Changelog

Date: 2025/09/03 (1756882800)

A set of cascading fails caused a 404 yesterday evening for visits to the main web site. The API was still functioning fine. A cronjob was turned off during a code push and was not re-enabled. It was such a simple oops. One would think, well, wouldn't you have monitoring to catch that? Absolutely! But then the monitoring got caught in a blacklist tied to the new IP space for the mail server and.. the messages did not get out. Yes, phone calls were received but not answered. After all, this was after hours and we try to keep boundaries. As noted, compounding, cascading failures. We will do better to ensure this does not happen again. Workarounds and adjustments have been made, but we are (obviously) still shaking out some bugs with this migration. Oh, Internet.

Date: 2025/09/02 (1756796400)

A function to globally force logout of all sessions was not available. Further, password changes didn't force logout of other devices in the case where a token was compromised, so that wasn't good. This has been addressed and you now have options to nuke other sessions via the change password flow and also just as a general option under your settings. Kudos to jainam28 for the finding!

Date: 2025/08/27 (1756278000)

A large migration took place today to new hardware and new operating systems. There were many moving pieces touched but extreme focus was taken to ensure no breakage. That said, now something will break. If you notice anything broken, please ping us!

Date: 2025/08/18 (1755500400)

Signed redirects added where applicable. If you noticed any failed flows, holler.

Date: 2025/08/17 (1755414000)

A staggering amount of UI changes have been made and although testing has occurred, bugs may exist. Hopefully things are more tolerable now. Please report any brokenness if you see it. There was another block on checkouts due to overly aggressively blocking a /10. Apologies. Signed redirects are being added for authenticated flows for ease of use. They will be fully rolled out tomorrow.

Date: 2025/08/11 (1754895600)

Had a bit of downtime this morning as some updates had to be applied while offline. In the midst of going through various conference related data from the past week. If you have anything you want added to the archive whether it be slides or a tool, hit us up!

Date: 2025/08/05 (1754377200)

We expect some interesting files to post this week. Although the site will have no representation in Vegas this year, we hope everyone has a safe time and enjoys the conferences and of course, the parties. If you have a new tool or finding you are releasing, or notice one that should be included in our archive, please drop us a line!

Date: 2025/07/21 (1753081200)

Plenty of interesting files today as well as headlines. Friendly reminder that automating scraping of the site results in not only failure, but blocking at the perimeter.

Date: 2025/07/16 (1752649200)

Bot activity will continue to be dropped as detected. If you don't want your entire /12 blocked, please stop your crawls Microsoft. If anyone can afford API access, it's you. Shameful.

Date: 2025/07/04 (1751612400)

A bad javascript code push caused an intermittent API purchase flow failure. It has been addressed. Thanks to Sam at Saint for alerting us to this issue.

Date: 2025/06/22 (1750575600)

A DDoS attack hit us this morning. It's been mitigated.

Date: 2025/06/10 (1749538800)

This morning's downtime was due to normal system updates, albeit out of band. Everything should be back online now.

Date: 2025/06/06 (1749193200)

There is a very frustrating intermittent fail w/ confirmation emails. We are working on it. Apologies for any inconvenience.

Update @ 6:25 PM PST - this appears fixed. An old configuration was superseding the primary configuration from another file approximately 1 out of every 5 attempts to email. Infuriating, but addressed. Slowly removing egg off of face. Please shoot us an email at feedback@ if there are any more issues. Special thanks to Rafael for noting the fail.

Date: 2025/05/20 (1747724400)

You may notice a lot of older data being added with current dates. We are in the midst of fixing gaps in historical data for the sake of ensuring full datasets in the archive. This is expected behavior.

Date: 2025/05/12 (1747033200)

Updated tagging on historical archive for better symmetry. Fixed automation for various advisories and ensured no data gaps for particular sets.
Removed orphaned tagging causing certain counts to be off under tag listings.

Date: 2025/05/11 (1746946800)

Massive dataset updates to the backend taking place for historical data, mostly not visible to the casual user. Let us know if you see anything broken.

Search caching had some issues with rendering for news due to an overly aggressive memory clean up flow. They have been addressed.

Date: 2025/05/05 (1746428400)

Profile photo uploading in production broke with a unique constraint we overlooked after some major updates last week. It has been fixed. Thanks to nu11secur1ty for calling it out!

Date: 2025/05/02 (1746169200)

Fixed a legacy profile image rendering issue on favorites.
Fixed naming issue on certain windows tags for pulldowns.

Date: 2025/04/30 (1745996400)

Fixed a pulldown issue on file and news nav.
Fixed an smtps issue on the mail server that probably no one noticed.

Date: 2025/04/28 (1745823600)

Migrated CSRF tokenization from framework to custom flow. If you run into any weird behavior, please send us an email.


Home

 About | Terms | Copyright | Privacy | BlueSky | X | Mastodon
 © 2024 - 2025 All Rights Reserved Packet Storm Security, LLC