<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>NuClide Research</title><description>AI/LLM infrastructure security research, case studies, disclosures, and surveys.</description><link>https://nuclide-research.com/</link><language>en-us</language><item><title>[Case] Cat-29 Argo Workflows: :2746 probe sweep, 2026-06-07</title><link>https://nuclide-research.com/cases/case-studies--commercial--cat29-argo-2746-2026-06-07/</link><guid isPermaLink="true">https://nuclide-research.com/cases/case-studies--commercial--cat29-argo-2746-2026-06-07/</guid><description>Lane 1A of the 9-item 2026-06-07 plan. Goal: test whether port 2746 hosts an unauthenticated Shodan-dark tier among Argo Workflows operators whose :443 surface is gated by IAP/AzureAD. Method: parallel curl probes (5-second timeout) against https://&lt;ip&gt;:2746/api/v1/version for all 156 IPs surfaced via the ssl:&quot;Argo Workflows&quot; Shodan dork during the 2026-05-3…</description><pubDate>Sun, 07 Jun 2026 00:00:00 GMT</pubDate></item><item><title>[Case] DMARC Funding-Stage Proxy — Full-Registry Sweep N=410</title><link>https://nuclide-research.com/cases/case-studies--commercial--dmarc-funding-stage-proxy-2026-06-07/</link><guid isPermaLink="true">https://nuclide-research.com/cases/case-studies--commercial--dmarc-funding-stage-proxy-2026-06-07/</guid><description>Date: 2026-06-07. Cohort: full NuClide AI-infrastructure vendor registry (MASTER-port-vendor-registry.csv, 435 vendor names, 410 unique apex domains resolved after dedup and OSS filtering). Probe: dig +short TXT dmarc.&lt;domain&gt;. Fully passive otherwise.</description><pubDate>Sun, 07 Jun 2026 00:00:00 GMT</pubDate></item><item><title>[Case] MCP Servers and CrewAI — Negative Results with Methodology Value</title><link>https://nuclide-research.com/cases/case-studies--commercial--mcp-crewai-negative-results-2026-06-07/</link><guid isPermaLink="true">https://nuclide-research.com/cases/case-studies--commercial--mcp-crewai-negative-results-2026-06-07/</guid><description>Two attempted same-day surveys produced no actionable findings — but the failure modes are themselves research-program-relevant. Both reveal classes of AI/LLM infrastructure that are not surveyable with the population-Shodan methodology that worked for the chat-UI / RAG / observability / autonomous-agent platform surveys.</description><pubDate>Sun, 07 Jun 2026 00:00:00 GMT</pubDate></item><item><title>LangGraph Studio Population Survey — Local Dev Tool Misdeployed to Public AWS at 90.9%</title><link>https://nuclide-research.com/research/case-studies--commercial--langgraph-studio-population-survey-2026-06-07/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--langgraph-studio-population-survey-2026-06-07/</guid><description>LangGraph Studio (github.com/langchain-ai/langgraph) is LangChain&apos;s local-development debugger / visualizer for LangGraph applications. It is designed to run on localhost:2024 during development, with desktop auth-type meaning no authentication is required because access is assumed to be from the same machine as the developer. LangChain ships separate produc…</description><pubDate>Sun, 07 Jun 2026 00:00:00 GMT</pubDate></item><item><title>OpenHands Population Survey — Autonomous Agent Task History + LLM Config Exposed at Scale</title><link>https://nuclide-research.com/research/case-studies--commercial--openhands-population-survey-2026-06-07/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--openhands-population-survey-2026-06-07/</guid><description>OpenHands (github.com/All-Hands-AI/OpenHands, formerly OpenDevin) is an autonomous coding agent platform with multiple agent types (CodeActAgent, BrowsingAgent, VisualBrowsingAgent, ReadOnlyAgent, LocAgent, DummyAgent) that can interact with code repositories, browse the web, execute shell commands, and modify files. The platform represents one of the highes…</description><pubDate>Sun, 07 Jun 2026 00:00:00 GMT</pubDate></item><item><title>The Auth-on-Default Landscape of OSS AI/LLM Infrastructure</title><link>https://nuclide-research.com/research/case-studies--commercial--synthesis-2026-06-07-auth-on-default-cohort/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--synthesis-2026-06-07-auth-on-default-cohort/</guid><description>Two-day population survey across 13 OSS AI/LLM infrastructure platforms reveals a maintainer-culture-axis split between demo-first defaults (auth-permissive, 70-91% open) and enterprise-customer-first defaults (auth-required, 0-1%). The cohort is not jurisdiction-defined. Insight #76 scope-bounded to platform class; LLM02 Sensitive Information Disclosure is the dominant finding class; the Capitol.ai escalation demonstrates the maintainer-default failing at enterprise-SaaS scale; in-flight attacker /proc/self/environ activity directly observable on OpenHands instances.