Zscaler introduces Zscaler Resilience for greater business continuity
Zscaler recently introduced its Zscaler Resilience solution. The functionality of this solution should extend the resilience and functionality of the existing Zscaler architecture. This using new so-called Security Service Edge (SSE) functionality such as disaster recovery, exclusion of affected da... Read more
Increasing API use also means more focus on API security
Companies are going to use more APIs this year than ever before, is the expectation of API specialist RapidAPI in its recent annual State of API Report. This also increases the need for proper API security, indicate other experts from Gartner, Forrester and Mulesoft.
RapidAPI's survey found that... Read more
Google makes bug hunting even more lucrative
They've increased the rewards for their OSS-Fuzz code testing project, making the top prize a hefty $30,000. On Wednesday, the company kicked things up a notch by adding some sweet incentives for fuzzing coverage projects.
You could earn up to $5,000 per project and even more for top-notch Fuz... Read more
‘Humans are the strongest link in security chain’
Within cybersecurity, it is quite common to regularly talk about humans as the weakest link. Nick Schneider, the CEO of Arctic Wolf, takes a somewhat more positive stance and sees in humans precisely the solution to the problems that organizations have around security.
We published an extensive ... Read more
Microsoft has more than 100 ransomware criminals in its sights
According to research by Microsoft Intelligence, more than 100 cybercriminals or criminal groups are currently actively using ransomware as their primary weapon. Also to offer ransomware as a service. This is what the tech giant says in a Twitter thread about ransomware.
According to the Twitter... Read more
Risk of security incidents due to supply chain increases
The risk that companies are faced with a cyber incident due to a relationship with a supplier or "fourth party" in the supply chain is increasing. This according to SecurityScorecard and The Cyentia Institute in a joint study.
The survey found that 98 percent of companies surveyed have a relatio... Read more
‘Tens of thousands of QNAP devices still waiting to be patched’
The devices have an SQL injection vulnerability that can easily be exploited remotely.
"Tens of thousands" of QNAP network-attached storage (NAS) devices are at risk, still waiting to be patched against a critical security flaw, according to a report in BleepingComputer.
The vulnerability is ... Read more
Massive leak of Yandex code reveals 1922 search ranking factors
The Russian tech giant was quick to assure everyone that they had not been hacked.
This week Ars Technica reported that 44.7GB of source code files leaked source code have revealed the underpinnings of Russian tech giant Yandex's many apps and services. The files had been stolen by a former empl... Read more
KeePass disputes discovery of a vulnerability that allows password theft
The KeePass team, which created the popular open-source password management software, is disputing a recent discovery of a vulnerability in their software. According to the vulerability report it's possible to steal passwords by exploiting it.
KeePass helps users store their passwords in a loca... Read more
Horizon3 discovers new exploit VMware vRealize Log Insight
Security researchers from security testing organization Horizon3 have discovered a new exploit for VMware vRealize Log Insight appliances. This exploit combines a number of previously found and patched vulnerabilities into a new exploit that can remotely execute code as root.
Security specialist... Read more