#attacksurfacemanagement — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #attacksurfacemanagement, aggregated by home.social.
-
Scan Malware is now a source for the excellent tool Subfinder by @projectdiscovery - Subfinder is an open-source passive subdomain enumeration tool
#CyberSecurity #OSINT #SubdomainEnumeration #AttackSurfaceManagement #BugBounty #OpenSourceSecurity #RedTeaming #redteam #pentesting
-
Scan Malware is now a source for the excellent tool Subfinder by @projectdiscovery - Subfinder is an open-source passive subdomain enumeration tool
#CyberSecurity #OSINT #SubdomainEnumeration #AttackSurfaceManagement #BugBounty #OpenSourceSecurity #RedTeaming #redteam #pentesting
-
https://www.europesays.com/ie/658501/ Wiz says many cloud alerts are not real attack paths #ApplicationInfrastructure #AttackSurfaceManagement #CloudSecurity #Cybersecurity #Éire #EnterpriseSecurity #IdentityAndAccessManagement(IAM) #IE #infosec #Ireland #MultiCloud #Patching #PostureManagement #SecretsManagement #SecurityOperationsCentres(SOCs) #SecurityPosture #Technology #wiz
-
FIRST launches VulnOptiCON 2026 in Luxembourg on AI https://www.byteseu.com/2304037/ #AISafety #AISecurity #ArtificialIntelligence(AI) #AttackSurfaceManagement #CISA #CommonVulnerabilitiesAndExposures(CVE) #ComputerEmergencyResponseTeam(CERT) #CyberRisk #DataManagement #DataScience #ENISA #GRC #IncidentResponse #infosec #Luxembourg #MachineLearning(ML) #NationalCyberSecurityCentre(NCSC) #Nvidia #Patching #SecurityOperationsCentres(SOCs) #ThreatIntelligence #ThreatModelling
-
https://www.europesays.com/lu/11305/ FIRST launches VulnOptiCON 2026 in Luxembourg on AI #AISafety #AISecurity #ArtificialIntelligence(AI) #AttackSurfaceManagement #CISA #CommonVulnerabilitiesAndExposures(CVE) #ComputerEmergencyResponseTeam(CERT) #CyberRisk #DataManagement #DataScience #ENISA #GRC #IncidentResponse #Infosec #Luxembourg #MachineLearning(ML) #NationalCyberSecurityCentre(NCSC) #NVIDIA #Patching #SecurityOperationsCentres(SOCs) #ThreatIntelligence #ThreatModelling
-
Get an attacker's view of your organization today with our all-in-one Attack Surface Management platform - built by pentesters, for pentesters and organizations! https://sn1persecurity.com/wordpress/red-team-attack-surface-management/
#redteam #EASM #attacksurfacemanagement #infosec #offensivesecurity #offsec #pentesting #ASM
-
Get an attacker's view of your organization today with our all-in-one Attack Surface Management platform - built by pentesters, for pentesters and organizations! https://sn1persecurity.com/wordpress/red-team-attack-surface-management/
#redteam #EASM #attacksurfacemanagement #infosec #offensivesecurity #offsec #pentesting #ASM
-
https://www.europesays.com/dk/100324/ Stockholm-born Holm Security receives European Cybersecurity Sovereignty Labels #AttackSurfaceManagement #EuropeanCompany #EuropeanDIGITALSMEAlliance #EuropeanFoundation #EuropeanLeader #ExposureManagement #HolmSecurity #HolmSecurityPlatform #SensitiveCustomerData #Stockholm #Sweden #VulnerabilityManagement
-
https://www.europesays.com/britain/35998/ UK SMEs better at email security than North America #AttackSurfaceManagement #Brokers #BusinessContinuity #BusinessEmailCompromise #Canada #CyberInsurance #CyberResilience #CyberRisk #Cybersecurity #DMARC #EmailSecurity #Infosec #ITGovernance #KYND #Patching #Phishing #Ransomware #RemoteAccess #Risk&Compliance #RiskManagement #SecurityPosture #SmallBusiness(SMB) #SpearPhishing #UK #UnitedKingdom #UnitedKingdom(UK) #UnitedStates(US)
-
https://www.europesays.com/britain/31676/ UK firms urged to track hidden cyber attack surface #ApplicationInfrastructure #ApplicationProgrammingInterface(API) #AssetDiscovery #AttackSurfaceManagement #Cloud #CloudSecurity #CyberAttacks #Cybersecurity #DarkWeb #DataBreach #DigitalFootprint #DigitalTransformation #EnterpriseSecurity #ExternalAttackSurfaceManagement #Infosec #OpenSource #Phishing #ShadowIT #SupplyChain #SupplyChainSecurity #ThreatLandscape #UK #UnitedKingdom #UnitedKingdom(UK)
-
“Legacy scanning technologies were designed for smaller networks and struggle at enterprise scale.”
