N-able provides a suite of IT management tools designed for Managed Service Providers (MSPs). It offers remote support, AI- and ML-powered endpoint detection and response, and cloud-first backup solutions to streamline IT service management, improve security, and boost efficiency. The products are cloud-based and offered on a subscription model, emphasizing ease of use, integration with other tools, and affordability to serve a wide range of MSP customers. The company differentiates itself by focusing specifically on MSP workflows, providing essential tools without unnecessary complexity, and offering extensive training and support resources to help MSPs succeed. Its overall goal is to help MSPs protect their clients’ data, manage IT environments efficiently, and deliver reliable, high-quality service.
Industries
Data & Analytics
Enterprise Software
Cybersecurity
AI & Machine Learning
Company Size
1,001-5,000
Company Stage
IPO
Headquarters
Ottawa, Canada
Founded
2000
See people who can refer or advise you
Help us improve and share your feedback! Did you find this helpful?
Total Funding
$300.2M
Above
Industry Average
Funded Over
4 Rounds
Health Insurance
Dental Insurance
Vision Insurance
Paid Vacation
Paid Holidays
Employee Stock Purchase Program
Gym Membership
Professional Development Budget
Hybrid Work Options
N-able released hotfix for RCE vulnerability affecting platform. Spread the love N-able has released N-central 2026.3 Hotfix 4 to fix CVE-2026-86218. This critical vulnerability could allow an unauthenticated attacker to execute code remotely on an exposed N-central server. The update, identified as build 2026.3.1.14, was issued for on-premises N-central deployments. N-able urged self-hosted customers to install the hotfix immediately, warning that systems left unpatched remain at risk even though the company has not confirmed exploitation in production environments. CVE-2026-86218 is a pre-authenticated remote code execution vulnerability. This means an attacker may be able to trigger the flaw without first logging in or providing valid user credentials. If successfully exploited, the issue could allow an attacker to run commands on the N-central server. N-central is used by managed service providers and IT teams to monitor, manage, automate, and secure customer systems. Because the platform can have broad access across endpoints, networks, credentials, and administrative tools, a compromise of the central management server could create serious downstream risks. Attackers who gain control of an N-central server could potentially use that access to deploy malicious software, alter monitoring settings, steal stored information, create unauthorized accounts, or move further into managed customer environments. N-able released hotfix. The exact technical details and attack vector for CVE-2026-86218 have not been publicly disclosed. N-able said a third party responsibly reported the flaw through its security disclosure program. The vendor stated that it currently has no confirmation of active exploitation. However, organizations should not treat the lack of known attacks as a reason to delay patching. Public patch releases can help threat actors identify vulnerable systems and develop exploit attempts. The new release replaces N-central 2026.3 Hotfix 3, build 2026.3.1.13. Customers running versions 2025.4, 2026.1, 2026.2, 2026.3, 2026.3.1 Hotfix 1, or 2026.3.1 Hotfix 2 can upgrade directly to build 2026.3.1.14. Organizations using older releases should first move to a supported upgrade version and then apply the latest hotfix. N-able confirmed that hosted N-central customers, also known as NCOD users, do not need to take any action because the patches have already been applied to their environments. The urgent action applies to organizations operating their own self-hosted N-central infrastructure. The company also said administrators do not need to upgrade N-central agents specifically to address CVE-2026-86218. However, it recommended keeping agents up to date with the latest available version as a general security practice. Security teams should identify all self-hosted N-central instances, confirm their installed build number, and schedule the update to 2026.3.1.14 as soon as possible. Administrators should also review server access logs, administrator account activity, remote command execution records, and unusual configuration changes for signs of suspicious behavior before and after patching. Learn 7 Metric-Gated AI SOC Deployment Phases - Download Free AI SOC Deployment Playbook 2026. The post N-able released hotfix for RCE vulnerability affecting platform appeared first on cyber security News. August 3, 2026 N-able has disclosed a critical security vulnerability in its N-central remote monitoring and management (RMM) platform, which could allow unauthenticated attackers to gain full administrative, or "god-mode," access to the RMM console. This issue affects all currently supported N-central versions, including both cloud-hosted and on-premises deployments, and... August 3, 2026 In "Cybersecurity News - Original News Source is cybersecuritynews.com" August 4, 2026 CISA has warned that attackers are actively exploiting a critical authentication bypass vulnerability in N-able N-central. Tracked as CVE-2026-18577, the flaw affects N-central servers running versions earlier than 2026.3.1.7. N-central is a remote monitoring and management platform widely used by managed service providers to administer customer systems... August 4, 2026 In "Cybersecurity News - Original News Source is cybersecuritynews.com" N-able's N-central remote management and monitoring (RMM) platform faces critical security risks following the discovery of multiple vulnerabilities. According to Horizon3.ai, it allows unauthenticated attackers to bypass authentication, access legacy APIs, and exfiltrate sensitive files, including credentials and database backups. The Vulnerability Chain Earlier this year, N-able N-central was added... November 20, 2025 In "Cybersecurity News - Original News Source is cybersecuritynews.com"
Cybersecurity firm N-able surged over 11% in pre-market trading on Friday after announcing a $50 million increase to its share repurchase programme. The board approved the expansion, bringing total authorisation to $125 million, with $45 million remaining from previous authorisation as of 30 June. CFO Tim O'Brien stated the increase reflects the firm's conviction that repurchasing shares at current levels represents an attractive use of capital. The company reported Q2 revenue of $138.22 million, slightly above estimates of $137.95 million. However, N-able reduced its full-year revenue guidance to $539 million to $542 million from $554 million to $559 million previously. Following the announcement, RBC Capital downgraded the stock to Sector Perform from Outperform, cutting its price target to $4 from $6.
