The Linux Flaw you can’t afford to Ignore (CVE-2021-3156)

Linux and Unix operating systems require regular patching like any IT system, but as security professionals, ethical hackers, and criminal hackers will tell you, regular Linux and Unix patching is often neglected.

CVE-2021-3156 sudo Vulnerability
Last… Continue reading The Linux Flaw you can’t afford to Ignore (CVE-2021-3156)

Qualys Introduces SaaS Detection and Response to Manage the Security Posture and Risk of the SaaS Application Stack

SaaS Detection and Response provides continuous visibility, assessment, and compliance for SaaS applications from a single interface FOSTER CITY, Calif. February 3, 2021 – Qualys, Inc. (NASDAQ: QLYS), a pioneer and leading provider of disruptive … Continue reading Qualys Introduces SaaS Detection and Response to Manage the Security Posture and Risk of the SaaS Application Stack

Sudo vulnerability allows attackers to gain root privileges on Linux systems (CVE-2021-3156)

A vulnerability (CVE-2021-3156) in sudo, a powerful and near-ubiquitous open-source utility used on major Linux and Unix-like operating systems, could allow any unprivileged local user to gain root privileges on a vulnerable host (without authenticatio… Continue reading Sudo vulnerability allows attackers to gain root privileges on Linux systems (CVE-2021-3156)

Qualys Researchers Identify 7+ Million Vulnerabilities Associated with SolarWinds/FireEye Breach by Analyzing Anonymized Vulnerabilities across Worldwide Customer Base

Qualys offers free 60-day integrated Vulnerability Management, Detection and Response service to help organizations quickly assess devices impacted by SolarWinds Orion vulnerabilities, SUNBURST Trojan detections, and FireEye Red Team tools, and to reme… Continue reading Qualys Researchers Identify 7+ Million Vulnerabilities Associated with SolarWinds/FireEye Breach by Analyzing Anonymized Vulnerabilities across Worldwide Customer Base

The challenges of keeping a strong cloud security posture

It’s simple – you can’t secure what you can’t see or don’t know about. In this interview, Badri Raghunathan, Director of Product Management for Container and Serverless Security at Qualys, talks about cloud security, and their approach for enabling glo… Continue reading The challenges of keeping a strong cloud security posture

New infosec products of the week: November 20, 2020

Group-IB launches Fraud Hunting Platform, a digital identity protection and fraud prevention solution Group-IB’s Fraud Hunting Platform analyzes each session and examines user behavior (keystrokes, mouse movements, etc.) in web and in mobile channels i… Continue reading New infosec products of the week: November 20, 2020

Qualys CloudView app to power Armor Anywhere cloud security posture management capabilities

Qualys announced that Armor is integrating the Qualys CloudView app, which includes Cloud Inventory and Cloud Security Assessment, into Armor Anywhere, a cloud security platform. Armor Anywhere with Cloud Security Posture Management (CSPM) lets clients… Continue reading Qualys CloudView app to power Armor Anywhere cloud security posture management capabilities

Qualys provides out-of-the-box support for Google Cloud Artifact Registry

Qualys announced it has worked with Google Cloud to provide out-of-the-box support for Google Cloud Artifact Registry for its Container Security solution. The new integration allows security and DevOps teams to set up automated security scans of contai… Continue reading Qualys provides out-of-the-box support for Google Cloud Artifact Registry

New infosec products of the week: November 6, 2020

Qualys Container Runtime Security: Defense for containerized applications Qualys Runtime Container Security, once instrumented in the image, will work within each container irrespective of where the container is instantiated and does not need any addit… Continue reading New infosec products of the week: November 6, 2020