</description><pubDate>Sun, 07 Jun 2026 00:00:00 GMT</pubDate></item><item><title>[Case] LibreChat Verification Deep-Dive — Notable Findings Re-Profiled</title><link>https://nuclide-research.com/cases/case-studies--commercial--librechat-deep-dive-verification-2026-06-06/</link><guid isPermaLink="true">https://nuclide-research.com/cases/case-studies--commercial--librechat-deep-dive-verification-2026-06-06/</guid><description>Deeper verification on the six notable finding clusters surfaced in the LibreChat population survey. Restraint maintained throughout: no registration, no LLM invocation, no account creation. Methods used: /api/config, /api/endpoints, PTR lookup, TLS cert inspection, WHOIS, marketing-site cross-reference.</description><pubDate>Sat, 06 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Bisheng Population Survey — Negative Result (Auth-Required Default)</title><link>https://nuclide-research.com/research/case-studies--commercial--bisheng-population-survey-2026-06-06/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--bisheng-population-survey-2026-06-06/</guid><description>Bisheng (github.com/dataelement/bisheng) is an open-source LLM application development platform from DataElem (Beijing), focused on enterprise-oriented document AI, RAG, agent orchestration, and workflow building. Direct functional parallel to RAGFlow (also Shanghai-based) and Flowise.</description><pubDate>Sat, 06 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Dify Population Survey — 939 Config-Disclosure, 9 Open Auth Findings</title><link>https://nuclide-research.com/research/case-studies--commercial--dify-population-survey-2026-06-06/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--dify-population-survey-2026-06-06/</guid><description>Dify is an open-source LLM application development platform (drag-and-drop workflow builder, RAG pipelines, agent orchestration). 2,289 Shodan-indexed instances on http.title:&quot;Dify&quot;.</description><pubDate>Sat, 06 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Flowise Population Survey — 578/841 Open, CVE-2024-36420 PoC Lab Exposed</title><link>https://nuclide-research.com/research/case-studies--commercial--flowise-population-survey-2026-06-06/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--flowise-population-survey-2026-06-06/</guid><description>Flowise is a drag-and-drop LLM workflow builder. Default deployment: no authentication on /api/v1/chatflows — the endpoint returns the full list of all configured chatflows, their nodes, deployment status, and embedded credentials in flow configurations.</description><pubDate>Sat, 06 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Langfuse Population Survey — 816/918 Open Registration (88.9%)</title><link>https://nuclide-research.com/research/case-studies--commercial--langfuse-population-survey-2026-06-06/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--langfuse-population-survey-2026-06-06/</guid><description>Langfuse is an open-source LLM observability platform (trace ingestion, prompt analytics, evaluation tooling for production AI applications). 1,141 Shodan-indexed instances on &quot;Langfuse&quot; port:3000. 918 responded to live probing. 816 (88.9% of live, 71.5% of indexed) expose signUpDisabled: false to the public internet.</description><pubDate>Sat, 06 Jun 2026 00:00:00 GMT</pubDate></item><item><title>LibreChat Population Survey — 412/1,565 Open Registration (26.3%)</title><link>https://nuclide-research.com/research/case-studies--commercial--librechat-population-survey-2026-06-06/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--librechat-population-survey-2026-06-06/</guid><description>LibreChat (github.com/danny-avila/LibreChat) is an open-source ChatGPT-alternative chat interface — supports multiple LLM providers, plugins, multimodal, multi-tenant via shared deployments. 