ok vi ska tydligen byta ut splunk mot victorialogs på jobbet
ok vi ska tydligen byta ut splunk mot victorialogs på jobbet
Critical Splunk RCE Vulnerability (CVE-2026–20163) Lets Attackers Run Shell Commands on Your Server
The discovered vulnerability is a Remote Code Execution (RCE) in Splunk, a popular data processing software. The flaw stems from insufficient input validation in the application's search interface. By constructing a crafted search query, an attacker can exploit the vulnerability and execute arbitrary shell commands on the target server. Specifically, an attacker can utilize the 'enableJavaScript' and 'enableCookies' search commands to trigger the RCE. When the search interface receives a request, it inadvertently executes JavaScript provided by the attacker, enabling further exploitation. The impact of this vulnerability is severe, as it allows unauthorized execution of commands with the privileges of the Splunk user, potentially leading to data breaches or unauthorized access. The researcher received a $15,000 bounty from Splunk for reporting this critical issue. To remediate, Splunk suggests implementing input validation and sanitization for user-supplied search queries. Key lesson: Always validate user inputs to prevent RCE attacks. #BugBounty #Cybersecurity #RCE #Splunk #InputValidation
CVE Alert: CVE-2026-20163 - Splunk - Splunk Enterprise - https://www.redpacketsecurity.com/cve-alert-cve-2026-20163-splunk-splunk-enterprise/
#OSINT #ThreatIntel #CyberSecurity #cve-2026-20163 #splunk #splunk-enterprise
Du kriegst #Cisco raus aus der Technik
#soniclinux auf den Switches https://sonicfoundation.dev/ 💪
@OpenTalkMeeting statt #Webex 💪💪
#elasticsearch oder #opensearch statt #splunk 💪
Aber wie kriegst Du Cisco raus aus den Köpfen 🤷
🔐 IT-Sicherheits- und Logging-Spezialist*in (E13 TV-L) gesucht
Die HHU Düsseldorf sucht zum 01.03.2026 eine*n IT-Sicherheits- und Logging-Spezialist*in für das ZIM.
Aufgabenschwerpunkte:
• IT-Security-Design & Incident Response
• Threat Detection & Angriffssimulationen
• Betrieb & Ausbau des zentralen Loggings (z. B. Splunk)
📍 Düsseldorf | ⏳ Bewerbung bis 12.01.2026
https://karriere.hhu.de/index.php?ac=jobad&id=544
#Stellenausschreibung #ITSecurity #InfosecJobs #CyberSecurity #Hochschule #Splunk #ThreatHunting