BLOG HOME

SecurityTrails Blog

Journey to the Underbelly of the Beast: Out-of-Band Management Security and the Attack Surface
SecurityTrails Blog · Jun 30 2022 · by Gianni Perez & German Hoeffner

Journey to the Underbelly of the Beast: Out-of-Band Management Security and the Attack Surface

As of this writing, enterprise networks around the world are still known to be supporting some form of hardware-based remote access and control capability, collectively referred to as out-of-band management (OOBM), as a fallback mechanism to provide system administrators with an alternate data path to computing elements that may otherwise be unreachable through more traditional network media.

Insights and lessons learned from the recent BIG-IP Application Delivery Services Vulnerability
SecurityTrails Blog · May 16 2022 · by German Hoeffner

Insights and lessons learned from the recent BIG-IP Application Delivery Services Vulnerability

Every few months, a bug will come along that puts the information security community into a flurry of activity. Working weekends and nights to understand new vulnerability information as it comes to light, applying new patches (sometimes multiple times, as the situation changes), while also keeping apprised of new information hasn’t been uncommon. Throughout these past couple of years, we’ve had bugs as notable as Log4J, ProxyLogon, and more recently, a string of F5 vulnerabilities.