- Larry Slusser, VP of Strategy, SixMap
Why external visibility gaps persist during growth and M&A.Read more:
-
“Legacy scanning technologies were designed for smaller networks and struggle at enterprise scale.”
- Larry Slusser, VP of Strategy, SixMap
Why external visibility gaps persist during growth and M&A.Read more:
-
“Legacy scanning technologies were designed for smaller networks and struggle at enterprise scale.”
- Larry Slusser, VP of Strategy, SixMap
Why external visibility gaps persist during growth and M&A.Read more:
-
“Legacy scanning technologies were designed for smaller networks and struggle at enterprise scale.”
- Larry Slusser, VP of Strategy, SixMap
Why external visibility gaps persist during growth and M&A.Read more:
-
Over 25,000 Fortinet devices have been identified with FortiCloud SSO exposed online amid active exploitation of an authentication bypass vulnerability.
The attack path involves malicious SAML authentication, enabling admin access to web management interfaces and sensitive configuration data. CISA has already mandated patching for U.S. federal systems.
From an operational security standpoint, this reinforces the need for:
- Restricted admin interface exposure
- Identity-aware access controls
- Continuous external attack surface monitoring
What mitigation strategies have proven most effective in your environment?Engage in the discussion and follow TechNadu for practitioner-relevant cyber reporting.
#InfoSec #ThreatHunting #IdentitySecurity #AttackSurfaceManagement #Fortinet #CyberDefense #TechNadu
-
Over 25,000 Fortinet devices have been identified with FortiCloud SSO exposed online amid active exploitation of an authentication bypass vulnerability.
The attack path involves malicious SAML authentication, enabling admin access to web management interfaces and sensitive configuration data. CISA has already mandated patching for U.S. federal systems.
From an operational security standpoint, this reinforces the need for:
- Restricted admin interface exposure
- Identity-aware access controls
- Continuous external attack surface monitoring
What mitigation strategies have proven most effective in your environment?Engage in the discussion and follow TechNadu for practitioner-relevant cyber reporting.
#InfoSec #ThreatHunting #IdentitySecurity #AttackSurfaceManagement #Fortinet #CyberDefense #TechNadu
-
Over 25,000 Fortinet devices have been identified with FortiCloud SSO exposed online amid active exploitation of an authentication bypass vulnerability.
The attack path involves malicious SAML authentication, enabling admin access to web management interfaces and sensitive configuration data. CISA has already mandated patching for U.S. federal systems.
From an operational security standpoint, this reinforces the need for:
- Restricted admin interface exposure
- Identity-aware access controls
- Continuous external attack surface monitoring
What mitigation strategies have proven most effective in your environment?Engage in the discussion and follow TechNadu for practitioner-relevant cyber reporting.
#InfoSec #ThreatHunting #IdentitySecurity #AttackSurfaceManagement #Fortinet #CyberDefense #TechNadu
-
Over 25,000 Fortinet devices have been identified with FortiCloud SSO exposed online amid active exploitation of an authentication bypass vulnerability.
The attack path involves malicious SAML authentication, enabling admin access to web management interfaces and sensitive configuration data. CISA has already mandated patching for U.S. federal systems.
From an operational security standpoint, this reinforces the need for:
- Restricted admin interface exposure
- Identity-aware access controls
- Continuous external attack surface monitoring
What mitigation strategies have proven most effective in your environment?Engage in the discussion and follow TechNadu for practitioner-relevant cyber reporting.
