Hello everyone! In this episode, I will try to revive Security News with a focus on Vulnerability Management.
On the one hand, creating such reviews requires free time, which could be spent more wisely, for example, on open source projects or original research. On the other hand, there are arguments in favor of news reviews. Keeping track of the news is part of our job as vulnerability and security specialists. And preferably not only headlines.
I usually follow the news using my automated telegram channel @avleonovnews. And it looks like this: I see something interesting in the channel, I copy it to Saved Messages so that I can read it later. Do I read it later? Well, usually not. Therefore, the creation of news reviews motivates to read and clear Saved Messages. Just like doing Microsoft Patch Tuesday reviews motivates me to watch what’s going on there. In general, it seems it makes sense to make a new attempt. Share in the comments what you think about it. Well, if you want to participate in the selection of news, I will be glad too.
I took 10 news items from Saved Messages and divided them into 5 categories:
Active Vulnerabilities
01:31 🔴 “CISA warns of hackers exploiting PwnKit Linux vulnerability (CVE-2021-4034)” by BleepingComputer
03:14 🔴 “Atlassian Confluence OGNL Injection Remote Code Execution (RCE) Vulnerability (CVE-2022-26134)” by Qualys
Data sources
05:27 🟠 “New Vulnerability Database Catalogs Cloud Security Issues” by DarkReading & Wiz
Analytics
07:23 🟢 “MITRE shares this year’s list of most dangerous software bugs (CWE Top 25)” by BleepingComputer
09:06 🟠 “Cyberattacks via Unpatched Systems Cost Orgs More Than Phishing” by DarkReading & Tetra Defense
11:07 🔴 “Zero-Days Aren’t Going Away Anytime Soon & What Leaders Need to Know” by DarkReading & Arctic Wolf
VM vendors write about Vulnerability Management
13:57 🟡 “Why We’re Getting Vulnerability Management Wrong” by DarkReading & Rezilion
16:41 🔴 “Risk-based Remediation Powered by Patch Management in Qualys VMDR 2.0” by Qualys
20:37 🟢 “Modern IT Security Teams’ Inevitable Need for Advanced Vulnerability Management” by Threatpost & Secpod
22:25 de-Westernization of IT
Blogpost:
#VulnerabilityManagement #InformationSecurity
97 views
1561
470
1 week ago 00:04:41 1
Apashe - Catch Me (Official Video)
1 week ago 00:04:40 1
[Apashe] Apashe - Catch Me (Official Video)
1 week ago 00:12:48 3
[Vader’s Fortress 2] The Brutal Life Of STARKILLER - Vader’s Secret Apprentice
2 weeks ago 00:05:08 1
[CNBC Television] We’re going through a ’digestive phase’ right now in tech, says CFRA’s Sam Stovall
4 weeks ago 01:07:32 3
Positive Hack Days, озвучка книг в Yandex SpeechKit и другие облачные новости
1 month ago 00:39:15 8
[Sam Harris] AI Utopia: A Conversation with Nick Bostrom (Episode #385)
1 month ago 00:04:41 1
Crypto Wallet | Best Bitcoin Wallet | Top Crypto Wallet
2 months ago 00:28:24 50
Построение процессов Vulnerability Management
2 months ago 00:04:32 1
The Philippines is no more, everything is flooded to the very roof
2 months ago 00:03:00 3
Piles of American vehicles turned into scrap metal at Russian liberated Krasny Yar
2 months ago 00:04:09 1
The Rose (더로즈) – You’re Beautiful | Official Video
2 months ago 00:15:13 1
Илья Батетников, Тайгер Оптикс: о системе управления уязвимостями от Tenable
2 months ago 00:17:22 1
Сергей Артюхов, «АЛТЭКС-СОФТ»: о системе RedСheck, её отличии от ScanOVAL, киллерфиче и автопатчинге
2 months ago 00:17:39 1
Владимир Бенгин, Positive Technologies: о развитии MaxPatrol, трендовых уязвимостях и автоматизации
2 months ago 00:16:18 1
Юрий Черкас, Skybox Security: какие продукты предлагает Skybox Security для управления уязвимостями
2 months ago 00:15:21 1
Лев Палей, «СО ЕЭС»: о выборе на рынке Vulnerability Management и импортозамещении
2 months ago 02:24:24 22
Управление уязвимостями (Vulnerability Management)
2 months ago 00:26:08 1
Максим Бронзинский, «РТК-Солар»: особенности Vulnerability Management и подходы к его организации
2 months ago 01:43:00 1
TOM HOLLAND: Launching A Second Career, Living Alcohol-Free, & Acting With Authenticity | Rich Roll
2 months ago 00:00:00 1
Israel Iran LIVE: Iran’s Lethal Drones Smashes Israel’s Iron Dome: The Secret Behind Drone Power
2 months ago 01:02:18 1
The Power of Intentional Leadership | Jason Johnson, CIO at Sweetwater