3,153 Shodan-indexed instances on http.title:&quot;LibreChat&quot;. 2,000 downloaded; 1,565 responded.</description><pubDate>Sat, 06 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Cat-05: LiteLLM Gateway Survey — Open Proxies Exposing Commercial LLM API Keys</title><link>https://nuclide-research.com/research/case-studies--commercial--litellm-gateway-survey-cat05-2026-06-06/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--litellm-gateway-survey-cat05-2026-06-06/</guid><description>The hunt started with a single Shodan dork: http.title:&quot;LiteLLM&quot; port:4000. It returned 2,219 results in under a second.</description><pubDate>Sat, 06 Jun 2026 00:00:00 GMT</pubDate></item><item><title>LobeChat Population Survey — 10/12 Fully Open (83.3%, small population)</title><link>https://nuclide-research.com/research/case-studies--commercial--lobechat-population-survey-2026-06-06/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--lobechat-population-survey-2026-06-06/</guid><description>LobeChat (github.com/lobehub/lobe-chat) is an open-source ChatGPT-alternative chat interface from Lobehub, a China-origin OSS community. Direct functional parallel to LibreChat. 641 Shodan-indexed; 636 downloaded; only 12 of 636 (1.9%) responded to live HTTP probing. Of the 12 reachable: 10 are in fully-open mode (enabledAccessCode: false AND enabledOAuthSSO…</description><pubDate>Sat, 06 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Open WebUI Population Survey — 39 Auth-Off, 564 Open Signup</title><link>https://nuclide-research.com/research/case-studies--commercial--openwebui-population-survey-2026-06-06/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--openwebui-population-survey-2026-06-06/</guid><description>18,389 Shodan-indexed instances of Open WebUI. One GET to /api/config returns a JSON object that tells you everything: whether auth is enforced, whether public registration is open, the operator&apos;s branding name, and the exact version. No scanning required.</description><pubDate>Sat, 06 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Cat-OW Calibration Deltas — 5 Named Findings Re-Verified</title><link>https://nuclide-research.com/research/case-studies--commercial--openwebui-population-survey-2026-06-06-calibration-deltas/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--openwebui-population-survey-2026-06-06-calibration-deltas/</guid><description>A spot-check verification pass on five named-institution findings in the
Open WebUI population survey, applying the attribution hierarchy from
Insight #79.</description><pubDate>Sat, 06 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Arize Phoenix Population Survey — 41/55 Unauthenticated Project Disclosure</title><link>https://nuclide-research.com/research/case-studies--commercial--phoenix-population-survey-2026-06-06/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--phoenix-population-survey-2026-06-06/</guid><description>Arize Phoenix (github.com/Arize-ai/phoenix) is an open-source LLM observability and tracing platform — span ingestion, project organization, dataset versioning, prompt management for production AI applications. 94 Shodan-indexed instances on &quot;Phoenix&quot; port:6006. 89 unique endpoints downloaded; 55 responded.</description><pubDate>Sat, 06 Jun 2026 00:00:00 GMT</pubDate></item><item><title>RAGFlow Population Survey — 618/709 Open Registration (87.2%)</title><link>https://nuclide-research.com/research/case-studies--commercial--ragflow-population-survey-2026-06-06/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--ragflow-population-survey-2026-06-06/</guid><description>RAGFlow (github.com/infiniflow/ragflow) is an open-source RAG knowledge-base engine — document ingestion, vector retrieval, LLM-backed Q&amp;A over enterprise knowledge bases. 1,915 Shodan-indexed instances on http.title:&quot;RAGFlow&quot;. 709 responded to live probing. 618 (87.2% of live, 32.3% of indexed) expose registerEnabled: 1 to the public internet.