Cybersecurity

Companies and Cybersecurity Services News

Cyber criminals are getting smarter and strive to find new ways to sneak into a company’s information systems. Cyber security companies are turning to innovative solutions to combat those threats, in order to minimize cybercrimes.

Top news of the week: 23.12.2021.

#cybersecurity
#security
#infosec
#Log4j
#Khashoggi
#fintech
#Log4Shell
#automation
#securitynews
#infosecurity

Companies And Services

@hackerfantastic shared
On Dec 18, 2021
RT @WeldPond: The underfunding of open-source software is “a systemic risk to the United States, to critical infrastructure, to banking, to finance,” https://t.co/TKhZzxBLWR
Open
The internet runs on free open-source software. Who pays to fix it?

The internet runs on free open-source software. Who pays to fix it?

Volunteer-run projects like Log4J keep the internet running. The result is unsustainable burnout, and a national security risk when they go wrong.

@dabeard shared
On Dec 22, 2021
How the Saudi-allied UAE snuck spyware onto the phone of the fiancée of a @washingtonpost columnist before Saudi Arabia abducted, killed, and dismembered journalist Jamal #Khashoggi https://t.co/FNhxUjPw3o
Open
A UAE agency put Pegasus spyware on phone of Jamal Khashoggi’s wife months before his murder, new forensics show

A UAE agency put Pegasus spyware on phone of Jamal Khashoggi’s wife months before his murder, new forensics show

The new analysis challenges NSO claims that the murdered journalist's wife, Hanan Elatr, 'was not a target'

@hackerfantastic shared
On Dec 22, 2021
RT @campuscodi: The Chinese government has suspended all Alibaba contracts after the company reported the Log4Shell bug to the Apache Software Foundation first, instead of the government https://t.co/0kp8OgVa3u
Open
The Ministry of Industry and Information Technology said it will suspend work with Alibaba Cloud as a cybersecurity threat intelligence partner for six months

The Ministry of Industry and Information Technology said it will suspend work with Alibaba Cloud as a cybersecurity threat intelligence partner for six months

The Ministry of Industry and Information Technology said it will suspend work with Alibaba Cloud as a cybersecurity threat intelligence partner after the firm reported a critical security ...

@GlasswingVC shared
On Dec 21, 2021
RT @BlackKiteTech: How can we be more agile than threat actors? Hear from CSO Bob Maley and find out 🤔 https://t.co/f5hvlq7KLp
Open
What Did We Learn About Cyber Risk Management in 2021?

What Did We Learn About Cyber Risk Management in 2021?

Review cybersecurity lessons from 2021, such as how cybercriminals learned new ways to exploit vulnerabilities. Signals are the secret weapon to counter them.

@SCMagazine shared
On Dec 23, 2021
#Log4j makes waves in the US financial industry https://t.co/7kuEzXl0kt #cybersecurity #infosec #fintech #Log4Shell https://t.co/jDtdqBMaqy
Open
Log4j makes waves in the US financial industry

Log4j makes waves in the US financial industry

Like the SolarWinds attack, experts say Log4j is ubiquitous and of particular concern for financial sector institutions (FSIs).

@SCMagazine shared
On Dec 20, 2021
Our colleagues at @msspalert published a list of Log4j vulnerability scanners to help identify and address the vulnerability. You can find it here: https://t.co/rBLbpl1XuK https://t.co/XppS9XfRNe
Open
Log4j Vulnerability Scanners and Detection Tools: List for MSSPs and Threat Hunters

Log4j Vulnerability Scanners and Detection Tools: List for MSSPs and Threat Hunters

List of Log4j & Log4Shell vulnerability scanner tools including Amazon Inspector, Arctic Wolf, Bi.Zone, Datto, Microsoft Defender, Qualys WAS, Tenable, Trend Micro & more.

@securityweekly shared
On Dec 20, 2021
RT @SecWeekly: ICYMI - Dan Guido joins us on Application Security Weekly to discuss Evolving Security Testing. Full episode and show notes: https://t.co/9qqLH8ic6o https://t.co/VXv3mziS2A
Open
asw178

asw178

Application Security Weekly Episode #178 – December 20, 2021 Subscribe to all of our shows and mailing list by visiting: https://securityweekly.com/subscribe 1. Evolving Security Testing – ...

@WeldPond shared
On Dec 20, 2021
RT @helpnetsecurity: Shifting security further left: DevSecOps becoming SecDevOps - https://t.co/fF3FGAmLAb - @Veracode @WeldPond #cybersecurity #security #infosecurity #itsecurity #CISO #cybersecuritynews #securitynews #automation https://t.co/eIpu9ieMLY
Open
Shifting security further left: DevSecOps becoming SecDevOps

Shifting security further left: DevSecOps becoming SecDevOps

Cybersecurity is becoming more automated and componentized in line with modern software architectures and development practices.