The underground network industry has a long history and extensive coverage. What happened throughout its history? This document presents the definition, category, means, and examples of the underground network industry, as well as protection measures. Overview What is Underground Industry? Underground industry is a general name for a wide variety...
Ano: 2017
A Step Further — Demystifying XSS
Here is a comprehensive tutorial on cross-site scripting (XSS) attacks, ranging from entry to practice. Overview Note that XSS attacks are classified according to different angles in the preceding figure, but not simply classified into reflective XSS, stored XSS, and DOM-based XSS. In essence, XSS is injection of HTML code...
Analysis and Solution of Spring Data REST Server PATCH Request RCE Vulnerability
Overview Recently, Pivotal released a security advisory to reveal the Spring Data REST server is prone to a remote code execution vulnerability (CVE-2017-8046) when processing PATCH requests. Attackers could exploit this vulnerability by sending a crafted PATCH request to the Spring Data REST server. The submitted JSON data contains...
Pacific Internet Joined Forces with NSFOCUS to Deliver Cloud DDoS Defenses for Businesses across SEA
Strengthening suite of services to enhance customers’ enterprise security SINGAPORE, October 10, 2017 – Pacific Internet Singapore Pte Ltd, Southeast Asia’s Internet Service Provider, has signed up with NSFOCUS, a global enterprise DDoS (Distributed Denial of Service) mitigation solution provider, to complement its Internet services with best-in-class DDoS defense strategies....
IP Reputation Analysis Report – August 2017
Executive Overview There was a 34.06% increase in number of IP addresses globally in the NSFOCUS IP Reputation databases this month compared to both the beginning of the year and post WannaCry and Petya (33.17% through July). Globally the number of Botnets did not change significantly. However, the overall percentage...
Phantom Squad – DDoS Threat
Overview It appears that the new syndicate of the Armada Collective referred to as the Phantom Squad is planning to launch a global DDoS attack on September 30th. Below you will find a screenshot of the mass spear-phishing email that has been distributed to many organization and companies around the...





