We identified 2 high-risk #security bugs in #JiraAlign by Atlassian: #SSRF and insufficient authorization controls. See how they could have potentially been leveraged by a malicious user in this technical write-up from @fibbot.
https://t.co/et16Osgtvv #infosec#cloudsecurity
Okay, so we lied! Today's pup, Rex, is currently being fostered by Director of Marketing Operations & Systems Virginie Jenck and is available for adoption here: https://t.co/zCsAhkw8SW @luvofdogzfund#DogsOfTheFoxDen
Our take on the big #cybersecurity news of today: "The Stolen FireEye Red Team Tools are Mostly Open Source." Read it now: https://t.co/QmeoqguXfP #opensource
We discovered and reported 4 #vulnerabilities in OpenClinic, an open source health records management app. The most severe bug allowed an unauthenticated attacker to read patient PHI. https://t.co/ekAhraaTYD #security#infosec
When @zoom_us’s userbase grew exponentially nearly overnight, they sought out continuous #security to add to their existing security program and protect their new users. Read how our CAST team rose to that challenge: https://t.co/K110uXiU6q
How do you ensure you get the most from your #pentest? Join us for an upcoming webinar where Dan Petro – a penetration tester with two decades of #infosec experience – will share some recommendations. Sign up today: https://t.co/oquAVbTDu5
Jake Miller has compiled a list of potential cloud #security issues as well as tools to strengthen the security of your cloud-based environments in his latest write-up: https://t.co/ih6XO3Dese #clouddeployment
Excited to share my latest research! h2c smuggling: request smuggling via HTTP/2 cleartext. Leveraging TCP tunnels provided by HTTP/1.1 upgrades, we can initiate h2c connections directly with compatible back-end services, bypassing proxy access controls. https://t.co/QgBPJziUKL
The Internet of Things is slippery, but through building up standard definitions, we can establish baselines for better safety and quality. Read our take on some recent #IoT legislation: https://t.co/JZSk56Xvmc
There is still time to register for our upcoming webinar on the landscape of #EnterpriseSecurity. Join ForgePoint partner, William Lin as he hosts an engaging roundtable discussion with Remediant, Inc., Bishop Fox and Cysiv. Register today: https://t.co/zhPMORtMZX
Join us for a @forgepointcap roundtable led by @williamlin discussing how 2020 has altered the #security landscape. Executives from @Remediant and #Cysiv as well as ForgePoint and Bishop Fox will answer questions about COVID-19 and enterprise security. https://t.co/4MngTxXz2V
Join us next week for a @forgepointcap industry roundtable led by @williamlin discussing how 2020 has altered the #security landscape. The webcast will feature security executives from @Remediant and #Cysiv in addition to ForgePoint and Bishop Fox. https://t.co/Gw9UpqW5sC