GreyNoise @greynoise.io · 9hAt The Edge Clear: September 21 – 28, 2026 An adversary tried Citrix NetScaler CVE-2026-88771 against a GreyNoise Swarm participant sensor more than three days before public disclosure. 🔗 www.greynoise.io/resources/at... 031
GreyNoise @greynoise.io · 29/09/2026A timeline of Citrix NetScaler CVE-2026-88771, from the CVE reservation on Sep 10 to public disclosure on Sep 27, including the exploitation attempts GreyNoise observed on Sep 24. 🔗 Full analysis: www.greynoise.io/blog/swarmin... 094
GreyNoise @greynoise.io · 23/09/2026At The Edge Clear: September 14 – 21, 2026 This week adversaries escalated attempts against flaws whose patches have been available for years. Customers get the full weekly brief. Our public At The Edge one-pager is attached + 🔗 www.greynoise.io/resources/at... 022
GreyNoise @greynoise.io · 23/09/2026Welcome to the team 💪 "With the addition of these new leaders to GreyNoise, we are deepening our commitment to protecting the national security missions of the United States and our allies." Read the full announcement: www.greynoise.io/press/greyno... 010
GreyNoise @greynoise.io · 16/09/2026At The Edge Clear: September 8 – 14, 2026 Two CISA known-exploited remote code execution flaws in the AI application platform Langflow turned up this week inside ordinary commodity crawling. Customers get the full weekly brief. Our public At The Edge one-pager: www.greynoise.io/resources/at... 011
GreyNoise @greynoise.io · 11/09/2026If you missed it: 395 organizations compromised across 48 countries. Hundreds of AI agents. One campaign against PaperCut NG/MF. We mapped the attack flow below⬇️ Read Agents Gone Wild: www.greynoise.io/blog/ai-orch... 032
GreyNoise @greynoise.io · 10/09/2026The highest-volume malicious activity GreyNoise observed this week was a request for a file. Environment files, cloud configuration and repository configuration are all returned by a correctly functioning web server to anyone who asks for the right path. www.greynoise.io/resources/at... 000
GreyNoise @greynoise.io · 02/09/2026This week exploitation attempts arrived in same-day cohorts across unrelated flaws. Customers get the full weekly brief. Our public At The Edge one-pager is attached + 🔗 www.greynoise.io/resources/at... 030
GreyNoise @greynoise.io · 01/09/2026Great Day 1 at Fal.Con 2026 ✅ Lots of good conversations on the floor. If you're here this week, come find us at Booth #1757. 000
GreyNoise @greynoise.io · 26/08/2026Most of the Log4Shell probing GreyNoise observed this week came from a single commercial scanning service. Our public At The Edge one-pager is attached. Customers get the full weekly brief. 🔗 www.greynoise.io/resources/at... 021
GreyNoise @greynoise.io · 19/08/2026Four findings this period, one shared exposure pattern: each involves a surface an organization puts on the internet deliberately and then rarely inventories completely. 🔗https://www.greynoise.io/resources/at-the-edge-clear-081726 121
GreyNoise @greynoise.io · 17/08/2026The new GreyNoise Visualizer just dropped 💥 We redesigned the GreyNoise Visualizer to match how defenders actually work. Log in and hit "Try the New Visualizer" to explore it today. 🔗https://www.greynoise.io/blog/new-way-to-navigate-greynoise 151
GreyNoise @greynoise.io · 14/08/2026NoiseFest 2026 is a wrap. What a ride 🚎 🏵️✌️ Thank you to everyone who came out last week and made it such an incredible night. And a huge thank you to our wonderful sponsors: Sublime Security, Mallory, StepSecurity, and ProjectDiscovery. See you next year for NoiseFest 2027..... 020
GreyNoise @greynoise.io · 12/08/2026Four findings this period, one shared exposure pattern: each involves a system that holds credentials or files for a secondary environment, so a successful attempt against one would likely open the next without a second exploit. 🔗https://www.greynoise.io/resources/at-the-edge-clear-081026 000
GreyNoise @greynoise.io · 22/07/2026This week in GreyNoise data, rented crawlers probed for credentials and configuration secrets across widely deployed web software. Customers get the full weekly brief. Our public At The Edge Clear one-pager: www.greynoise.io/resources/at... 010
GreyNoise @greynoise.io · 21/07/2026New in the GreyNoise Visualizer: the Intelligence Dashboard. Build one saved view of the threats you actually track, then watch it stay current on its own. Read the launch blog: greynoise.io/blog/intelli... 010