</description><pubDate>Sat, 06 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Cat-03 Model Serving &amp; Inference — Survey 2026-06-05</title><link>https://nuclide-research.com/research/case-studies--commercial--cat03-model-serving-survey-2026-06-05/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--cat03-model-serving-survey-2026-06-05/</guid><description>Survey of 5,018 IPs across 17 Shodan and 9 Censys queries targeting Cat-03 (model serving and inference: llama.cpp, KoboldCpp, LM Studio, vLLM, SillyTavern, faster-whisper, One API, New API, Open WebUI, SGLang, GPT4All, HuggingFace TGI). 158 hosts responded live; aimap fingerprinted 72 services and flagged 20 CRITICAL / 19 HIGH. Verification of the flagged c…</description><pubDate>Fri, 05 Jun 2026 00:00:00 GMT</pubDate></item><item><title>[Case] Unauthenticated ML Training Server — velutina-service.ch</title><link>https://nuclide-research.com/cases/case-studies--commercial--velutina-service-ch-unauth-ml-training-server-2026-06-01/</link><guid isPermaLink="true">https://nuclide-research.com/cases/case-studies--commercial--velutina-service-ch-unauth-ml-training-server-2026-06-01/</guid><description>JAXEN returned 185.66.109.62 under a passive Shodan query for exposed AI/ML infrastructure on Swiss hosting ranges. The Shodan record showed:</description><pubDate>Mon, 01 Jun 2026 00:00:00 GMT</pubDate></item><item><title>AI Gateways Population Survey: Cat-32 (2026-06-01)</title><link>https://nuclide-research.com/research/case-studies--commercial--ai-gateways-survey-cat32-2026-06-01/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--ai-gateways-survey-cat32-2026-06-01/</guid><description>An AI gateway sits in front of every upstream LLM provider an operator uses. It holds the OpenAI key, the Anthropic key, the Gemini key, the DeepSeek key. All in one process. That is the point of the product. It is also the problem.</description><pubDate>Mon, 01 Jun 2026 00:00:00 GMT</pubDate></item><item><title>[Case] Dark-Tier Probe Result (Option A) — 2026-05-31</title><link>https://nuclide-research.com/cases/case-studies--commercial--argo-workflows-darktier-2026-05-31/</link><guid isPermaLink="true">https://nuclide-research.com/cases/case-studies--commercial--argo-workflows-darktier-2026-05-31/</guid><description>&lt;!-- ksat-tag:auto-generated:start --&gt;
## DCWF KSAT coverage</description><pubDate>Sun, 31 May 2026 00:00:00 GMT</pubDate></item><item><title>[Case] NCKU Edge Host: a Kubernetes Control Plane Behind a MikroTik Gateway</title><link>https://nuclide-research.com/cases/case-studies--universities--ncku-140116247125-edge-kubesphere-2026-05-31/</link><guid isPermaLink="true">https://nuclide-research.com/cases/case-studies--universities--ncku-140116247125-edge-kubesphere-2026-05-31/</guid><description>A single handed-over IP resolved into an NCKU lab&apos;s internet edge: a MikroTik
RouterOS gateway DNAT-forwarding to an internal network, with eighteen services
reachable through it. The headline exposure is not an AI service. It is a
KubeSphere v3.1.0 Kubernetes management console, branded &quot;ECPaaS,&quot; reachable on
tcp/23180, leaking its version, its unchanged de…</description><pubDate>Sun, 31 May 2026 00:00:00 GMT</pubDate></item><item><title>Argo Workflows Population Survey — Cat-29 (2026-05-31)</title><link>https://nuclide-research.com/research/case-studies--commercial--argo-workflows-survey-cat29-2026-05-31/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--argo-workflows-survey-cat29-2026-05-31/</guid><description>&lt;!-- ksat-tag:auto-generated:start --&gt;
## DCWF KSAT coverage</description><pubDate>Sun, 31 May 2026 00:00:00 GMT</pubDate></item><item><title>Data Labeling &amp; Annotation: the registration knob that re-opens the door</title><link>https://nuclide-research.com/research/case-studies--commercial--data-labeling-survey-2026-05-31/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--data-labeling-survey-2026-05-31/</guid><description>Data-labeling platforms sit at the input boundary of every supervised-learning and
RLHF pipeline. They hold the raw data being labeled: PII-dense text, scanned
documents, medical and facial imagery, and the human-preference pairs that fine-tune
LLMs. A 2026-05-04 cheap-VPS pass had already shown the category is auth-on by
