by ULTRA RED
AI meets cybersecurity to make cutting-edge threat research accessible. Our two virtual hosts break down complex cyber threats, new CVEs, and emerging attacks in a way anyone can grasp. No dry reports - just insightful and fun discussions on how attackers operate. Wanna dig in more? Get the full scoop at https://www.ultrared.ai/blog
Language
🇺🇲
Publishing Since
1/31/2025
Email Addresses
0 available
Phone Numbers
0 available
February 25, 2025
<p>In this episode, we dive into a major security flaw in SAP Fieldglass, uncovered by ULTRA RED’s research team. They found a blind XSS vulnerability that, through log poisoning, could be escalated into a full-scale SQL injection attack. Tune in as we break down the discovery, the dangers of unsanitized inputs, and the key lessons security teams must learn to prevent similar threats.</p>
January 31, 2025
<p>What if a simple image upload could let attackers take over your account? In this episode, we break down a clever exploit where hackers bypassed security controls, injected malicious JavaScript, and exfiltrated data - all while staying under the radar. From dodging CSP to abusing internal chat functions, this attack is a masterclass in chaining vulnerabilities. Tune in as we unravel how it happened and what defenders can learn from it.</p>
Pod Engine is not affiliated with, endorsed by, or officially connected with any of the podcasts displayed on this platform. We operate independently as a podcast discovery and analytics service.
All podcast artwork, thumbnails, and content displayed on this page are the property of their respective owners and are protected by applicable copyright laws. This includes, but is not limited to, podcast cover art, episode artwork, show descriptions, episode titles, transcripts, audio snippets, and any other content originating from the podcast creators or their licensors.
We display this content under fair use principles and/or implied license for the purpose of podcast discovery, information, and commentary. We make no claim of ownership over any podcast content, artwork, or related materials shown on this platform. All trademarks, service marks, and trade names are the property of their respective owners.
While we strive to ensure all content usage is properly authorized, if you are a rights holder and believe your content is being used inappropriately or without proper authorization, please contact us immediately at [email protected] for prompt review and appropriate action, which may include content removal or proper attribution.
By accessing and using this platform, you acknowledge and agree to respect all applicable copyright laws and intellectual property rights of content owners. Any unauthorized reproduction, distribution, or commercial use of the content displayed on this platform is strictly prohibited.