Facebook Google Plus Twitter LinkedIn YouTube RSS Menu Search Resource - BlogResource - WebinarResource - ReportResource - Eventicons_066 icons_067icons_068icons_069icons_070

Blog de Tenable

December 5, 2024

Haciendo que la arquitectura de Zero Trust sea lograble

How NIST is working with Tenable and other private sector stakeholders to better enable zero trust implementation....


December 2, 2024

Si solo tiene 1 minuto: Consejos rápidos para una respuesta eficaz a la exposición

Comprehensive, action-oriented workflows and key metrics are the cornerstones of a successful exposure response program. Here’s what you need to know....


December 2, 2024

Si solo tiene 5 minutos: prácticas recomendadas para establecer SLA de respuesta a exposición

Keeping vulnerability management efforts focused on achievable goals is key to avoiding cybersecurity team burnout. Here’s how exposure response workflows and SLAs can help....


December 2, 2024

Si solo tiene 5 minutos: elementos clave de una respuesta a la exposición eficaz

Learned helplessness and lack of prioritization are two vulnerability management pitfalls cybersecurity teams face. Here’s how an exposure response program can help....


November 29, 2024

Instantánea de ciberseguridad: Resumen de seguridad de IA: prácticas recomendadas, investigación e información

In this special edition, we’ve selected the most-read Cybersecurity Snapshot items about AI security this year. ICYMI the first time around, check out this roundup of data points, tips and trends about secure AI deployment; shadow AI; AI threat detection; AI risks; AI governance; AI cybersecurity us...


November 25, 2024

Recorriendo el camino: cómo Tenable adopta su compromiso de "seguro por diseño" con CISA

As a cybersecurity leader, Tenable was proud to be one of the original signatories of CISA’s “Secure by Design" pledge” earlier this year. Our embrace of this pledge underscores our commitment to security-first principles and reaffirms our dedication to shipping robust, secure products that our user...


November 22, 2024

Instantánea de ciberseguridad: Prompt Injection and Data Disclosure Top OWASP’s List of Cyber Risks for GenAI LLM Apps

Don’t miss OWASP’s update to its “Top 10 Risks for LLMs” list. Plus, the ranking of the most harmful software weaknesses is out. Meanwhile, critical infrastructure orgs have a new framework for using AI securely. And get the latest on the BianLian ransomware gang and on the challenges of protecting ...


November 21, 2024

Active Directory bajo ataque: la Guía de Five Eyes se centra en las brechas de seguridad cruciales

A landmark global report from cybersecurity agencies emphasizes 17 attack techniques against Microsoft Active Directory and cautions organizations to step up protections. In the first of our two-part series, we offer five steps you can take today to shore up your AD defenses....


November 21, 2024

Cinco organismos cibernéticos suenan la alarma sobre los ataques de Active Directory: más allá de lo básico

A landmark global report emphasizes 17 attack techniques against Microsoft Active Directory and cautions organizations to step up protections. In the second of our two-part series, we take you beyond the basics to highlight three key areas to focus on....


November 19, 2024

Volt Typhoon: lo que los funcionarios de los gobiernos estatales y locales deben saber

Increased activity from the state-sponsored threat group Volt Typhoon raises concerns about the cybersecurity of U.S. critical infrastructure. Here’s how you can identify potential exposures and attack paths....


November 19, 2024

Volt Typhoon: infraestructura crítica de los EE. UU. es blanco de agentes patrocinados por Estados

Volt Typhoon, a state-sponsored actor linked to the People’s Republic of China, has consistently targeted U.S. critical infrastructure with the intent to maintain persistent access. Tenable Research examines the tactics, techniques and procedures of this threat actor....


November 18, 2024

CVE-2024-0012, CVE-2024-9474: vulnerabilidades de día cero en Palo Alto PAN-OS explotadas en la realidad

Palo Alto Networks confirmed two zero-day vulnerabilities were exploited as part of attacks in the wild against PAN-OS devices, with one being attributed to Operation Lunar Peek....


Noticias de ciberseguridad que le son útiles

Ingrese su correo electrónico y nunca se pierda alertas oportunas y orientación en seguridad de los expertos de Tenable.

La falla en Apache Log4j coloca al software de terceros bajo los reflectores

Ver los detalles >