Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Latest posts

Deep-Dive Analysis of Multifactor Authentication Fatigue Attacks

There are many tactics cybercriminals use to defeat MFA security measures, but one successful method is a tactic known as MFA Fatigue. In this white paper, we cover what MFA Fatigue is and how it functions, share examples of attacks, and provide guidance for detection and mitigation.

Separating the Myth of NIS2: A Guide For CISOs and IT Security Directors

In today's rapidly evolving digital landscape, the escalating frequency and sophistication of cyber threats underscore the critical need for robust IT security measures. The NIS2 Directive is the EU's latest effort to bolster cybersecurity across Member States, setting stringent security requirements for critical infrastructure and essential services.

Using the MITRE ATT&CK Framework to Boost Ransomware Defenses

Two variants of Ransomware as a Service (RaaS) - REvil and Conti - are behind some of the most widespread and successful cyberattacks today. Don't let these ransomware attacks siege your operations. Download this white paper to learn how to use the MITRE ATT&CK Framework to improve your security posture, plus discover insightful tactics, techniques, and procedures (TTPs) used by REvil and Conti.

Elastic: What's new: Elastic 9.0 for GenAI, Security, and Observability | Spring 2025

Join us for an exclusive webinar as we introduce the latest advancements in Elastic with the upcoming release of 9.0 and 8.18. Our experts will provide highlights and demos of the key new features and enhancements designed to help you drive critical business outcomes with GenAI, Security, and Observability. Whether you are a current user looking to upgrade or are new to Elastic, this webinar will provide insights to help you maximize the potential of your deployment.

Netskope: VPN Patching. The Job Security You Never Wanted. Time for ZTNA

Relying on VPNs is like trying to stop a leaky roof from collapsing-you patch one issue, only for another to appear. Meanwhile, security risks escalate, performance suffers, and IT teams remain trapped in an endless cycle of maintenance. VPNs have become a prime target for attackers, with 45% of exploits in 2024 targeting VPN vulnerabilities. The more you patch, the more you fall behind. It's time for a permanent fix.

NAKIVO: Proxmox VE Data Protection & Cybersecurity: Best Practices in Action with NAKIVO

Accidental deletions, data breaches, system failures, disasters-and worst of all, cyberattacks; how fast-or even if-you can recover from this depends on your backups. Do you think Proxmox VE native backup is enough? The reality is, it's not. Register for this live webinar to explore the main loss threats to Proxmox VE and why native tools fall short of fully protecting against data loss. Follow our experts as they walk you through best practices and measures to protect Proxmox VE data with NAKIVO Backup & Replication.

4-Time Technology Excellence Leader in the SPARK Matrix

The cybersecurity market continues to become more crowded, making it increasingly difficult for organizations to separate hype from reality and find security solutions that truly meet their needs. Messages sound the same. Demos look impressive, but how much is vision? And when the rubber meets the road, it’s hard to know what to expect in terms of the deployment, user experience, and impact to the business.

Top 10 Cybersecurity Threats WAFs Prevent

A Web Application Firewall (WAF) is your first line of defense against internet traffic that can be both legitimate and malicious. It helps protect your web applications, websites, and servers from various cyber-attacks by filtering out harmful traffic. WAF (WAAP) is essential for web security as it quickly identifies and addresses vulnerabilities in applications and servers.

Babuk2 Bjorka: The Evolution of Ransomware for 'Data Commoditization'

An investigation that started with a tip from one of our threat intel sources about the revival of the Babuk (figure 1) threat group has led Trustwave SpiderLabs to uncover what appears to be a paradigm shift in the ransomware landscape. Figure 1. SpiderLabs telemetry (January 2025 events). Figure 1A. February to March events. Figure 1B. SpiderLabs telemetry (March 2025 events).

Supply Chain Attacks: What You Should Know

Supply-chain attacks may not grab the headlines in the same way as ransomware or data breaches, but these horrific, sneaky cyberattacks are just as dangerous for your business. Here are five things you need to know about supply chain attacks, including what they are, why they happen, and how to prevent them.