Security

Blog
Two Citrix RCE Zero Days Exploited in the Wild
Coalition notified policyholders of two potential Citrix zero-day vulnerabilities before vendor confirmation.

Blog
Risky Tech Ranking: Q2 2026 Updates
See how Coalition’s Risky Tech Ranking evolved in Q2 2026 with updates on the number of vendors scored, contributing vulnerabilities, Vendor Scores, and more.

Blog
How Login Security Helps Businesses Combat Identity-Based Threats
Business email compromise is the leading driver of cyber claims. Login Security monitors suspicious login activity and kicks out attackers.

Blog
Security Alert: WP2Shell Vulnerabilities Exploited in the Wild
Coalition notified policyholders of critical “WP2Shell’ remote code execution vulnerabilities affecting Wordpress Core.

Blog
Risky Tech Ranking: Q1 2026 Updates
See how Coalition’s Risky Tech Ranking evolved in Q1 2026 with updates on the number of vendors scored, contributing vulnerabilities, Vendor Scores, and more.

Blog
Security Alert: Critical Authentication Bypass Vulnerability in cPanel
Coalition notified policyholders about a critical vulnerability in cPanel and WebHost Manager that allows remote attackers to bypass authentication.

Blog
Security Alert: Vercel Breach Results in Compromised Customer Credentials
Coalition notified policyholders of a breach that allowed unauthorized access to certain internal systems of Vercel, a cloud development platform.

Blog
‘Bleed’ Trilogy Complete With Newest Memory Leak in Citrix NetScaler
For the third time in as many years, businesses are being urged to patch a “bleed”-style vulnerability in Citrix NetScaler.

Blog
Boundary Devices and Plugins Prompt Timely Remediation
Explore Coalition’s Zero-Day Alerts by the numbers to learn which technologies drive high-risk vulnerabilities, how we operate as an early-warning system, and when we decide to alert.

Blog
How Geopolitical Tension Can Spotlight Latent Cyber Risks
Coalition security researchers observed distinct changes in cyber scanning behavior originating from Iranian IP addresses that coincided with military activities in the Middle East.

Blog
How Infostealers May Have Opened the Door to the Stryker Wipe
Coalition security researchers examine the recent cyber attack on Stryker and how infostealers can be a most dangerous fuse in business environments.

Blog
Security Alert: Critical Data Exposure in Salesforce Experience Cloud
Coalition has notified policyholders about a widespread campaign targeting misconfigured guest user permissions in Salesforce Experience Cloud sites.

Blog
Risky Tech Ranking: Q4 2025 Updates
See how Coalition’s Risky Tech Ranking evolved in Q4 2025 with updates on the number of vendors scored, contributing vulnerabilities, Vendor Scores, and more.

Blog
The Patchwork Dilemma: Why the Cycle of Reactive Security Must End
Break the cycle of vendor-introduced risk by demanding better tech accountability and transitioning to modern architectures built for cyber resilience.





