Resource Center
Welcome to our cybersecurity resource center where we uncover how malicious actors exploit weaknesses in systems, while going beyond the technical aspects and examining real-world perspectives across various industries.
LATEST VULNERABILITIES
CVE-2026-9586 is a critical unauthenticated SQL injection vulnerability in Sangoma Switchvox that can lead to remote code execution. Horizon3 has observed active exploitation attempts in the wild.
Read More →CVE-2026-81578 and CVE-2026-82078 can be chained to achieve unauthenticated remote code execution in PaperCut NG/MF. NodeZero® Rapid Response safely validates whether the attack chain is exploitable.
Read More →WEBINAR REPLAY
SEARCH
CATEGORIES
TAGS
SEARCH
CATEGORIES
TAGS
CVE-2026-9586
September 1, 2026
CVE-2026-9586 is a critical unauthenticated SQL injection vulnerability in Sangoma Switchvox that can lead to remote code execution. Horizon3 has observed active exploitation attempts in the wild.
CVE-2026-81578 + CVE-2026-82078
September 1, 2026
CVE-2026-81578 and CVE-2026-82078 can be chained to achieve unauthenticated remote code execution in PaperCut NG/MF. NodeZero® Rapid Response safely validates whether the attack chain is exploitable.
Off the Hook: Discovering and Observing Active Exploitation of Sangoma Switchvox CVE-2026-9586
September 1, 2026
Horizon3 researchers discovered CVE-2026-9586, an unauthenticated SQL injection vulnerability in Sangoma Switchvox that leads to remote code execution and is now being actively exploited.
Frontier AI Changes Vulnerability Discovery. It Doesn’t Change How Breaches Happen.
August 31, 2026
Frontier AI is accelerating vulnerability discovery, but breaches still depend on what attackers can do after initial compromise. See how Horizon3 and CrowdStrike connect attacker-derived evidence to defender action.
Frontier Models Changed the Rules for Exposure Management. Now What?
Join Brinqa and Horizon3 for a fireside chat on how frontier AI is reshaping exposure management. Learn what’s changed in attacker behavior, how to prioritize the exposures that matter most, and how validated attack-path intelligence can help security teams make faster, more defensible remediation decisions.
How a Real Estate Company Turned a SQL Lockout Into Actionable Security Insight
August 25, 2026
See how a large real estate company used NodeZero to trace a SQL account lockout to a deeper privilege path and drive immediate remediation.
Operationalize CTEM with NodeZero®
August 24, 2026
Learn how the Horizon3 CTEM Operating Loop and NodeZero turn Continuous Threat Exposure Management into a repeatable process for discovering, validating, prioritizing, remediating, and verifying exploitable exposure.
How a Manufacturer Turned Password Risk Into Measurable Security Action
August 21, 2026
See how a North American manufacturer used NodeZero to connect password weaknesses to real attack paths and turn security findings into measurable remediation.
Operationalizing CTEM: A Practical Playbook for Continuous Threat Exposure Management
While many organizations have embraced Continuous Threat Exposure Management (CTEM), most struggle to turn the framework into measurable risk reduction. This webinar provides a practical framework to operationalize CTEM by moving beyond basic visibility and into continuous validation, prioritization, and verifiable remediation.
CVE-2026-19478
August 20, 2026
CVE-2026-19478 is a critical GitLab GraphQL code injection vulnerability that can allow unauthenticated attackers to modify or delete public projects and user data.









