CyCognito Blog

Posts by Igal Zeifman

Search the Blog

Igal Zeifman

Igal Zeifman

VP of Marketing

Igal Zeifman has worked in cybersecurity and cloud for over two decades, leading strategic, full-funnel marketing efforts at both startups and global enterprises. He has held senior marketing roles at several application and endpoint security companies, contributing at pivotal stages of growth as well as to security research and product initiatives that shaped market perception and adoption.

By Igal Zeifman

A cross-site scripting vulnerability in Microsoft Exchange Server’s Outlook Web Access lets an unauthenticated attacker execute arbitrary JavaScript in a victim’s browser session by sending a specially crafted email, and is already being exploited in the wild.

Read more about Emerging Threat: (CVE-2026-42897) Microsoft Exchange OWA Cross-Site Scripting via Crafted Email
By Igal Zeifman

An unauthenticated arbitrary file upload vulnerability in the Breeze Cache plugin for WordPress allows attackers to drop a PHP webshell onto the server through the plugin’s Gravatar-fetching function, leading to remote code execution on affected sites.

Read more about Emerging Threat: (CVE-2026-3844) WordPress Breeze Cache Plugin Unauthenticated File Upload
By Igal Zeifman

A cryptographic signature verification flaw in ASP.NET Core’s Data Protection library lets an unauthenticated attacker forge authentication cookies and other protected payloads, allowing impersonation of privileged users on Linux-hosted applications running Microsoft.AspNetCore.DataProtection 10.0.0 through 10.0.6.

Read more about Emerging Threat: (CVE-2026-40372) ASP.NET Core Privilege Escalation via Signature Bypass