Tenable 블로그
CVE-2025-40602: SonicWall Secure Mobile Access (SMA) 1000 Zero-Day Exploited
The Azure Metadata Protection You Didn’t Know Was There
Some Azure services have an additional, not widely known, protection mechanism against session token exfiltration.
사이버 보안 스냅샷: 스트레스를 올라가지만 사이버 전문가는 과도한 업무, 부족한 인원 및 지원 부족에 시달림
Life is getting harder for cybersecurity pros, but there are ways to improve working conditions. Check out what a study found. Meanwhile, there’s a new, free attack-emulation tool for OT security teams. Plus, the U.S. government is alerting about exploits to CVE-2022-47966 and CVE-2022-42475. We…
AA23-250A: 여러 국가 정부 위협 요소가 CVE-2022-47966 및 CVE-2022-42475를 악용
A joint Cybersecurity Advisory examines the exploitation of two critical vulnerabilities by nation-state threat actors.
Tenable의 Ermetic을 인수하려는 계획은 CNAPP 및 위험 노출 관리에서 고객 가치를 가속화할 것입니다
The acquisition of cloud security innovator Ermetic, once completed, will add unified, elegantly integrated CNAPP and market-leading CIEM capabilities to the Tenable portfolio.
컨테이너화된 워크로드로 여정: 보안의 함정과 Tenable Cloud Security로 피하는 방법
Tenable Cloud Security now includes built-in container security functionality, so you can detect and prevent insecure containers from being deployed to production. In this blog, you’ll learn how Tenable can help you avoid critical container security mistakes.
Tenable Cyber Watch: CISA에서 사이버 보안 팀에게 퀀텀 공격, 랜섬웨어 공격 증가 등에 대비하도록 권고
This week’s edition of Tenable Cyber Watch unpacks the emerging threat of quantum computers and the recommended steps security teams should take, and addresses the surge in ransomware attacks. Also covered: The White House and other cyber agencies seek public input on how to best secure open…
사이버 보안 스냅샷: 영국의 NCSC에서 업무에 ChatGPT 유형의 도구에 대한 과용을 줄이라고 권고
As OpenAI released ChatGPT Enterprise, the U.K.’s cyber agency warned about the risks of workplace use of AI chatbots. Plus, the QakBot botnet got torn down, but the malware threat remains – what CISA suggests you do. Moreover, new quantum-resistant algorithms are due next year. And much more!
CVE-2023-2868: Barracuda 및 FBI에서 즉시 ESG(Email Security Gateway) 장치를 교체할 것을 권고
Since October 2022, attackers have been exploiting a zero-day vulnerability in Barracuda Email Security Gateway devices, and both the vendor and the FBI urge customers to replace these devices immediately.
The Benefits of Cloud Entitlement Management
Cloud identities and entitlements pose grave challenges - learn about the benefits of CIEM solutions and KPIs for measuring them.