Cybersecurity

CISA Urges Critical Infrastructure to Patch Urgent ICS Vulnerabilities

The US Cybersecurity and Infrastructure Security Agency (CISA) has urged critical infrastructure organizations to address vulnerabilities affecting nine industrial control systems (ICS) products. The report, dated January 11, 2024, highlighted a series of high and critical severity vulnerabilities in products widely used in sectors like energy, manufacturing and transportation. Users and administrators in these sectors […]

Cybersecurity

Elevated ransomware activity hit nearly 5,200 organizations in 2023

Almost 5,200 organizations were hit by ransomware attacks in 2023, Rapid7 said in a Friday blog post, pulling research from public disclosures and incident data from its managed detection and response team. “In reality, we believe that number was actually higher because it doesn’t account for the many attacks that likely went unreported,” Christiaan Beek, […]

Cybersecurity

Purple teaming and the role of threat categorization – Help Net Security

Organizations constantly work to ensure optimal threat detection and prevention across their systems. One question gets asked repeatedly: “Can we detect the threats we’re supposed to be able to detect?” Red team assessment, penetration testing, and even purple team assessments (in their current form) are all designed to answer these questions. Unfortunately, as attacks get […]

Cybersecurity

Pentagon reveals updated cost estimates for CMMC implementation

The Department of Defense provided new projections for how much money contractors and other organizations will have to spend to implement the Pentagon’s Cybersecurity Maturity Model Certification program. The updated estimates were included in a proposed rule for CMMC 2.0 that was published Tuesday in the Federal Register. The program would mandate that defense contractors […]

Cybersecurity

SimSpace raises $45M to simulate tech stacks for cyber training | TechCrunch

SimSpace, a startup that creates digital replicas of organizations’ tech and networking stacks for cybersecurity training, has raised $45 million in a funding round led by L2 Point Management. Bringing the company’s total raised to $70 million, the investment comes at an auspicious time for SimSpace, which had been entirely bootstrapped until about two years […]