ONYPHE @onyphe.io · 04/02/2026📣 Just added 400 new ports to scan 👀 Total: 3,000+ ports - weekly refresh #ASM #Internet #Scanner 010
ONYPHE @onyphe.io · 08/01/2026📣 We have added a new #vulnerability detection to our #ASM #AttackSurfaceManagement solution for #n8n product: CVE-2026-21858: unauthenticated remote code execution #Ni8mare search.onyphe.io/search?q=cat... 021
ONYPHE @onyphe.io · 02/01/2026📣 We have added a new #vulnerability detection to our #ASM #AttackSurfaceManagement solution for #SmarterMail product: CVE-2025-52691: remote unauthenticated file upload & overwrite search.onyphe.io/search?q=cat... 020
ONYPHE @onyphe.io · 30/12/2025📣 UPDATE: new vulnerable IPs count is ~100K. Our first request was not the most suited one and was updated. 👍 That's why it's important for organizations to communicate on such critical issues: it helps everyone improve for the greater good. 010
ONYPHE @onyphe.io · 29/12/2025📣 ANNOUNCEMENT: we have reached the 2,100+ scanned ports milestone, at Internet scale with a weekly refresh rate. Next step: 5,000+ ports, weekly refresh. Then 10,000 by end of next year. We will be the competitor number 1 to @censys.bsky.social in 2026. #ASM #CTI #ASD 022
ONYPHE @onyphe.io · 28/12/2025📣 We have added a new #vulnerability detection to our #ASM #AttackSurfaceManagement solution for #MongoDB product: CVE-2025-14847: remote unauthenticated memory reading #MongoBleed search.onyphe.io/search?q=cat... 031
ONYPHE @onyphe.io · 19/12/2025📣 We have added a new #vulnerability detection to our #ASM #AttackSurfaceManagement solution for #WatchGuard Firebox: CVE-2025-14733: unauthenticated remote code execution through out of bound writes No one has patched yet, everyone is vulnerable. 000
ONYPHE @onyphe.io · 16/05/2025📣 We have added a new #vulnerability detection to our #ASM #AttackSurfaceManagement solution for #Ivanti product: CVE-2025-4427+CVE-2025-4428 unauth RCE search.onyphe.io/search?q=cat... Thanks to watchTowr for detection method. 002
ONYPHE @onyphe.io · 28/04/2025Things are not yet getting better in Spain and Portugal. General downward trend and some visible instability in the remaining networks that are reachable. #PowerOutage 020
ONYPHE @onyphe.io · 28/04/2025The electrical power outage in Spain and Portugal as seen from the Internet (France included for reference) 022
ONYPHE @onyphe.io · 01/03/2025💥 Great news 💥 #ASD #AttackSurfaceDiscovery APIs are on their way to general availability. It will never be as easy to create an asset inventory for any organization attack surface #EASM Backed by 10th of billions of informations we collect. 000
ONYPHE @onyphe.io · 14/02/2025📣 We have added a new #vulnerability detection to our #ASM #AttackSurfaceManagement solution for #PaloAltoNetworks PA product: CVE-2025-0108: authentication bypass on management interface search.onyphe.io/search?q=cat... Thanks to @assetnote.io for having shared the detection method. 063
ONYPHE @onyphe.io · 31/01/2025 🎉 Retrospective 2024 and Roadmap 2025 👉 Over the last 12 months, we massively increased our visibility of Internet exposed assets. Until now, we focused on #ASM, but this year we will improve our automatic #ASD and expand into the #CTI segment. Read more: search.onyphe.io/docs/write-u... 052
ONYPHE @onyphe.io · 21/01/2025And for the previous report, written in 2022: www.greynoise.io/blog/new-sen... Many thanks to @hrbrmstr.dev on X for this study. 110
ONYPHE @onyphe.io · 17/01/2025📣 We have added a new #vulnerability detection to our #ASM #AttackSurfaceManagement solution for #Fortinet FortiGate product: CVE-2024-55591: unauthenticated remote issue allows to gain super-admin privileges search.onyphe.io/search?q=cat... Thanks to @WatchTowr for sharing detection method. 010
ONYPHE @onyphe.io · 17/01/2025📣 We have added a new #vulnerability detection to our #ASM #AttackSurfaceManagement solution for #SimpleHelp SimpleHelp product: CVE-2024-57727: sensitive information disclosure caused by path traversal vulnerability search.onyphe.io/search?q=cat... 000
ONYPHE @onyphe.io · 12/01/2025Just starting to scan #IPv6 at application layer and already found a compromised device running a #MeshCentral #C2 #Panel 084
ONYPHE @onyphe.io · 06/12/2024📣 We have added a new #vulnerability detection to our #ASM #AttackSurfaceManagement solution for #Mitel MiCollab product: CVE-2024-35286: unauthenticated SQL injection on login page CVE-2024-41713: unauthenticated arbitrary file read www.onyphe.io/search?q=cat... 052
ONYPHE @onyphe.io · 19/11/2024📣 We have added a new #vulnerability detection to our #ASM #AttackSurfaceManagement solution for #PaloAltoNetworks PA product: CVE-2024-0012: authentication bypass on mgmt interface CVE-2024-9474: authenticated (bypassed) RCE on mgmt interface www.onyphe.io/search?q=cat... 063
ONYPHE @onyphe.io · 07/02/2024Another day, another vuln. #JetBrains #TeamCity suffers from a critical unauth remote code execution flaw. 600+ unique IP vulnerable. #CVE_2024_23917 #CVE202423917 #asm #iav #asd #attacksurfacemanagement 000
ONYPHE @onyphe.io · 21/12/2023"Data Breach Notifications" #citrixbleed #CVE20234966 #CVE_2023_4966 #citrix is exploited by threat actors. #iav #asm #attacksurfacemanagement #attacksurface Still ~1.9K vulnerable IPs. apps.web.maine.gov/online/aevie... 000
ONYPHE @onyphe.io · 19/12/2023"Imperva Detects Undocumented 8220 Gang Activities" #CVE202014882 #CVE_2020_14882 #oracle #weblogic is exploited by threat actors. Still 86 unique vulnerable IPs exposed. #iav #asm #attacksurfacemanagement #attacksurface Source: www.imperva.com/blog/imperva... 000
ONYPHE @onyphe.io · 15/12/2023"LockBit 3.0 #Ransomware Affiliates #Exploit #CVE-2023-4966 Citrix Bleed Vulnerability" #CVE20234966 #CVE_2023_4966 #citrixbleed is exploited by threat actors. Still 2.1K unique vulnerable IPs exposed. #iav #asm #attacksurfacemanagement #attacksurface Source: www.cisa.gov/news-events/... 000
ONYPHE @onyphe.io · 14/12/2023"Russian Foreign Intelligence Service (SVR) Exploiting #JetBrains #TeamCity #CVE Globally" #CVE-2023-42793 #CVE202342793 is exploited by threat actors. Still 800 unique vulnerable IPs exposed. #iav #asm #attacksurfacemanagement Source: www.cisa.gov/news-events/... 000