• Microsoft
  • Purple Teams
  • XDR & CyberSOC
  • AI Security
  • Red Teams
  • Blue Teams
  • Cloud Security
  • OT Security
  • Risk & Compliance

Benchmarked Threat Resilience

VECTR™ helps facilitate the process to test controls, record outcomes and report on your resilience and improvement over time.

VECTR™’s Index Threat Resilience Benchmarks™ are the only global cybersecurity collaboration to answer the question “how do we compare to our peers?”

Cut Cloud Technology Costs

SCALR™ XDR uses a security data lake architecture to minimize SIEM costs, maximize your ability to store security events, and accelerate search and hunting capabilities. The SCALR™ XDR service is enhanced by our distinctive SCALR™ AI, Purple Teams & Threat Resilience Metrics.

Vulnerability Management Simplified

Despite the many tools in the market, Vulnerability Management in most organizations still requires significant manual efforts to “find and fix” critical vulnerabilities in the enterprise. SCALR™ Sight focuses on simplifying the process without the need to change your current tools.

Intelligence by Design

SCALR AI is a multi-agentic workflow engine for large, complex task execution in your SRA-powered SCALR XDR Security Operations Center.

  • Webinars
  • Partnerships
  • Services
  • Platforms
  • Blog
  • About Us
  • Careers
  • Contact

Get SRA’s free report: The Purple Perspective 2026

  • Services
    • Microsoft
    • Purple Teams
    • XDR & CyberSOC
    • AI Security
    • Red Teams
    • Blue Teams
    • Cloud Security
    • OT Security
    • Risk & Compliance
  • Platforms
    • VECTR™
    • SCALR™ XDR
    • SCALR™ Sight
    • SCALR™ AI
  • Blog
    • Webinars
  • About Us
    • Partnerships
  • Careers
  • Contact

Critical Vulnerability in Cisco Meeting Management Enables Privilege Escalation

by TIGR Threat Watch | Jan 27, 2025 | TIGR

Cisco has disclosed a critical vulnerability (CVE-2025-20156) in Cisco Meeting Management’s REST API that enables privilege escalation to administrator level. The flaw carries a CVSS score of 9.9. The vulnerability stems from improper authorization enforcement...

🚩 Chinese Threat Actor Conducts Four-Month Intelligence Gathering Campaign Against U.S. Organization in China

by TIGR Threat Watch | Dec 5, 2024 | TIGR

Symantec’s Threat Hunter Team has identified a targeted cyber espionage campaign against a large U.S. organization with significant operations in China. The intrusion, discovered between April and August 2024, demonstrates sophisticated tactics including DLL...

🚩 Chinese State-Affiliated Actor Exploits FortiClient VPN Zero-Day to Steal Credentials

by TIGR Threat Watch | Nov 19, 2024 | TIGR

Security firm Volexity has identified a cyber espionage campaign conducted by BrazenBamboo, a Chinese state-affiliated threat actor. The group exploits a previously unknown vulnerability in Fortinet’s FortiClient VPN software that allows extraction of user...

🚩 Kurdish Websites Targeted in Extensive Watering Hole Campaign

by TIGR Threat Watch | Sep 27, 2024 | TIGR

In early 2024, the Sekoia Threat Detection & Research team uncovered a cyber espionage campaign that compromised 25 Kurdish websites using malicious scripts. The campaign, which lasted from late 2022 to early 2024, exploited vulnerabilities in legitimate Kurdish...

Iranian APT42 Group Targets Political Figures via WhatsApp Phishing Campaign

by TIGR Threat Watch | Aug 26, 2024 | TIGR

WhatsApp has reported blocking a cluster of accounts linked to APT42, an Iranian threat actor, after investigating user reports. The malicious accounts posed as technical support for AOL, Google, Yahoo, and Microsoft, targeting individuals in Israel, Palestine, Iran,...
« Older Entries
Next Entries »

Follow us on social media

  • Follow
  • Follow
  • Follow
  • Follow

View our Webinars

Get the TIGR Threat Watch email bulletin here!

(215) 867-9051

Advisories

Privacy Policy

Copyright © 2020-2026. Security Risk Advisors Intl., LLC. All Rights Reserved.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
 

Loading Comments...