SecurityScorecard Launches MAX

January 25, 2024 at 05:38PM SecurityScorecard announced SecurityScorecard MAX, a partner-focused managed service that helps identify, prioritize, and resolve vulnerabilities in supply chain cyber risk management. MAX, delivered through a franchise model, aims to bolster cybersecurity posture efficiently and reduce overall costs. The service offers a technology-enabled risk operations center and improved collaborative resolution of … Read more

Cyber Threat Landscape: 7 Key Findings and Upcoming Trends for 2024

January 25, 2024 at 06:22AM The 2023/2024 Axur Threat Landscape Report analyzes cyber threats from the Surface, Deep, and Dark Web and the impact of geopolitical factors. It highlights a threefold increase in leaked card details, credential leaks, brand misuse, evolving fraud tactics, takedown success rates, Deep & Dark Web insights, and the use of … Read more

VMware confirms critical vCenter flaw now exploited in attacks

January 19, 2024 at 08:23AM VMware confirmed active exploitation of a critical vCenter Server vulnerability (CVE-2023-34048) reported by Trend Micro researcher Grigory Dorodnov. Multiple end-of-life products were patched, and ransomware gangs target VMware servers. Over 2,000 exposed servers pose breach risks. VMware urged strict network access control and previously fixed high-severity vCenter Server flaws, an … Read more

Reduce Business Email Compromise with Collaboration

January 18, 2024 at 03:14PM The Trend Micro’s Trend Vision One™ platform integrates business email security with collaboration, addressing the increasing need for unified protection. It provides comprehensive threat protection, detection, and response across email, servers, cloud, and network, assisting IT and security teams in managing risks effectively. The solution aims to prevent phishing, ransomware, … Read more

Strength in Numbers: The Case for Whole-of-State Cybersecurity

January 17, 2024 at 10:07AM A recent CloudSEK XVigil report reveals a 95% surge in cyberattacks on government agencies in 2022. The public sector faces greater cybersecurity challenges due to limited resources and widespread personal data. A whole-of-state (WoS) cybersecurity strategy is proposed for collaborative defense, supported by the State and Local Cybersecurity Grant Program. … Read more

Cybersecurity Incidents Consistently Increase in UAE

January 12, 2024 at 03:31PM A recent study by Kaspersky reveals that 87% of UAE-based businesses have encountered cybersecurity incidents over the past two years, with 25% attributed to staff malice. Malicious insider threats are deemed particularly dangerous by experts, presenting a growing concern for businesses. Furthermore, many companies in the region lack adequate defense … Read more

Cyber insurance requirements: What’s in store for 2024

January 12, 2024 at 12:11AM In 2024, cyber insurance requirements are set to evolve, reflecting the changing threat landscape and increasing data breach costs. Predictions include a shift towards modern attack surface management, prioritization of vulnerabilities, limited coverage for manufacturing breaches, and mandatory incident response plans. Providers emphasize adaptability in the face of evolving regulations … Read more

It’s Time to Close the Curtain on Security Theater

January 9, 2024 at 10:05AM The text discusses the concept of security theater in cybersecurity, criticizing the superficial measures and controls implemented by organizations. It highlights the detrimental effects of security theater and provides recommendations to shift focus towards proactive risk mitigation, including conducting risk assessments, prioritizing security enhancements, and implementing cyberattack prevention strategies. Key … Read more

Is the vCISO Model Right for Your Organization?

January 3, 2024 at 11:45PM The increasing complexity of cybersecurity and compliance has made it difficult for smaller businesses without a Chief Information Security Officer (CISO). As a solution, many are turning to virtual CISOs (vCISOs), who offer part-time outsourced security expertise to help fill the gap. This model is particularly beneficial for smaller businesses … Read more

Why CISOs Need to Make Cyber Insurers Their Partners

December 27, 2023 at 10:05AM The relationship between cyber-insurance providers and policyholders is strained due to the complex underwriting process and rising premiums. Cyber insurance is still in its early stages, experiencing growing pains. To establish a partnership, both parties need to focus on risk reduction and share electronic metrics for accurate policy pricing. Trust … Read more