The Critical Role of Autonomous Penetration Testing in Strengthening Defense in Depth Jun 10, 2024NodeZero helps JTI Cybersecurity scale by automating penetration testing, finding vulnerabilities, and enhancing client security efficiently and effectively.
Advancing Emergency Response Security with Autonomous Pentesting May 9, 2024In an increasingly interconnected world, where digital technologies infiltrate every aspect of society, vulnerabilities in these systems can be exploited by malicious actors to disrupt emergency services, compromise sensitive information, or even endanger lives.
Detection Done Differently: Best practices for automating & improving threat detection in your org Sep 25, 2024As cyber attacks become increasingly complex, sophisticated, and more frequent, security teams need to be able to identify attacks faster and with higher accuracy. But users report that current detection workflows have high set-up and maintenance needs and introduce lots of noise and time-consuming false-positives. In this session, we highlight new approaches to overcome those drawbacks: – Why rapid threat detection is increasingly critical for every security team in today’s threat landscape. – A new approach to threat detection that doesn’t increase your team’s workload. – A preview of how NodeZero Tripwires helps you detect threats faster and accurately.
Mastering Cloud Security: Uncovering Hidden Vulnerabilities with NodeZero™ Aug 21, 2024Master cloud security with NodeZero™ Cloud Pentesting. Easily uncover vulnerabilities across AWS and Azure, prioritize identity risks, and secure your environment in just minutes. Stay ahead of threats.
Strengthening Cloud Security: A Comprehensive Approach Aug 20, 2024In the evolving landscape of cloud and hybrid environments, robust security measures are more critical than ever. In this webinar Brad Hong, CISSP, explores autonomous pentesting methodologies and strategies that can help your organization take a more efficient and comprehensive approach to securing your entire digital infrastructure that embraces multiple cloud vendors.
NodeZero APT: Azure Password Spray Leads to Business Email Compromise NodeZero APT: Azure Password Spray to Business Email Compromise
CVE-2024-8190: Investigating CISA KEV Ivanti Cloud Service Appliance Command Injection Vulnerability Sep 16, 2024On September 10, 2024, Ivanti released a security advisory for a command injection vulnerability for it's Cloud Service Appliance (CSA) product. Initially, this CVE-2024-8190 seemed uninteresting to us given that Ivanti stated that it was an authenticated...
CVE-2023-28324 Deep Dive: Ivanti Endpoint Manager AgentPortal Improper Input Validation Sep 13, 2024Update: 2024-09-16 We initially wrote this post in reference to CVE-2024-29847, however this post actually describes CVE-2023-28324. We had incorrectly assumed that the SU5 update was comprehensive which resulted in us mistaking CVE-2023-28324 for CVE-2024-29847. The...
CVE-2024-28987: SolarWinds Web Help Desk Hardcoded Credential Vulnerability Deep-Dive On August 13, 2024, SolarWinds released a security advisory for Web Help Desk (WHD) that detailed a deserialization remote code execution vulnerability. This vulnerability, CVE-2024-28986, was added to CISA's Known Exploited Vulnerability (KEV) catalog two days later...
Unveiling NodeZero Tripwires™: Horizon3.ai Enhances Penetration Testing with Integrated Threat Detection Sep 10, 2024Business Wire 09/10/2024 Horizon3.ai, a global leader in autonomous security solutions, today unveiled NodeZero Tripwires™, an addition to its product suite that integrates attack detection directly into the penetration testing process. This first-of-its-kind solution...
Horizon3.ai Partners with FedHIVE to Revolutionize Cybersecurity in the Public Sector Aug 13, 2024Business Wire 08/13/2024 Horizon3.ai, a global leader in autonomous security solutions for both public and private sectors, today announced their partnership with FedHIVE, a leading cloud service offering for federal agencies, government contractors, and commercial...
Tech Mahindra and Horizon3.ai Partner to Enhance AI-based Cyber Resilience for Global Customers Aug 6, 2024Business Wire 08/06/2024 Tech Mahindra (NSE: TECHM), a leading global provider of technology consulting and digital solutions to enterprises across industries, announced a strategic partnership with Horizon3.ai, a leader in autonomous security to elevate the...
12 November Maximizing Offensive Security: Addressing Shortcomings and Improving EffectivenessMaximizing Offensive Security: Addressing Shortcomings and Improving Effectiveness3:30 pmZoom Webinar
21 November Information Security ForumInformation Security Forum7:30 amOmni Boston Hotel at the Seaport
12 December Uncover Kubernetes Security Weaknesses with NodeZero™Uncover Kubernetes Security Weaknesses with NodeZero™1:00 pmZoom Webinar
The Critical Role of Autonomous Penetration Testing in Strengthening Defense in Depth Jun 10, 2024NodeZero helps JTI Cybersecurity scale by automating penetration testing, finding vulnerabilities, and enhancing client security efficiently and effectively.
