Back to #MOVEit#vulnerabilities.
I hate to say, "I told you so," but the series of MOVEit vulnerabilities is not over.
MOVEit has now disclosed 6 vulnerabilities (initially identified 3 vulnerabilities, then 3 more on 7/6/2023).โฆhttps://t.co/U7NCQaq0cp https://t.co/tG0OFhK9PF
Here is a CISA alert on MOVEit. Apply the service pack ASAP:
==
Progress Software has released a Service Pack to address three newly disclosed #vulnerabilities (CVE-2023-36934, CVE-2023-36932, CVE-2023-36933) in #MOVEit Transfer.
A cyber threat actor cโฆhttps://t.co/Q3hAWwVjYK
It's good we start seeing ๐ ๐๐๐ ๐๐๐ฅ๐ข๐๐๐ญ๐ข๐จ๐ง๐ฌ ๐๐จ๐ซ ๐๐ข๐ง๐๐จ๐ฐ๐ฌ ๐๐. YEAH!
Although there are only 2 modules for Windows 11 today (7/5/2023), I am sure more will come.
Thanks, @Amira_Armond and Ryan Bonner, for the info.
For people keeโฆhttps://t.co/FhiSM7Bkhn
We are honored to become an authorized #C3PAO and will start offering #CMMC Joint Surveillance Voluntary Assessments (#JSVA).
We will continue to serve Defense Industrial Base (#DIB) companies on the CMMC Consulting, Advisory, and vCISO needs.
cmmc@klccโฆhttps://t.co/j5JkzVqlb3
Another milestone - #cybersecurity Community surpassed 70,000 members!
Invite your friends to join, share knowledge, and learn from each other.
https://t.co/iq39oQ5WNx https://t.co/Jc4vsDka9o
During my tenure as the #CISO for a large firm, this concern was consistently on my radar. It was imperative for me to ensure that both the #CEO and the #board comprehended the inherent risks, encompassing threats and their probability, as well as the assโฆhttps://t.co/ObeU1hai5Y
๐๐๐ฏ๐ ๐ฐ๐ ๐ฌ๐๐๐ง ๐๐ฅ๐ฅ ๐ญ๐ก๐ ๐๐๐๐๐ข๐ญ ๐ฏ๐ฎ๐ฅ๐ง๐๐ซ๐๐๐ข๐ฅ๐ข๐ญ๐ข๐๐ฌ?
ย
Based on my observations, it is unlikely that MOVEit has completely resolved the root cause of SQL Injection vulnerabilities. MOVEit can fix the vuโฆhttps://t.co/QC3Zg8qpf2 https://t.co/8IVbfCLlgZ
How do we stay ahead of critical #vulnerabilities and #exploits gone wild?
The speed of #vulnerability disclosures has gone up exponentially.
I started doing vulnerability and #malware research in 2001, and the speed and seriousโฆhttps://t.co/ms3fNsn3ws https://t.co/JgvBI3nyIG
Ask Me Anything about AI, or any of the topics in Why AI Will Save The World, as responses to this tweet and I will answer as many as I can.
https://t.co/GyWVLACezb
Here is a good webinar on NIST 800-171 Revision 3 impact on #CMMC.
๐ง๐ผ๐ฝ๐ถ๐ฐ
How Does NIST 800-171 R3 Impact Your CMMC Plans?
-- It Doesn't!
๐๐ฒ๐๐ฐ๐ฟ๐ถ๐ฝ๐๐ถ๐ผ๐ป
Let's avoid confusion and keep focus. While NIST recently announced revision 3 of 800-โฆhttps://t.co/LOWOPwR3W9
Here is a great video explaining Joint Surveillance Voluntary Assessment (#JSVA).
As KLC Consulting becomes an authorized C3PAO, we offer JSVA services.
Our staff have conducted several JSVAs, so we are ready to serve Defense Industrial Base (DIB) compaโฆhttps://t.co/18JBGqyYJy
Including cyber risk in business credit scores is a good idea; however, judging a company based on its cyber incidents may not be fair unless the credit agency has a detailed insight into the incident investigation, which is unlikely to happen.
Companiesโฆhttps://t.co/37f74fc1jM
It was a awesome day at CMMC Day, great sessions from @Matt_Titcombe Victoria Yan Pillitteri @khomrich Robert J. Teague, MBA, CMMC CA, CMMC CP Thomas Graham, PhD, CISSP, MBA Carter Schoenberg Matt Gilbert Matt Littleton @evans5560
Great to chat toโฆhttps://t.co/qO9zwWs9pp
Yesterday (May 10th, 2023), KLC Consulting โ Cybersecurity, C3PAO Candidate sponsored the NDIA New England 7th Annual Cyber Event at Gillette Stadium.
An important topic covered that will affect your DFARS compliance program wasโฆhttps://t.co/TBdQIATxQc https://t.co/IVbUJmj7vN
What a great conference yesterday:
NDIA New England "Protecting Our Advantage: CMMC, Cybersecurity Compliance, and Resilience" at Gillette Stadium in Foxboro, Massachusetts!
It was an pleasure to sponsor at the event
#cybersecurity#nist800171#smallbโฆhttps://t.co/myNTtltVSK