 5, 2022
•
Philip Hartlieb
,
Adeem Mawani
, and
Brian O'Hara
1
Share this post
Mapping Windows Audit Log Settings to MITRE Data Sources for Rabobank-CDC DeTT&CT
blog.blacklanternsecurity.com
Copy link
Facebook
Email
Notes
Other
1
August 2022
BBOT
Recursive OSINT Machine
Aug 19, 2022
•
TheTechromancer
1
Share this post
BBOT
blog.blacklanternsecurity.com
Copy link
Facebook
Email
Notes
Other
Privileged Directory Traversal in Brocade Fabric OS
Brocade: CVE-2021-27798: Fabric OS (Multiple Versions)
Aug 1, 2022
•
Cody Martin
1
Share this post
Privileged Directory Traversal in Brocade Fabric OS
blog.blacklanternsecurity.com
Copy link
Facebook
Email
Notes
Other
This site requires JavaScript to run correctly. Please
turn on JavaScript
or unblock scripts