Facebook Google Plus Twitter LinkedIn YouTube RSS Menu Search Resource - BlogResource - WebinarResource - ReportResource - Eventicons_066 icons_067icons_068icons_069icons_070

Tenable ブログ

July 28, 2025

Tenable Is Named a Gartner Peer Insights Customers’ Choice for the Vulnerability Assessment Market

Tenable customers have spoken: Here’s what they’re saying about our products.

2024/11/19

Volt Typhoon: 米国重要インフラが国家支援を受ける脅威アクターにより標的とされる

Volt Typhoon, a state-sponsored actor linked to the People’s Republic of China, has consistently targeted U.S. critical infrastructure with the intent to maintain persistent access. Tenable Research examines the tactics, techniques and procedures of this threat actor....


2024/11/18

CVE-2024-0012、CVE-2024-9474: Palo Alto PAN-OS のゼロデイ脆弱性の悪用が確認される

Palo Alto Networks confirmed two zero-day vulnerabilities were exploited as part of attacks in the wild against PAN-OS devices, with one being attributed to Operation Lunar Peek....


2024/11/18

新たな AWS 制御ポリシー

AWS has released an important new feature that allows you to apply permission boundaries around resources at scale called Resource Control Policies (RCPs). Read on to learn what RCPs are all about and how to use them, as well as how Tenable Cloud Security already factors them into its analysis....


2024/11/18

ドメイン固有言語のダークサイド: ドメイン固有言語 OPA と Terraform における新たな攻撃手段

Check out our deep dive into both new and known techniques for abusing infrastructure-as-code and policy-as-code tools. You’ll also learn how to defend against them in this blog post which expands on the attack techniques presented at our fwd:cloudsec Europe 2024 talk “Who Watches the Watchmen? Stea...


2024/11/15

サイバーセキュリティニュース: ファイブアイズが 2023 年に最も頻繁に悪用された脆弱性をランク付け、CSA が AI システム監査のフレームワークを公開

Check out the CVEs attackers targeted the most last year, along with mitigation tips. Plus, a new guide says AI system audits must go beyond check-box compliance. Meanwhile, a report foresees stronger AI use by defenders and hackers in 2025. And get the latest on cloud security, SMBs' MFA use and th...


November 14, 2024

有毒なクラウドの 3 大特性を恐れるのは誰?

The Tenable Cloud Risk Report 2024 reveals that nearly four in 10 organizations have workloads that are publicly exposed, contain a critical vulnerability and have excessive permissions. Here’s what to watch for in your organization....


2024/11/12

マイクロソフト 2024 年 11 月月例セキュリティ更新プログラム、87 件の CVE (CVE-2024-43451、CVE-2024-49039) を修正

Microsoft addresses 87 CVEs and one advisory (ADV240001) in its November 2024 Patch Tuesday release, with four critical vulnerabilities and four zero-day vulnerabilities, including two that were exploited in the wild....


2024/11/8

サイバーセキュリティニュース: CISA が世界的なスピ​​アフィッシングの脅威について警告、OWASP が AI に対するセキュリティリソースを公開

CISA is warning about a spear-phishing campaign that spreads malicious RDP files. Plus, OWASP is offering guidance about deepfakes and AI security. Meanwhile, cybercriminals have amplified their use of malware for fake software-update attacks. And get the latest on CISA’s international plan, Interpo...


2024/11/7

脆弱性やエクスポージャーの管理では 関連情報に照らし合わせてとらえることが最も重要です

脆弱性管理は依然として予防的なサイバーセキュリティ対策の要ですが、多くの組織では依然として脆弱性の過多と進化する脅威に悩まされています。Tenable’s new Exposure Signals gives security teams comprehensive context, so they can shift from vulnerability management to exposure m...


役立つサイバーセキュリティ関連のニュース

Tenable エキスパートからのタイムリーな警告とセキュリティガイダンスを見逃さないように、メールアドレスをご入力ください。

ランサムウェアのエコシステムとは

レポートをダウンロード: