Older vulnerabilities and those with lower severity scores still being exploited by ransomware

Almost 65% of top vulnerabilities used in enterprise ransomware attacks targeted high-value assets like servers, close to 55% had CVSS v2 scores lower than 8, nearly 35% were old (from 2015 or earlier), and the vulnerabilities used in WannaCry are stil… Continue reading Older vulnerabilities and those with lower severity scores still being exploited by ransomware

Five chief IT security executives join RiskSense’s new Technology Advisory Board

RiskSense, pioneering risk-based vulnerability management and prioritization, announced that five leading chief IT security executives have joined the company’s new Technology Advisory Board. Each will bring a unique perspective on security, privacy an… Continue reading Five chief IT security executives join RiskSense’s new Technology Advisory Board

BlueKeep RDP flaw: Nearly a million Internet-facing systems are vulnerable

Two weeks have passed since Microsoft released security fixes and mitigation advice to defang exploits taking advantage of CVE-2019-0708 (aka BlueKeep), a wormable unauthenticated remote code execution flaw in Remote Desktop Services (RDP). The vulnera… Continue reading BlueKeep RDP flaw: Nearly a million Internet-facing systems are vulnerable

Attackers are weaponizing more vulnerabilities than ever before

2018 had the most weaponized vulnerabilities ever (177), which represents a 139% increase compared to 2017, according to the RiskSense latest report. In addition, the rate of exploits discovered in the wild before a patch was available was nearly three… Continue reading Attackers are weaponizing more vulnerabilities than ever before

RiskSense adds two Silicon Valley and cyber security insiders to its Board of Directors

RiskSense added two growth builders to its Board of Directors. Skip Glass, Former Operating Partner at Foundation Capital and Eric McAlpine, Managing Partner of Momentum Cyber bring decades of operations, growth and software industry management experti… Continue reading RiskSense adds two Silicon Valley and cyber security insiders to its Board of Directors

New infosec products of the week​: October 19, 2018

IBM rolls out cybersecurity operations center on wheels IBM Security launched the mobile Security Operations Center, capable of traveling onsite for cybersecurity training, preparedness, and response. The IBM X-Force Command Cyber Tactical Operations C… Continue reading New infosec products of the week​: October 19, 2018

RiskSense cloud service protects against cyber threats and vulnerabilities ahead of midterm elections

RiskSense released its AI-Assisted Pen Testing Service called Attack Surface Validation for Election Systems which provides visibility and prioritization of security vulnerabilities that enables any district to remediate problems before the midterms. F… Continue reading RiskSense cloud service protects against cyber threats and vulnerabilities ahead of midterm elections

LogRhythm, Fortinet, and RiskSense – Enterprise Security Weekly #72

LogRhythm named leader in Gartner magic quadrant, new report from CA Veracode, Fortinet launches Operational Technology Security platform, things to focus on in 2018, and more enterprise security news! Enterprise News LogRhythm named leader in Gartner … Continue reading LogRhythm, Fortinet, and RiskSense – Enterprise Security Weekly #72