Resources

Learn about CYREBRO’s platform, technology, and capabilities, read about industry insights, watch webinars with cyber experts, and much more in the resources below.

  • Google Chrome 0-Day Vulnerability Exploited in the Wild
    Threat Intelligence

    Google Chrome 0-Day Vulnerability Exploited in the Wild

    April 17, 2022  Google Chrome 0-Day Vulnerability Exploited in the Wild Google has released an emergency update for Chrome, addressing an actively exploited Zero-Day.  The updated version is 100.0.4896.127 for Windows, Mac and Linux.  The Vulnerability CVE-2021-4102, High Severity – type confusion weakness in the Chrome V8 JavaScript engine.  While type confusion vulnerabilities typically cause browser…

  • Microsoft Patches 2 0-Days & 47 RCE Vulnerabilities, Google Patches 5 Chrome RCEs, Apache Patches RCE in ‘Struts 2’
    Threat Intelligence

    Microsoft Patches 2 0-Days & 47 RCE Vulnerabilities, Google Patches 5 Chrome RCEs, Apache Patches RCE in ‘Struts 2’

    April 14, 2022 Microsoft Patches 2 0-Days & 47 RCE Vulnerabilities, Google Patches 5 Chrome RCEs, Apache Patches RCE in ‘Struts 2’ Microsoft Patches 2 0-Days & 47 RCE Vulnerabilities As part of April’s monthly security rollup updates, Microsoft has patched 2 0-Day and 47 Remote Code Execution vulnerabilities.  Overall, Microsoft has patched 119 vulnerabilities across…

  • VMware Patches 3 RCEs & 2 Authentication Bypass Vulnerabilities Affecting Multiple Products
    Threat Intelligence

    VMware Patches 3 RCEs & 2 Authentication Bypass Vulnerabilities Affecting Multiple Products

    April 7, 2022 VMware Patches 3 RCEs & 2 Authentication Bypass Vulnerabilities Affecting Multiple Products VMware has patched 3 remote code execution vulnerabilities and 2 authentication bypass vulnerabilities.  In total, VMware has patched 8 vulnerabilities affecting ‘Workspace One Access’, ‘Identity Manager’, ‘vRealize Automation’, ‘vRealize Suite Lifecycle Manager’, and ‘Cloud Foundation’. The Vulnerabilities CVE-2022-22954 (CVSS 3.1: 9.8, Critical) – Server-side Template Injection. A malicious…

  • Zyxel Patches a Critical Firewall Authentication Bypass Vulnerability
    Threat Intelligence

    Zyxel Patches a Critical Firewall Authentication Bypass Vulnerability

    April 5, 2022 Zyxel Patches a Critical Firewall Authentication Bypass Vulnerability Zyxel has released a security advisory addressing a critical authentication bypass vulnerability affecting several firewall models. The Vulnerability CVE-2022-0342 (CVSS 3.1: 9.8, Critical) – An authentication bypass vulnerability which could allow an attacker to bypass the web authentication and obtain administrative access of the device. Vulnerable Products The following…

  • Dark Reading Panel: Next Gen SOC with CYREBRO CEO Nadav Arbel
    Podcast & Webinars

    Dark Reading Panel: Next Gen SOC with CYREBRO CEO Nadav Arbel

    Learn about the new tools and practices that are being added to today’s SOCs such as threat hunting capabilities, tools such as XDR and orchestration, and more.

  • Apple Patches 2 Exploited in the Wild macOS 0-Days 
    Threat Intelligence

    Apple Patches 2 Exploited in the Wild macOS 0-Days 

    April 4, 2022  Apple Patches 2 Exploited in the Wild macOS 0-Days Apple has released an emergency update to macOS ‘Monterey’, patching 2 exploited in the wild 0-day vulnerabilities, one of which allows for arbitrary code execution with kernel privileges. The Vulnerabilities CVE-2022-22675 – An out-of-bounds write issue may allow an application to execute arbitrary code with kernel privileges. Apple is aware…