How We Hacked Thousands of Data Centers Using a 20-Year-Old VulnerabilitySee how we did it
How We Hacked Thousands of Data Centers in Minutes Using a 20-Year-Old Vulnerability

Featured

How We Hacked Thousands of Data Centers in Minutes Using a 20-Year-Old Vulnerability

A 20-year-old vulnerability gave us access to bare-metal servers - and a foothold in the no man’s land of data center infrastructure.

Michael Katchinskiy
Michael KatchinskiyJul 29, 2026 • 10 min read

Stay in the loop

Be the first to know about product updates, security research, and new blog posts from Lava.

Securing the Metal Beneath the Model: Two Big Shifts Exposing AI Data Center
Eyal Soreff
Eyal SoreffJuly 16, 2026 • 3 min read

Securing the Metal Beneath the Model: Two Big Shifts Exposing AI Data Center

While the security industry fixates on model risks, AI data centers are creating a dangerous blind spot. Rapid, bare-metal deployments have left hardware security lagging. We are introducing FORGE, a community-driven framework designed to secure the "metal beneath the model" and fix critical infrastructure gaps.

Breaking the Trust: Introducing Firmware Integrity
Yakir Kadkoda
Yakir KadkodaJul 15, 2026 • 8 min read

Breaking the Trust: Introducing Firmware Integrity

Firmware runs before the operating system and controls the hardware beneath it. Maintaining its integrity is essential to ensuring that modern infrastructure starts, and remains, in a trusted state.

Breaking the Trust: Firmware Compromise in Modern Infrastructure
Michael Katchinskiy
Michael KatchinskiyJul 15, 2026 • 9 min read

Breaking the Trust: Firmware Compromise in Modern Infrastructure

A look at real-world firmware attacks targeting UEFI, BMCs, and GPUs to gain stealthy, persistent access below the operating system.

Breaking the Trust: Enforcing Firmware Integrity
Yakir Kadkoda
Yakir KadkodaJul 15, 2026 • 7 min read

Breaking the Trust: Enforcing Firmware Integrity

Firmware inventory can reveal what version a device reports, but it cannot prove that the firmware currently running is genuine. This blog explains how hardware-backed attestation, SPDM, ERoTs, and CoRIMs enable organizations to move from self-reported visibility to cryptographically verified firmware trust.

The Runtime Gap: Introducing Runtime Integrity
Yakir Kadkoda
Yakir KadkodaJul 15, 2026 • 5 min read

The Runtime Gap: Introducing Runtime Integrity

When machines move between tenants, AI infrastructure teams face a real trade-off: reboot for safety and lose valuable GPU time, or rely on partial cleanup and risk a compromise lurking beneath the surface.

The Runtime Gap: Runtime Attacks in Modern Infrastructure
Michael Katchinskiy
Michael KatchinskiyJul 15, 2026 • 10 min read

The Runtime Gap: Runtime Attacks in Modern Infrastructure

From kernel rootkits to eBPF backdoors, attackers are targeting the deepest layers of your infrastructure to gain persistent, undetectable access. Once they control the runtime, every monitoring tool you trust can be lying to you.

The Runtime Gap: Enforcing Runtime Integrity
Yakir Kadkoda
Yakir KadkodaMay 29, 2026 • 5 min read

The Runtime Gap: Enforcing Runtime Integrity

Attackers operate after boot, manipulating kernels, injecting libraries, and hiding in plain sight. Traditional trust models can't keep up. It's time to shift from static trust to continuous runtime verification.

Want to Talk?

We'd love to hear what brought you here.
Whether you're tackling these challenges or simply exploring, let's talk.