SolarWinds Attackers Lurked for 'Several Months' in FireEye's Network Top execs from FireEye, SolarWinds, Microsoft, and CrowdStrike testified before the US Senate Intelligence Committee today on the aftermath - and ongoing investigations - into the epic attacks.
Former CISA Director Chris Krebs Discusses Risk Management & Threat Intel Also on Krebs' radar: the cyber-response to COVID-19 and intelligence-sharing between private and public sectors.
Augmenting SMB Defense Strategies With MITRE ATT&CK: A Primer Any organization can use MITRE ATT&CK as a force multiplier, but it's especially valuable for small ones.
CVSS as a Framework, Not a Score The venerable system has served us well but is now outdated. Not that it's time to throw the system away -- use it as a framework to measure risk using modern, context-based methods.
10K Targeted in Phishing Attacks Spoofing FedEx, DHL Express The two campaigns aimed to steal victims' business email account credentials by posing as the shipping companies.
SonicWall Releases Second Set of February Firmware Patches The latest patches, for its SMA 100 series products, comes less than three weeks after an updates to patch a zero-day vulnerability.