Tenable Cyber Watch: Vigilancia del metaverso, protección de IA y ML, la amenaza de Daixin para los hospitales y el cambio a las plataformas cibernéticas integradas
To help you zap those Monday blahs, here’s a caffeinated shot of cyber news you can use: Police chiefs must get hip to the metaverse. CISOs are shifting to integrated cybersecurity platforms. There's new guidance for securing ML and AI systems. Hospitals face a ransomware threat from the Daixin cybe...
Instantánea de ciberseguridad: Estafas de phishing, tendencias de salarios, riesgos del metaverso, Log4J Poll
Get the latest on worrisome phishing stats; businesses’ embrace of the metaverse, come what may; a (small) improvement in CISO job stability; the compensation cost of security leaders; and more!...
El Martes de parches de diciembre de 2022 de Microsoft aborda 48 CVE (CVE-2022-44698)
Microsoft addresses 48 CVEs including two zero-day vulnerabilities, one that has been exploited in the wild (CVE-2022-44698) and one that was publicly disclosed prior to a patch being available (CVE-2022-44710)....
CVE-2022-27518: RCE sin autenticar en Citrix ADC y puerta de enlace
Citrix has patched a critical remote code execution vulnerability in its Gateway and ADC products. This vulnerability has reportedly been exploited as a zero day; organizations should patch urgently....
Cómo evaluar la preparación de la ciberseguridad de proveedores de servicios de TI y MSP
Improperly evaluating the cybersecurity capabilities of prospective IT service providers and managed service providers (MSPs) can put your organization's data and systems at risk. A new guide from CompTIA can help you ask the right questions....
CVE-2022-42475: Fortinet coloca parches de día cero en VPN de FortiOS SSL
Fortinet has patched a zero day buffer overflow in FortiOS that could lead to remote code execution. There has been a report of active exploitation and organizations should patch urgently....
¿Qué pasa cuando el metaverso entra a su superficie de ataque?
Tenable polled 1,500 cybersecurity, IT and DevOps professionals about their top concerns in the nascent virtual reality worlds of the metaverse. Here's what we found out....
Tenable Cyber Watch: Los desafíos de la aceleración de la detección (shift left), los esfuerzos anti-ransomware, los riesgos cuánticos y la ansiedad de los CISO
Beat the Monday blues with cyber news you can use | Shift-left efforts falling short. The White House’s war on ransomware. Everything you’ve ever wanted to know about CISOs. The quantum computing risk for critical infrastructure. Don’t miss the latest episode of the Tenable Cyber Watch. The weekl...
Instantánea de ciberseguridad: Aniversario de Log4j, riesgos de CI/CD, Infostealers (ladrones de información), ataques contra correo electrónico, seguridad de OT
Get the latest on the anniversary of the Log4j crisis; OWASP’s top CI/CD risks; a surge of infostealer malware; the fund transfer fraud — business email compromise connection; and more! ...
Seguridad en la nube: cinco conclusiones clave de la encuesta SANS DevSecOps
Un informe reciente del SANS Institute revela que los equipos de DevSecOps están mejorando sus herramientas, procesos y técnicas, pero los entornos de TI cada vez más híbridos y multinube de sus organizaciones son cada vez más difíciles de proteger. Check out key highlights from the “SANS 2022 DevSecOps Survey.”...
Are You Ready for the Next Log4Shell? Tenable’s CSO and CIO Offer Their Advice
Tenable CIO Patricia Grant and CSO Robert Huber share insights and best practices to help IT and cybersecurity leaders and their teams weather the next cyber crisis of Log4j proportions....
NETGEAR Router Misconfiguration Opens The Door For Remote Attacks
Tenable Research has discovered a configuration issue impacting NETGEAR Nighthawk WiFi6 Routers commonly used in small offices and large homes. Organizations need to manually apply firmware updates....