Sign in

ONYPHE

@onyphe.io
139 followers 61 following 52 posts

Provider of Attack Surface Discovery (ASD), Attack Surface Management (ASM) and CTI solutions. Scanning at Internet-scale since 2017 - contact at onyphe dot io

PostsRepliesMedia
ONYPHE @onyphe.io · 04/02/2026
📣 Just added 400 new ports to scan 👀 Total: 3,000+ ports - weekly refresh #ASM #Internet #Scanner
010
ONYPHE @onyphe.io · 08/01/2026
📣 We have added a new #vulnerability detection to our #ASM #AttackSurfaceManagement solution for #n8n product: CVE-2026-21858: unauthenticated remote code execution #Ni8mare search.onyphe.io/search?q=cat...
021
ONYPHE @onyphe.io · 02/01/2026
📣 We have added a new #vulnerability detection to our #ASM #AttackSurfaceManagement solution for #SmarterMail product: CVE-2025-52691: remote unauthenticated file upload & overwrite search.onyphe.io/search?q=cat...
020
ONYPHE @onyphe.io · 30/12/2025
📣 UPDATE: new vulnerable IPs count is ~100K. Our first request was not the most suited one and was updated. 👍 That's why it's important for organizations to communicate on such critical issues: it helps everyone improve for the greater good.
010
ONYPHE @onyphe.io · 29/12/2025
📣 ANNOUNCEMENT: we have reached the 2,100+ scanned ports milestone, at Internet scale with a weekly refresh rate. Next step: 5,000+ ports, weekly refresh. Then 10,000 by end of next year. We will be the competitor number 1 to @censys.bsky.social in 2026. #ASM #CTI #ASD
022
ONYPHE @onyphe.io · 28/12/2025
📣 We have added a new #vulnerability detection to our #ASM #AttackSurfaceManagement solution for #MongoDB product: CVE-2025-14847: remote unauthenticated memory reading #MongoBleed search.onyphe.io/search?q=cat...
031
ONYPHE @onyphe.io · 19/12/2025
📣 We have added a new #vulnerability detection to our #ASM #AttackSurfaceManagement solution for #WatchGuard Firebox: CVE-2025-14733: unauthenticated remote code execution through out of bound writes No one has patched yet, everyone is vulnerable.
000
ONYPHE @onyphe.io · 16/05/2025
📣 We have added a new #vulnerability detection to our #ASM #AttackSurfaceManagement solution for #Ivanti product: CVE-2025-4427+CVE-2025-4428 unauth RCE search.onyphe.io/search?q=cat... Thanks to watchTowr for detection method.
002
ONYPHE @onyphe.io · 29/04/2025
The recovery continues, but things are not yet back to normal
011
ONYPHE @onyphe.io · 28/04/2025
Things are not yet getting better in Spain and Portugal. General downward trend and some visible instability in the remaining networks that are reachable. #PowerOutage
Chart showing Internet scan data for France, Spain and Portugal. Spain and Portugal show significant drops in devices responding at 12:30, and some significant instability visible in Spanish networks from 17:00 to 20:00
020
ONYPHE @onyphe.io · 28/04/2025
The electrical power outage in Spain and Portugal as seen from the Internet (France included for reference)
A chart showing Internet scan data plots for three countries; Spain, Portugal and France. The three lines are stable, with minor variations from 09:00 to 12:30. At 12:30 the lines for  Spain and Portugal drop almost vertically to roughly 50% of their original levels. The line for France continues as for the start of the day.
The lines for Spain and Portugal have not returned to their original levels.
022
ONYPHE @onyphe.io · 01/03/2025
💥 Great news 💥 #ASD #AttackSurfaceDiscovery APIs are on their way to general availability. It will never be as easy to create an asset inventory for any organization attack surface #EASM Backed by 10th of billions of informations we collect.
000
ONYPHE @onyphe.io · 14/02/2025
