See what we're thinking about, working on, & blogging about.

Explore the latest insights, ideas, & opinions from our talented team of experts & researchers.

Subscribe Now

Get our latest Rapid Responses, insights, and blogs delivered directly to your inbox.

Welcome to the club! Your subscription to our newsletter is successful.

Rapid Response
How to find Veeam software on your network
November 3, 2025
Veeam Software has disclosed two remote code execution (RCE) vulnerabilities affecting certain versions of Veeam Backup & Replication.
Rapid Response
How to find DNN Software installations on your network
October 31, 2025
DNN Software has disclosed multiple vulnerabilities affecting certain versions of DNN, formerly DotNetNuke. Here's how to find impacted assets.
runZero Perspective
National Cybersecurity Awareness Month: UPnP and you…PnP
October 29, 2025
UPnP lets devices auto-configure your router, opening ports like ghosts slipping through the firewall. It's powerful, convenient, and a little...
runZero Research
runZero Hour recap: Beyond the veil with end-of-life OSes
October 28, 2025
In this episode, we talk about everything from current programming languages to mysterious firmware to, of course, the natural process of degrading...
Rapid Response
How to find PowerDNS Recursor installations on your network
October 24, 2025
PowerDNS has disclosed multiple vulnerabilities affecting certain versions of PowerDNS Recursor. Here's how to find affected assets on your network.
Rapid Response
How to find Microsoft Windows Server Update Services (WSUS) installations on your network
October 24, 2025
Microsoft has disclosed a RCE vulnerability in certain versions of the WSUS due to deserialization of untrusted data. Here's how to find affected...
Rapid Response
How to find BIND services on your network
October 23, 2025
ISC disclosed that authoritative servers may experience assertion failures or other unexpected events when using DNSSEC-signed zones using NSEC3.
Rapid Response
How to find F5 BIG-IP instances on your network
October 22, 2025
On October 15, 2025, CISA issued an emergency directive to mitigate vulnerabilities on F5 Big-IP appliances. Here's how to find affected assets.
Rapid Response
How to find Squid caching proxy installations on your network
October 21, 2025
Squid has disclosed a heap-based buffer overflow vulnerability in certain versions of the Squid caching proxy due to incorrect buffer management...
Rapid Response
How to find Oracle E-Business Suite installations on your network
October 21, 2025
Oracle disclosed a vulnerability in versions of its E-Business Suite contained within the Concurrent Processing product. Here's how to find...
runZero Perspective
NCSAM: Tales from the crypt…ographically secure authentication system, passkey
October 21, 2025
It's time to peer into the crypt, dust off the cobwebs, and explore the weirdness (and spookiness) of passkeys, and why they make me uncomfortable.
Life at runZero
Employee Spotlight: Tavis Tucker
October 17, 2025
Meet Tavis, our patient Front-End Developer who bridges the gap between data and design to create smooth, intuitive experiences in the runZero...