Instantánea de ciberseguridad: "Reduzca su entusiasmo por las herramientas de ChatGPT en el trabajo", dijo NCSC del Reino Unido
As OpenAI released ChatGPT Enterprise, the U.K.’s cyber agency warned about the risks of workplace use of AI chatbots. Plus, the QakBot botnet got torn down, but the malware threat remains – what CISA suggests you do. Moreover, new quantum-resistant algorithms are due next year. ¡Y mucho más!
CVE-2023-2868: Barracuda y FBI recomiendan reemplazar dispositivos de puerta de enlace de seguridad de correo electrónico (ESG) ahora mismo
Since October 2022, attackers have been exploiting a zero-day vulnerability in Barracuda Email Security Gateway devices, and both the vendor and the FBI urge customers to replace these devices immediately.
The Benefits of Cloud Entitlement Management
Cloud identities and entitlements pose grave challenges - learn about the benefits of CIEM solutions and KPIs for measuring them.
Tenable Nessus amplía la cobertura de la superficie de ataque con Web Application Scanning
Web applications can be an Achilles' heel for even the most mature security organizations. For small- and medium-sized businesses, as well as the security consultants and pen testers who support them, unsecured web apps can be a pathway to a data breach that can bring an organization to its knees…
Tenable Cyber Watch: La Administración Biden tiene como objetivo limitar las inversiones de los EE.UU en de IA china, CISA emite Plan Estratégico de Ciberseguridad y más
This week’s edition of Tenable Cyber Watch unpacks the White House’s new executive order seeking to limit U.S. investments in Chinese AI and addresses the cause behind most cloud breaches. Also covered: CISA’s new cybersecurity strategic plan.
Instantánea de ciberseguridad: CISO valoran prevención sobre respuesta, CISA insta a equipos cibernéticos a prepararse para ataques cuánticos
Time to start prepping for the quantum computing threat? CISA thinks so. Plus, why security leaders are prioritizing security prevention tools. Also, find out why ransomware attacks surged in July. Oh, and the White House wants your input on open source security. ¡Y mucho más!
CVE-2023-38035: Ivanti Sentry API Autenticación Bypass Zero-Day explotado en la realidad
For the third time in a month, Ivanti discloses a zero-day vulnerability in one of its products that has been exploited in the wild
Tenable Cyber Watch: La Casa Blanca aborda la escasez de habilidades cibernéticas, el costo de las filtraciones de datos sigue aumentando y más
This week’s edition of Tenable Cyber Watch unpacks the White House’s new initiative to tackle the cyber skills shortage and addresses the surge data breach costs. Also covered: NSA and CISA’s security guidance for 5G network slicing.
Instantánea de ciberseguridad: La Guía de CIS describe cómo obtener las bases para una higiene cibernética accesible
The Center for Internet Security unpacks how to establish foundational cyber hygiene at a reasonable cost. Plus, the Cyber Safety Review Board issues urgent security recommendations on its Lapsus$ report – and announces it’ll next delve into cloud security. Moreover, are humans or AI better at…
The Next Step in the IMDSv1 Redemption Journey
Learn about AWS’s new open source library for enforcing IMDSv2 and Tenable Cloud Security’s new lab for trying it out.
La captura de la bandera de Tenable en 2023: Y los ganadores son...
It's time to crown the winners of this year's Capture the Flag Event!
Tenable Cyber Watch: Puntos destacados de Black Hat USA, SANS lanza el informe 2023 sobre conocimiento de seguridad y más
This week’s edition of Tenable Cyber Watch dishes out five hot takes from Black Hat USA and provides guidance on how to better mitigate shadow IT risks. Also covered: How you can boost your security awareness program.