Tenable-Blog
How Tenable Research Discovered a Critical Remote Code Execution Vulnerability on Anthropic MCP Inspector

Dreist, unbeholfen und irrational: Hintergründe zur Erpressergruppe LAPSUS$
Nachdem die Erpressergruppe LAPSUS$ in den ersten Monaten des Jahres 2022 die Aufmerksamkeit der Branche auf sich zog, ist es weitgehend still um sie geworden. What can we learn from this extortion group’s story and tactics?...
Cybersecurity Snapshot: 6 Things That Matter Right Now
Topics that are top of mind for the week ending July 15 | Government cybersecurity efforts tripped by technical debt. Neglect SaaS security at your own risk. A ranking of the most dangerous software weaknesses. Lessons learned about critical infrastructure security. And much more!...
Securing Critical Infrastructure: What We've Learned from Recent Incidents
Learn about well-known vulnerabilities and attacks and how they affected critical infrastructure —from Phone Phreaking to recent ransomware....
Microsoft’s July 2022 Patch Tuesday Addresses 84 CVEs (CVE-2022-22047)
Microsoft addresses 84 CVEs in its July 2022 Patch Tuesday release, including four critical flaws and one zero day that has been exploited in the wild....
Wir präsentieren Nessus Expert – konzipiert für die moderne Angriffsoberfläche
Nessus ist seit langem der unangefochtene Marktführer in Sachen Schwachstellenbewertung. With the introduction of Nessus Expert, you can now protect against new, emerging cyberthreats across cloud infrastructure and understand what's in your external attack surface....
Cloud and Data Security for Financial Services
Financial service organizations are adopting the cloud at a rapid pace. A robust solution for compliance and cloud security will ensure they enjoy all the benefits....
Cybersecurity Snapshot: 6 Things That Matter Right Now
Topics that are top of mind for the week ending July 1 | Cybersecurity budgeting priorities. All you ever wanted to know about ransomware. CISOs weigh best-of-breed vs. platforms. The epidemic of identity-related breaches. And much more!...
CVE-2022-28219: Proof-of-Concept Published for Unauthenticated RCE in Zoho ManageEngine ADAudit Plus
New information and technical details, including a proof-of-concept have been published for a remote code execution flaw in Zoho ManageEngine ADAudit Plus that was patched last month. ...
OT:ICEFALL Research from Forescout Explores Insecure-by-Design State of Operational Technology
The latest research from Forescout’s Vedere Labs explores the state of risk management in operational technology through the lens of 56 insecure-by-design vulnerabilities....