top of page


Dec 9, 2024
Critical Router Vulnerabilities: I-O Data Zero-Days Expose Network Risks
#ASM #Zeroday The Download Three critical zero-day vulnerabilities in I-O Data routers pose significant security threats, allowing...

Sep 15, 2024
CISA Orders Urgent Patching of SonicWall Vulnerability Amid Ransomware Exploits
#CISA #ASM The Download The Cybersecurity and Infrastructure Security Agency (CISA) has mandated the immediate patching of a critical...


Apr 14, 2024
Palo Alto Networks Zero-Day Exploited Since Late March 2024
#asm The Download Researchers at security firm Volexity claim nation state adversaries have been exploiting Palo Alto zero-Day, now known...


Apr 7, 2024
CISA Breach Affects Over 100,000 Individuals
#asm The Download In Congressional testimony, CISA Executive Director testified that information on 100,000 individuals were compromised...


Apr 7, 2024
9 out of 10 Cyber Attacks Use RDP
#asm The Download Sophos published a research report analyzing 150 incident response cases its IR team worked in 2023. In a startling...


Mar 31, 2024
Germany Warns 17,000 Unpatched Microsoft Exchange Servers Pose Risk
#asm The Download The German agency responsible for information security, BIS, warned last week that over 17,000 unpatched Microsoft...


Mar 24, 2024
Sign1 Malware Infects Over 39,000 WordPress Sites
#asm The Download Security research firm Sucuri says over 39,000 websites have been compromised with Sign1 malware that exploits...


Mar 24, 2024
Chinese Group Sold Access to US & UK Networks by Exploiting F5 & ScreenConnect Vulnerabilities
#asm The Download Google's Mandiant division assesses with moderate confidence the Chinese group UNC5174, which also goes by Uteus, is...


Mar 17, 2024
CISA Compromised by Ivanti Vulnerability it Warned About
#asm The Download In another follow-up to a story from earlier this year, CISA disclosed its servers have been compromised following...

Mar 17, 2024
TeamCity Flaw Actively Exploited to Create Hundreds of New Accounts
#ASM The Download In February, we warned about a vulnerability from JetBrains in the TeamCity software used by many software companies to...


Mar 9, 2024
Midnight Blizzard Leverages Microsoft Emails to Attack Downstream MSPs
#asm #midnightblizzard #cozybear #apt29 #svr #msp The Download Microsoft revealed this week that the Midnight Blizzard (Russian SVR)...


Mar 7, 2024
VMWare Sandbox Escape Vulnerability Deemed Critical
#vmware #hypervisorescape #asm The Download One of the most important attributes of a virtual machine is the separation that hypervisors...


Mar 2, 2024
CA Town Declares Cyber State of Emergency After Ransomware Attack
#ransomware #asm The Download In what may be a first for an American city, the city manager of Oakley CA declared a state of emergency...


Feb 24, 2024
ConnectWise Discloses Severe ScreenConnect Vulns Under Active Exploitation
#ASM #MSP The Download If you are running an on-prem version of ConnectWise ScreenConnect that has not been patched this week, you need...

Feb 17, 2024
JetBrains Announces RCE Vulnerability for its On Premise TeamCity Software
#ASM #vulnerabilitymanagement The Download If you run on-premise software for SDLC from JetBrains, this vulnerability is worth paying...


Feb 11, 2024
Fortinet VPN Targeted by Chinese Actor Volt Typhoon Attacks
#ASM #VPN #VoltTyphoon The Download Tell me if this sounds familiar: Chinese adversaries exploiting VPN flaw from major security vendor....

Feb 8, 2024
Ransomware Payments Top $1B in 2023
#ASM #ransomware The Download In case you thought ransomware was a fad that faded out, think again. Research firm Chainalysis published...


Jan 27, 2024
What We Can Learn from the Midnight Blizzard Attack on Microsoft
#ASM #MidnightBlizzard #CozyBear #Nobelium #APT29 #UNC2452 #CTI On January 12, 2024, Microsoft detected an attack on their email systems...


Jan 26, 2024
Web Applications: Don't Sleep on this Attack Surface
#pentesting #webapplicationsecurity #ASM #WordPressplugins We talk a lot about attack surfaces because it is a useful construct in...

Jan 23, 2024
Hackers Exploiting Confluence RCE Vulnerability
#cybersecurity #asm #ai #aisecurity Summary Cyber heroes take note: hackers are beginning to exploit a critical RCE vulnerability in...
bottom of page