Qualys at RSA Conference: Implementing innovation

There will be no lack of interesting content from Qualys at this year’s RSA Conference. Depending on you interests, you might want to make time for some of these talks and presentations. Monday, February 13 To discover what’s new with Qualys, visit booth N3817 on Monday at 05:10 PM. In three 40-minutes long blocks, one after the other, the company’s experts will introduce the latest inovations in change monitoring, post-breach detection, and Qualys’ Web Application … More Continue reading Qualys at RSA Conference: Implementing innovation

How to estimate a company’s health without really trying

 Within the past few months, NetSuite, Marketo, LinkedIn, FleetMatics and LogMeIn have each been acquired or merged for a combined value of more than $50 billion. At this rate, public SaaS companies may become an endangered species. Clearly, PE in… Continue reading How to estimate a company’s health without really trying

Microsoft: No More Pick-and-Choose Patching

Adobe and Microsoft today each issued updates to fix critical security flaws in their products. Adobe’s got fixes for Acrobat and Flash Player ready. Microsoft’s patch bundle for October includes fixes for at least five separate “zero-day” vulnerabilities — dangerous flaws that attackers were already exploiting prior to today’s patch release. Also notable this month is that Microsoft is changing how it deploys security updates, removing the ability for Windows users to pick and choose which individual patches to install. Continue reading Microsoft: No More Pick-and-Choose Patching

Qualys expands cloud-based offering for security consultants

Qualys unveiled two new packages in its Qualys Consultant suite for independent consultants, auditors and security firms. With these new packages, this suite now offers multiple comprehensive security assessment tools in a centralized console, allowing consultants to consolidate their current toolsets and eliminate time spent manually installing, managing, and administering them. Consultants can perform comprehensive security services and generate fully customizable and actionable reports by easily deploying pre-configured and self-updating Qualys scanners remotely or locally, … More Continue reading Qualys expands cloud-based offering for security consultants

Key elements for successfully prioritizing vulnerability remediation

New vulnerabilities are disclosed every day, amounting to thousands per year. Naturally, not all vulnerabilities are created equal. In this podcast recorded at Black Hat USA 2016, Tim White, Director of Product Management at Qualys, talks about Qualys ThreatPROTECT, a cloud-based solution that helps IT professionals automatically prioritize the vulnerabilities that pose the greatest risk to their organization. How? By correlating active threats against your vulnerabilities. Live Threat Intelligence Feed ThreatPROTECT also includes a Live … More Continue reading Key elements for successfully prioritizing vulnerability remediation

Continuous security in the web application space

What we’re seeing in the market right now is increased consolidation among vendors. They’re buying each other, more products covering another vendor’s territory are being introduced, and this is all creating confusion for anyone trying to put together a security program. In this podcast recorded at Black Hat USA 2016, Jason Kent, VP of Product Management, Web Application Security, Qualys, talks about what continuous security means, how you can use it to identify all of … More Continue reading Continuous security in the web application space

Bringing security into IT and application infrastructures

In this podcast recorded at Black Hat USA 2016, Chris Carlson, VP of Product Management, Cloud Agent Platform at Qualys, talks about a new trend in bringing security into IT and application infrastructures, as well as working with the DevOps team for increased security. A lot of security is built on security in-depth, layers of security, bringing the end prevention capabilities. Since the threat landscape, techniques and adversaries are changing quickly, sometimes prevention doesn’t work … More Continue reading Bringing security into IT and application infrastructures

Oracle splats 276 bugs with mammoth Critical Patch Update

In case you missed it, Oracle’s July 2016 Critical Patch Update is out, and it’s bigger than ever before. It plugs 276 security issues across hundreds of Oracle products, including Oracle Database Server, Oracle E-Business Suite, Oracle Industry Applications, Oracle Fusion Middleware, Oracle Sun Products, Oracle Java SE, and Oracle MySQL. “Out of the 276 vulnerabilities, 159 can be exploited remotely without authentication, typically over a network without the need of any credentials,” noted Qualys’ … More Continue reading Oracle splats 276 bugs with mammoth Critical Patch Update