Today’s Odd Web Requests, (Wed, Apr 29th)
Today, two different „new“ requests hit our honeypots. Both appear to be recon requests and not associated with specific vulnerabilities. But as always, please let me know if you have additional information
Today, two different „new“ requests hit our honeypots. Both appear to be recon requests and not associated with specific vulnerabilities. But as always, please let me know if you have additional information
HTTP Requests with X-Vercel-Set-Bypass-Cookie Header https://isc.sans.edu/diary/HTTP%20Requests%20with%20X-Vercel-Set-Bypass-Cookie%20Header/32930 GitHub Vulnerability CVE-2026-3854 https://www.wiz.io/blog/github-rce-vulnerability-cve-2026-3854 Microsoft RDP Notification Bug https://support.microsoft.com/en-us/topic/april-14-2026-kb5083768-os-build-28000-1836-839e4a25-d979-4158-b70c-182333045883
This weekend, we saw a few requests to our honeypot that included an „X-Vercel-Set-Bypass-Cookie“ header. A sample request:
Im Rahmen der »Best of Cinema«-Initiative vom Filmverleiher Studiokanal kehrt im Mai ein echter Thriller-Klassiker ins die deutschen Kinos zurück. Die Rede ist vom Agentenfilm Die drei Tage des Condor aus dem Jahr 1975. Darin wird der unerfahrene CIA-Mitarbeiter Joseph Turner (Robert Redford) in eine Verschwörung innerhalb der Agency verstrickt und muss unter Lebensgefahr herausfinden, wer seine […]
CVE-2025-32975: Quest KACE SMA SSO Authentication Bypass Enables Admin Takeover Quest KACE Systems Management Appliance (SMA) has a maximum-severity vulnerability, CVE-2025-32975, that allows an attacker to bypass authentication in the product’s SSO authentication handling. An unauthenticated attacker can potentially impersonate legitimate users and work toward full administrative takeover. Reporting in March 2026 tied suspicious, real-world […]
Help Wanted: What are these odd requests about? An odd request is hitting a number of our honeypots with a somewhat unusual HTTP request header. Please let me know if you no what the request is about. https://isc.sans.edu/forums/diary/Help+Wanted+What+are+these+odd+reuqests+about/32302/ Forta GoAnywhere MFT Vulnerability Forta s GoAnywhere MFT product suffers from a critical deserialization vulnerability. Forta released […]