Avertium is a privately owned company headquartered in the US, founded in 2019 and employing approximately 230 individuals. The company operates as a cybersecurity provider, with its main product focus on computer and network security.
Avertium, on February 16, emphasized the critical need for Chief Information Security Officers (CISOs) to address data governance, risk reduction, and visibility in AI adoption, aiming to prevent it from becoming a new attack surface rather than a strategic differentiator. Earlier the same day, Avertium detailed a Microsoft Word security feature bypass vulnerability (CVE-2026-21514), which could allow unauthorized local attackers to bypass protections against dangerous COM/OLE controls by opening a specially crafted Word document. This followed a separate advisory on February 16 regarding a Windows Shell security feature bypass vulnerability (CVE-2026-21510), rated Important with a CVSS score of 8.8, potentially enabling unauthorized attackers to bypass Windows SmartScreen and Shell security prompts over a network for code execution. Previously, on February 9, Avertium reported on a supply chain attack that targeted Notepad++ users from July to October 2025, where attackers compromised the software's update mechanism to deliver Cobalt Strike Beacons and other malware to a limited set of victims, including organizations in Southeast Asia and financial entities. On February 2, Avertium had also advised organizations on preparing their environments and data for responsible AI adoption, noting its incremental integration across various platforms.
Subscribe for full access to Avertium's products in full detail
Subscribe for full access to Avertium's revenue in full detail