See what we're thinking about, working on, & blogging about.

Explore the latest insights, ideas, & opinions from our talented team of experts & researchers.

How to find Vercel Next.js instances on your network Rapid Response

A recently disclosed RCE vulnerability in React Server Components affects several React packages and dependent frameworks, including Next.js. Here's how to find impacted assets.

Subscribe Now

Get our latest Rapid Responses, insights, and blogs delivered directly to your inbox.

Welcome to the club! Your subscription to our newsletter is successful.

Rapid Response
How to find WatchGuard Firebox appliances on your network
September 18, 2025
WatchGuard has disclosed that certain versions of its Fireware OS are affected by an out-of-bounds write vulnerability in IKED. Find affected assets.
Rapid Response
How to find Daikin Security Gateway devices on your network
September 18, 2025
Daikin has disclosed a vulnerability in DELMIA Apriso that may allow a remote, unauthenticated adversary to perform remote code execution.
runZero Research
Webcast recap: see + secure everything in your OT environment
September 17, 2025
A recap of last week’s webcast, where the runZero research team dug into the hard-earned lessons of managing sensitive OT environments.
Rapid Response
How to find Dassault Systèmes DELMIA Apriso installations on your network
September 12, 2025
Dassault Systèmes (3DS) has disclosed a vulnerability in DELMIA Apriso that may allow a remote, unauthenticated adversary to perform remote code...
Rapid Response
How to find Adobe Commerce & Magento installations on your network
September 9, 2025
Adobe has disclosed an improper input validation vulnerability in the Commerce REST API, affecting certain versions of Adobe Commerce and Magento...
Rapid Response
How to find SAP NetWeaver instances on your network
September 9, 2025
On September 9th, 2025, SAP issued patch note 3634501 to disclose an insecure deserialization vulnerability that affects certain versions of SAP...
Rapid Response
How to find Citrix NetScaler ADC & Gateway instances on your network
September 5, 2025
Citrix has published Security Bulletin CTX694938, documenting multiple vulnerabilities that impact customer-managed installations of NetScaler ADC...
runZero Perspective
Rethinking vulnerability management in energy
September 4, 2025
Rethinking vulnerability management in energy means accepting that patch speed isn’t the measure of success. Learn what matters most in our latest...
Rapid Response
How to find FreePBX installations on your network
September 3, 2025
Sangoma has disclosed multiple flaws in certain versions of its FreePBX telephony software. Here's how to find affected assets.
Rapid Response
How to find Arcserve Unified Data Protection installations on your network
August 29, 2025
Arcserve has disclosed two heap overflow vulnerabilities in all versions of its Unified Data Protection (UDP).
Product
Building a comprehensive OT asset inventory with CISA guidance and runZero
August 28, 2025
This succinct resource provides a clear, actionable framework for building and maintaining a complete OT asset inventory, which is a foundation for...
runZero Research
runZero Hour, ep. 21 recap: highlights from Hacker Summer Camp
August 26, 2025
Our top insights, tools and stories from Hacker Summer Camp 2025.