MEET THE TEAM AT BLACK HAT - DEF CON 2026 Learn More

Caleb Gross - Author at Bishop Fox
Caleb Gross Light Gray

Meet The Author

Caleb Gross
Former Director of Capability Development

Caleb Gross was the Director of the Capability Development at Bishop Fox where he leads a team of offensive security professionals specializing in attack surface research and vulnerability intelligence. Prior to coming to Bishop Fox, he served as an exploitation operator in the US Department of Defense's most elite computer network exploitation (CNE) unit. As a top-rated military officer, Caleb led an offensive operations team in the US Air Force's premier selectively manned cyber attack squadron. He studied at the University of Virginia and holds two degrees in computer science.

From Caleb Gross

Research & Events

Resource / Technical Briefings

Tearing Down (Sonic)Walls: Reverse-Engineering SonicOSX Firmware Encryption

Mar 21, 2025

Event

Bishop Fox at DistrictCon

February 21-22, 2022

Blog / Technical Research

raink: Use LLMs for Document Ranking

Jan 14, 2025

Resource / Workshops & Training

Patch Perfect: Harmonizing with LLMs to Find Security Vulns

Jan 13, 2025

Blog / Product

Bishop Fox ASM Delivers 24-Hour Head Start Against Critical PAN-OS Vulnerability

Dec 09, 2024

Resource / Technical Briefings

Technical Brief on PAN-OS Vulnerability & SonicWall SWI Firmware Decryption

Dec 08, 2024

Event

Caleb Gross and Josh Shomo to Speak at RVASec 2024

Wednesday, June 5, 2024

Resource / Executive Briefing

The Zero-Day Arms Race: Why Asset Management Trumps Vulnerability Whack-a-Mole

Feb 08, 2024

Blog / Technical Research

Analysis and Exploitation of CVE-2023-3519

Aug 04, 2023

Blog / Technical Research

Citrix ADC Gateway RCE: CVE-2023-3519 is Exploitable, and 53% of Servers Are Unpatched

Jul 21, 2023

Blog / Technical Research

CVE-2023-27997 Is Exploitable, and 69% of FortiGate Firewalls Are Vulnerable

Jun 30, 2023

Blog / Technical Research

CVE-2023-27997 Vulnerability Scanner for FortiGate Firewalls

Jun 20, 2023

Blog / Advisories

CVE-2022-1388: Scan BIG-IP for Exact Release Versions

May 10, 2022

Resource / Workshops & Training

.NET Roulette: Exploiting Insecure Deserialization in Telerik UI

Jun 02, 2020

Resource / Workshops & Training

.Net Roulette Exploiting Insecure Deserialization in Telerik UI

May 02, 2020

Event

Barrett Darnell, Kelly Albrink and Caleb Gross to Present at DERPCON Virtual Conference

Past Event

Blog / Technical Research

CVE-2019-18935: Remote Code Execution via Insecure Deserialization in Telerik UI

Dec 12, 2019