Skip to content

Kalypto (in)Security

Research, demonstrations, and popcorn

  • Home
  • About
  • Disclosure Record

Research

Research

Do your MongoDB admins know what they are doing?

Note:  This was originally posted to LinkedIn, but I have moved it over here to go along with the update I posted about the explosion of malicious ransom demands. MongoDB by default does not have very good security…

Continue reading Do your MongoDB admins know what they are doing?
KalyptoJanuary 9, 2017
Research Site News

MongoDB Ransomware Explosion

Recently I posted an article on LinkedIn about MongoDB security… well, it turns out that this has exploded into a big issue.  Over the last two weeks malicious hackers have been going crazy with extortion schemes.  Hackers are…

Continue reading MongoDB Ransomware Explosion
KalyptoJanuary 9, 2017
Research

Bricking the Apple Message App

There are three reasons an exploit may exist in code:  poorly written code, logic failure on the part of the developer, or in the case of this exploit, using something in a way that was never intended or tested.  Arguably,…

Continue reading Bricking the Apple Message App
KalyptoDecember 31, 2016
Research

NetGear Vulnerability Expanded

A vulnerability was discovered in some NetGear routers that allows remote command execution by visiting a malicious site or a legitimate site that has malicious ads served to it via AdSense or any number of other ad services. The…

Continue reading NetGear Vulnerability Expanded
KalyptoDecember 11, 2016
Personal Research Vulnerabilities

Security and Voting

The issues around voting are enormous.  I couldn’t even pretend to know them all or understand the full impact.  Especially without being able to examine the voting machines being utilized for this election.  That being said, there are…

Continue reading Security and Voting
KalyptoOctober 19, 2016
Research

The NSA and The Shadow Brokers

As most everyone is well aware, there has been a breach at the National Security Agency.  At some point, data and tools from some of the most protected areas of the NSA were stolen.  On Monday (2016-08-15), a…

Continue reading The NSA and The Shadow Brokers
KalyptoAugust 24, 2016
Black Market SaaS
Research

Black Market SaaS – The world of cybercrime changed

Historically, cybercriminals committed crimes in small groups or organized through larger groups like the mob.  To use botnet, It took some skilled people writing malware, infecting a ton of computers, and then using it to steal information or throw…

Continue reading Black Market SaaS – The world of cybercrime changed
KalyptoJune 27, 2016
Personal Research

Update on Buffalo Wild Wings

Note: Just in case they get an attitude, the image above is satirical and in no way represents the views, ideas, or promotion of my blog by the Buffalo Wild Wings company.  Well… someone else will have to…

Continue reading Update on Buffalo Wild Wings
KalyptoJanuary 20, 2016
Research

Finding an IP Behind a Reverse Proxy: How to look like a fool and influence people…

I have posted before about checking a specific IP for a website.  I wanted to go a little more into detail on how to use it and how to know when you are getting a false positive. There…

Continue reading Finding an IP Behind a Reverse Proxy: How to look like a fool and influence people…
KalyptoDecember 1, 2015
Research

Paris, ISIL, and Anonymous

On Friday a group of radical Islamists attacked Paris.  This was a very low-tech, high-coordination attack.  The group attacked six locations simultaneously and killed over 120 people.  I can’t give an exact number because everywhere you look, you…

Continue reading Paris, ISIL, and Anonymous
KalyptoNovember 17, 2015

Posts navigation

← Previous 1 2 3 Next →

Copyright © 2026 Kalypto (in)Security