watchTowr (@watchtowrcyber) 's Twitter Profile
watchTowr

@watchtowrcyber

If there’s a way to compromise an organization, the watchTowr Platform will find it.

ID: 1324374317484793856

linkhttps://www.watchtowr.com calendar_today05-11-2020 15:33:45

266 Tweet

7,7K Followers

13 Following

watchTowr (@watchtowrcyber) 's Twitter Profile Photo

We are nearing the end of our 90 day disclosure window for an unauth RCE in a solution previously targeted by ransomware gangs - with no engagement from the vendor. Once again, this must be absolutely brilliant for their customers. Speak soon.

watchTowr (@watchtowrcyber) 's Twitter Profile Photo

bees, honey, FUD(?) - hours (now called Veeam-years) after our friends at Veeam decided to announce that their patch was 'pretty close to perfect', we identified/disclosed more deserialization gadgets. The team @ CODE WHITE GmbH is great; let's see if there are collisions! 🤝

bees, honey, FUD(?) - hours (now called Veeam-years) after our friends at Veeam decided to announce that their patch was 'pretty close to perfect', we identified/disclosed more deserialization gadgets.

The team @ <a href="/codewhitesec/">CODE WHITE GmbH</a> is great; let's see if there are collisions! 🤝
watchTowr (@watchtowrcyber) 's Twitter Profile Photo

We know what you’re waiting for…..this isn’t it 😅 🚀Join the watchTowr Labs team today on our journey into Kentico Xperience CMS again - chaining vulnerabilities together for full RCE.... labs.watchtowr.com/xss-to-rce-by-…

watchTowr (@watchtowrcyber) 's Twitter Profile Photo

Ivanti, Connect Secure, a pledge, and CVE-2025-22457 - the jokes write themselves sometimes. Enjoy, and happy Friday - speak Monday ;-) labs.watchtowr.com/is-the-sofisti…

watchTowr (@watchtowrcyber) 's Twitter Profile Photo

We're back! This time, we're analyzing CVE-2025-34028 - a pre-auth Remote Code Execution vulnerability we discovered in Commvault - yet another enterprise-grade Backup and Replication solution. labs.watchtowr.com/fire-in-the-ho…

watchTowr (@watchtowrcyber) 's Twitter Profile Photo

Our client base has been feeding us rumours about in-the-wild exploited SonicWall SMA n-days (CVE-2023-44221, CVE-2024-38475) for a while... Given these are now CISA KEV, enjoy our now public analysis and reproduction :-) labs.watchtowr.com/sonicboom-from…

watchTowr (@watchtowrcyber) 's Twitter Profile Photo

Expression payloads meet mayhem in this week's Ivanti EPMM vulnerabilities — CVE-2025-4427 and CVE-2025-4428 — chained to achieve unauth RCE. Beware - this is currently being exploited ITW! Enjoy our analysis. labs.watchtowr.com/expression-pay…