Log4Shell: The Big Picture
December 16 2021A look at why this is such a tricky vulnerability and why the industry response has been good, but not great.
Read moreA look at why this is such a tricky vulnerability and why the industry response has been good, but not great.
Read moreA 24-year-old New York man who bragged about helping to steal more than $20 million worth of cryptocurrency from a technology executive has pleaded guilty to conspiracy to commit...
Read moreLatest episode - listen now! (Yes, there are plenty of critical things to go along with Log4Shell.)
Read moreLog4j is being exploited by all sorts of attackers, all over the Internet:
At that point it was reported that there were over 100 attempts to exploit the vulnerability...
Read more
As mandatory reporting bills work their way through the halls of Congress, what should businesses do to prepare for this pending legislation?
Read moreNoname Security's Series C fundraising tips the startup to over $1 billion in valuation, a sign that organizations are beginning to look for API security tools and investor are...
Read moreOrganizations should upgrade ASAP to new version of logging framework released Tuesday by the Apache Foundation, security experts say.
Read moreMost companies lack the proper tools to assess their vulnerability to threats facing their AI systems and ML pipelines, prompting Microsoft to release a risk assessment framework.
Read moreA new bug bounty program aims to find potential security flaws within certain DHS systems and strengthen the department's security posture.
Read moreThe early lessons from Log4j indicate that key security principles can help better handle these high-risk software supply chain security incidents if teams have proper support.
Read more
Recent Comments