default (doccano 348/348, 98.9% auth…</description><pubDate>Sun, 31 May 2026 00:00:00 GMT</pubDate></item><item><title>RAG Framework Servers Population Survey — Cat-07 (2026-05-31)</title><link>https://nuclide-research.com/research/case-studies--commercial--rag-frameworks-survey-cat07-2026-05-31/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--rag-frameworks-survey-cat07-2026-05-31/</guid><description>First population survey of the RAG-framework-server category. 16 platforms in the 2026-05-27 pre-assessment intel (data/platform-intel/rag-frameworks-osint-2026-05-27.md); 15 dorks run this session. The category spans private document-QA workspaces, RAG pipelines, agentic-RAG, and self-hosted AI search — platforms whose value is the document corpus and conne…</description><pubDate>Sun, 31 May 2026 00:00:00 GMT</pubDate></item><item><title>Service Mesh Control Planes: when exposure is the authentication failure</title><link>https://nuclide-research.com/research/case-studies--commercial--service-mesh-survey-2026-05-31/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--service-mesh-survey-2026-05-31/</guid><description>Every survey so far measured platforms that have an authentication layer and
ship it on or off. Service-mesh introspection planes are a harder test for the
auth-on-default thesis: most of them have no auth layer at all. Kiali&apos;s
anonymous strategy, Linkerd&apos;s viz dashboard, Cilium&apos;s Hubble UI and relay, Istio&apos;s
Envoy-admin and istiod-debug all rely on network…</description><pubDate>Sun, 31 May 2026 00:00:00 GMT</pubDate></item><item><title>Specialty Data Layers survey, 2026-05-30</title><link>https://nuclide-research.com/research/case-studies--commercial--specialty-data-layers-survey-2026-05-29/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--specialty-data-layers-survey-2026-05-29/</guid><description>Three of five sampled Spark History Servers exposed their job inventories with no
authentication, and two of them are machine-learning pipelines. The job names are
the finding. They map the feature-engineering, training, and prediction stages of
an ML workflow on Google Cloud. ClickHouse returned 5,208 hosts on the empty-
password port, but confirming the un…</description><pubDate>Sat, 30 May 2026 00:00:00 GMT</pubDate></item><item><title>[Case] Voice/Audio AI re-run: Category 17, 2026-05-29</title><link>https://nuclide-research.com/cases/case-studies--commercial--voice-audio-ai-rerun-2026-05-29/</link><guid isPermaLink="true">https://nuclide-research.com/cases/case-studies--commercial--voice-audio-ai-rerun-2026-05-29/</guid><description>Fifteen dorks. Twenty-eight candidates. Six confirmed unauthenticated voice
services across five hosts. One four-service stacked host. Four false positives
killed at the verification stage, including a would-be remote-code-execution
finding that turned out to be an LLM relay server.</description><pubDate>Fri, 29 May 2026 00:00:00 GMT</pubDate></item><item><title>[Case] Zep CE: empty default api_secret accepts a zero-entropy credential</title><link>https://nuclide-research.com/cases/case-studies--commercial--zep-ce-empty-apisecret-finding-2026-05-29/</link><guid isPermaLink="true">https://nuclide-research.com/cases/case-studies--commercial--zep-ce-empty-apisecret-finding-2026-05-29/</guid><description>Code-level finding from the agent-memory pre-assessment
(data/platform-intel/agent-memory-osint-2026-05-29.md). Labeled per
case-studies/FINDING-TEMPLATE.md. This is a platform finding, not a host
case study: no live target has been touched.</description><pubDate>Fri, 29 May 2026 00:00:00 GMT</pubDate></item><item><title>Auth / Identity / Gateway survey, 2026-05-29</title><link>https://nuclide-research.com/research/case-studies--commercial--auth-gateway-survey-2026-05-29/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--auth-gateway-survey-2026-05-29/</guid><description>Open Policy Agent ships with no authentication, and five of six sampled hosts
returned their full Rego policy list with no credentials. The policy names are the
finding. They map the operator&apos;s authorization model and the topology of whatever
AI stack sits behind them. The admin APIs of Kong and OPA are Shodan-dark because
