See what we're thinking about, working on, & blogging about.

Explore the latest insights, ideas, & opinions from our talented team of experts & researchers.

How to find systems impacted by CVE-2024-3094 (XZ Utils backdoor) Rapid Response

Malicious code was pushed to the libxz-utils project that introduced a backdoor in SSH. Here's how to find potentially vulnerable systems.

Subscribe Now

Get our latest Rapid Responses, insights, & blogs delivered directly to your inbox.

Welcome to the club! Your subscription to our newsletter is successful.

Rapid Response
How to find Fortinet web application firewall devices
August 25, 2021
Recently published security research from Rapid7 provides details on an OS command injection vulnerability in Fortinet’s web application firewall...
runZero Research
BlackHat gems HP iLO 5 vulnerabilities
August 19, 2021
Each year, August arrives with promises of hot weather and cool security research talks. The DEF CON, Black Hat, and BSidesLV security conferences...
runZero Research
Fingerprinting Windows versions, AV, wireless cards over the network—all without authentication
August 11, 2021
Correctly identifying and categorizing network-connected systems without credentials is a tricky challenge and one of the fun parts of working at...
Product Release
Rumble 2.5 Identify endpoint protection agents, detect wireless & mobile Internet, and scan all your EC2 accounts
August 3, 2021
Identify endpoint protection agents via integrations and unauthenticated scans and much more.
Rapid Response
How to find SolarWinds Serv-U systems on your network
July 15, 2021
Microsoft recently notified SolarWinds that they had discovered a remote code execution vulnerability in Serv-U Managed File Transfer and Serv-U...
Product Release
Rumble 2.4 Achieve better visibility for cloud and endpoint assets
July 13, 2021
Rumble’s integration efforts to date have been focused on bringing network inventory to platforms like Splunk and ServiceNow.
Product Release
Rumble 2.3 Find all internal subnets–fast
June 8, 2021
This release primarily focuses on helping you quickly find all internal subnets with minimal network traffic.
Product Release
Rumble 2.2 HP iLO Analysis, Virtual Machine Fingerprinting, and VLAN Tracking
May 11, 2021
Rumble 2.2 is available with improved analysis capabilities for HP iLOs, virtual machine fingerprinting support, automatic VLAN membership tracking...
Product Release
Get slack notifications for new or modified devices
April 22, 2021
With our Rumble 2.1 release, we added alert templates. That means you can receive custom Slack messages to alert on events you care about, like...
Product Release
Collecting Device Serial Numbers and Asset Tags over SNMP
April 13, 2021
A few weeks ago, one of our customers asked us if we could pull serial numbers out of Cisco devices because this would be very useful for their...
Product Release
Rumble 2.1 Notification Templates, AWS EC2 Enrichment, and Cisco SNTC Exports
April 13, 2021
Rumble 2.1 is now live with support for custom notification templates, AWS EC2 scan enrichment, Cisco serial number exports for SNTC, faster...
Product Release
Automate tagging asset owners and alerting on orphaned devices
March 22, 2021
Tags help you to organize your asset inventory, allowing you to quickly search, group, and flag assets.
© Copyright 2024 runZero, Inc. All Rights Reserved