GreyNoise @greynoise.io · 13/07/2026The Threat Brief Library is now live in the GreyNoise Visualizer! Browse, search, filter, and download weekly At The Edge briefs, Executive Situation Reports, and more. All built on primary-source data from our global sensor network. Check it out: www.greynoise.io/blog/threat-... 010
GreyNoise @greynoise.io · 08/07/2026This week a long-dormant Palo Alto flaw came back to life in GreyNoise data. Separately, two coordinated hosting fleets ran the week's highest-volume web exploitation, roughly 7.5M connection attempts. 🔗https://www.greynoise.io/resources/at-the-edge-clear-070626 020
GreyNoise @greynoise.io · 24/06/2026Four things that caught our eye at the edge this week: www.greynoise.io/resources/at... 020
GreyNoise @greynoise.io · 18/06/2026Three things that caught our eye at the edge this week: - One host mapped the enterprise edge. - A pair ran a Hikvision camera RCE (CISA KEV) on shared tooling. - VPN logins stayed under steady pressure. This week's At The Edge Clear 👉 www.greynoise.io/resources/at... 000
GreyNoise @greynoise.io · 16/06/2026We're in London tomorrow for CrowdStrike #CrowdTour2026. If you're attending our team would love to connect! Schedule some time to meet with us: info.greynoise.io/crowdtour-20... #CyberSecurity #GreyNoise #ThreatIntel 010
GreyNoise @greynoise.io · 12/06/2026GreyNoise At The Edge Intel Brief (June 1-8, 2026) This week attackers went after the front door of remote access — RDP, SSL VPN, router management — not new CVEs. 🔗 www.greynoise.io/resources/at... 010
GreyNoise @greynoise.io · 29/05/2026The week's signal: a long-running MikroTik RouterOS brute-force operation (VPSVAULT, AS215925) reversed a multi-week decline — adding a second node and climbing back to ~1.9M sessions against the management API. Rented infrastructure, inventorying the edge. 🔗 www.greynoise.io/resources/at... 010
GreyNoise @greynoise.io · 27/05/2026We're in Toronto for CrowdStrike #CrowdTour2026 tomorrow, May 28th! Attending the event or local to the area? We'd love to connect. Book time with our team: info.greynoise.io/crowdtour-20... 000
GreyNoise @greynoise.io · 19/05/2026The mission: make sure no attack works twice. 🚀 We're hiring a Detection Engineer and a Federal Customer Success Manager to help us get there. Remote-friendly, high-impact, great benefits. Sound like you? 👇 www.greynoise.io/careers 001
GreyNoise @greynoise.io · 30/04/2026Today's the perfect day for a matinee double feature: GreyNoise University LIVE: www.greynoise.io/events/greyn... The Invisible Army: What 4 Billion Sessions Reveal About Residential Proxy Abuse Webinar: info.greynoise.io/webinar/invi... 000
GreyNoise @greynoise.io · 29/04/2026Introducing Project Swarm: a research initiative to defend the network edge and we're inviting you to join. Deploy a sensor on your infrastructure, capture real attacker traffic + compare what's hitting you to the GreyNoise global baseline. Join today! 🐝 120
GreyNoise @greynoise.io · 01/04/2026GreyNoise is headed to 🇸🇪 Stockholm for CrowdStrike #CrowdTour2026 on 🗓️ April 15th. Attending the event or local to the area? We’d love to connect. 🔗 Book a dedicated time to meet with our team here: lnkd.in/e4_FA-7h #CyberSecurity #CrowdStrike #GreyNoise #ThreatIntel #Stockholm 000
GreyNoise @greynoise.io · 31/03/2026NEW: GreyNoise At The Edge Intel Brief (March 23-30) 187,998,900 sessions. 100 top source IPs. Daily volumes surged 4x mid-week as at least 4 new scanning operations activated simultaneously. Here's what we found: 🔗 www.greynoise.io/resources/at... 000
GreyNoise @greynoise.io · 26/03/2026GreyNoise is proud to be sponsoring the CrowdStrike CrowdTour across 8 cities! 🌏 We’re excited to highlight how our integration with Falcon Next-Gen SIEM helps SOC teams stop chasing ghosts and start catching real threats. 👇Book a meeting with us here: info.greynoise.io/crowdtour-20... 022
GreyNoise @greynoise.io · 25/03/2026Last week, half of all new scanning IPs observed by GreyNoise geolocated to Hong Kong. A quarter-million never completed a TCP handshake. The ones that did were scanning MySQL, SSH, SMB, and RDP across 20+ countries. One of these is the signal. The other is noise. www.greynoise.io/blog/ghost-f... 001
