Skip to content

Topic

Internet Exposure Measurement

Fingerprint-based counting of internet-facing hosts to estimate the population at risk from a given CVE.

Current stories

build1 publisher

CERT-BUND's high-risk Drupal advisory puts 36 CVEs in 16 contributed modules

CERT-BUND has rated 36 CVEs in 16 contributed Drupal projects high risk, and Drupal core is not listed as affected. Each site team has to check the modules it has installed against 19 fixed releases and confirm that the code serving requests actually changed.

Publishers:dev.to

Reality

Evidence62
Adoption
Insufficient
Hype gap+8
Incentives
Insufficient
Confidence60
build1 publisher

Cisco email gateway flaw runs attacker SQL as root the moment it parses a message

CVE-2026-76461 lets a crafted email run SQL as root on Cisco Secure Email Gateway, with no workaround and a September 17 federal patch deadline from CISA. Because the trigger is mail parsing, every gateway in the mail path is in scope, whether or not it faces the internet.

Publishers:dev.to

Reality

Evidence55
Adoption
Insufficient
Hype gap0
Incentives
Insufficient
Confidence50
build1 publisher

ZoomEye counts 736,893 internet-facing Mattermost fingerprint matches

ZoomEye's fingerprint index returned 736,893 matches for Mattermost on 23 September 2026, each a service identifying itself as the self-hosted chat server. Teams that self-host to keep chat internal also own the job of checking whether their server is among them.

Publishers:dev.to

Reality

Evidence45
Adoption40
Hype gap+10
Incentives
Insufficient
Confidence45