Instantánea de ciberseguridad: Los CISO dicen que las filtraciones de datos han disminuído, pero el conseguir personal sigue siendo muy difícil
Find out what’s working well for CISOs – and what could be better. Plus, why you should pay attention to the FTC’s investigation into ChatGPT-maker OpenAI. Also, check out a primer for C-level execs on adopting generative AI. Plus, the free cloud security tools CISA recommends you use. And much more...
La actualización de parche crítico de Oracle para julio de 2023 aborda 183 CVE
Oracle addresses 183 CVEs in its third quarterly update of 2023 with 508 patches, including 76 critical updates....
CVE-2023-3519: RCE crítica en Netscaler ADC (Citrix ADC) y Netscaler Gateway (Citrix Gateway)
Citrix has released a patch fixing a remote code execution vulnerability in several versions of Netscaler ADC and Netscaler Gateway that has been exploited. Organizations are urged to patch immediately....
Tenable Cyber Watch: El NAIAC presenta su primer informe a Biden, el 80 % de los empleados se oponen a las prohibiciones de ChatGPT en el trabajo y más
This week’s edition of Tenable Cyber Watch unpacks the NAIAC’s first report delivered to President Biden and explores Glassdoor’s survey finding that 80% of employees oppose ChatGPT bans at their workplace. Also covered: CISA releases two new guides aimed at helping cyber teams protect cloud apps. ...
Instantánea de ciberseguridad: CISA y NSA se sumergen en seguridad de CI/CD, mientras que MITRE ocupa las principales debilidades de software
Learn about the guidance from the U.S. government for defending CI/CD pipelines. Plus, check out the 25 most dangerous software weaknesses. Also, what developers like about AI tools – and what they don’t. And much more!...
CVE-2023-3595, CVE-2023-3596: vulnerabilidades de Rockwell Automation ControlLogix dadas a conocer
Rockwell Automation issues advisory for multiple vulnerabilities, including a critical flaw that could lead to disruption or destruction of critical infrastructure processes....
Búsqueda de módulos de comunicación Rockwell Automation Allen-Bradley afectados por CVE-2023-3595 y CVE-2023-3596 en entornos de OT
Identifying vulnerable systems in your industrial environment can be complex. Si usa la herramienta equivocada pasará por alto los dispositivos afectados.Find out how Tenable OT Security is designed to give you in-depth asset visibility to address these new vulnerabilities without disrupting productivity....
El Martes de parches de Microsoft de julio de 2023 aborda 130 CVE (CVE-2023-36884)
Microsoft addresses 130 CVEs including five that were exploited in the wild as zero-day vulnerabilities and guidance on the malicious use of Microsoft signed drivers....
Tenable Cyber Watch: Un estudio descubre que muchos CISO no están calificados para servir en las juntas directivas, cómo la ciberseguridad impulsa a los negocios y más
This week’s edition of Tenable Cyber Watch unpacks the new comprehensive guide on LockBit, the world’s most deployed ransomware variant, and explores how cybersecurity can boost business. Also covered: a new study finds many CISOs to be unqualified to serve on boards. ...
Instantánea de ciberseguridad: herramientas como ChatGPT acelerarán a desarrolladores e intensificarán riesgos cibernéticos
Learn about the promise and peril of generative AI for software development – and how it makes business execs both happy and fearful. Plus, do cyber teams underestimate risk? Also, NIST has a new AI working group – care to join? And much more!...
An Unexpected Implication of Lambda Privileges
Learn how a combination of AWS service usage and permissions discovered by Tenable Cloud Security may increase risk upon a certain non-compliance....
Tenable Cyber Watch: Los federales de los EE. UU. ofrecen recompensa de USD 10 millones por información de CL0P, prácticas recomendadas para respuesta ante incidentes y más
This week’s edition of Tenable Cyber Watch unpacks the $10 million bounty issued by the U.S. State Department’s Rewards for Justice program for information on the CL0P gang and shares four best practices for ransomware incident response. Also covered: a new study finds U.S. critical infrastructure t...