GreyNoise @greynoise.io · 24/03/2026NEW: GreyNoise At The Edge Intel Brief (Mar 16–23) 200,886,675 sessions. 101 unique source IPs. Here's what we found: www.greynoise.io/resources/at... 000
GreyNoise @greynoise.io · 19/03/2026New GreyNoise At The Edge brief: The internet's scanning infrastructure is reorganizing. UCLOUD (HK) surged +578% to become the #1 scanning ASN, now 15.6% of all observed traffic. Western providers declining simultaneously. 301.8M sessions. 439K IPs. Here's what we found. 100
GreyNoise @greynoise.io · 11/03/2026Hey London! We are closing down day 1 at #ecrimecongress today + cant wait to see you tomorrow! If you're around, say hi to the team, watch a demo, and grab some great swag! 🔥 000
GreyNoise @greynoise.io · 04/03/2026Here's a taste of what GreyNoise customers got in this week's At The Edge intelligence brief. 268M sessions. 540K unique IPs. Four findings that matter. Full brief: IOCs, attribution, recommendations. 🔗 www.greynoise.io/resources/at... greynoise.io/contact 022
GreyNoise @greynoise.io · 18/02/2026This week's At the Edge: CLEAR is out — a preview of the intel brief GreyNoise customers get every week. 🔗 www.greynoise.io/resources/at... That's just the preview. greynoise.io/contact #ThreatIntel #CyberSecurity #GreyNoise 010
GreyNoise @greynoise.io · 11/02/2026Three campaigns. One has Cobalt Strike ready. RDP nearly quadrupled. A botnet picked up a new CVE. And someone built a Kubernetes cluster just to exploit n8n. A preview of what GreyNoise customers get every week. Full brief has the IOCs, attribution, and analysis. 000
GreyNoise @greynoise.io · 04/02/2026Check out this month's NoiseLetter for the latest on Ghostie + all things GreyNoise! 🗞️ www.greynoise.io/resources/no... 000
GreyNoise @greynoise.io · 27/01/2026Three campaigns. One fingerprint. React RCE, VPN brute forcing, and router scanning—all linked to the same infrastructure.→ 1.7M React attacks → 506K VPN targets → 3 IPs behind 1.8M router attempts This week's At The Edge preview: greynoise.io/contact 052
GreyNoise @greynoise.io · 13/01/2026Check out @hrbrmstr.dev today on @huntress.com's Tradecraft Tuesday at 1pm ET to chat about all things #React2Shell. 🤘 🔗 www.huntress.com/upcoming-web... 000
GreyNoise @greynoise.io · 12/01/2026🚨 We are hiring across sales, alliances, and customer experience for our US + EMEA teams 🌍 See a role you'd crush? We would love to hear from you! 👉 Apply now: greynoise.io/careers #hiring #cybersecuritycareers 041
GreyNoise @greynoise.io · 31/12/2025New year, new opportunities? Check out our current openings for a new start in the new year! 🪩🎉 🔗 greynoise.io/careers 042
GreyNoise @greynoise.io · 11/12/2025Just in: Watch #React2Shell exploitation unfold over time in the map below (geo of source IPs attempting to exploit CVE-2025-55182). #GreyNoise #ThreatIntel #CVE202555182 #Nextjs #Cybersecurity 084
GreyNoise @greynoise.io · 09/12/2025Going LIVE in 30 to talk all things React2Shell with the Storm ⚡️ Watch crew! www.linkedin.com/events/storm... 010
GreyNoise @greynoise.io · 09/12/2025👀 React2Shell attacker profiles fresh from GreyNoise telemetry: info.greynoise.io/hubfs/PDFs-S..., don't miss the latest contribution from GreyNoise Labs on React2Shell: www.labs.greynoise.io/grimoire/202... #React2Shell #Nextjs #CVE202555182 #CVE #GreyNoise 0106
GreyNoise @greynoise.io · 17/11/2025Hey Canada, we're packed up + headed to #SuriCon25! 🇨🇦 Check out our booth and don't miss @ntkramer.bsky.social + @iagox86.bsky.social talk ...and if you happen to run into them or @hrbrmstr.dev around the con, they might have something special for you 🥧... 041
GreyNoise @greynoise.io · 13/11/2025🚨 GreyNoise for @microsoft.com Sentinel is here! Filter out internet background noise automatically. Focus on real threats. #MicrosoftSentinel #AppAssure 🔗 techcommunity.microsoft.com/blog/Microso... 031
GreyNoise @greynoise.io · 06/11/2025We’ve launched At The Edge, a weekly brief for GreyNoise customers highlighting shifts in attacker behavior seen across the Global Observation Grid (GOG). Human-led analysis that turns internet noise into insight defenders can act on. #ThreatIntel #GreyNoise 031
GreyNoise @greynoise.io · 16/10/2025GreyNoise's Threat Intelligence Map visualizes network events across the internet, scans, probes, attacks + connects them to geopolitical context. Real-time intelligence, that looks pretty cool too 😎 🗺️ threat-map.greynoise.io 030