Security Insights
Latest threat analysis, industry news, and security best practices from our expert team.
FreePBX 17.0.2 Unauthenticated Remote Code Execution: Detection, Hardening, and Remediation Guide
Introduction A public proof-of-concept exploit for an unauthenticated code execution vulnerability in FreePBX 17.0.2 has been published to E...
CVE-2026-9586: Sangoma Switchvox SQL Injection Under Active Exploitation — Detection and Remediation Guide
CVE-2026-9586: Sangoma Switchvox SQL Injection Under Active Exploitation Sangoma Switchvox — the on-premises Unified Communications / VoIP P...
CVE-2026-9586: Sangoma Switchvox Unauthenticated SQLi Exploited for Reverse Shells — Detection and Remediation Guide
CVE-2026-9586: Sangoma Switchvox Unauthenticated SQLi — Detection and Remediation Guide Introduction Threat actors are actively exploiting a...
CVE-2026-0826: HP Poly VVX VoIP RCE — Detection, Hardening, and Response
Introduction Rapid7 Labs recently disclosed a critical vulnerability, CVE-2026-0826, affecting HP Poly VVX and Trio VoIP phones. This is not...
Unmasking the Persistent Threat: Web Shells Hijack 900+ Sangoma FreePBX Instances
Telephony infrastructure is often the overlooked backbone of enterprise communication, yet it remains a prime target for cybercriminals seek...