Last updated: Fetching the latest available data...

Explore Waves: Insights from Our Internet-Wide Research

Dive into blogs that delve deep into the evolving security landscape. Our extensive internet-wide research uncovers valuable insights, enriching RedHunt ASM with enhanced data and meaningful correlations. Stay informed with our latest findings.

Open Port Chronicle: What Port 80 Revealed About The Internet | Project Resonance (Wave 12)
Open Port Chronicle: What Port 80 Revealed About The Internet | Project Resonance (Wave 12)
At RedHunt Labs, we conduct extensive internet-wide studies as part of Project Resonance to stay ahead of the evolving cyberspace and enhance our Attack Surface Management (ASM) platform. This blog highlights our recent research, where we analyzed billions of IP addresses to check for port 80 open, uncovering fascinating insights.
internet-scans
port-80
web-apps
+1
Bhavarth Karmarkar
1/3/2025
The State of the Web: Technology Adoption and Security Issues in the Internet’s Top 1 Million Sites
The State of the Web: Technology Adoption and Security Issues in the Internet’s Top 1 Million Sites
At RedHunt Labs, we regularly perform various internet-wide studies as a part of Project Resonance, to keep up with ever-changing cyberspace and enrich our Attack Surface Management product, NVADR. This blog post is about our recent study in which we analysed the Tranco Top 1 Million websites, resulting in interesting insights.
internet-scans
port-443
port-80
+2
Devang Solanki
7/12/2024
Massive Cloud Scan Revealed Thousands of Exposed and Leaky Buckets
Massive Cloud Scan Revealed Thousands of Exposed and Leaky Buckets
We decided to dive deep into this issue and look into what the state of security looks like when it comes to storage buckets that we discovered from across the internet this wave is all about it, so brace yourselves for seeing the exciting insights that we were able to pull from here!
cloud
aws
gcp
+1
Umair Nehri
12/5/2023
Analysing Misconfigured Firebase Apps: A Tale of Unearthing Data Breaches (Wave 10)
Analysing Misconfigured Firebase Apps: A Tale of Unearthing Data Breaches (Wave 10)
We at RedHunt Labs conducted a mass scan on a sample of ~40000 Firebase subdomains to understand their state of security. This wave details the common misconfiguration found in Firebase applications and our findings from the scan regarding data breaches.
cloud
gcp
secret-scanning
+1
Umair Nehri
11/17/2023
Thousands of Unsecured Kubernetes Clusters Exposed on the Internet — Wave 9
Thousands of Unsecured Kubernetes Clusters Exposed on the Internet — Wave 9
Containers and microservices have become the modern trend in software development. Managing such infrastructure is a tremendous challenge in production environments. Kubernetes (or k8s), apart from being a Greek word to describe “someone in command“, is an extremely popular container orchestration platform. The modular design makes it great at flexibility and scalability, as almost all components can be individually tuned to meet a specific goal. However, this complexity can be really challenging from a security perspective.
cloud
k8s
vulnerabilty-scanning
Pinaki Mondal
10/18/2022
The Current State of Security, Privacy and Attack Surface on Android: Scanning Apps for Secrets and More – Wave 8
The Current State of Security, Privacy and Attack Surface on Android: Scanning Apps for Secrets and More – Wave 8
With over 6.8 billion smartphone users worldwide, the mobile phone market is booming at an unprecedented rate, and so is the production and usage of applications on all sorts of platforms. One of these smartphone platforms is Android, and its primary method of distributing applications is through the pre-installed Google Play Store. With the increased usage of android applications, consumer demands are growing too, especially regarding their security and privacy. Producing quality apps while maintaining user trust and not compromising security has become a significant challenge for most Android developers.
android
vulnerabilty-scanning
secrets-scanning
Umair Nehri
9/7/2022