Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Latest posts

2023 OWASP Top-10 Series: Spotlight on Injection

Welcome to the 12th post in our weekly series on the new 2023 OWASP API Security Top-10 list, with a particular focus on security practitioners. In this series we are taking an in-depth look at each category – the details, the impact and what you can do about it. To see previous posts you might have missed, click here. This post will put a spotlight on Injection, which used to be its own category (OWASP API8:2019) but has now been subsumed into OWASP API10:2023 (Unsafe Consumption of APIs).

Enabling Breach Prevention on Red Hat OpenShift Service on AWS (ROSA)

As organizations increasingly deploy business-critical workloads to managed cloud services, enforcing strong security practices needs to be a top priority. While many managed cloud service providers do a good job of protecting the cloud and infrastructure itself, it’s the responsibility of the customer to protect what’s running inside the cloud.

KnowBe4: The Role of AI in Email Security and How Real-Time Threat Intelligence Can Supercharge Your SOC Team

In response to improved email security measures, cybercriminals have pivoted to more advanced attack methods, namely artificial intelligence (AI), that bypass existing protections. But security defenders are also using AI in remarkable new ways to fortify their networks. Join Erich Kron, Security Awareness Advocate for KnowBe4, and Michael Sampson, Principal Analyst at Osterman Research, as they dig into the findings of our latest joint report on The Role of AI in Email Security.

Kroll: Q3 2023 Cyber Threat Landscape Virtual Briefing

The third quarter of 2023 saw cybersecurity threats continue to grow in sophistication. In this briefing, Kroll's cyber threat intelligence leaders will explore key insights and trends from hundreds of cyber incidents handled worldwide each year. During this session, our experts Keith Wojcieszek, Laurie Iacono and George Glass will outline critical issues organizations should be aware of, including the sectors hit the hardest and active ransomware groups.

KnowBe4: Open-Source Intelligence (OSINT): Learn the Methods Bad Actors Use to Hack Your Organization

They are out there, watching and waiting for an opportunity to strike; the bad actors who have carefully researched your organization in order to set the perfect trap using easily found public resources. Open-Source Intelligence (OSINT) can provide cybercriminals everything they need to know to perfectly target your users by gathering data on everything from password clues to tech stack details, banking/credit card accounts, social media details and more. Emerging technologies like AI can make gathering this intelligence even easier.

CyberArk: Anatomy of the MGM Hack: A CyberArk Labs Perspective

Actionable Steps to Enhance Your Security Posture Today On September 11 threat actors initiated a social engineering attack that led to the near shutdown of MGM Resorts International. MGM Resorts International is a global hospitality and entertainment company, with a portfolio of 29 hotel and resort properties, including iconic brands like Bellagio, MGM Grand and Mandalay Bay.

Netwrix: Code of Steel: Empower Your AD Security with a Resilient Password Policy

On the second day, we will focus on safeguarding passwords from hackers. Today, security and compliance demand a password policy with real strength. But let's face it, native tools often fall far short. Enter the game-changers: Netwrix Password Policy Enforcer and Netwrix Password Secure. You'll discover how these solutions deliver powerful password enforcement that is also remarkably hassle-free. Bid farewell to the headaches and welcome security that's as sturdy as a rock. Your Active Directory will express its gratitude!