Uno de cada 10 activos evaluados es vulnerable a Log4Shell
If not addressed now, it will define computing in 2022....
Assess Log4Shell Like an Attacker With Tenable’s Dynamic Detections
Defenders need to pull out all the stops when it comes to Log4Shell. Tenable provides dynamic remote Log4Shell vulnerability detections to incorporate the attacker’s perspective of your organization....
CVE-2021-44228, CVE-2021-45046, CVE-2021-4104: preguntas frecuentes acerca de Log4Shell y vulnerabilidades asociadas
A list of frequently asked questions related to Log4Shell and associated vulnerabilities....
Microsoft’s December 2021 Patch Tuesday Addresses 67 CVEs (CVE-2021-43890)
Microsoft addresses 67 CVEs in its December 2021 Patch Tuesday release, including a zero-day vulnerability that has been exploited in the wild....
Log4Shell: cinco pasos que la comunidad de TO debe emprender ahora mismo
Los entornos de tecnología operativa (OT) también están en riesgo por la falla en Apache Log4j. Here's what you can do today....
Falla de Apache Log4j: El fantasma de Fukushima en el sector de ciberseguridad
Organizations around the world will be dealing with the long-tail consequences of this vulnerability, known as Log4Shell, for years to come....
La falla en Apache Log4j coloca al software de terceros bajo los reflectores
Even in the most mature organizations, addressing the issue, also known as Log4Shell, requires a complex mix of software development practices, vulnerability management and web application scanning....
CVE-2021-44228: prueba de concepto para ejecución de código remota crítica de Apache Log4j disponible (Log4Shell)
Una vulnerabilidad crítica en la popular biblioteca de registros Log4j 2 afecta a diversos servicios y aplicaciones, incluyendo Minecraft, Steam y Apple iCloud. Attackers have begun actively scanning for and attempting to exploit the flaw....
How to Start Up Your Cloud Security
Startups may think they can postpone implementing a cloud security program but should in fact take early action — here’s why, and easy steps for doing so....
Presentación de Tenable.cs: ciclo de vida completo, seguridad nativa en la nube
The new offering extends the recently acquired Accurics platform to enable DevSecOps and “shift left security” with integrated controls for development and runtime workflows, focused on Infrastructure as Code (IaC)....
Protección de los entornos de TI-TO: por qué los profesionales de seguridad de TI tienen problemas
When providing cybersecurity in converged IT and operational technology environments, it’s critical for infosec pros to understand the differences between the two and utilize a toolset that delivers a comprehensive picture of both in a single view....
#GivingTuesday: Favorite Charities of Tenable Employees
This year for #GivingTuesday, we highlight some of the causes that Tenable employees have championed this year and invite you to do the same. ...