Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Latest posts

Tigera: Amazon EKS Security Bootcamp: Achieve PCI, SOC2, HIPAA, NIST and GDPR compliance for containerized applications

Attend this in-depth, hands-on compliance workshop with Amazon AWS and Calico experts to learn how to design and deploy best practices to achieve compliance with regulatory frameworks, including but not limited to PCI, SOC 2, HIPAA, and GDPR and secure your Kubernetes environment. This 90-minute hands-on lab comes with your own provisioned Calico Cloud and a sample app environment.

Trustwave: How Generative AI Models are Changing the Face of Information Security

AI technology is moving at a faster pace than anyone anticipated. This spring, we brought in Trustwave SpiderLabs Senior Security Research Manager, Karl Sigler, to explore the AI threat landscape and the role of natural language processing in mitigating risks. Building on the success of our initial ChatGPT research, Karl will provide an updated perspective on the advancements made over the past several months. He'll explore how the AI landscape has matured, revealing novel challenges and opportunities for information security staff.

MSSP Alert Names CISO Global to 2023 Top 250 Managed Security Services Providers List

CISO Global has been designated a Top 25 Managed Security Services Provider by cybersecurity business intelligence company CyberRisk Alliance and MSSP Alert, the authoritative news and research channel for managed security services providers (MSSPs).

Business Email Compromise Attacks (BEC) Keep Growing - Here's How to Increase Your BEC Cybersecurity

This spring, Australian authorities were able to arrest a cybercrime syndicate that had conducted BEC attacks on at least 15 individuals and organizations with stolen profits totaling $1.7 million (USD). If those numbers seem shocking, they’re part of a growing upward trend of BEC attacks that shows no sign of slowing down.

Bah, Humbug! Grinchbots and Freebie Bots Attempt to Ruin Holiday Shopping for Consumers and Retailers

If the holiday classic “How the Grinch Stole Christmas” was remade in 2023, the mean green guy might be played by an Internet bot. Sure, these bots may not come down your chimney and steal a tree or holiday dinner, but threat actors have designed them to help ruin retailer and consumer holiday shopping experiences. Trustwave SpiderLabs exposed how the two primary bot variants, Grinchbots and Freebie Bots, operate in the team's recent report.

DDoS Attack Mitigation Playbook for SOC and DevOps Teams

One in two sites on AppTrana WAAP have faced a DDoS attack in the last 90 days. Most of those attacks were thwarted using a combination of machine learning on user behaviour and granular rate limits at URI, IP, and Geo levels. For SOC teams who don’t have an advanced behavioural DDoS mitigation tool like AppTrana at their disposal, this blog covers basic mitigation measures that can thwart the most simple and medium-severity DDoS attacks.

Navigating Cybersecurity Challenges: Budget Constraints, Team Dynamics, and Decision-Making Dilemmas

cybersecurity professionals face when faced by cybersecurity professionals when it comes to addressing vulnerabilities. Often constrained by limited budgets and resources, the decision-making process regarding specific vulnerabilities lies in the hands of various stakeholders within the business.

Strengthening Cyber Defenses: The Crucial Role of PAM and IGA Solutions

We recently published a blog titled Defending Your Organization Against Session Cookie Replay Attacks. This blog thoroughly examined the menace of session cookie replay attacks, shedding light on the potential risks and consequences they pose to online security. The post delved into the intricacies of session cookie replay attacks, detailing their working mechanisms and the extensive damage they can inflict and emphasizing the imperative need to comprehend and fortify against such threats.

How Egnyte Migrated Its DNS At Scale With No Service Disruptions

Egnyte, as a custodian of vast volumes of customer data and files, manages billions of files and petabytes of data originating from millions of users. With a system processing over a million API requests per minute, spanning metadata operations and analytical queries, the need to balance throughput and maintain exceptional service quality is paramount.

SMB Protocol Explained: Understanding its Security Risks and Best Practices

Server Message Block (SMB) protocol is a communication protocol that allows users to communicate with remote servers and computers, which they can open, share, edit files, and even share and utilize resources. With the expansion of telecommunications, this protocol has been a prime target for threat actors to gain unauthorized access to sensitive data and devices. In 2017, we introduced 5 general ways to protect your network from SMB risks.