top of page


Critical Router Vulnerabilities: I-O Data Zero-Days Expose Network Risks
#ASM #Zeroday The Download Three critical zero-day vulnerabilities in I-O Data routers pose significant security threats, allowing...
Dec 9, 2024

CISA Orders Urgent Patching of SonicWall Vulnerability Amid Ransomware Exploits
#CISA #ASM The Download The Cybersecurity and Infrastructure Security Agency (CISA) has mandated the immediate patching of a critical...
Sep 15, 2024


Palo Alto Networks Zero-Day Exploited Since Late March 2024
#asm The Download Researchers at security firm Volexity claim nation state adversaries have been exploiting Palo Alto zero-Day, now known...
Apr 14, 2024


CISA Breach Affects Over 100,000 Individuals
#asm The Download In Congressional testimony, CISA Executive Director testified that information on 100,000 individuals were compromised...
Apr 7, 2024


9 out of 10 Cyber Attacks Use RDP
#asm The Download Sophos published a research report analyzing 150 incident response cases its IR team worked in 2023. In a startling...
Apr 7, 2024


Germany Warns 17,000 Unpatched Microsoft Exchange Servers Pose Risk
#asm The Download The German agency responsible for information security, BIS, warned last week that over 17,000 unpatched Microsoft...
Mar 31, 2024


Sign1 Malware Infects Over 39,000 WordPress Sites
#asm The Download Security research firm Sucuri says over 39,000 websites have been compromised with Sign1 malware that exploits...
Mar 24, 2024


Chinese Group Sold Access to US & UK Networks by Exploiting F5 & ScreenConnect Vulnerabilities
#asm The Download Google's Mandiant division assesses with moderate confidence the Chinese group UNC5174, which also goes by Uteus, is...
Mar 24, 2024


CISA Compromised by Ivanti Vulnerability it Warned About
#asm The Download In another follow-up to a story from earlier this year, CISA disclosed its servers have been compromised following...
Mar 17, 2024

TeamCity Flaw Actively Exploited to Create Hundreds of New Accounts
#ASM The Download In February, we warned about a vulnerability from JetBrains in the TeamCity software used by many software companies to...
Mar 17, 2024


Midnight Blizzard Leverages Microsoft Emails to Attack Downstream MSPs
#asm #midnightblizzard #cozybear #apt29 #svr #msp The Download Microsoft revealed this week that the Midnight Blizzard (Russian SVR)...
Mar 9, 2024


VMWare Sandbox Escape Vulnerability Deemed Critical
#vmware #hypervisorescape #asm The Download One of the most important attributes of a virtual machine is the separation that hypervisors...
Mar 7, 2024


CA Town Declares Cyber State of Emergency After Ransomware Attack
#ransomware #asm The Download In what may be a first for an American city, the city manager of Oakley CA declared a state of emergency...
Mar 2, 2024


ConnectWise Discloses Severe ScreenConnect Vulns Under Active Exploitation
#ASM #MSP The Download If you are running an on-prem version of ConnectWise ScreenConnect that has not been patched this week, you need...
Feb 24, 2024

JetBrains Announces RCE Vulnerability for its On Premise TeamCity Software
#ASM #vulnerabilitymanagement The Download If you run on-premise software for SDLC from JetBrains, this vulnerability is worth paying...
Feb 17, 2024


Fortinet VPN Targeted by Chinese Actor Volt Typhoon Attacks
#ASM #VPN #VoltTyphoon The Download Tell me if this sounds familiar: Chinese adversaries exploiting VPN flaw from major security vendor....
Feb 11, 2024

Ransomware Payments Top $1B in 2023
#ASM #ransomware The Download In case you thought ransomware was a fad that faded out, think again. Research firm Chainalysis published...
Feb 8, 2024


What We Can Learn from the Midnight Blizzard Attack on Microsoft
#ASM #MidnightBlizzard #CozyBear #Nobelium #APT29 #UNC2452 #CTI On January 12, 2024, Microsoft detected an attack on their email systems...
Jan 27, 2024


Web Applications: Don't Sleep on this Attack Surface
#pentesting #webapplicationsecurity #ASM #WordPressplugins We talk a lot about attack surfaces because it is a useful construct in...
Jan 26, 2024

Hackers Exploiting Confluence RCE Vulnerability
#cybersecurity #asm #ai #aisecurity Summary Cyber heroes take note: hackers are beginning to exploit a critical RCE vulnerability in...
Jan 23, 2024
bottom of page