See what we're thinking about, working on, & blogging about.

Explore the latest insights, ideas, & opinions from our talented team of experts & researchers.

How to find Citrix Hypervisor on your network Rapid Response

On April 24, 2026, researchers publicly disclosed an audit identifying 89 exploitable vulnerabilities. Here's how to find impacted assets.

Subscribe Now

Get our latest Rapid Responses, insights, and blogs delivered directly to your inbox.

Welcome to the club! Your subscription to our newsletter is successful.

Rapid Response
How to find Samsung MagicINFO Server installations on your network
May 15, 2025
Samsung has issued a security advisory for its MagicINFO Server product. This vulnerability (CVE-2025-4632) is being actively exploited in the wild.
runZero Research
CVSS, EPSS, and SSVC: How to Read Between the Vulnerability Scores
May 15, 2025
Learn about strengths and limitations of each scoring systems – and how to best leverage them inform your triage strategy.
runZero Perspective
Ports Behaving Badly: Uncovering Risky Protocols in Unexpected Places
May 12, 2025
We’re shining a light on the strange, surprising, and straight-up dangerous services hiding across your environment — and how you can use runZero...
Rapid Response
How to find SysAid Help Desk instances
May 9, 2025
On May 7th, Watchtowr disclosed multiple vulnerabilities in the SysAid Help Desk on-premises service management platform.
Rapid Response
How to find Apple AirPlay devices on your network
May 8, 2025
Several AirPlay vulnerabilities were resolved in Apple's latest OS updates. Here's how to find potentially vulnerable devices on your network.
runZero Perspective
One Asset, Many Risks: Prioritizing the Stack Instead of the CVEs
April 29, 2025
runZero surfaces stacked, asset-level risks—like misconfigurations, EOL software, and weak segmentation—that traditional vulnerability scanners...
Rapid Response
How to find Commvault servers on your network
April 28, 2025
Commvault published a security advisory for a critical security vulnerability identified in the Command Center installation. Here's how to find...
runZero Perspective
Only Four Shopping Days Left Until RSAC!
April 24, 2025
In which Tod assures his fellow nerds that RSA Conference isn’t just for marketing hypesters.
runZero Perspective
Ditch vulnerability scanners: A smarter approach to exposure management with runZero alongside endpoint agents
April 22, 2025
Ditch your vulnerability scanners. Leverage your endpoint agents for authenticated discovery. Use runZero for everything else. It's exposure...
Rapid Response
How to find ASUS AiCloud routers on your network
April 21, 2025
ASUS has disclosed a 'highly critical' vulnerability in several of its router models using its "AiCloud" functionality. Here's how to find impacted...
Rapid Response
How to find Erlang/OTP SSH servers on your network
April 17, 2025
Some versions of the Erlang/OTP embedded SSH server contain a highly critical vulnerability (CVE-2025-32433) in their handling of SSH protocol...
runZero Perspective
CVE Marches On
April 16, 2025
On April 15, 2025, the CVE program faced sudden shutdown fears — but CISA stepped in with last-minute funding. Crisis averted, for now.