How Netsertive built a scalable AI assistant to extract meaningful insights from real-time data using Amazon Bedrock and Amazon Nova

This post was co-written with Herb Brittner from Netsertive. Netsertive is a leading digital marketing solutions provider for multi-location brands and franchises, helping businesses maximize local advertising, improve engagement, and gain deep customer insights. With a growing demand in providing more actionable insights from their customer call tracking data, Netsertive needed a solution that could…

Read More

Waiting Thread Hijacking: A Stealthier Version of Thread Execution Hijacking

Research by: hasherezade Process Injection is one of the important techniques in the attackers’ toolkit. In the constant cat-and-mouse game, attackers try to invent its new implementations that bypass defenses, using creative methods and lesser-known APIs. Combining common building blocks in an atypical way, Check Point Research was able to create a much stealthier version…

Read More

Kentico Xperience 13.0.178 – Cross Site Scripting (XSS)

# Exploit Title: Kentico Xperience 13.0.178 – Cross Site Scripting (XSS) # Date: 2025-05-09 # Version: Kentico Xperience before 13.0.178 # Exploit Author: Alex Messham # Contact: ramessham@gmail.com # Source: https://github.com/xirtam2669/Kentico-Xperience-before-13.0.178—XSS-POC/ # CVE: CVE-2025-32370 import requests import subprocess import os import argparse def create_svg_payload(svg_filename: str): print(f”[*] Writing malicious SVG to: {svg_filename}”) svg_payload =…

Read More

Defying physics: This rare crystal cools itself using pure magnetism

Natural crystals fascinate with their vibrant colors, their nearly flawless appearance and their manifold symmetrical forms. But researchers are interested in them for quite different reasons: among the countless minerals already known, they always discover some materials with unusual magnetic properties. One of these is atacamite, which exhibits magnetocaloric behavior at low temperatures – that…

Read More