Posts tagged ‘Security’
Resiliency Is the New SLA: Why AI Demands an Always-On Intelligent Edge
For decades, we’ve measured the network in terms of uptime percentages and bandwidth tiers. In the AI era, those metrics are no longer enough. Resiliency, which is the ability to deliver uninterrupted, any-directional, application-aware connectivity in the face of unpredictable AI workloads, is the new SLA.
CVE-2026-41940: Inside the cPanel/WHM Authentication Bypass
Introduction Hosting control panels operate with near-total authority over a server: websites, databases, DNS, email, and the account lifecycle are all driven from one place. That privilege makes them a high-value target—when a control-plane bug appears, compromise can extend far beyond a single site. CVE-2026-41940 is a pre-authentication bypass affecting WebPros cPanel & WHM (WebHost Manager) and WP2 (WordPress Squared). In practical terms, it lets a remote, unauthenticated attacker reach administrator-level control without supplying valid credentials. Background: What Is cPanel/WHM? cPanel is a widely deployed, Linux-based hosting panel. WHM is the higher-privileged layer used by resellers and server administrators to…
Compliance: Mapping the Coast Guard’s MTSA Cyber Rule to VersaONE
Here is how Versa Unified SASE platform translates 33 CFR Part 101, Subpart F into controls for compliance.
The Ghost in the Leased Line: Unmasking MuddyWater, Surgical Cyber Arm
In the high-stakes theater of global geopolitics, the most effective weapons aren’t always missiles; sometimes, they are just few lines of code.
Closing the Cloud Security Posture Management Gap with Versa CSPM
Today’s environments span multi-cloud infrastructure, SaaS ecosystems, remote endpoints, and an increasing layer of AI-driven applications and integrations. This expansion has introduced a new class of challenges—not just scale, but visibility.
Identity Is the New Perimeter. Stryker Just Taught Us That the Hard Way.
A story on how an Iran-linked group wiped tens of thousands of Stryker’s devices A nation-state attack that changes every assumption we had For years, we have treated nation-state threats as a “Tier 1” problem — something reserved for defense contractors and the energy grid. The March 2026 attack on Stryker Corporation by Iran-linked group Handala officially kills that assumption. On March 11, 2026, Stryker’s corporate Microsoft environment was hit. Employees arrived to find their managed devices wiped out overnight through entirely legitimate Intune commands. Handala claimed 200,000+ systems affected; independent reporting confirms that tens of thousands were impacted. Stryker’s…
Automating Branch-to-Cloud Connectivity and Security: Versa Secure SD-WAN Integration with Zscaler Internet Access
We’re excited to introduce an automated integration between Versa Secure SD-WAN and Zscaler that makes dual-vendor SASE faster, secure and resilient. This integration helps you secure local internet breakout, improve user experience and simplify operations
Why Identity Alone Isn’t Enough: Device Posture in Contextual Zero Trust Security
Identity-based access is incomplete without device posture. Learn how contextual Zero Trust and continuous endpoint profiling reduce standing privilege risk in Dynamic Enterprises.
BrickStorm Malware: Anatomy of a Stealth Linux Backdoor Targeting Modern Infrastructure
BrickStorm is a highly stealthy Linux backdoor designed for long-term, targeted cyber-espionage. Brickstorm is closely associated with Cyber Espionage group UNC5221, which is known for exploiting zero-days vulnerability in network edge appliances like Ivanti, F5 and MiTRE breach. Unlike commodity malware, BrickStorm is deployed post-compromise, operates largely in memory, and uses a modular architecture with custom encrypted command-and-control (C2). Its focus on Linux servers, network appliances, and embedded systems reflects a broader trend: attackers increasingly target infrastructure layers where visibility and detection are weakest.
‘Secure by Design’ at Versa: One Year of Progress
Security is a product decision, not an afterthought. As a further commitment to this principle and as a reflection of our pledge to the CISA Secure by Design goals, over the past year Versa has been putting them into practice across our platform, processes, and programs. Organized below around the seven Secure by Design pledge goals is a summary of the related new capabilities and enhancements we’ve delivered, along with a quick explanation of the importance of the changes.
Company Updates
Comprehensive Threat Defense: How Versa Uses the MITRE ATT&CK Framework for Threat Detection and Response
By Anusha Vaidyanathan
Sr. Director, Product Management
September 12, 2024
Versa Advanced Threat Protection (ATP) is a comprehensive cybersecurity solution designed to protect organizations from sophisticated threats across various vectors. Versa’s ATP detection reports are mapped directly to the MITRE ATT&CK framework, providing security teams a fingerprint of attacks, which can then be used for attribution to known adversaries, incident response, simulation attacks, and other security measures.
