Ashish Verma
4 articles
-
ResearchThe Industrialization of Botnets: Automation and Scale as a New Threat Infrastructure
Today’s botnet operations, enabled by automation and shared resources, are outpacing traditional response and patching models. This highlights the growing importance of security capabilities that can match the speed and scale of these attacks.
February 26th, 2026Ashish Verma, Deep Patel, Simon Dulude
Read article -
BlogReact2Shell「CVE-2025-55182」の分析、PoCを巡る混乱と悪用の広がり
脆弱性「CVE-2025-55182」は、React Server Components に影響する、CVSS 10.0の事前認証型リモートコード実行の脆弱性です。多数に及ぶ偽の概念実証(PoC:Proof-of-Concept)、スキャナー、攻撃コード、誤解があふれる状況の中で、本稿ではこれらの実態について解説します。
December 10th, 2025 21 minPeter Girnus, Deep Patel, Jack Walsh, Lucas Silva…
Read article -
Blogトークナイザーのズレが招くLLM運用のコストとセキュリティの危機
あらゆる大規模言語モデルの中心にはトークナイザーがあります。これがわずかにずれていくとき、見過ごされた欠陥や悪意ある干渉のいずれによってであれ、コストは上昇し、性能は低下します。この新たなリスクの実態と影響、そしてそれを防ぐための手立てについて考察します。
October 21st, 2025 16 minAshish Verma, Jingfu Zhang
Read article -
ResearchExploiting Trust in Open-Source AI: The Hidden Supply Chain Risk No One Is Watching
As open-source AI models become foundational to digital infrastructure, hidden backdoors and tampered supply chains pose a growing, under-recognized threat that traditional security tools can fail to detect.
July 25th, 2025Ashish Verma, Deep Patel
Read article