Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

How to find and fix Critical WebP zero-day vulnerability CVE-2023-4863

Last month, two Critical vulnerabilities (CVE-2023-4863 and CVE-2023-5129) were identified by Apple Security Engineering and Architecture (SEA) in collaboration with The Citizen Lab at the University of Toronto’s Munk School. The vulnerabilities involved maliciously formed WebP images that would exploit Chromium-based browsers and the webmproject/libwebp library provided by Google. You can learn more about the vulnerability and the recent history of it in our previous blog post.

FedRAMP and StateRAMP Authorized Part III: The Journey to FedRAMP is Arduous - When and Why Should You Bother?

You’re in your company’s go-to-market meeting. You’re excited about a new cloud application your team is developing. Your leaders are trying to understand the application’s market and ideal clients. Someone in the room suggests, “We should sell this to government agencies.

Securing IaaS, PaaS and SaaS with a Cloud SIEM

As cloud computing continues to expand with no end in sight, it’s only wise to invest in it. Infrastructure-as-a-Service, Platform-as-a-Service and Software-as-a-Service bring significant cost savings (personnel and ownership), improved performance, better reliability, freedom to scale and significant security benefits. It’s no wonder many businesses have already adopted all three of these models.

Focus on these 3 Areas to Develop a Strong Cybersecurity Posture With Fewer Resources

Not every organization's security apparatus is built or funded at the same level. For smaller organizations or those with other needs competing for budget, here are some points that show it's possible to do more with less. To drive meaningful progress and ensure a robust security posture, it's the C-suite and the board must collaborate and focus on three key areas: coverage, consolidation, and assurance.

WatchGuard Endpoint Security Wins 2023 CyberSecurity Breakthrough Award

We are thrilled to share that WatchGuard has won the “Endpoint Security Solution of the Year” category in the 2023 CyberSecurity Breakthrough Awards! WatchGuard has taken home a CyberSecurity Breakthrough award for the fourth consecutive year.

HCA Healthcare's Hacking Catches the Attention of the Department of Health and Human Services

HCA Healthcare is a national and international healthcare service provider. Their services span over 180 hospitals and thousands of clinics across 20 states. They also offer services in the United Kingdom called HCA UK. Around the world, more than 290,000 people work for HCA; their payrolls include the staff of surgery and urgent care centers, imaging and physician clinics, and more. Back in July, HCA Healthcare suffered a hack exposing the data of more than 11 million Americans.

What is Vulnerability Remediation?

Due to the increasing frequency and impact of cybersecurity threats, vulnerability management has become a heightened priority for many organizations. While businesses often focus on vulnerability assessments when developing their vulnerability management programs, assessments are only the first step in a holistic cybersecurity threat mitigation strategy. One aspect of vulnerability management that is often overlooked is vulnerability remediation.