Alex is an experienced journalist and content editor, working alongside software experts to research, write, meticulously factcheck, and edit articles relating to B2B cybersecurity and technology solutions, focusing on topics such as DevSecOps, network security and firewalls, and cloud infrastructure security.
How do online services know you are who you say you are when you try to login?
A critical WatchGuard Firebox vulnerability is one of three newly added to CISA’s KEV catalog, alongside a critical Gladinet and a high-severity Microsoft vulnerability.
A behavior-change fix shipped three weeks before the advisory; two machine-to-machine providers remain exposed post-upgrade unless users add an issuer setting.
by Alessandro Mascellino
You might have heard of the cybersecurity security tool Managed Detection and Response (MDR), but what is it, and what are the benefits of using it?
Understand the different types of password managers available, and how they are suited to different business use-cases.
A guide to the Intrusion Prevention Systems (IPS) market.
What questions should you ask a Cloud Email Security Solution provider when looking for a new piece of cybersecurity infrastructure?
A Guide To Secure Access Service Edge: How It Works, What It Includes, And Whether Your Organization Needs It
How to choose the right Dark Web Monitoring software.
How to choose the right SIEM software.
How to choose the right Single Sign-On software.
How to choose the right User Authentication software.
How to choose the right Software As A Service (SaaS) Backup and Recovery software.
How to choose the right Zero Trust Network Access software.
How to choose the right API Gateway software.
How to choose the right mobile device management software.
How to choose the right DAST software.
How to choose the right SAST software.
Password managers are widely hailed as an effective method of protecting passwords and securing accounts, but how do they work, and how effective are they in practice?
Cyber Threat Intelligence (CTI) allows you to gain an insight into the cybersecurity risks that your organization faces. But what should you look for when trying to find the right threat intelligence solution?
There are three classes of cyber threat intelligence – tactical, operational, and strategic – but what is the difference? Who is this information for? And how is it presented?
Comprehensive cybersecurity insurance is fast becoming an important part of an organization’s security strategy, but what does your organization need to do to qualify for cover?
We are all encouraged to use multifactor authentication (MFA), but just how secure is MFA?
What is an “impossible travel login”? How can it affect your organization? And what is the best way of combatting it?
An Avast flaw and a CrowdStrike Falcon flaw landed alongside an Nvidia memory corruption bug, weeks after a similar release against Kaspersky.
by Alessandro Mascellino
A multi-stage loader ran SectopRAT in memory from a locally tampered copy; Fortinet found no evidence of a supply-chain compromise.
by Alessandro Mascellino
Commercial LLM APIs replace attacker-run C2 infrastructure; Talos has not confirmed the implant has been deployed in the wild.
by Alessandro Mascellino
The new Email Trust Platform aims to provide a single source of truth that identifies and prioritizes risk across the entire email infrastructure.
by Caitlin Harris
F5 BIG-IP APM is vulnerable when configured as an OAuth authorization server; client and resource-server deployments are unaffected.
by Alessandro Mascellino
CrashPlan is a data resilience solution for servers, endpoints, and SaaS applications, including Microsoft 365 and Google Workspace. CrashPlan was initially part of Code42, but in 2022, the company was spun out to Mill Point Capital. In 2024, CrashPlan acquired Parablu, strengthening its backup and recovery capabilities for OneDrive and Azure environments. Although CrashPlan is...
Fast Facts SonarQube Overview SonarQube analyzes all code including first-party, AI-generated, and open-source code. It then flags maintainability, reliability, and security risks and automatically generates AI-powered fix suggestions with a click, minimizing manual debugging. SonarQube sits as one of the products under the Sonar company banner. In addition to SonarQube, the company is also developing...
"The tools you're choosing between today will change in two years anyway. The business skills won't," says Ali Waezzadah, CISO at iCOUNTER.
by Mirren McDade