NABL investors have opportunity to join N-able, Inc. fraud investigation with SBS law. Foto: lightpoet - stock.adobe.com Schall, Brown & Schwartz LLP ("SBS"), a national shareholder rights litigation firm, announces that it is investigating claims on behalf of investors of N-able, Inc. ("N-able" or "the Company") (NYSE: NABL) for violations of the securities laws. INVESTIGATION DETAILS: The investigation focuses on whether the Company issued false and/or misleading statements and/or failed to disclose information pertinent to investors. N-able lowered its full year 2026 guidance despite claiming that retention was strong. We also encourage you to contact Brian Schall or David Schwartz of Schall, Brown & Schwartz LLP, 2049 Century Park East, Suite 2460, Los Angeles, CA 90067, at 310-301-3335, to discuss your rights free of charge. You can also reach us through the firm's website at www.schallfirm.com, or by email at [email protected] WHY SBS? Schall, Brown & Schwartz LLP represents investors around the world and specializes in securities class action lawsuits and shareholder rights litigation. Bringing together the extensive experience and diverse skillsets of founding partners Brian Schall, Andrew Brown, and David Schwartz, SBS is dedicated to aggressively advocating for every investor. The N-able Stock at the time of publication of the news with a fall of -6,52 % to 3,44 USD on NYSE stock exchange (15. August 2026, 02:04 Uhr). Business Wire (engl.) Autor folgen Verfasst von Letzte Änderung16.08.2026, 22:58 Im Artikel enthaltene Werte
N-able reported a return to profitability in Q2 2026, posting net income of $1.76 million after a loss the previous year. The company also issued guidance pointing to year-over-year revenue growth. Despite the improved earnings, N-able's share price has fallen sharply, down 26.7% over 30 days and 58.14% over the past year. The most widely followed valuation narrative suggests the stock is 36.2% undervalued, with a fair value estimate of $5.08 per share compared to the last close of $3.24. The company has noted approximately 90% customer renewal rates. Analysts point to growing demand for N-able's cyber resilience platform driven by increasing cloud adoption and rising cybersecurity threats. However, execution risks remain, including weaker endpoint renewals and pressure on annual recurring revenue goals.
N-able releases two patches for N-central authentication bypass vulnerability. N-able developers have released a second emergency patch for the N-central remote monitoring and management platform. The follow-up update was required due to ongoing attacks exploiting CVE-2026-18577: attackers are gaining administrator privileges on N-central servers and infiltrating customers' systems. N-able specialists first detected suspicious activity in one customer's environment on July 31, 2026. The subsequent investigation showed that unknown attackers had exploited a zero-day vulnerability in N-central, which was eventually assigned the identifier CVE-2026-18577 (CVSS score: 8.2). This vulnerability allows remote attackers to bypass authentication and take control of an administrator account. The issue turned out to be related to an improper fix for another bug - CVE-2026-18556, which also enabled authentication bypass and affected all N-central versions up to and including 2026.1. As a result, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) added both vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, noting that they are being actively exploited by attackers. The first fix, included in N-central version 2026.3.1.7, was released on August 2. However, several days later, N-able issued a second emergency patch, included in version 2026.3.1.10. The company stressed that this update must be installed even by those who have already applied the previous patch, as the new fix includes additional protective measures. It turned out that after gaining administrative access to N-central via the zero-day flaw, the attackers used the built-in Take Control feature to connect to computers within managed environments. The attackers then configured a new Cloudflare Tunnel service on compromised systems, allowing them to retain remote access to victims' machines even after losing access to N-central. N-able representatives report that these attacks affected a "limited number" of customers, though the exact number of victims has not yet been disclosed. It is also unknown how many managed systems the attackers were able to access and what actions the hackers took after establishing persistence in those systems. The issue is compounded by the fact that the N-central platform is widely used by managed service providers (MSPs) and corporate IT departments to centrally manage large numbers of servers, workstations, and network devices. As a result, compromising N-central allows attackers to expand their attack and gain access to numerous client systems. Users of on-premises N-central installations are advised to upgrade to version 2026.3.1.10 immediately, while cloud instances have already been updated automatically. The investigation into the attacks is still ongoing, and N-able warns that the list of affected organizations and indicators of compromise will continue to grow.
Find jobs on Simplify and start your career today
Industries
Data & Analytics
Enterprise Software
Cybersecurity
AI & Machine Learning
Company Size
1,001-5,000
Company Stage
IPO
Headquarters
Ottawa, Canada
Founded
2000
Find jobs on Simplify and start your career today