Skip to main content

Cybersecurity

Showing posts tagged with "Cybersecurity".

How to Read a HITRUST Validated Assessment

Understanding the results of a HITRUST engagement and how to use them. During your vendor due diligence process, a vendor sends you their HITRUST repo…

Read more

Sudo: Its History and How to Abuse It

A quick explanation of one of the most influential and misconfigured computing utilities.

Read more

So, you got a pentest. Now what?

How to progress toward a truly secure organization and infrastructure after penetration testing. You did it – you paid for penetration testing service…

Read more

Past to Present - Lessons From the NotPetya Ransomware

And how they are still relevant today. On a warm, sunny day in July 2017, one of the world’s most catastrophic and rampant demonstrations of ransomwar…

Read more

An Introduction to Active Defense

Global research and advisory firm, Gartner, forecasts that information security spending will exceed $124 billion in 2019, yet cyber defenses continue…

Read more

If It Can Talk to Networks, It Can Walk Across Them

As technology moves at a seemingly exponential rate of growth and changes every day, more and more devices are being developed to contain additional “…

Read more

ISO 27001: Understanding Security Roles and Responsibilities and Why They Are Vital to the Success o…

When building your Information Security Management System (ISMS) as part of ISO 27001 program implementation one of the most important elements of the…

Read more

Why You Need Penetration Testing

Capital One’s recent data breach is only the latest in the perennial series of high-profile data breaches that have occurred in the last few years. Wh…

Read more

Vulnerability Management Makes it Harder to for Hackers to Exploit Your Systems

From a penetration tester's perspective, there are a few things that quickly indicate an organization's maturity (and the likelihood our team will be …

Read more

Understanding Phishing and How to Stop the Scam

Phishing is when a malicious individual, using email, impersonates a sender that an internal user would have familiarity with, sometimes targeted towa…

Read more

Beyond Vulnerability Scans: Mitigating and Monitoring for Malware Leveraging C2 Systems

Many modern forms of malware are now file-less and rely on Command & Control (C2) infrastructure to assist outsiders with gaining unauthorized acc…

Read more

Simplified Guidance on Developing a Cyber Security Baseline for the CIO and CTO

Developing a cyber security baseline can be daunting. Oftentimes the burden falls on the Chief Information Officer or Chief Technology Officer. These …

Read more

Tags

See all