Indusface · @Indusface
0 followers · 50 posts · Server infosec.exchange

⚖️ Features Vs. who wins in your organization?

With product teams always wanting to release new features for their customers, security teams are worried about patching vulnerabilities on time.

As growth is a priority for any business, patching vulnerabilities often take a back seat, and it's always a trade-off to the features.

And it's the hackers who benefit from this - they get around 200+ days to target a vulnerability. 🐱‍💻

The solution?

Patch your vulnerabilities and release new features both at the same time!

We tell you how to patch your vulnerabilities within 24 hours in our upcoming free webinar - 16th March, 2:30 PM to 3:15 PM (IST)

This is your last chance to register for the webinar: bit.ly/3kww6GT

#vulnerability #patching #virtualpatching #zerodayvulnerability #vulnerabilityassessment #pentesting #hacking #zerodayexploits #securitywebinar #zeroday #vulnerabilitymanagement #vulnerabilities #webinar #thoughtleadership #apptrana #indusface

Last updated 2 years ago

CryptoNewsBot · @cryptonewsbot
407 followers · 17248 posts · Server schleuss.online
Ethereum #eth · @ethereum
1314 followers · 44693 posts · Server framapiaf.org
Indusface · @Indusface
0 followers · 47 posts · Server infosec.exchange

👉 With the agile development process, tens of vulnerabilities get introduced into code in every sprint.

The average time vulnerabilities remain open is 180+ days from the time its discovered.

When it comes to business growth vs. security, business always wins, which means vulnerabilities are not patched on time allowing hackers to exploit them.

However, most of these can be patched using Virtual patching—in 24 hours and with ZERO impact on business continuity.

In the upcoming webinar, join Vivekanand Gopalan, VP of Product Management at Indusface, as he discusses:

- Vulnerability assessments and penetration testing best practices
- Fundamentals of virtual patching
- An example of a zero-day vulnerability that has been virtually patched

This is your last chance to book your seat. Register now! bit.ly/3kww6GT

#virtualpatching #zerodayvulnerability #vulnerabilityassessment #pentesting #hacking #zerodayexploits #securitywebinar #zeroday #vulnerabilitymanagement #vulnerabilities #webinar #thoughtleadership #apptrana #indusface

Last updated 2 years ago

Indusface · @Indusface
0 followers · 45 posts · Server infosec.exchange

800 Million attacks were blocked despite having thousands of vulnerabilities open for >180 days!!​

The secret?​

All these applications leverage “virtual patching” to block complex attacks right at the WAF.

Understand more about what Virtual Patching is in our recent upcoming Webinar on 16th March - 2:30 PM to 3:15 PM (IST)

Book your seat now! bit.ly/3kww6GT

#virtualpatching #zerodayvulnerability #vulnerabilityassessment #pentesting #hacking #zerodayexploits #securitywebinar #zeroday #vulnerabilitymanagement #vulnerabilities #itwebinar #apptrana #indusface

Last updated 2 years ago

Indusface · @Indusface
0 followers · 43 posts · Server infosec.exchange

👉 The average time a vulnerability remains open is 180+ days!

When it comes to business growth vs. security, business always wins.
And this significantly affects security, as hackers find more time to exploit the vulnerabilities.

However, most of these vulnerabilities can be patched using Virtual Patching— within 24 hours with ZERO impact on business continuity.

In the upcoming webinar, join Vivek Gopalan, VP of Product Management at Indusface, as he discusses:

- Vulnerability assessments and penetration testing best practices
- Fundamentals of Virtual Patching
- An example of a zero-day vulnerability that has been patched virtually

Register for the webinar now! bit.ly/3kww6GT

#virtualpatching #zerodayvulnerability #vulnerabilityassessment #pentesting #hacking #zerodayexploits #securitywebinar #zeroday #vulnerabilitymanagement #vulnerabilities #itwebinar #apptrana #indusface

Last updated 2 years ago

JasonMashak · @jasonmashak
222 followers · 350 posts · Server indieweb.social
pentest-tools.com · @pentesttools
27 followers · 12 posts · Server infosec.exchange

The NIST Vulnerability Database reports about 40% fewer vulnerabilities for 2022 compared to 2021, but MITRE's CVE Details recorded 25% more. 🤔

Which of these sources for CVE information do you use in your work?
>> NIST's National Vulns Database
>> MITRE's CVE Details
>> Something else (sharing it ⬇️)

Sources:
NIST NVD: nvd.nist.gov/general/visualiza
MITRE CVE Details: cvedetails.com/browse-by-date.

#ethicalhacking #vulnerabilityassessment #penetrationtesting

Last updated 2 years ago

OWASP Amass · @amass
135 followers · 5 posts · Server infosec.exchange
kingthorin_rm · @kingthorin_rm
73 followers · 65 posts · Server infosec.exchange

Support OWASP & ZAP!!!
giving.owasp.org/kingthorin_rm

We're still getting the content setup. But we can use any and all help!!!!! So I'm jumping in with both feet, 5 days to go on

#givingtuesday #owasp #opensource #pentest #redteam #purpleteam #blueteam #webappsec #appsec #vulnerabilityassessment

Last updated 2 years ago

Cody Dostal :unverified: · @dostalcody
337 followers · 358 posts · Server infosec.exchange

I decided I need to re-do my post. Why? I didn't know that full-text search wasn't really a thing on Mastodon (well, particularly cross-instance), so I need to hashtag it. If you've read it before, feel free to move on, or read again. Anything goes!

I’ve seen a few others do introductory posts so I figured why not for me too. It’s unlikely I was known on Twitter because I didn’t post much on Twitter. I hope to change that here.

I’ve worked in , , , and/or for around 8 years. My experience has been solely within the world of , first as a civilian and then as a contractor. I’m currently a Senior SA/Deupty PM for Broadleaf-inc, a government contractor.

Along with that, I’ve been teaching infosec for around two years for a university. I developed many courses, Network Security, OS Security, and , , IDS & IPS, , as well as an Introduction to IT and a CCNA course. I’ll be developing an Advanced Penetration Testing and a Digital Forensics course this upcoming year.

I am an advocate for helping those with no existing experience and fresh graduates find positions in , truly entry level positions. I help run a discord that focuses on that, , as well working on free university-style courses that people can take to learn these skills. Those aren’t ready yet, but my first free course will be Introduction to Cybersecurity.

On my off-time, I'm a huge . You'll generally find me on the Xbox Series X, although once in a while I'll be on PS5. I generally play , probably a little too much. I have 4 kids, 5 cats, and 2 dogs. It can be a hectic house.

That’s me. Fin.

#networksecurity #SystemofSystems #security #dod #vulnerabilityassessment #penetrationtesting #osint #cyberthreatintelligence #cybersecurity #SecurityNewbs #gamer #destiny2 #introduction #infosec #systemadministration #vulnerabilitymanagement

Last updated 2 years ago

ITSEC News · @itsecbot
687 followers · 32461 posts · Server schleuss.online
The Hacker News · @thehackernews
402 followers · 2779 posts · Server social.tchncs.de
The Hacker News · @thehackernews
402 followers · 2779 posts · Server social.tchncs.de
The Hacker News · @thehackernews
402 followers · 2779 posts · Server social.tchncs.de
The Hacker News · @thehackernews
402 followers · 2779 posts · Server social.tchncs.de
The Hacker News · @thehackernews
402 followers · 2779 posts · Server social.tchncs.de