Resources

Learn about CYREBRO’s platform, technology, and capabilities, read about industry insights, watch webinars with cyber experts, and much more in the resources below.

  • Zyxel Patches a Critical Firewall Authentication Bypass Vulnerability
    Threat Intelligence

    Zyxel Patches a Critical Firewall Authentication Bypass Vulnerability

    April 5, 2022 Zyxel Patches a Critical Firewall Authentication Bypass Vulnerability Zyxel has released a security advisory addressing a critical authentication bypass vulnerability affecting several firewall models. The Vulnerability CVE-2022-0342 (CVSS 3.1: 9.8, Critical) – An authentication bypass vulnerability which could allow an attacker to bypass the web authentication and obtain administrative access of the device. Vulnerable Products The following…

  • Dark Reading Panel: Next Gen SOC with CYREBRO CEO Nadav Arbel
    Podcast & Webinars

    Dark Reading Panel: Next Gen SOC with CYREBRO CEO Nadav Arbel

    Learn about the new tools and practices that are being added to today’s SOCs such as threat hunting capabilities, tools such as XDR and orchestration, and more.

  • Apple Patches 2 Exploited in the Wild macOS 0-Days 
    Threat Intelligence

    Apple Patches 2 Exploited in the Wild macOS 0-Days 

    April 4, 2022  Apple Patches 2 Exploited in the Wild macOS 0-Days Apple has released an emergency update to macOS ‘Monterey’, patching 2 exploited in the wild 0-day vulnerabilities, one of which allows for arbitrary code execution with kernel privileges. The Vulnerabilities CVE-2022-22675 – An out-of-bounds write issue may allow an application to execute arbitrary code with kernel privileges. Apple is aware…

  • Spring Patched ‘Spring4Shell’ 0-Day RCE Vulnerability
    Threat Intelligence

    Spring Patched ‘Spring4Shell’ 0-Day RCE Vulnerability

    April 3, 2022 Spring Patched ‘Spring4Shell’ 0-Day RCE Vulnerability In an official advisory, Spring has addressed the ‘Spring4Shell’ remote code execution 0-day vulnerability, clarifying which ‘Spring Framework’ configurations are vulnerable, how to detect impact, and assigning a proper CVE to the vulnerability. The Vulnerability CVE-2022-22965 (dubbed ‘Spring4Shell’), Critical – A Spring MVC or Spring WebFlux application running on JDK 9+ may…

  • Spring: 2 RCE Vulnerabilities, 1 Zero-Day
    Threat Intelligence

    Spring: 2 RCE Vulnerabilities, 1 Zero-Day

    March 31, 2022  Spring: 2 RCE Vulnerabilities, 1 Zero-Day Multiple sources have reported of 2 remote code execution vulnerabilities. One RCE affects ‘Spring Cloud Function’, and the second RCE is a critical zero-day vulnerability dubbed ‘Spring4Shell‘, affecting ‘Spring Core’ with JDK version 9.0 or newer, running specific configurations. Currently, the ‘Spring4Shell’ vulnerability has only a workaround available.…

  • CISO Series Podcast Featuring CYREBRO’s CTO, Ori Arbel – What’s Next in Security
    Podcast & Webinars

    CISO Series Podcast Featuring CYREBRO’s CTO, Ori Arbel – What’s Next in Security

    How do CISOs digest the latest cybersecurity trends of 2022? What struggles do companies deal with surrounding cloud migrations and how can they overcome them?