they serve JSON, so the harvest fou…</description><pubDate>Fri, 29 May 2026 00:00:00 GMT</pubDate></item><item><title>Experiment Tracking, registry and RCE half, 2026-05-29</title><link>https://nuclide-research.com/research/case-studies--commercial--experiment-tracking-registry-survey-2026-05-29/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--experiment-tracking-registry-survey-2026-05-29/</guid><description>MLflow ships with no authentication, and the population shows it: eight of eight
sampled servers returned the full experiment list with no credentials. One held
379 experiments and leaked a Google Cloud Storage bucket name. The other
high-severity targets did not deliver. Determined.ai was authenticated on every
reachable host, including two on AWS GovCloud,…</description><pubDate>Fri, 29 May 2026 00:00:00 GMT</pubDate></item><item><title>ML Governance / Data Catalog survey, 2026-05-29</title><link>https://nuclide-research.com/research/case-studies--commercial--ml-governance-survey-2026-05-29/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--ml-governance-survey-2026-05-29/</guid><description>Nine dorks. Six platforms. The category is well-secured at population scale, and
that is the finding. The auth-on platforms run patched versions. The auth-off
platforms are either Shodan-dark or empty demos. One unauthenticated Marquez
server confirmed, and it held no production data.</description><pubDate>Fri, 29 May 2026 00:00:00 GMT</pubDate></item><item><title>Model Serving, management-plane and registry, 2026-05-29</title><link>https://nuclide-research.com/research/case-studies--commercial--model-serving-management-survey-2026-05-29/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--model-serving-management-survey-2026-05-29/</guid><description>The model-serving category is Shodan-dark. vLLM, Triton, TGI, and TorchServe all
serve JSON APIs, and their identifying strings live in JSON bodies, not in the
HTML Shodan crawls. The dominant self-hosted LLM inference server returned one hit
on its own banner. That one host was a real unauthenticated vLLM serving a 20B
model. The management-bypass surfaces…</description><pubDate>Fri, 29 May 2026 00:00:00 GMT</pubDate></item><item><title>RAG framework stragglers, 2026-05-29</title><link>https://nuclide-research.com/research/case-studies--commercial--rag-stragglers-survey-2026-05-29/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--rag-stragglers-survey-2026-05-29/</guid><description>AnythingLLM ships single-user mode with no password, and two of five sampled
hosts had the web UI open to any browser visitor. The verification narrowed the
finding: the open UI is browser-reachable, but the developer REST API still
demands a key even in no-auth mode. RAGFlow returned 1,705 hosts, a large
pre-auth-RCE-class population, but the RCE lives on a…</description><pubDate>Fri, 29 May 2026 00:00:00 GMT</pubDate></item><item><title>LLM Safety / Guardrail survey, 2026-05-29</title><link>https://nuclide-research.com/research/case-studies--commercial--safety-guardrail-survey-2026-05-29/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--safety-guardrail-survey-2026-05-29/</guid><description>Five dorks. One confirmed unauthenticated guardrail server, and the guardrail was
the least exposed thing on the box. The same host left MongoDB, Redis, MySQL,
PostgreSQL, and a Docker registry open with no authentication. The safety tool
meant to inspect untrusted input was sitting on an unlocked data tier.</description><pubDate>Fri, 29 May 2026 00:00:00 GMT</pubDate></item><item><title>[Case] Apptica — Production Data Lake Exposed via Unauthenticated ClickHouse</title><link>https://nuclide-research.com/cases/case-studies--commercial--apptica-clickhouse-2026-05-28/</link><guid isPermaLink="true">https://nuclide-research.com/cases/case-studies--commercial--apptica-clickhouse-2026-05-28/</guid><description>Apptica is a commercial app store intelligence platform offering revenue estimates, download data, keyword rankings, and advertising intelligence for mobile apps across iOS and Android. Their product — described as &quot;Ad Intelligence&quot; and &quot;Market Intelligence&quot; — is built on the data stored in this database.