Machine Learning Bug Bonanza – Exploiting ML Services
November 4, 2024 | 18 min read
November 18, 2024
8 min read
While researching CVE-2024-38428 in GNU’s Wget, our team found a new 0-day vulnerability. The vulnerability, later assigned CVE-2024-10524, may lead to various types of attacks - including phishing, SSRF, and MiTM. These attacks can have severe consequences such as resource restriction bypass and sensitive information exposure. Upon discovering this vulnerability, our team responsibly disclosed it…
November 4, 2024 | 18 min read
October 31, 2024 | 4 min read
October 29, 2024 | 6 min read
October 23, 2024 | 6 min read
October 17, 2024 | 9 min read
September 27, 2024 , JFrog Security Research Team Leader | 7 min read
September 24, 2024 | 4 min read
September 20, 2024 | 6 min read
September 10, 2024 | 19 min read
September 10, 2024 | 5 min read