Security News

Vulnerability management is facing three core problems: Here’s how to solve them
2021-08-26 06:00

From the get-go, too many organizations have an outdated idea of what vulnerability management entails. A holistic approach to vulnerability management includes identifying, reporting, assessing and prioritizing exposures.

Navigating Vendor Risk Management as IT Professionals
2021-08-23 07:09

Let's look at navigating vendor risk management as IT professionals and see how businesses can accomplish this in a highly complex cybersecurity world. To meet the cybersecurity challenges in working with third-party vendors, organizations must focus on vendor risk management.

Navigating Vendor Risk Management as IT Professionals
2021-08-23 07:09

Let's look at navigating vendor risk management as IT professionals and see how businesses can accomplish this in a highly complex cybersecurity world. To meet the cybersecurity challenges in working with third-party vendors, organizations must focus on vendor risk management.

Data management software investments soaring, yet few enterprises realize ROI
2021-08-20 03:30

Enterprises are pouring money into data management software - to the tune of $73 billion in 2020 - but are seeing very little return on their data investments. According to a study from Dremio and Wakefield Research, only 22% of the data leaders surveyed have fully realized ROI in the past two years, with 56% of data leaders having no consistent way of measuring it.

Bugs in gym management software let hackers wipe fitness history
2021-08-13 14:18

Security researchers found vulnerabilities in the Wodify fitness platform that allows an attacker to view and modify user workouts from any of the more than 5,000 gyms that use the solution worldwide. In a report published today, researchers at cybersecurity company Bishop Fox disclosed a set of vulnerabilities in the Wodify platform that could affect not only users' workouts and personal information but also the financials of a gym.

Mandiant acquires Intrigue to add attack surface management technology to its SaaS portfolio
2021-08-11 23:30

Intrigue's attack surface management technology will be integrated into the Mandiant Advantage platform, enabling organizations to discover, monitor, and manage risk across their entire attack surface. By offering Intrigue's technology through the Mandiant Advantage platform, customers will be able to address critical gaps in their security programs by leveraging the latest attack surface management capabilities in an easy-to-use software-as-a-service platform.

Mandiant Snaps Up Attack Surface Management Startup Intrigue
2021-08-11 18:32

FireEye's Mandiant unit announced on Tuesday that it has acquired Intrigue, a provider of attack surface management technology for enterprises. According to FireEye, Intrigue's technology will be integrated into the Mandiant Advantage platform, and help customers discover, monitor, and manage risk across their attack surface.

Unbound Security and WaveStrong deliver multiparty computation key management and protection
2021-08-10 23:00

Unbound Security announced its partnership with WaveStrong, a provider of cloud information security consulting services for enterprises, and a specialty in servicing the government and education sector that provides security solutions to its growing roster of clients. "We pride ourselves on our best-of-breed security solutions," said Harpreet S. Walia, president and chief executive officer at WaveStrong "Key security is now a hugely significant part of any organization's overall protection and by partnering with Unbound Security we can deliver the highest level of safety possible to our clients without any compromise of efficiency or business-as-usual. The Unbound CORE platform is unique in many ways, offering all the major advances of patented MPC technology from the market-leader."

Elastic updates Elastic Stack and Elastic Cloud to make data onboarding and management more secure
2021-08-09 00:30

Elastic announces new capabilities and updates to the Elastic Stack and Elastic Cloud to make data onboarding and management faster, simpler, and more secure. The general availability of Elastic Agent, centrally managed by Fleet, enables users and customers to integrate data across multiple data sources while also providing endpoint security.

Shopping for execs: ID management biz Okta poaches Google's veep of engineering to run product dev activities
2021-08-03 11:19

Identity-as-a-service slinger Okta has poached Google veep of engineering Sagnik Nandy to become its president and chief tech officer. Nandy will run his new employer's engineering and business technology functions, including the planning of product development activities.