</description><pubDate>Thu, 28 May 2026 00:00:00 GMT</pubDate></item><item><title>[Case] DataV / Skillmine Technology — Multi-Party Data Breach via Unauthenticated ClickHouse</title><link>https://nuclide-research.com/cases/case-studies--commercial--datav-skillmine-clickhouse-2026-05-28/</link><guid isPermaLink="true">https://nuclide-research.com/cases/case-studies--commercial--datav-skillmine-clickhouse-2026-05-28/</guid><description>DataV is a no-code AI analytics and data visualization platform built and operated by Skillmine Technology Consulting Private Limited (Mumbai). The platform allows customers to upload CSV and Excel files, connect SQL databases, run ML predictions, and build dashboards. Per their website, DataV serves organizations across BFSI, healthcare, IT services, automo…</description><pubDate>Thu, 28 May 2026 00:00:00 GMT</pubDate></item><item><title>[Case] Sanio AI — Collision AgentOS / Walmart Pipeline Exposure</title><link>https://nuclide-research.com/cases/case-studies--commercial--sanio-ai-collision-agentos-2026-05-28/</link><guid isPermaLink="true">https://nuclide-research.com/cases/case-studies--commercial--sanio-ai-collision-agentos-2026-05-28/</guid><description>Surface identified in session 43 (cat-06 stragglers survey) via Shodan dork port:7777 http.html:&quot;agno&quot;. Prior session confirmed the host as unauth Agno on port 7777 with road collision data in scope. This session ran five parallel agents for full stack enumeration.</description><pubDate>Thu, 28 May 2026 00:00:00 GMT</pubDate></item><item><title>[Case] Snap-E Cabs — ScyllaDB Default Credentials + Unauthenticated REST API</title><link>https://nuclide-research.com/cases/case-studies--commercial--snapecabs-scylladb-341319052-2026-05-28/</link><guid isPermaLink="true">https://nuclide-research.com/cases/case-studies--commercial--snapecabs-scylladb-341319052-2026-05-28/</guid><description>Snap-E Cabs, a BSE-listed Indian EV ride-hailing operator (600+ vehicles, Kolkata), runs a ScyllaDB cluster on GCP with the CQL port accepting default cassandra/cassandra credentials and the admin REST API exposed with zero authentication — giving any actor full read/write access to 431,808 driver safety events, 245 live auth tokens, biometric face ROI data,…</description><pubDate>Thu, 28 May 2026 00:00:00 GMT</pubDate></item><item><title>AI Evaluation and Red-Team Platform Survey — Promptfoo Population Pass</title><link>https://nuclide-research.com/research/case-studies--commercial--ai-eval-redteam-survey-2026-05-28/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--ai-eval-redteam-survey-2026-05-28/</guid><description>Promptfoo is the only AI eval/red-team platform in the 13-platform scope that produced confirmed unauthenticated exposure at scale. Four instances returned {&quot;email&quot;:null} on GET /api/user/email with eval datasets and provider configurations readable without credentials. The best-characterized instance (evals.dev.generalwisdom.com, AWS Ashburn) exposed 60 LLM…</description><pubDate>Thu, 28 May 2026 00:00:00 GMT</pubDate></item><item><title>Auth and API Gateway Platforms: Population Survey</title><link>https://nuclide-research.com/research/case-studies--commercial--auth-gateway-survey-2026-05-28/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--auth-gateway-survey-2026-05-28/</guid><description>Shodan harvest of 13 auth and API gateway platforms returned confirmed populations across six categories. SuperTokens (port 3567) is the largest exposed surface at 455 confirmed internet-facing instances with no API key configured by default. Authentik reaches or exceeds Shodan&apos;s 1,000-result display cap. Authelia shows 33 instances. Kong admin port (8001) r…</description><pubDate>Thu, 28 May 2026 00:00:00 GMT</pubDate></item><item><title>Unauthenticated FinOps Cost APIs Hand Attackers a Free Cluster Recon Map</title><link>https://nuclide-research.com/research/case-studies--commercial--kubecost-opencost-finops-cost-api-survey-2026-05-28/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--kubecost-opencost-finops-cost-api-survey-2026-05-28/</guid><description>Sixty-seven Kubernetes cost-tooling endpoints (Kubecost 50, OpenCost 14, vendor-undetermined 3) answer their cost-model API with no authentication. Fifty-nine return full per-namespace cluster topology and summed daily spend on a single unauthenticated GET. That is the finding: a FinOps cost sidecar, deployed to watch the wallet, indexes the entire cluster a…</description><pubDate>Thu, 28 May 2026 00:00:00 