Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

%term

Understanding the NIS 2 Directive

By expanding its scope and introducing modernized requirements, the new NIS 2 Directive challenges organizations to elevate their cyber preparedness. This article explores how the directive affects a wide range of sectors and the critical infrastructure within them, detailing the requirements for compliance and highlighting the key role that IONIX plays in supporting organizations in meeting these regulations.

Random but Memorable - Episode 12.8: The RSA Special

It's our RSA special! Join the podcast gang and 1Password's Chief Product Officer, Steve Won, as we unpack everything that went down at 2024's RSA Conference. Hear all about 1Password's game changing RSA announcement and the reaction, plus we share what the team got up to – straight from the conference floor! Don't worry, just because it's the RSA Special doesn't mean we didn't have time to play a round of Security Blank! But this time with a narcissistic twist...

CISO of the Year Award: Jess Parnell

We are proud to announce that we have won three prestigious Cybersecurity Excellence Awards! Join us in congratulating Jess Parnell for being named CISO of the Year. We are also honored to be recognized for: Most Innovative Cybersecurity Company Intelligence Powered Cybersecurity These awards showcase our unwavering commitment to excellence and innovation in cybersecurity. Thank you to our incredible team and the Centripetal community for their hard work and support. Together, we will continue to push the boundaries of cybersecurity to build a secure digital future.

Learning from cloud transformation as we move to AI

Development teams of all sizes are embracing the excitement and possibility of using AI tools to build software. Coding assistants like Google Gemini and Github Copilot have the potential to accelerate development like never before, and developers are adopting these tools — whether or not leadership has officially approved them. As your team considers the best ways to adopt this new technology, this transition might feel like déjà vu.

Lessons Learned About Secrets Protection After the Sisense Breach

Sisense is a popular monitoring tool that enables users to monitor business metrics from multiple third-party sources in a single dashboard. On April 10, the company informed customers that the sensitive information they entrusted with Sisense may have been compromised and urged them to reset their password and rotate their secrets. According to KrebsOnSecurity, the attackers were allegedly able to access GitLab repositories hosted by Sisense, where hard-coded secrets may have been found.

TruffleHog vs. Gitleaks: A Detailed Comparison of Secret Scanning Tools

TruffleHog and Gitleaks are popular secrets scanning tools that can automatically surface hardcoded secrets such as API keys, passwords, and tokens. They can both be integrated into the Software Development Lifecycle (SDLC) to proactively scan repositories to identify and rectify potential issues before they can be exploited. The need for effective secret detection tools underscores a broader shift toward more secure software development practices.