#InfoSec #ThreatHunting #IdentitySecurity #AttackSurfaceManagement #Fortinet #CyberDefense #TechNadu
-
Gemini security flaws exposed millions to silent data breaches
Tenable has identified three security vulnerabilities in Google’s Gemini suite that exposed millions of users to risks…
#NewsBeep #News #Technology #AISecurity #ArtificialIntelligence(AI) #AttackSurfaceManagement #AU #Australia #CyberThreat #Cybersecurity #Dataexfiltration #dataprivacy #Datatheft #Enterprisesecurity #GoogleGemini #LargeLanguageModels(LLMs) #Securityvulnerabilities #Threatdetection
https://www.newsbeep.com/au/182049/ -
Virtual Event Today: Attack Surface Management Summit https://www.securityweek.com/virtual-event-today-attack-surface-management-summit/ #attacksurfacemanagement #SecurityInfrastructure
-
Virtual Event Today: Attack Surface Management Summit https://www.securityweek.com/virtual-event-today-attack-surface-management-summit/ #attacksurfacemanagement #SecurityInfrastructure
-
Virtual Event Today: Attack Surface Management Summit https://www.securityweek.com/virtual-event-today-attack-surface-management-summit/ #attacksurfacemanagement #SecurityInfrastructure
-
Virtual Event Today: Attack Surface Management Summit https://www.securityweek.com/virtual-event-today-attack-surface-management-summit/ #attacksurfacemanagement #SecurityInfrastructure
-
Virtual Event Today: Attack Surface Management Summit https://www.securityweek.com/virtual-event-today-attack-surface-management-summit/ #attacksurfacemanagement #SecurityInfrastructure
-
Virtual Event Today: Attack Surface Management Summit https://www.securityweek.com/virtual-event-today-attack-surface-management-summit/ #attacksurfacemanagement #SecurityInfrastructure
-
Virtual Event Today: Attack Surface Management Summit https://www.securityweek.com/virtual-event-today-attack-surface-management-summit/ #attacksurfacemanagement #SecurityInfrastructure
-
Virtual Event Today: Attack Surface Management Summit https://www.securityweek.com/virtual-event-today-attack-surface-management-summit/ #attacksurfacemanagement #SecurityInfrastructure
-
Attack Surface Reduction for Enterprises: A Guide – Source: securityboulevard.com https://ciso2ciso.com/attack-surface-reduction-for-enterprises-a-guide-source-securityboulevard-com/ #rssfeedpostgeneratorecho #AttackSurfaceManagement #SecurityBloggersNetwork #CyberSecurityNews #SecurityBoulevard
-
Attack Surface Reduction for Enterprises: A Guide – Source: securityboulevard.com https://ciso2ciso.com/attack-surface-reduction-for-enterprises-a-guide-source-securityboulevard-com/ #rssfeedpostgeneratorecho #AttackSurfaceManagement #SecurityBloggersNetwork #CyberSecurityNews #SecurityBoulevard
-
Attack Surface Reduction for Enterprises: A Guide – Source: securityboulevard.com https://ciso2ciso.com/attack-surface-reduction-for-enterprises-a-guide-source-securityboulevard-com/ #rssfeedpostgeneratorecho #AttackSurfaceManagement #SecurityBloggersNetwork #CyberSecurityNews #SecurityBoulevard
-
In cybersecurity, what you don’t know can hurt you. That’s why periodic external network scanning is not just a best practice - it’s a necessity.
