Opens in a new tab
The Attack Path Tour

Resource Center

Welcome to our cybersecurity resource center where we uncover how malicious actors exploit weaknesses in systems, while going beyond the technical aspects and examining real-world perspectives across various industries.

LATEST VULNERABILITIES

Bomb Streamline Icon: https://streamlinehq.com

CVE-2026-76504

CVE-2026-76504 is a critical, actively exploited Cisco Catalyst SD-WAN Manager vulnerability that allows unauthenticated API access as the admin user. Horizon3 reverse engineered the flaw, and NodeZero® Rapid Response safely validates exposure.
Read More →
Bomb Streamline Icon: https://streamlinehq.com

CVE-2026-19490

CVE-2026-19490 is a critical Citrix NetScaler ADC and Gateway authentication bypass vulnerability included in CISA’s Known Exploited Vulnerabilities catalog. NodeZero® Rapid Response safely validates exposure.
Read More →

SEARCH

CATEGORIES

Filter - Checkbox

TAGS

Filter - Checkbox

SEARCH

Filter - Checkbox
Filter - Checkbox

    Horizon3 + CrowdStrike: Prove. Prioritize. Verify.

    October 2, 2026
    See how Horizon3 and CrowdStrike connect NodeZero exploitability intelligence with Falcon Next-Gen SIEM and Fusion SOAR to prove, prioritize, remediate, and verify exploitable risk.
    Horizon3 and CrowdStrike NodeZero integration

    What Security Metrics Actually Matter?

    October 1, 2026
    Security activity doesn’t always equal risk reduction. Learn how attack paths, business impact, verification, remediation speed, and recurrence can show whether CTEM is actually working.
    CTEM security metrics for measuring attack paths, impact reduction, verification, and recurrence

    CVE-2026-76504

    September 30, 2026
    CVE-2026-76504 is a critical, actively exploited Cisco Catalyst SD-WAN Manager vulnerability that allows unauthenticated API access as the admin user. Horizon3 reverse engineered the flaw, and NodeZero® Rapid Response safely validates exposure.

    The ECB’s Deadline is Looming

    Learn What a Credible Action Plan and Response Looks Like On 7 July 2026, the ECB made AI-enabled cyber risk a board-level, time-bound supervisory priority for significant institutions.With the 31 October 2026 deadline fast approaching, banks need to assess their exposure now and submit a concrete action plan to their Joint Supervisory Team. Join us…
    Webinar on preparing for the ECB AI cyber risk deadline for banks

    Horizon3’s Tales from the Trenches: Anthropic’s Mythos and Rejetto HFS

    September 30, 2026
    Horizon3 researchers used Anthropic’s Mythos to uncover a chain of cryptographic weaknesses in Rejetto HFS, recover a predictable signing key, forge an admin session, and achieve remote code execution.
    Horizon3 vulnerability research using Anthropic Mythos to uncover remote code execution in Rejetto HFS

    Your Password Policy Can Pass. Your Passwords Can Still Fail.

    See Your Active Directory Passwords From an Attacker’s Perspective Join Horizon3 and Shaun Hunt, CIO of McKenney’s and a longtime NodeZero® customer, for a live conversation about Active Directory password exposure and how NodeZero AD Password Audit helps uncover credentials that could be targeted through password cracking, password spray, credential stuffing, and credential reuse.
    Webinar on Active Directory password risk and NodeZero Password Audit

    CVE-2026-19490

    September 28, 2026
    CVE-2026-19490 is a critical Citrix NetScaler ADC and Gateway authentication bypass vulnerability included in CISA’s Known Exploited Vulnerabilities catalog. NodeZero® Rapid Response safely validates exposure.
    CVE-2026-19490 Citrix NetScaler ADC and Gateway authentication bypass vulnerability

    Trading Maintenance for Momentum: Scaling Security Validation Across 230+ Sites

    September 25, 2026
    See how a global automotive technology manufacturer used NodeZero to reduce testing overhead, cut comparable test runtime by 50%, and scale security validation across more than 230 sites.
    Customer story about a global automotive manufacturer using NodeZero to scale security validation across more than 230 sites.

    Federal & Mission-Critical Security Validation

    How federal security teams perform continuous validation — identity-first testing, exploit-led proof, and FedRAMP-aligned remediation with NodeZero Federal™.

    NodeZero Federal

    September 22, 2026
    Horizon3's NodeZero Federal provides production-safe, autonomous penetration testing for federal agencies. Achieve continuous readiness with proven, exploitable findings and rapid retest validation.