Horizon3.ai
Horizon3.ai

Resource Center

Welcome to our cybersecurity resource center where we uncover how malicious actors exploit weaknesses in systems, while going beyond the technical aspects and examining real-world perspectives across various industries.

Filters

Categories
Tags

Showing 295–300 of 473 results

CVE-2022-28219: Unauthenticated XXE to RCE and Domain Compromise in ManageEngine ADAudit Plus

CVE-2022-28219 is an unauthenticated remote code execution vulnerability affecting Zoho ManageEngine ADAudit Plus, a compliance tool used by enterprises to monitor changes to Active Directory. The vulnerability comprises several issues: untrusted Java deserialization, path traversal, and a blind XML External Entities (XXE) injection. This is a vulnerability that NodeZero, our autonomous pentesting product, has exploited to not only execute code...
Read More

900,000 exposed Kubernetes clusters vulnerable to malicious scans or data theft

SiliconANGLE: 06/28/22 “Despite delivering billions of applications with advanced ease and manageability, a major concern of Kubernetes is their ability to maintain security standards across the board,” Taylor Ellis, customer threat analyst at Horizon3.ai. “The mantra of ‘with greater scale comes greater responsibility’ should be called upon by security professionals to ensure that the open-source software does not provide free exposure...
Read More

Tech Talk: The Attackers Journey Pt. 5

In this session, Noah and his mentors will not only explore why the Kerberoasting attack technique is so pervasive and how you can configure Kerberos better to avoid these attacks, but also alternative setups that allow you to avoid Kerberoasting altogether.
Read More

Webinar: External Autonomous Pentesting

With the announcement of the addition of external penetration testing capabilities to NodeZero, Horizon3.ai is hosting a webinar to introduce this enhancement to our autonomous penetration testing platform. This extension of NodeZero’s capabilities makes Horizon3.ai the first cybersecurity company to offer both internal and external penetration testing in one self-service platform. Join Naveen Sunkavally, Horizon3.ai’s Chief Architect, and Monti Knode,...
Read More