Advancing Emergency Response Security with Autonomous Pentesting May 9, 2024In an increasingly interconnected world, where digital technologies infiltrate every aspect of society, vulnerabilities in these systems can be exploited by malicious actors to disrupt emergency services, compromise sensitive information, or even endanger lives.
Detection Done Differently: Best practices for automating & improving threat detection in your org Sep 25, 2024As cyber attacks become increasingly complex, sophisticated, and more frequent, security teams need to be able to identify attacks faster and with higher accuracy. But users report that current detection workflows have high set-up and maintenance needs and introduce lots of noise and time-consuming false-positives. In this session, we highlight new approaches to overcome those drawbacks: – Why rapid threat detection is increasingly critical for every security team in today’s threat landscape. – A new approach to threat detection that doesn’t increase your team’s workload. – A preview of how NodeZero Tripwires helps you detect threats faster and accurately.
Mastering Cloud Security: Uncovering Hidden Vulnerabilities with NodeZero™ Aug 21, 2024Master cloud security with NodeZero™ Cloud Pentesting. Easily uncover vulnerabilities across AWS and Azure, prioritize identity risks, and secure your environment in just minutes. Stay ahead of threats.
Strengthening Cloud Security: A Comprehensive Approach Aug 20, 2024In the evolving landscape of cloud and hybrid environments, robust security measures are more critical than ever. In this webinar Brad Hong, CISSP, explores autonomous pentesting methodologies and strategies that can help your organization take a more efficient and comprehensive approach to securing your entire digital infrastructure that embraces multiple cloud vendors.
NodeZero APT: Azure Password Spray Leads to Business Email Compromise NodeZero APT: Azure Password Spray to Business Email Compromise
CVE-2024-8190: Investigating CISA KEV Ivanti Cloud Service Appliance Command Injection Vulnerability Sep 16, 2024On September 10, 2024, Ivanti released a security advisory for a command injection vulnerability for it's Cloud Service Appliance (CSA) product. Initially, this CVE-2024-8190 seemed uninteresting to us given that Ivanti stated that it was an authenticated...
CVE-2023-28324 Deep Dive: Ivanti Endpoint Manager AgentPortal Improper Input Validation Sep 13, 2024Update: 2024-09-16 We initially wrote this post in reference to CVE-2024-29847, however this post actually describes CVE-2023-28324. We had incorrectly assumed that the SU5 update was comprehensive which resulted in us mistaking CVE-2023-28324 for CVE-2024-29847. The...
CVE-2024-28987: SolarWinds Web Help Desk Hardcoded Credential Vulnerability Deep-Dive On August 13, 2024, SolarWinds released a security advisory for Web Help Desk (WHD) that detailed a deserialization remote code execution vulnerability. This vulnerability, CVE-2024-28986, was added to CISA's Known Exploited Vulnerability (KEV) catalog two days later...
Unveiling NodeZero Tripwires™: Horizon3.ai Enhances Penetration Testing with Integrated Threat Detection Sep 10, 2024Business Wire 09/10/2024 Horizon3.ai, a global leader in autonomous security solutions, today unveiled NodeZero Tripwires™, an addition to its product suite that integrates attack detection directly into the penetration testing process. This first-of-its-kind solution...
Horizon3.ai Partners with FedHIVE to Revolutionize Cybersecurity in the Public Sector Aug 13, 2024Business Wire 08/13/2024 Horizon3.ai, a global leader in autonomous security solutions for both public and private sectors, today announced their partnership with FedHIVE, a leading cloud service offering for federal agencies, government contractors, and commercial...
Tech Mahindra and Horizon3.ai Partner to Enhance AI-based Cyber Resilience for Global Customers Aug 6, 2024Business Wire 08/06/2024 Tech Mahindra (NSE: TECHM), a leading global provider of technology consulting and digital solutions to enterprises across industries, announced a strategic partnership with Horizon3.ai, a leader in autonomous security to elevate the...
12 November Maximizing Offensive Security: Addressing Shortcomings and Improving EffectivenessMaximizing Offensive Security: Addressing Shortcomings and Improving Effectiveness3:30 pmZoom Webinar
21 November Information Security ForumInformation Security Forum7:30 amOmni Boston Hotel at the Seaport
12 December Uncover Kubernetes Security Weaknesses with NodeZero™Uncover Kubernetes Security Weaknesses with NodeZero™1:00 pmZoom Webinar