Monday . 08 December . 2025

Cyata Uncovers Critical Flaws in Enterprise Vaults Used by Fortune 500

Jerusalem, 7 August, 2025 (TPS-IL) — Israeli cybersecurity startup Cyata has revealed 14 critical vulnerabilities in HashiCorp Vault and CyberArk Conjur, the world’s most widely used enterprise secrets management platforms. The flaws, including unauthenticated remote code execution (RCE), expose organizations to complete vault compromise—granting attackers access to passwords, API keys, and cloud systems.

“This represents the worst-case scenario for enterprise security,” said Cyata CEO Shahar Tal. The vulnerabilities, some exploitable for nearly a decade, affect systems used by major companies like NVIDIA, Citibank, and Samsung. Cyata disclosed the findings responsibly and released technical details and detection tools.

BREAKING NEWS