アタックサーフェス全体で「知らないことすらわからないもの」をやっと発見
CISO の最大の悩みは「知らないことすらわからない」資産や脆弱性、設定ミス、システムの弱点などセキュリティ部門が未だ検知せず安全を確保できていないものです。These blind spots represent a golden opportunity for attackers – and a major security risk for organizations....
現在のサイバーセキュリティ対策における 6 つの重要事項
Topics that are top of mind for the week ending Sept. 16 | How cybersecurity excellence boosts business | CISOs on a vendor-consolidation campaign | A quick check on converged OT/IT cybersecurity | Guides to help developers beef up on security | And much more!...
AA22-257A: サイバーセキュリティ機関、イランのイスラム革命防衛隊関連の攻撃に関する勧告を共同で発行
Several global cybersecurity agencies publish a joint advisory detailing efforts by Iranian-government sponsored threat actors exploiting vulnerabilities to enable ransomware attacks....
CVE-2022-40139: Trend Micro Apex One における脆弱性の悪用が確認される
Trend Micro has patched six vulnerabilities in its Apex One on-prem and software-as-a-service products, one of which has been exploited in the wild....
IDSA Introduces CIEM Best Practices
The Identity Defined Security Alliance recently announced their list of best practices for cloud infrastructure entitlement management....
マイクロソフト、2022 年 9 月の月例セキュリティ更新プログラムで 62 件の CVE に対応 (CVE-2022-37969)
Microsoft addresses 62 CVEs in its September 2022 Patch Tuesday release, including five critical flaws....
ネットワーク評価を調整してパフォーマンスとリソース使用量を向上
Using the correct tool for the job and optimizing scanner placement will have a large impact on scan efficiency with Nessus, Tenable.io and Tenable.sc....
現在のサイバーセキュリティ対策における 6 つの重要事項
Topics that are top of mind for the week ending Sept. 9 | Software supply chain security in the spotlight. Guidance for evaluating IoT security tools. Increasing diversity in cybersecurity. Another look at the major cloud security threats. And much more!...
IT/OT コンバージェンス: 今こそ行動する時
Presidential advisory committee provides recommendations to improve critical infrastructure security....
96% Could Have Prevented Their Identity Breach – IDSA
Identity-related breaches are on the rise but security and IAM pros are not idle. Learn from this survey how they are staving off the next attack....
IT の完全な可視化にはビジネスリスクの文脈が必要
セキュリティチームにとっての究極の目標の 1 つは、すべての IT 資産について包括的な最新の詳細情報を常に得られるようにすることです。 To achieve it, we must first understand what “visibility” truly entails, how it’s more than just identifying what’s out there and knowing which challenges must be addressed....
現在のサイバーセキュリティ対策における 6 つの重要事項
Topics that are top of mind for the week ending Sept. 2 | Shift-left efforts falling short. What CISOs earn and what stresses them out. 重要インフラにおける量子コンピューティングのリスク -Securing machine learning systems. And much more!...