CyberGRX Attack Scenario Analytics capability provides additional context to risk findings

CyberGRX announced the availability of their new Attack Scenario Analytics capability. Based on the MITRE ATT&CK framework, the Attack Scenario Analytics data provides additional context to risk findings so that enterprise customers and third parti… Continue reading CyberGRX Attack Scenario Analytics capability provides additional context to risk findings

Semperis DSP 3.5 provides automated security assessments of Microsoft AD

Semperis announced the general availability of Directory Services Protector (DSP) 3.5, which includes DSP Intelligence, a new module that provides automated security assessments of Microsoft Active Directory (AD). DSP Intelligence proactively uncovers … Continue reading Semperis DSP 3.5 provides automated security assessments of Microsoft AD

MITRE appoints Wen Masters as vice president for cyber technologies

MITRE has named Wen Masters as vice president for cyber technologies, where she will lead corporate cybersecurity strategy beginning May 17, 2021. Masters will be responsible for developing a wide range of cyber capabilities and solutions, including pr… Continue reading MITRE appoints Wen Masters as vice president for cyber technologies

MITRE ATT&CK v9 is out and includes ATT&CK for Containers

The Mitre Corporation has released the ninth version of its ATT&CK knowledge base of adversary tactics and techniques, which now also includes a newly created ATT&CK matrix for containers. Source: MITRE MITRE ATT&CK v9 ATT&CK covers… Continue reading MITRE ATT&CK v9 is out and includes ATT&CK for Containers

Product showcase: Accurics

It is no big secret that infrastructure has changed over the last decade. We went from tools such as autossh, to configuration management, and ended up with Infrastructure as Code (IaC) concepts. We came a long way from racking servers and spinning up … Continue reading Product showcase: Accurics

Infection Monkey: Open source tool allows zero trust assessment of AWS environments

Guardicore unveiled new zero trust assessment capabilities in Infection Monkey, its open source breach and attack simulation tool. Available immediately, security professionals will now be able to conduct zero trust assessments of AWS environments to h… Continue reading Infection Monkey: Open source tool allows zero trust assessment of AWS environments

Styra’s compliance packs for DAS ease collaboration between security and DevOps teams

Styra announced new compliance packs for its Declarative Authorization Service (DAS), which include MITRE ATT&CK Matrix for enterprise covering cloud-based techniques, and CIS Kubernetes Benchmarks, to ease collaboration between security and DevOps… Continue reading Styra’s compliance packs for DAS ease collaboration between security and DevOps teams

Huntsman Security unveils its SIEM 7.0 in both an enterprise and MSSP release

Huntsman Security has unveiled the latest version of its SIEM Cyber Security Analytics solution in both an Enterprise and Managed Security Service Provider (MSSP) release. The addition of an innovative live MITRE ATT&CK heatmap means that security… Continue reading Huntsman Security unveils its SIEM 7.0 in both an enterprise and MSSP release

April 2021 Patch Tuesday forecast: Security best practices

March kept us all very busy with the ongoing out-of-band Microsoft updates for Exchange Server and the printing BSODs, which plagued us since last Patch Tuesday. It looks like a standard release of updates from Microsoft next week, but before we get to… Continue reading April 2021 Patch Tuesday forecast: Security best practices