From Blocker to Enabler: Translating Cyber Risk into Business Value
When it comes to justifying security investments to the CFO, technical arguments aren’t enough. Any CFO worth their paycheck will prioritize financial impact, operational…
Ten Things You Need to Do Yesterday to Stay Compliant with NIS2
When it comes to the EU’s NIS2 Directive, meeting the basic requirements (according to the legislation in your company’s location) is only the first…
Seeing What Attackers See: How Attack Graphs Help You Stay Ahead of Cyber Threats
Cybersecurity can seem like a game of cat and mouse. Defenders try to anticipate attackers’ moves; attackers try to sneak through gaps in security…
CVE-2025-24813: Critical Apache Tomcat Vulnerability Already Being Exploited – Patch Now!
Overview Apache Tomcat, the free and open-source implementation of the Java Servlet, recently disclosed a critical vulnerability which is being tracked as CVE-2025-24813. This…
Four Real-Life Financial Service Attacks Paths and How we Blocked Them
Back in the wild west, there was this guy, Willie Sutton. Willie’s chosen profession wasn’t the town dentist-barber or saloon owner. Nope, he was…
Exposure Management in Finance: A Proactive Approach to Cyber Resilience
The financial sector is perhaps the most cyber-targeted industry on the planet. It’s no secret why: financial institutions manage the world’s most valuable assets…
The Artificial Intelligence Threat: Are You Losing Sleep Yet?
The rise of Artificial Intelligence (AI) has brought about incredible advancements, but it also casts a long shadow over the cybersecurity landscape. Threat actors…
From ArgoCD To Azure Hybrid Attacks Part 2 – Leveraging Workload Identity for AKS to Move Laterally Across Tenants
Welcome back to our in-depth look at ArgoCD and hybrid Azure attacks. In the first part of this blog, we explored how a compromised…
From ArgoCD To Azure Hybrid Attacks Part 1 – Leveraging Kubernetes ArgoCD RBAC Permissions to Escalate Cluster Privileges
In the ever-changing DevOps and cloud-native applications landscape, continuous delivery tools have become essential for managing deployments at scale. Among these tools, ArgoCD has…
Exposure Management: Healthcare’s Preventive Medicine
Most people will agree that healthcare is pretty essential, and ergo, protecting it from threats should be top of any provider’s to do list….
From Risk to Resilience: XM Cyber’s 2024 Wrapup
As we step into 2025, now is a great time to reflect on the significant strides we made in the previous year. 2024 was…
OT vs. IT Cybersecurity – Differences, Similarities and Everything in Between
As organizations become more globally interconnected and digitally reliant, cybersecurity threats expand beyond the IT infrastructure. Operational Technology (OT) systems are increasingly targets of…