Kirstjen Nielsen talks DHS strategies to protect citizens and organizations from cyber-attacks, breaches and cybercrime
Rohit Ghai, President of RSA Security, presented an optimistic view of the industry, explaining why he believes cybersecurity is getting better, not worse.
Welcome to the third post in our series about osquery. So far, we’ve described how five enterprise security teams use osquery and reviewed the issues they’ve encountered. For our third post, we focus on the future of osquery. We asked users, “What do you wish osquery could do?” The answers we receiv...
Christopher D. Young takes to the stage at RSA 2018
Brad Smith, President at Microsoft, called for a new digital Geneva Convention.
You’ve just approved a security review of your codebase. Do you: Send a copy of the repository and wait for the report, or Take the extra effort to set the project up for success? By the end of the review, the difference between these answers will lead to profoundly disparate results. In the former...
Accenture report shows firms are getting better at blocking threats
Brian Krebs found groups operating with impunity for years
Plenty of static analyzers can perform vulnerability discovery on source code, but what if you only have the binary? How can we model a vulnerability and then check a binary to see if it is vulnerable? The short answer: use Binary Ninja’s MLIL and SSA form. Together, they make it easy to build and s...
GCHQ warns UK telcos to steer clear, although Huawei is still OK
Forrester VP Principal Analyst Julie A. Ask considered the key trends in digital business transformation and the impact they are having on security.
Common mistakes in secret management and solutions to the problem
Managing individual and environmental factors to solve infosec problems
ViperRAT 2.0 and Desert Scorpion represent a rare instance of a malicious APT in an official app marketplace.
High-severity vulnerabilities were found in 100% of tested banking and finance web applications.
Ten cyber-defense teams faced off in Orlando, competing as white-hat hackers to protect a fictional biotech company called Volitech.
Russian attackers have conducted a sustained campaign targeting routers, say the DHS, FBI and NCSC.
Sonatype study urges greater use of DevSecOps
Messaging app founder refused to hand encryption keys to FSB
Report outlines opportunities for UK firms while experts claim it could address security challenges