📣 We have added a new #vulnerability detection to our #ASM #AttackSurfaceManagement solution for #PaloAltoNetworks PA product: CVE-2025-0108: authentication bypass on management interface search.onyphe.io/search?q=cat... Thanks to @assetnote.io for having shared the detection method.
063
ONYPHE @onyphe.io · 31/01/2025
🎉 Retrospective 2024 and Roadmap 2025 👉 Over the last 12 months, we massively increased our visibility of Internet exposed assets. Until now, we focused on #ASM, but this year we will improve our automatic #ASD and expand into the #CTI segment. Read more: search.onyphe.io/docs/write-u...
052
ONYPHE @onyphe.io · 21/01/2025
And for the previous report, written in 2022: www.greynoise.io/blog/new-sen... Many thanks to @hrbrmstr.dev on X for this study.
110
ONYPHE @onyphe.io · 17/01/2025
📣 We have added a new #vulnerability detection to our #ASM #AttackSurfaceManagement solution for #Fortinet FortiGate product: CVE-2024-55591: unauthenticated remote issue allows to gain super-admin privileges search.onyphe.io/search?q=cat... Thanks to @WatchTowr for sharing detection method.
010
ONYPHE @onyphe.io · 17/01/2025
📣 We have added a new #vulnerability detection to our #ASM #AttackSurfaceManagement solution for #SimpleHelp SimpleHelp product: CVE-2024-57727: sensitive information disclosure caused by path traversal vulnerability search.onyphe.io/search?q=cat...
000
ONYPHE @onyphe.io · 12/01/2025
Just starting to scan #IPv6 at application layer and already found a compromised device running a #MeshCentral #C2 #Panel
084
ONYPHE @onyphe.io · 21/12/2024
The Great #Honeypot of China in one picture:
010
ONYPHE @onyphe.io · 06/12/2024
📣 We have added a new #vulnerability detection to our #ASM #AttackSurfaceManagement solution for #Mitel MiCollab product: CVE-2024-35286: unauthenticated SQL injection on login page CVE-2024-41713: unauthenticated arbitrary file read www.onyphe.io/search?q=cat...
052
ONYPHE @onyphe.io · 19/11/2024
📣 We have added a new #vulnerability detection to our #ASM #AttackSurfaceManagement solution for #PaloAltoNetworks PA product: CVE-2024-0012: authentication bypass on mgmt interface CVE-2024-9474: authenticated (bypassed) RCE on mgmt interface www.onyphe.io/search?q=cat...
063
ONYPHE @onyphe.io · 07/02/2024
Another day, another vuln. #JetBrains #TeamCity suffers from a critical unauth remote code execution flaw. 600+ unique IP vulnerable. #CVE_2024_23917 #CVE202423917 #asm #iav #asd #attacksurfacemanagement
000
ONYPHE @onyphe.io · 21/12/2023
"Data Breach Notifications" #citrixbleed #CVE20234966 #CVE_2023_4966 #citrix is exploited by threat actors. #iav #asm #attacksurfacemanagement #attacksurface Still ~1.9K vulnerable IPs. apps.web.maine.gov/online/aevie...
000
ONYPHE @onyphe.io · 19/12/2023
"Imperva Detects Undocumented 8220 Gang Activities" #CVE202014882 #CVE_2020_14882 #oracle #weblogic is exploited by threat actors. Still 86 unique vulnerable IPs exposed. #iav #asm #attacksurfacemanagement #attacksurface Source: www.imperva.com/blog/imperva...
000
ONYPHE @onyphe.io · 15/12/2023
"LockBit 3.0 #Ransomware Affiliates #Exploit #CVE-2023-4966 Citrix Bleed Vulnerability" #CVE20234966 #CVE_2023_4966 #citrixbleed is exploited by threat actors. Still 2.1K unique vulnerable IPs exposed. #iav #asm #attacksurfacemanagement #attacksurface Source: www.cisa.gov/news-events/...
000
ONYPHE @onyphe.io · 14/12/2023
"Russian Foreign Intelligence Service (SVR) Exploiting #JetBrains #TeamCity #CVE Globally" #CVE-2023-42793 #CVE202342793 is exploited by threat actors. Still 800 unique vulnerable IPs exposed. #iav #asm #attacksurfacemanagement Source: www.cisa.gov/news-events/...
000