Blog de Tenable
Instantánea de ciberseguridad: Asset Inventories Key for OT Security, CISA Says, as NIST Issues Lightweight Algorithms to Secure IoT Devices

Los secretos están expuestos: exposiciones de datos en la nube que ponen en riesgo a su negocio
Los datos confidenciales y los secretos se están filtrando. How cloud security leaders can shut them down....
GerriScary: Hackeando la cadena de suministro de productos populares de Google (ChromiumOS, Chromium, Bazel, Dardo y más)
Tenable Cloud Research discovered a supply chain compromise vulnerability in Google's Gerrit code-collaboration platform which we dubbed GerriScary. GerriScary allowed unauthorized code submission to at least 18 Google projects including ChromiumOS (CVE-2025-1568), Chromium, Dart and Bazel, which ar...
La gestión de la exposición es el futuro de la seguridad proactiva
Each Monday, the Tenable Exposure Management Academy provides the practical, real-world guidance you need to shift from vulnerability management to exposure management. In this post, Jorge Orchilles, Senior Director of Readiness and Proactive Security at Verizon, offers an up-close glimpse at the th...
Instantánea de ciberseguridad: NIST ofrece asesoría sobre la implementación de Zero Trust, mientras que OpenAI comparte incidentes de uso indebido de ChatGPT
Check out NIST best practices for adopting a zero trust architecture. Plus, learn how OpenAI disrupted various attempts to abuse ChatGPT. In addition, find out what Tenable webinar attendees said about their exposure management experiences. And get the latest on cyber crime trends, a new cybersecuri...
Nueva orden ejecutiva de ciberseguridad: lo que debe saber
A new cybersecurity Executive Order aims to modernize federal cybersecurity with key provisions for post-quantum encryption, AI risk and secure software development....
El Martes de parches de Microsoft de junio de 2025 aborda 65 CVE (CVE-2025-33053)
Microsoft addresses 65 CVEs, including two zero-day vulnerabilities, with one being exploited in the wild....
Cómo utilizar las métricas basadas en el riesgo en un programa de gestión de exposición
Each Monday, the Tenable Exposure Management Academy provides the practical, real-world guidance you need to shift from vulnerability management to exposure management. In this post, Tenable security engineers Arnie Cabral and Jason Schavel share how you can use risk-based metrics. ...
Instantánea de ciberseguridad: Experts Issue Best Practices for Migrating to Post-Quantum Cryptography and for Improving Orgs’ Cyber Culture
Check out a new roadmap for adopting quantum-resistant cryptography. Plus, find out how your company can create a better cybersecurity environment. In addition, MITRE warns about protecting critical infrastructure from cyber war. And get the latest on exposure response strategies and on CISO compens...
Seguridad en la nube más robusta en cinco minutos: 3 formas rápidas de mejorar la seguridad de Kubernetes en GCP
In this fifth installment of Tenable’s “Stronger Cloud Security in Five” blog series, we offer three best practices for quickly hardening your Kubernetes environment’s security in GCP: remove wide inbound access to cluster APIs; remove root permissions from containers; and remove privileged permissi...