Resource Center
Welcome to our cybersecurity resource center where we uncover how malicious actors exploit weaknesses in systems, while going beyond the technical aspects and examining real-world perspectives across various industries.
LATEST VULNERABILITIES
CVE-2026-34197 allows code execution in ActiveMQ via Jolokia. Validate exposure, patch affected versions, and confirm remediation.
Read More →CVE-2026-35616 Fortinet FortiClient EMS Improper Access Control Vulnerability | Active Exploitation
Read More →WEBINAR REPLAY
SEARCH
CATEGORIES
TAGS
SEARCH
CATEGORIES
TAGS
The Quiet Attack Path
October 21, 2025
Attackers turn native Active Directory features into a low-noise, high-impact playbook: stealthy enumeration, Kerberoasting, and AS-REP roasting can produce crackable credentials and clear paths to domain admin in minutes. This post walks through the first 15 minutes of an AD intrusion, why traditional SIEM/EDR struggles to detect it, and what defenders must catch early to…
From Patch Tuesday to Pentest Wednesday®: How a Global Chemical Manufacturer De-Risked a $2B Merger
October 15, 2025
When a $2B merger put a global chemical manufacturer’s security to the test, NodeZero® exposed critical identity risks and domain compromise paths in just 35 minutes. What began as a pilot evolved into a global Pentest Wednesday® program—turning vulnerability data into proof of resilience across 20 sites and thousands of endpoints.
CVE-2025-11371
October 14, 2025
Gladinet CentreStack / Triofox Local File Inclusion (LFI) | 0-Day Active Exploitation
CVE-2025-20362 · CVE-2025-20333 · CVE-2025-20363
October 9, 2025
Cisco ASA / FTD WebVPN Vulnerabilities
CVE-2025-49844
October 9, 2025
Redis Lua Use-After-Free Vulnerability | Critical RCE Risk
What is ITDR and Why Active Directory (AD) Tripwires Make It Real
Annual pentesting leaves blind spots. Learn why modern threats demand frequent or continuous pentesting to stay ahead of attackers.
CVE-2025-61882
October 7, 2025
Oracle E-Business Suite Vulnerability | Active Exploitation
Lessons from the Front Lines: Dynatrace’s Journey with NodeZero®
Cybersecurity Awareness Month is the perfect moment to learn from those who are staying ahead of attackers in the real world. Join Horizon3 and Dynatrace for a candid, fireside chat exploring how one of the world’s leading observability companies built a proactive, scalable security program with NodeZero®. In this session, we’ll dive into: Whether you’re a security engineer looking for actionable…
How Often Should You Pentest?
Annual pentesting leaves blind spots. Learn why modern threats demand frequent or continuous pentesting to stay ahead of attackers.
From Patch Tuesday to Pentest Wednesday®: Proof That Reshaped Security for a Gaming Operator
September 17, 2025
A U.S. casino's first pentest uncovers 756 weaknesses & 143 attack paths, sparking a new, proof-driven approach to security.
