Blog Entries

11. 09. 2026 Csaba Remenar NetEye

The Hidden Challenge Behind Galera Synchronization: Achieving True High Availability in NetEye Clusters

I’m writing this article from the point of view of a NetEye system engineer. I want to share my findings from my path of improving the quality of the underlying Galera cluster architecture. The aim is to provide you with a practical guide for realizing non-blocking state transfers, Galera-aware health checks, database tuning and reliable…

Read More
10. 09. 2026 Simone Ragonesi Offensive Security, Red Team, SEC4U

Red Team Phishing Operations: A Practical Guide to Mail Infrastructure

Every red team engagement that involves a phishing scenario runs into the same wall sooner or later: you need a mail server you fully control, one that behaves like a real corporate mail system, sends and receives reliably, and does not torch your reputation the moment you use it. The answer is to compose your…

Read More
10. 09. 2026 Francesco Belacca Development

Measuring Post-Quantum Security in Go and .NET

TL;DR Results: GitHub Actions run 32970330873 at commit 1846eb4a863015cbc0a3c75431b42d138b8706c3 This experiment measures two different workloads in Go 1.27 and .NET 10/.NET 11(preview): It used one ubuntu-24.04 runner, 20 independent process samples, and 100 measured operations per sample. For TLS, the cleanest comparison is classical versus hybrid within the same implementation and, for .NET, the same OpenSSL provider…

Read More
09. 09. 2026 Davide Zeni Bug Fixes, NetEye

NetEye 4 – Security Advisory (Keycloak)

Important: Keycloak security update Type/Severity NetEye Product Security has rated this update as having a high security impact. Topic An update for the keycloak packages is now available for NetEye 4. Security Fix for NetEye 4.49 Summary This Keycloak update (version 26.7.3) fixes 20 security issues found during internal review. None of them are rated Critical for running…

Read More
08. 09. 2026 Damiano Chini Bug Fixes, NetEye

Bug Fixes for NetEye 4.46, 4.47, 4.48 and 4.49

Icinga 2 live-creation requests are no longer lost during reload During a Director deployment, Icinga 2 reloads its configuration in the background. Previously, live-creation requests could still be processed for a short time after a reload had been requested. This created a race condition: a request could be processed by the old Icinga 2 process…

Read More
03. 09. 2026 Patrick Harasser Bug Fixes, NetEye

NetEye 4 – Security Advisory (Elastic Stack)

Important: Elastic Stack security update Type/Severity NetEye Product Security has rated this update as having a High security impact. Topic Updates for the Elastic Stack packages are now available for NetEye 4. Security Fix for NetEye 4.49 CVEs Elastic Agent Kibana Most of the 11 CVEs are authorization and access control weaknesses affecting Kibana, including…

Read More
01. 09. 2026 Reinhold Trocker Log-SIEM

Query Historical Data without Restoring Everything: Using Elasticsearch Searchable Snapshots

Historical log data is valuable – until the cost of keeping every shard online starts competing with the value of the data itself. Elasticsearch searchable snapshots offer a practical middle ground for a NetEye installation: Keep an index in a snapshot repository, mount it when an investigation needs it, and query it through Elasticsearch or…

Read More
26. 08. 2026 Davide Zeni Bug Fixes, NetEye

NetEye 4 – Security Advisory (Keycloak)

Important: Keycloak security update Type/Severity NetEye Product Security has rated this update as having a critical security impact. Topic An update for the keycloak packages is now available for NetEye 4. Security Fix for NetEye 4.49 Summary This vulnerability, tracked as CVE-2026-18963 (CVSS 9.1, Critical), affects the reset-credentials authentication flow in Keycloak. Due to improper state validation, an…

Read More
25. 08. 2026 Alice Rozzoni Documentation, Knowledge Management, Uncategorized

Software User Manuals Can’t Be PDFs

One of the most common questions we hear is: “Why don’t we just put everything into one PDF?” It’s a fair question. After all, that’s how documentation has worked for decades. Buy a washing machine? You get a user manual. Buy a printer? You get a user manual. Buy a coffee machine? You get a…

Read More
24. 08. 2026 Emanuele Bernardi Maker & Embedded

Back to Basics: Assembly and Machine Code on 2 KB of RAM

In a world where RAM and CPU demands are increasing exponentially (and prices too) and 4 GB of RAM seems like nothing nowadays, let’s have some fun again and learn some assembly and machine code with a RISC-V processor with 16 KB of Flash memory and 2 KB of SRAM (yes, kilobytes). This series will…

Read More
20. 08. 2026 Patrick Harasser Bug Fixes, NetEye

NetEye 4.49 – Security Advisory (Icinga 2)

Important: Icinga 2 security update Type/Severity NetEye Product Security has rated this update as having a medium security impact. Topic An update for the icinga package is now available for NetEye 4. Security Fix for NetEye 4.49 Summary This release fixes authorization bypasses in /v1/events filter expressions and a node-to-node memory-exhaustion DoS, while also preventing sensitive data from…

Read More
17. 08. 2026 Davide Sbetti Bug Fixes, NetEye

Bug Fixes for NetEye 4.49

RKE2 Otel Collector DNS requirement During updates and first installations on systems where the Elastic Stack feature module was installed, an extra requirement was present. In particular, the DNS defined in the resolv.conf of the machine was required to resolve the domain set as frontend domain the in the /etc/neteye-environment.yaml. This requirement was now dropped…

Read More
14. 08. 2026 Patrick Harasser Bug Fixes, NetEye

NetEye 4 – Security Advisory (Elastic Stack)

Important: Elastic Stack security update Type/Severity NetEye Product Security has rated this update as having a High security impact. Topic Updates for the Elastic Stack packages are now available for NetEye 4. Security Fix for NetEye 4.49 CVEs Elasticsearch Fleet Server Kibana Most of the 36 CVEs are Denial of Service vulnerabilities affecting Elasticsearch (uncontrolled…

Read More
14. 08. 2026 Juergen Vigna NetEye

Migrating Your NetEye Server to New Hardware (Part 2)

Introduction My last post was Migrating a NetEye Server to New Hardware (Part 1), so take a look at that one if you haven’t already and then continue reading the rest of the Migration process here. Fix Unix Users and Groups (Only on Clusters) The NetEye installation process unfortunately doesn’t fix user/group ID’s for the…

Read More
12. 08. 2026 Davide Sbetti Bug Fixes, NetEye

Bug Fixes for NetEye 4.49

GLPI 11 install and upgrade issue We identified and fixed a bug that could cause the neteye install or neteye upgrade command to fail on clusters in case the service was not running on the same node as Icingaweb2 Keycloak install issue We identified and fixed a bug that could cause the neteye install command…

Read More

Archive