What is wp2shell and what can it teach us about vulnerability management?

What is wp2shell and what can it teach us about vulnerability management?

When wp2shell hit WordPress Core, no single check was enough. A look at how a WAF rule can make vulnerable servers appear patched, and why we shipped three checks instead of one.
Introducing AI-powered pentesting for web apps: test on every major release

Introducing AI-powered pentesting for web apps: test on every major release

AI-powered web app pentesting is now live in Intruder. Connect your repo, launch on demand, and get a full pentest report the same day.
Introducing our Free plan: making security accessible for the 99%

Introducing our Free plan: making security accessible for the 99%

Professional security tooling, free forever. Intruder's new free plan is built for lean teams who face enterprise risks on a fraction of the budget.
AI-driven vulnerability management: broader, faster coverage against new threats

AI-driven vulnerability management: broader, faster coverage against new threats

Intruder now uses AI to build vulnerability checks for newly disclosed threats, giving Enterprise customers faster, broader detection coverage.
AI pentesting: the depth of a pentest, on-demand

AI pentesting: the depth of a pentest, on-demand

AI pentesting validates scanner findings in minutes, confirming real risks, ruling out false positives, and uncovering true impact. Now available in Intruder.
Introducing container image scanning: no agents, no blind spots

Introducing container image scanning: no agents, no blind spots

Agentless container image scanning. Automatically discover and continuously scan your container images across AWS, Azure, and Google Cloud. No agents, no blind spots.
The cloud isn't secure by default: what containers changed about risk

The cloud isn't secure by default: what containers changed about risk

Containers made it easier to ship fast — and easier to ship risk. Intruder's VP of Product breaks down where container risk comes from across the full security lifecycle, and what
See TODAY’S CVE TRENDS
Clear all filters
Announcing Authenticated Scanning: Enhance Your Web Application Security With More In-depth Checks

Announcing Authenticated Scanning: Enhance Your Web Application Security With More In-depth Checks

Today we are thrilled to announce the release of authenticated web application scanning! This new capability allows our customers to ...
Product
How to Keep on Top of Emerging Cyber Threats

How to Keep on Top of Emerging Cyber Threats

Every single day around 60 new vulnerabilities are discovered in software used throughout the world. Not all are serious but just one can...
Vulnerabilities and Threats
Log4j vulnerability: what is it and how to detect it?

Log4j vulnerability: what is it and how to detect it?

Apache Log4j is a logging package for Java which has been widely adopted and integrated into many applications. Developers need a way of ...
Vulnerabilities and Threats
Announcing Changes to our Essential plan

Announcing Changes to our Essential plan

To ensure our product keeps pace and remains relevant for our customers and their requirements, we’re always asking for feedback to learn...
Product
Interview With Chris Wallis, the Founder & CEO of Intruder

Interview With Chris Wallis, the Founder & CEO of Intruder

Safety Detectives: What motivated you to start Intruder? Chris Wallis: I was working in a finance organization when a new vulnerability...
In the News
9 minutes to breach: the life expectancy of an unsecured MongoDB honeypot

9 minutes to breach: the life expectancy of an unsecured MongoDB honeypot

Our research shows that Mongo databases are subject to continual attacks when exposed to the internet. Attacks are carried out ...
Vulnerabilities and Threats
SMBGhost: Strange SMB Vulnerability Disclosures and Wannacry 2.0?

SMBGhost: Strange SMB Vulnerability Disclosures and Wannacry 2.0?

A new critical vulnerability in affecting Windows systems came to light on Tuesday, affecting SMB services used by the latest versions of...
Vulnerabilities and Threats
User Enumeration in Microsoft Products: An Incident Waiting to Happen?

User Enumeration in Microsoft Products: An Incident Waiting to Happen?

Intruder’s latest research reveals that up to 13,000 organisations are affected by little-known user enumeration flaws in a range of…
Vulnerabilities and Threats
Critical RDP Flaw Leaves up to 2.3 Million Servers Exposed (CVE-2019–0708)

Critical RDP Flaw Leaves up to 2.3 Million Servers Exposed (CVE-2019–0708)

Yesterday (May 14th 2019), Microsoft published a security advisory bulletin for a critical vulnerability in its remote login service…
Vulnerabilities and Threats
How to secure the Kubernetes API behind a VPN

How to secure the Kubernetes API behind a VPN

Earlier this week, the first major vulnerability (CVE-2018–1002105) was discovered in Kubernetes, the container management platform taking…
Insights
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.