See what we're thinking about, working on, & blogging about.

Explore the latest insights, ideas, & opinions from our talented team of experts & researchers.

Subscribe Now

Get our latest Rapid Responses, insights, and blogs delivered directly to your inbox.

Welcome to the club! Your subscription to our newsletter is successful.

Rapid Response
How to find Daikin Security Gateway devices on your network
September 18, 2025
Daikin has disclosed a vulnerability in DELMIA Apriso that may allow a remote, unauthenticated adversary to perform remote code execution.
runZero Research
Webcast recap: see + secure everything in your OT environment
September 17, 2025
A recap of last week’s webcast, where the runZero research team dug into the hard-earned lessons of managing sensitive OT environments.
Rapid Response
How to find Dassault SystĂšmes DELMIA Apriso installations on your network
September 12, 2025
Dassault SystĂšmes (3DS) has disclosed a vulnerability in DELMIA Apriso that may allow a remote, unauthenticated adversary to perform remote code...
Rapid Response
How to find Adobe Commerce & Magento installations on your network
September 9, 2025
Adobe has disclosed an improper input validation vulnerability in the Commerce REST API, affecting certain versions of Adobe Commerce and Magento...
Rapid Response
How to find SAP NetWeaver instances on your network
September 9, 2025
On September 9th, 2025, SAP issued patch note 3634501 to disclose an insecure deserialization vulnerability that affects certain versions of SAP...
Rapid Response
How to find Citrix NetScaler ADC & Gateway instances on your network
September 5, 2025
Citrix has published Security Bulletin CTX694938, documenting multiple vulnerabilities that impact customer-managed installations of NetScaler ADC...
runZero Perspective
Rethinking vulnerability management in energy
September 4, 2025
Rethinking vulnerability management in energy means accepting that patch speed isn’t the measure of success. Learn what matters most in our latest...
Rapid Response
How to find FreePBX installations on your network
September 3, 2025
Sangoma has disclosed multiple flaws in certain versions of its FreePBX telephony software. Here's how to find affected assets.
Rapid Response
How to find Arcserve Unified Data Protection installations on your network
August 29, 2025
Arcserve has disclosed two heap overflow vulnerabilities in all versions of its Unified Data Protection (UDP).
Product
Building a comprehensive OT asset inventory with CISA guidance and runZero
August 28, 2025
This succinct resource provides a clear, actionable framework for building and maintaining a complete OT asset inventory, which is a foundation for...
runZero Research
runZero Hour, ep. 21 recap: highlights from Hacker Summer Camp
August 26, 2025
Our top insights, tools and stories from Hacker Summer Camp 2025.
Rapid Response
How to find Rockwell Automation devices
August 22, 2025
Rockwell Automation has disclosed a remote code execution (RCE) vulnerability in certain models and versions of ControlLogix Ethernet modules.