Posts

Showing posts with the label CyberSec

Open source components remain vulnerable to malicious or unauthorized activity

Image
2017 State of Software Security Report Veracode announced findings from the 2017 State of Software Security Report , a comprehensive review of application security testing data from scans conducted by a base of more than 1,400 customers. Among other industry trends such as vulnerability fix rates and percent of applications with vulnerabilities, the report exposes the pervasive risk from vulnerable open source components. Researchers found that 88 percent of Java applications contain at least one vulnerable component, making them susceptible to widespread attacks. This is in part because fewer than 28 percent of companies conduct regular composition analysis to understand which components are built into their applications. “The universal use of components in application development means that when a single vulnerability in a single component is disclosed, that vulnerability now has the potential to impact thousands of applications – making many of them breachable with a single e...

63% of SMBs increased security spending, but more than 50% still experienced breaches

Ransomware, phishing, and data breaches top IT security managers' list of concerns this year, according to a new report from Cyren and Osterman Research. 63% of SMB IT managers increased security spending in the past year, by an average of 27%. -Cyren and Osterman Research, 2017 IT managers are most concerned by threats of ransomware (62%), phishing (61%), and data breaches (54%) -Cyren and Osterman Research, 2017 68% of IT managers suffered one or more serious security breaches in the past, with 29% reporting a successful phishing attack, and 18% reporting a successful ransomware attack. -Cyren and Osterman Research, 2017 Read More Here on Tech Republic:  63% of SMBs increased security spending, but more than 50% still experienced breaches           

Logical Operations' CFR Certification Made the DoD Approved List

Image
Logical Operations' CFR Certification Made the DoD Approved List This may not be news to you but it is important to know in your pursuit to validate your skillsets, I recommend you get certified and get ahead with accredited organizations like Logical Operations. The important accreditation/standardization authorities are International Organization for Standardization ( ISO ), American National Standards Institute ( ANSI ), National Institute of Standards and Technology ( NIST ), and for sake of this post, DOD Directive 8570.01 .  Logical Operations has two flagship program, CyberSAFE (End-User Security Awareness) and CyberSec First Responder (Incident Response and Threat Analysis). YOU are the first line of defense your organization has against a cyber security attack. Don't leave it to chance, become CFR certified. By taking an approach where an understanding of the anatomy of an attack is developed, the CyberSec First Responder (CFR) cyber securit...