What is wp2shell and what can it teach us about vulnerability management?

What is wp2shell and what can it teach us about vulnerability management?

When wp2shell hit WordPress Core, no single check was enough. A look at how a WAF rule can make vulnerable servers appear patched, and why we shipped three checks instead of one.
Introducing AI-powered pentesting for web apps: test on every major release

Introducing AI-powered pentesting for web apps: test on every major release

AI-powered web app pentesting is now live in Intruder. Connect your repo, launch on demand, and get a full pentest report the same day.
Introducing our Free plan: making security accessible for the 99%

Introducing our Free plan: making security accessible for the 99%

Professional security tooling, free forever. Intruder's new free plan is built for lean teams who face enterprise risks on a fraction of the budget.
AI-driven vulnerability management: broader, faster coverage against new threats

AI-driven vulnerability management: broader, faster coverage against new threats

Intruder now uses AI to build vulnerability checks for newly disclosed threats, giving Enterprise customers faster, broader detection coverage.
8 best AI pentesting tools for 2026

8 best AI pentesting tools for 2026

AI pentesting means different things from vendor to vendor. Compare the top 2026 tools on autonomy, coverage, strengths, and pricing.
See what's exposed with Attack Surface view

See what's exposed with Attack Surface view

Attack Surface view is now on Cloud and Pro. See the most commonly exposed ports across your targets, the services running on them, and what needs attention, all in one place.
How AI is changing the defender’s toolkit

How AI is changing the defender’s toolkit

We explore where AI fits in the defender's toolkit, how it's closing the gap between scanning and pentesting, and what the future of pentesting looks like.
See TODAY’S CVE TRENDS
Clear all filters
Hacking The Entire Internet Just Got Easier

Hacking The Entire Internet Just Got Easier

The recent release of the new hacking tool ‘AutoSploit’ marks the dawn of a new era for unskilled attackers. It provides a fully-automated…
Insights
How serious are the Intel / Meltdown / Spectre flaws?

How serious are the Intel / Meltdown / Spectre flaws?

We’re only a few days into 2018, and already we have a cyber-security panic on our hands. Predictions about the year ahead being full of...
Insights
Just how serious is the “ROBOT Attack”?

Just how serious is the “ROBOT Attack”?

The ROBOT attack. Sounds pretty ominous, right? Choosing catchy names for web-based cryptography (TLS) vulnerabilities has become pretty…
Vulnerabilities and Threats
“The Norwegian Government hacked my startup!”

“The Norwegian Government hacked my startup!”

At least, that’s how the conversation started, on a Whatsapp message early on a Friday evening in October, when a concerned startup founder…
Insights
Is Your Web Browser Secretly Mining Bitcoins?

Is Your Web Browser Secretly Mining Bitcoins?

This week has seen the seemingly unstoppable surge of the cryptocurrency ‘Bitcoin’ hit over $10,000 for the first time. As private…
Insights
Petya or NotPetya, Why is MS17–010 Still Not Patched?

Petya or NotPetya, Why is MS17–010 Still Not Patched?

Petya or NotPetya — How long should it take to patch against a globally recognised exploit, and why are attackers still able to use…
Vulnerabilities and Threats
Team Xball — DDoS Extortion Hoax

Team Xball — DDoS Extortion Hoax

“We are the Team Xball and we have chosen your website/network as target for our next DDoS attack.”
Vulnerabilities and Threats
Apache Struts — Remote Code Execution — CVE-2017–5638

Apache Struts — Remote Code Execution — CVE-2017–5638

On March 7th a critical vulnerability was announced in the Apache Struts framework, a popular web development toolkit that is commonly used…
Vulnerabilities and Threats
200,000 websites still affected by three year old security weakness (Heartbleed)

200,000 websites still affected by three year old security weakness (Heartbleed)

The Heartbleed vulnerability, renowned for allowing hackers anywhere on the internet to access encrypted communication between websites and…
Vulnerabilities and Threats
Intruder Vulnerability Bulletin — PHPMailer, SwiftMailer & ZendFramework Code Execution Vulnerabilities

Intruder Vulnerability Bulletin — PHPMailer, SwiftMailer & ZendFramework Code Execution Vulnerabilities

A number of vulnerabilities were recently discovered, which affect email sending functionality in the following software libraries:
Vulnerabilities and Threats
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.