CompTIA CySA+ CS0-003: Zero-day

Zero day is simply a vulnerability that is discovered by attackers before the developer/vendor. Products are released by the developer/vendor because they didn’t find any vulnerabilities and it results in a zero-day attack when attackers finds it afterwards. This is why we have patches that are continuously released. Zero day vulnerabilities can cause numerous problems and the only way to catch it is by utilizing data anlytics. Anomalies are spotted after collecting baseline data and implementing machine learning capabilities. Some examples of popular zero day attacks are chrome zero day from 2021 when vulnerability stemmed from bug in V8 javascript engine and apple iOS in 2020 with remote attacks. Keeping only the essential applications, using firewall, updating software as quickly as possible, and using comprehensive tools are the only way to protect against zero day attacks.