Vulnerabilities
Boosting AppSec and Network Security With a Service Mesh
Next-gen applications, architectures and networks require a next-gen approach to security. Today’s organizations, as they continue executing their digital transformation initiatives, are in a constant battle to one-up potential hackers, attackers and ...
Why Organizations Need SCA On The Radar Now
Why do organizations need SCA? There are many reasons. There’s no doubt reusable components and open-source software have simplified software development, but there’s a price to pay for that convenience: a critical ...
A Robot’s View of AI in Cybersecurity
An AI chatbot wrote the following article on AI in cybersecurity. For real. No humans were harmed in the drafting of this article. Artificial intelligence (AI) and machine learning (ML) are rapidly ...
Changes in Retail and Hospitality Cyber Threat Trends During the 2020 and 2021 Holiday Seasons
Key Infrastructure and Critical Vulnerabilities: New UBER Data Breach Highlights the Organizational Vulnerability From Supply Chain Attacks and Third-Party Software A recent breach of the mobile device management platform Teqtivity has led ...
GitHub Secret Scanning is now Free (as in Beer)
Microsoft’s GitHub source control service will help stop devs accidentally embedding secrets in public code repositories. It’s a big problem ...
3 Reasons to Take a Layered Approach to Offensive Cybersecurity
The post 3 Reasons to Take a Layered Approach to Offensive Cybersecurity appeared first on Digital Defense ...
Rezilion Research: 2022 Vulnerabilities Recap
Rezilion’s research team offers a 2022 vulnerabilities recap and takes a look at the headline-making vulnerabilities discovered in the last year. Read the recap in this report and find out about the ...
Everything you need to know about the SPNEGO NEGOEX CVE-2022-37958
CVE-2022-37958 is a vulnerability in the SPNEGO NEGOEX security mechanism in Windows released by Microsoft on the 13th of September 2022 with a CVSS score of 7.5. However, on December 13th a ...
Operation PowerOFF: DDoS Sites Denied Service (by US, UK, Europol)
Around 50 so-called “booter” DDoS sites have been nuked by international law enforcement. And seven of their alleged administrators have been charged ...
Cybercriminals Leverage File-Based Attacks to Infiltrate Critical Networks
According to Verizon’s 2022 Data Breach Investigations Report, office docs and emails continue to be proven ways that cybercriminals deliver harmful payloads to gain access into organizations’ networks. Threat actors can conceal ...