GMT</pubDate></item><item><title>Model Serving and Registry Infrastructure Survey</title><link>https://nuclide-research.com/research/case-studies--commercial--model-serving-registry-survey-2026-05-28/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--model-serving-registry-survey-2026-05-28/</guid><description>Shodan sweep across 11 model-serving and registry platforms. MLflow is the only platform with a live, indexable population -- 10 confirmed unauthenticated instances spanning 6 cloud providers and 6 countries. Every other platform surveyed (vLLM, TorchServe, TensorFlow Serving, Ray Serve, BentoML, Seldon Core, KServe, ONNX Runtime Server, TGI, Triton) returne…</description><pubDate>Thu, 28 May 2026 00:00:00 GMT</pubDate></item><item><title>RAG Stragglers: LightRAG, RAGFlow, DocsGPT, Ragapp Population Survey</title><link>https://nuclide-research.com/research/case-studies--commercial--rag-stragglers-survey-2026-05-28/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--rag-stragglers-survey-2026-05-28/</guid><description>Four RAG platforms were left unfinished from prior survey runs: LightRAG, RAGFlow, DocsGPT, and Ragapp. This pass closes them out with a full Shodan harvest, verification, and arsenal run.</description><pubDate>Thu, 28 May 2026 00:00:00 GMT</pubDate></item><item><title>LLM Guard survey: guardrail platforms Shodan-dark except /metrics side-channel</title><link>https://nuclide-research.com/research/case-studies--commercial--safety-guardrail-survey-2026-05-28/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--safety-guardrail-survey-2026-05-28/</guid><description>Two LLM Guard v0.0.10 instances confirmed from an 11-platform Shodan sweep. Both have auth configured on scan endpoints (/analyze/prompt, /analyze/output, /scan/output). Both expose /metrics without auth. The metrics endpoints leak operator domain names, internal docker network topology, container IPs, and production request volumes. F2 (57.128.58.103) has a…</description><pubDate>Thu, 28 May 2026 00:00:00 GMT</pubDate></item><item><title>Cat-30: Specialty Data Layers — Population Survey</title><link>https://nuclide-research.com/research/case-studies--commercial--specialty-data-layers-survey-2026-05-28/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--specialty-data-layers-survey-2026-05-28/</guid><description>&lt;!-- ksat-tag:auto-generated:start --&gt;
## DCWF KSAT coverage</description><pubDate>Thu, 28 May 2026 00:00:00 GMT</pubDate></item><item><title>Voice/Audio AI Infrastructure Survey</title><link>https://nuclide-research.com/research/case-studies--commercial--voice-audio-ai-survey-2026-05-28/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--voice-audio-ai-survey-2026-05-28/</guid><description>&lt;!-- ksat-tag:auto-generated:start --&gt;
## DCWF KSAT coverage</description><pubDate>Thu, 28 May 2026 00:00:00 GMT</pubDate></item><item><title>[Case] Argo Workflows — Pre-Assessment OSINT Brief (2026-05-27)</title><link>https://nuclide-research.com/cases/case-studies--commercial--argo-workflows-osint-pre-assessment-2026-05-27/</link><guid isPermaLink="true">https://nuclide-research.com/cases/case-studies--commercial--argo-workflows-osint-pre-assessment-2026-05-27/</guid><description>Intelligence gathered before the population scan to fine-tune dork selection, fingerprint design, verification methodology, and scope. Not a survey — a survey prep document. The scan chain runs after this.</description><pubDate>Wed, 27 May 2026 00:00:00 GMT</pubDate></item><item><title>Argo Workflows: K8s-Native Workflow Orchestration Survey</title><link>https://nuclide-research.com/research/case-studies--commercial--argo-workflows-survey-2026-05-27/</link><guid isPermaLink="true">https://nuclide-research.com/research/case-studies--commercial--argo-workflows-survey-2026-05-27/</guid><description>Shodan survey of the global Argo Workflows population via TLS certificate fingerprint. 67 confirmed instances (initial survey, ssl:&quot;ArgoProj&quot; dork) plus 17 Argo-confirmed instances from a second non-overlapping population of 200 IPs (ssl:&quot;Argo Workflows&quot; dork). All tested instances across both populations: auth-enforced. Combined passive-discoverable populat…</description><pubDate>Wed, 27 May 2026 00:00:00 GMT</pubDate></item></channel></rss>