Tenable CEO accuses Microsoft of negligence in addressing security flaw

Cybersecurity veteran Amit Yoran says Microsoft has a culture of toxic obfuscation when it comes to addressing security threats.

The post Tenable CEO accuses Microsoft of negligence in addressing security flaw appeared first on CyberScoop.

Continue reading Tenable CEO accuses Microsoft of negligence in addressing security flaw

Microsoft Patch Tuesday, June 2022 Edition

Microsoft on Tuesday released software updates to fix 60 security vulnerabilities in its Windows operating systems and other software, including a zero-day flaw in all supported Microsoft Office versions on all flavors of Windows that’s seen active exploitation for at least two months now. On a lighter note, Microsoft is officially retiring its Internet Explorer (IE) web browser, which turns 27 years old this year. Continue reading Microsoft Patch Tuesday, June 2022 Edition

The Original APT: Advanced Persistent Teenagers

Many organizations are already struggling to combat cybersecurity threats from ransomware purveyors and state-sponsored hacking groups, both of which tend to take days or weeks to pivot from an opportunistic malware infection to a full blown data breach. But few organizations have a playbook for responding to the kinds of virtual “smash and grab” attacks we’ve seen recently from LAPSUS$, a juvenile data extortion group whose short-lived, low-tech and remarkably effective tactics are putting some of the world’s biggest corporations on edge. Continue reading The Original APT: Advanced Persistent Teenagers

Tenable CEO blasts ‘smoke and mirrors’ of cybersecurity industry

A good chunk of the cybersecurity industry is “smoke and mirrors,” with companies hawking shiny products that aren’t needed to block most hacks, Tenable CEO Amit Yoran said in an interview with CyberScoop earlier this month “It’s an industry that has fed and continues to feed, to a large extent, off of fearmongering,” Yoran said on the sidelines of the vendor-happy RSA Conference in San Francisco. The RSA Conference is a feeding frenzy for companies pushing products on the trade-show floor. Vendors spend big on things like booths, parties, and hotel suites to woo potential clients. (Tenable had a booth demonstrating some of its technology.) In a blunt interview, Yoran reflected on where the “hype-driven” side of the business, as he called it, had gotten the cybersecurity industry. “The millions of dollars that people are spending, all the hype and the sexy marketing and the AI and the anomaly-behavioral…whatever buzzword […]

The post Tenable CEO blasts ‘smoke and mirrors’ of cybersecurity industry appeared first on CyberScoop.

Continue reading Tenable CEO blasts ‘smoke and mirrors’ of cybersecurity industry

Tenable officially announces IPO

Tenable announced on Friday that it has officially submitted plans to become a publicly traded company. The Columbia, Md.-based company filed its registration statement with the Securities and Exchange Commission, which companies must do to begin the initial public offering process. The company will be listed on the Nasdaq under the ticker TENB. Tenable is one of the most well-funded cybersecurity companies, having raised more than $300 million from private investors, according to Crunchbase. An IPO for Tenable has been expected since reports from earlier this year that it hired investment bank Morgan Stanley to help it with the filing process. In its filing, Tenable boasts that its revenue was $187.7 million in 2017, up from $124.4 million the previous year, representing 53 percent year-over-year growth. Founded in 2002, Tenable says that it serves 24,000 customers, including 53 percent of the Fortune 500. Since 2016, the company has been headed by CEO Amit […]

The post Tenable officially announces IPO appeared first on Cyberscoop.

Continue reading Tenable officially announces IPO

Cyber CEOs urge NIST Framework be made a part of NAFTA talks

Ten major cybersecurity companies have written to the U.S. Trade Representative Robert Lightheizer to urge that alignment of cybersecurity standards — and the use of risk management tools like the NIST Cybersecurity Framework — should become part of the re-negotiation of the North America Free Trade Agreement that started this week. “The government … needs to step up to the plate” in international affairs where cybersecurity is concerned, Amit Yoran, CEO of Tenable, and one of the letter’s signatories, told CyberScoop. The other companies signing on are Rapid7, Arbor Networks, Bugcrowd, CA Technologies, Cybereason, Forescout, McAfee, Mimecast and Symantec. “Trade issues related directly to the U.S. cybersecurity industry are absent” from the lengthy list of U.S. negotiating objectives in the NAFTA rewrite released by LightHeizer’s office, the letter complains, while welcoming the inclusion of objectives related to digital trade more generally. That omission is especially damaging, the letter suggests, because “Numerous countries are currently considering or […]

The post Cyber CEOs urge NIST Framework be made a part of NAFTA talks appeared first on Cyberscoop.

Continue reading Cyber CEOs urge NIST Framework be made a part of NAFTA talks