CVE-2025-31324 Exploited in the Wild: What We’ve Found in the Aftermath
In late April 2025, SAP disclosed CVE-2025-31324, a critical vulnerability in SAP NetWeaver’s Visual Composer development server. The flaw—stemming from...
In late April 2025, SAP disclosed CVE-2025-31324, a critical vulnerability in SAP NetWeaver’s Visual Composer development server. The flaw—stemming from...
Over the last year, we've witnessed a pivotal shift in how large language models (LLMs) are used - not just...
Executive Summary: The Orca Research Pod has discovered CVE-2025-48710 in kro (Kube Resource Orchestrator) where an attacker could introduce a malicious CustomResourceDefinition...
GenAI has dramatically changed how cloud native applications are built and deployed, leading to both a shift and opportunities for...
State and federal government agencies today face the dual challenge of modernizing and securing their cloud infrastructure on shrinking budgets...
An ever-increasing number of vulnerabilities, coupled with the widespread use of third-party and open-source software components, makes the work of...
At Orca Security, our mission is to help organizations thrive securely in the cloud. Just like mastering the game of...
Last week we announced a couple of new Orca capabilities: Agentless Reachability Analysis and Dynamic Runtime Reachability Analysis. In this...
The security industry has lived through several iterations of answering the question, “What security issue is most important to resolve?”...