Why JIT Access is an Essential Part of Cloud Security
Automating JIT in the cloud is win-win for improving security and business productivity -- and cracks a nut that PAM can’t....
Instantánea de ciberseguridad: Descubra las habilidades cibernéticas más valiosas, las tendencias clave de seguridad en la nube y el impacto de las grandes empresas cibernéticas
¡Feliz año nuevo!Learn all about the cybersecurity expertise that employers value most; Google Cybersecurity Action Team’s latest take on cloud security trends; a Deloitte report on cybersecurity’s growing business influence; a growth forecast for cyber spending; and more!...
CVE-2022-47523: Vulnerabilidad de inyección de código SQL de Password Manager Pro, PAM360 y Access Manager Plus de ManageEngine
Zoho patches a newly disclosed high-severity SQL injection flaw in several ManageEngine products; attackers have historically targeted several ManageEngine products over the last three years....
Visibilidad de lo desconocido: Comprensión de EASM y de cómo puede ayudar
External attack surface management (EASM) is difficult and oftentimes confusing, especially in a world of poor inventory controls and a growing attack surface. This blog discusses what's required to do EASM successfully....
Tenable Cyber Watch: ¿Qué predicen nuestros expertos para 2023?
Banish the post-holiday blues with news you can use: this week's episode of Tenable Cyber Watch takes a look at four cybersecurity trends to watch for 2023. Learn how extortion tactics will reshape ransomware, OT security, SaaS worries and protecting the cloud are top of mind for our experts....
Instantánea de ciberseguridad: Datos clave de 2022 para seguridad en la nube, gestión de vulnerabilidades, EASM, seguridad de aplicaciones web y más
As 2022 ends, we highlight important data points that shine a light on the trends, challenges and best practices that matter to cybersecurity leaders eager to boost their exposure management and reduce their organizations’ cyber risk. ...
CVE-2022-47939: Vulnerabilidad crítica RCE en Linux Kernel
A critical remote code execution vulnerability in the Linux kernel has been publicly disclosed by Trend Micro's Zero Day Initiative in its ZDI-22-1690 advisory. The vulnerability has been given a CVSSv3 of 10.0. There are no reports of active exploitation....
Instantánea de ciberseguridad: Seis predicciones de Tenable para 2023
Mientras el año de 2022 llegaba a su fin, preguntamos a los expertos de Tenable lo que esperaban para el nuevo año.After reading the tea leaves, they’re forecasting developments in extortion attacks, OT security, SaaS threats, metaverse risks and more!...
Patch Tuesday’s Impact on Cybersecurity Over the Years
Dive into the history of Patch Tuesday and learn how it continues to influence the ways security teams manage patches....
CVE-2022-37958: Preguntas frecuentes para vulnerabilidad crítica de Microsoft SPNEGO NEGOEX
Microsoft recently reclassified a vulnerability in SPNEGO NEGOEX, originally patched in September, after a security researcher discovered that it can lead to remote code execution. Organizations are urged to apply these patches as soon as possible....
Plataforma de protección de aplicaciones nativas en la nube (CNAPP): An Evolving Approach to Cloud Security
A look at how IAM works and how CIEM enhances IAM security in the cloud....
Your Guide to IAM – and IAM Security in the Cloud
A look at how IAM works and how CIEM enhances IAM security in the cloud....