🚨 Why it matters:
External-facing assets are prime targets for attackers. Misconfigurations, unpatched services, and forgotten subdomains create entry points that adversaries actively seek. Without regular scanning, you’re essentially flying blind, unaware of the vulnerabilities that could be exploited.🔍 What you gain:
✅ Identify exposed services before attackers do
✅ Detect shadow IT and rogue assets
✅ Ensure compliance with security policies
✅ Reduce the risk of zero-day exploitation
📅 How often should you scan?While continuous monitoring is ideal, at a minimum:
🔹 Monthly scans for critical infrastructure
🔹 Quarterly assessments for broader attack surface mapping
🔹 Ad-hoc scans after major changes (e.g., new deployments)⚠️But scanning alone isn’t enough❗
Proper remediation and integration with vulnerability management programs are key. Findings should lead to action, not just reports.Are you sure of your visibility of the external attack surface❓
Find out how we approach external infrastructure testing 👇
https://www.securitum.com/periodic_external_network_scanning.html
#CyberSecurity #EthicalHacking #NetworkSecurity #AttackSurfaceManagement #VulnerabilityManagement #WAN
-
ThreatMate Raises $3.2 Million for Attack Surface Management Platform https://www.securityweek.com/threatmate-raises-3-2-million-for-attack-surface-management-platform/ #attacksurfacemanagement #CybersecurityFunding #seedfunding #ThreatMate #funding
-
ThreatMate Raises $3.2 Million for Attack Surface Management Platform https://www.securityweek.com/threatmate-raises-3-2-million-for-attack-surface-management-platform/ #attacksurfacemanagement #CybersecurityFunding #seedfunding #ThreatMate #funding
-
ThreatMate Raises $3.2 Million for Attack Surface Management Platform https://www.securityweek.com/threatmate-raises-3-2-million-for-attack-surface-management-platform/ #attacksurfacemanagement #CybersecurityFunding #seedfunding #ThreatMate #funding
-
ThreatMate Raises $3.2 Million for Attack Surface Management Platform https://www.securityweek.com/threatmate-raises-3-2-million-for-attack-surface-management-platform/ #attacksurfacemanagement #CybersecurityFunding #seedfunding #ThreatMate #funding
-
ThreatMate Raises $3.2 Million for Attack Surface Management Platform https://www.securityweek.com/threatmate-raises-3-2-million-for-attack-surface-management-platform/ #attacksurfacemanagement #CybersecurityFunding #seedfunding #ThreatMate #funding
-
ThreatMate Raises $3.2 Million for Attack Surface Management Platform https://www.securityweek.com/threatmate-raises-3-2-million-for-attack-surface-management-platform/ #attacksurfacemanagement #CybersecurityFunding #seedfunding #ThreatMate #funding
-
Cyber Insights 2025: Attack Surface Management – Source: www.securityweek.com https://ciso2ciso.com/cyber-insights-2025-attack-surface-management-source-www-securityweek-com/ #rssfeedpostgeneratorecho #AttackSurfaceManagement #SecurityInfrastructure #CyberSecurityNews #CyberInsights2024 #CyberInsights2025 #NetworkSecurity #securityweekcom #securityweek
-
Cyber Insights 2025: Attack Surface Management – Source: www.securityweek.com https://ciso2ciso.com/cyber-insights-2025-attack-surface-management-source-www-securityweek-com/ #rssfeedpostgeneratorecho #AttackSurfaceManagement #SecurityInfrastructure #CyberSecurityNews #CyberInsights2024 #CyberInsights2025 #NetworkSecurity #securityweekcom #securityweek
-
Cyber Insights 2025: Attack Surface Management – Source: www.securityweek.com https://ciso2ciso.com/cyber-insights-2025-attack-surface-management-source-www-securityweek-com/ #rssfeedpostgeneratorecho #AttackSurfaceManagement #SecurityInfrastructure #CyberSecurityNews #CyberInsights2024 #CyberInsights2025 #NetworkSecurity #securityweekcom #securityweek
-
Cyber Insights 2025: Attack Surface Management https://www.securityweek.com/cyber-insights-2025-attack-surface-management/ #attacksurfacemanagement #SecurityInfrastructure #CyberInsights2024 #CyberInsights2025 #NetworkSecurity
-
Cyber Insights 2025: Attack Surface Management https://www.securityweek.com/cyber-insights-2025-attack-surface-management/ #attacksurfacemanagement #SecurityInfrastructure #CyberInsights2024 #CyberInsights2025 #NetworkSecurity