Company Updates
Securing GenAI Usage with Versa’s GenAI Firewall
By Anusha Vaidyanathan
Sr. Director, Product Management
May 6, 2024
Versa GenAI Firewall safeguards sensitive data from being uploaded into Generative AI tools (e.g. ChatGPT) while limiting shadow use cases of GenAI. It manages, monitors, and reports how your organization uses GenAI – including assessments on the riskiness of apps, controlling access, and preventing unauthorized data movement. Securing Generative AI Applications: Beyond LLMs While ensuring security for large language models (LLMs) is necessary to facilitate the adoption of GenAI applications within organizations, it is equally crucial to address broader concerns related to generative AI. Let’s delve into additional considerations: User-to-Application Access Control: Context: Generative AI tools are often accessed by…
Company Updates
Securing IoT Devices on Mobile Networks
By Rahul Vaidya
Director, Product Management
February 22, 2024
Securing the over three billion IoT devices globally connected to corporate systems via mobile networks presents a formidable and growing challenge for organizations worldwide. Driven by the adoption of newer IoT-specific cell technologies like LTE-M, NB-IoT, and LTE-Cat 1, along with a boom in 5G module shipments as older 2G and 3G modules are phased out, the number of cell-connected IoT devices is growing 27 percent a year, taking market share from Wi-Fi and Bluetooth connections. My recent collaboration with the network and security team of one of our industrial customers provided a front-row seat to the complexities of safeguarding…
Industry Insights
To 100G and Beyond: The Next Frontier for SASE
By Rajoo Nagar
January 24, 2024
To 100G and Beyond: The Next Frontier for SASE In the ever-evolving landscape of enterprise networking and security, a significant transformation is underway. Siloed, point product infrastructures are giving way to a Secure Access Service Edge (SASE) approach, driven by the rapid adoption of cloud technologies, the increased reliance on collaboration tools, and the emergence of hybrid work models.
Company Updates
Modernizing Retail with Secure SD-WAN
By Leo Jiao
Sr. Systems Engineer. Versa Networks
November 2, 2023
In recent years we’ve witnessed transformative changes in both technology and the retail industry. The retail world has seen tremendous ups and downs over the past several years thanks to the impact of COVID. In addition to challenges such as store closures, reduced foot traffic, and supply chain problems, digital disruptions include an increasing shift to e-commerce and new types of cyber threats that have dramatically changed how people shop and how retail businesses should operate. In the technology world, numerous stunning innovations such as AI/ML-assisted network operations and threat detection are making people’s jaws drop because of their capabilities…
Industry Insights
How To Create a More Secure World: replacing inadequate VPNs with ZTNA Follow-up
By Jon Taylor
Director and Principal of Security, Versa Networks
July 21, 2023
The global pandemic and rise in remote work has forced organizations to review how they provide remote workers access to IT resources. Existing solutions based on virtual private networks (VPN) can’t keep pace with the scale of remote users and often lead to a poor end-user experience.
Company Updates
10 requirements to consider when evaluating SASE solutions
By Jon Taylor
Director and Principal of Security, Versa Networks
June 5, 2023
Discover the 10 critical SASE evaluation requirements for selecting a unified SASE platform that delivers security, performance, and scale. Learn what to assess.
Research Lab
Surveying American Business Owners on Data Breaches
By The Versa Team
Universal SASE leaders
March 16, 2022
Data breaches are on the rise, but are companies properly prepared for this growing threat? We surveyed 1,200 business owners to find out.
Industry Insights
Get Ready for 5G
By Amelie Sutsakhan
Product Marketing Manager, Versa Networks
July 15, 2021
For all organizations, power outages, security breaches, or any accidents resulting in downtime can be extremely costly. Whether it’s an elementary school with lean IT, or a large global conglomerate, ensuring a rapid 5G rollout is crucial for an agile enterprise. As more organizations consider enabling 5G in their environment, here are some guidelines to follow for a seamless rollout.
Industry Insights
The Emergence of SASE Managed Services
By Amelie Sutsakhan
Product Marketing Manager, Versa Networks
July 6, 2021
Advanced initiatives can sometimes require large IT departments to research, design, build, and deploy. Not every enterprise has the resources and specialized staff to do this in a cost and time-efficient manner. MSPs (Managed Service Providers) can be very helpful in improving SASE deployment scalability when enterprises do not want or cannot implement SASE by themselves.
Subscribe to the Versa Blog