-
Cyber Insights 2025: Attack Surface Management https://www.securityweek.com/cyber-insights-2025-attack-surface-management/ #attacksurfacemanagement #SecurityInfrastructure #CyberInsights2024 #CyberInsights2025 #NetworkSecurity
-
Cyber Insights 2025: Attack Surface Management https://www.securityweek.com/cyber-insights-2025-attack-surface-management/ #attacksurfacemanagement #SecurityInfrastructure #CyberInsights2024 #CyberInsights2025 #NetworkSecurity
-
Cyber Insights 2025: Attack Surface Management https://www.securityweek.com/cyber-insights-2025-attack-surface-management/ #attacksurfacemanagement #SecurityInfrastructure #CyberInsights2024 #CyberInsights2025 #NetworkSecurity
-
Cyber Insights 2025: Attack Surface Management https://www.securityweek.com/cyber-insights-2025-attack-surface-management/ #attacksurfacemanagement #SecurityInfrastructure #CyberInsights2024 #CyberInsights2025 #NetworkSecurity
-
Cyble Dominates G2 Winter 2025 Report as a Leader Across Various Verticals of Cybersecurity https://thecyberexpress.com/cyble-dominates-g2-winter-2025-report/ #DigitalForensicsandIncidentResponse #CloudSecurityPostureManagement #PhysicalSecurityIntelligence #ThirdPartyRiskManagement #attacksurfacemanagement #VulnerabilityManagement #ExecutiveMonitoring #ThreatIntelligence #G2Winter2025Report #BugBounty&Rewards #DarkWebmonitoring #CyberEssentials #BrandMonitoring #FirewallDaily #PressRelease
-
Cyble Dominates G2 Winter 2025 Report as a Leader Across Various Verticals of Cybersecurity https://thecyberexpress.com/cyble-dominates-g2-winter-2025-report/ #DigitalForensicsandIncidentResponse #CloudSecurityPostureManagement #PhysicalSecurityIntelligence #ThirdPartyRiskManagement #attacksurfacemanagement #VulnerabilityManagement #ExecutiveMonitoring #ThreatIntelligence #G2Winter2025Report #BugBounty&Rewards #DarkWebmonitoring #CyberEssentials #BrandMonitoring #FirewallDaily #PressRelease
-
The Shadow AI Threat Looming Over 2025: A Wake-Up Call for Enterprises https://thecyberexpress.com/shadow-ai-in-2025-a-wake-up-call/ #CloudSecurityPostureManagement #IncidentManagementcapabilities #attacksurfacemanagement #Threatintelligencetools #DarkWebmonitoring #CyberEssentials #ShadowAIin2025 #FirewallDaily #CybleVision #MainStory #Features #ShadowAI #EUAIAct
-
The Shadow AI Threat Looming Over 2025: A Wake-Up Call for Enterprises https://thecyberexpress.com/shadow-ai-in-2025-a-wake-up-call/ #CloudSecurityPostureManagement #IncidentManagementcapabilities #attacksurfacemanagement #Threatintelligencetools #DarkWebmonitoring #CyberEssentials #ShadowAIin2025 #FirewallDaily #CybleVision #MainStory #Features #ShadowAI #EUAIAct
-
Attack Surface Management (ASM) in 2025: Key Trends to Watch https://cyble.com/blog/attack-surface-management-in-2025/ #AttackSurfaceManagement #attacksurfacemanagement #Cybernews #ASM
-
Attack Surface Management (ASM) in 2025: Key Trends to Watch https://cyble.com/blog/attack-surface-management-in-2025/ #AttackSurfaceManagement #attacksurfacemanagement #Cybernews #ASM
-
👀 DefCamp 2024 felt like scanning a whole range of IPs - each moment unique, some wide open, others hidden, all worth exploring.
From the open ports of excitement to the filtered pings of exhaustion.
From flagged vulnerabilities in candid chats to firewalled moments of reflection.
And always, the steady pings of shared knowledge keeping us connected.▶️ Hit play and dive into the moods we scanned at DefCamp - every bit as rich and powerful as the tools we create.
#ethicalhacking #penetrationtesting #attacksurfacemanagement
-
👀 DefCamp 2024 felt like scanning a whole range of IPs - each moment unique, some wide open, others hidden, all worth exploring.
From the open ports of excitement to the filtered pings of exhaustion.
From flagged vulnerabilities in candid chats to firewalled moments of reflection.
And always, the steady pings of shared knowledge keeping us connected.▶️ Hit play and dive into the moods we scanned at DefCamp - every bit as rich and powerful as the tools we create.
#ethicalhacking #penetrationtesting #attacksurfacemanagement
-
👀 DefCamp 2024 felt like scanning a whole range of IPs - each moment unique, some wide open, others hidden, all worth exploring.
From the open ports of excitement to the filtered pings of exhaustion.
From flagged vulnerabilities in candid chats to firewalled moments of reflection.
And always, the steady pings of shared knowledge keeping us connected.▶️ Hit play and dive into the moods we scanned at DefCamp - every bit as rich and powerful as the tools we create.
#ethicalhacking #penetrationtesting #attacksurfacemanagement
-
👀 DefCamp 2024 felt like scanning a whole range of IPs - each moment unique, some wide open, others hidden, all worth exploring.
From the open ports of excitement to the filtered pings of exhaustion.
From flagged vulnerabilities in candid chats to firewalled moments of reflection.
And always, the steady pings of shared knowledge keeping us connected.▶️ Hit play and dive into the moods we scanned at DefCamp - every bit as rich and powerful as the tools we create.
#ethicalhacking #penetrationtesting #attacksurfacemanagement
-
Your next breakthrough might be one read away! Our most-read blogs of 2024 are packed with practical examples:
1️⃣ The XZ Utils Backdoor (CVE-2024-3094): Learn how this critical Linux vulnerability impacts SSH systems and how to secure against it.
2️⃣ The Ultimate List of Hacking Books: resources to master ethical hacking from beginner to expert.
3️⃣ Regresshion (CVE-2024-6387): Dive deep into this SSH vulnerability, with actionable insights for detecting and mitigating it.
💡 Bonus: Roundcube: Exfiltrating Emails with CVE-2021-44026: See how attackers exploited email systems and how you can prevent similar breaches (public exploit included!).
👇 Links are in the comments
#ethicalhacking #penetrationtesting #attacksurfacemanagement
-
Your next breakthrough might be one read away! Our most-read blogs of 2024 are packed with practical examples:
1️⃣ The XZ Utils Backdoor (CVE-2024-3094): Learn how this critical Linux vulnerability impacts SSH systems and how to secure against it.
2️⃣ The Ultimate List of Hacking Books: resources to master ethical hacking from beginner to expert.
3️⃣ Regresshion (CVE-2024-6387): Dive deep into this SSH vulnerability, with actionable insights for detecting and mitigating it.
💡 Bonus: Roundcube: Exfiltrating Emails with CVE-2021-44026: See how attackers exploited email systems and how you can prevent similar breaches (public exploit included!).
👇 Links are in the comments
#ethicalhacking #penetrationtesting #attacksurfacemanagement
-
Your next breakthrough might be one read away! Our most-read blogs of 2024 are packed with practical examples:
1️⃣ The XZ Utils Backdoor (CVE-2024-3094): Learn how this critical Linux vulnerability impacts SSH systems and how to secure against it.
2️⃣ The Ultimate List of Hacking Books: resources to master ethical hacking from beginner to expert.
3️⃣ Regresshion (CVE-2024-6387): Dive deep into this SSH vulnerability, with actionable insights for detecting and mitigating it.
💡 Bonus: Roundcube: Exfiltrating Emails with CVE-2021-44026: See how attackers exploited email systems and how you can prevent similar breaches (public exploit included!).
👇 Links are in the comments
#ethicalhacking #penetrationtesting #attacksurfacemanagement
-
Your next breakthrough might be one read away! Our most-read blogs of 2024 are packed with practical examples:
1️⃣ The XZ Utils Backdoor (CVE-2024-3094): Learn how this critical Linux vulnerability impacts SSH systems and how to secure against it.
2️⃣ The Ultimate List of Hacking Books: resources to master ethical hacking from beginner to expert.
3️⃣ Regresshion (CVE-2024-6387): Dive deep into this SSH vulnerability, with actionable insights for detecting and mitigating it.
💡 Bonus: Roundcube: Exfiltrating Emails with CVE-2021-44026: See how attackers exploited email systems and how you can prevent similar breaches (public exploit included!).
👇 Links are in the comments
#ethicalhacking #penetrationtesting #attacksurfacemanagement