Attack Surface Management – Digital IT News https://digitalitnews.com IT news, trends and viewpoints for a digital world Sat, 14 Aug 2021 22:57:38 +0000 en-US hourly 1 https://wordpress.org/?v=5.4.15 Mandiant’s Attack Surface Management added to its SaaS Portfolio with the Acquisition of Intrigue https://digitalitnews.com/mandiants-attack-surface-management-added-to-its-saas-portfolio-with-the-acquisition-of-intrigue/ Sat, 14 Aug 2021 22:57:38 +0000 https://digitalitnews.com/?p=4633 Mandiant, a part of FireEye, Inc., announced the acquisition of Intrigue, a leader in the emerging attack surface management market. Intrigue’s attack surface management technology will be integrated into the Mandiant Advantage platform, enabling organizations to discover, monitor, and manage risk across their entire attack surface. “We’re beyond excited to bring our capabilities to the Mandiant [...]

The post Mandiant’s Attack Surface Management added to its SaaS Portfolio with the Acquisition of Intrigue appeared first on Digital IT News.

]]>
Mandiant, a part of FireEye, Inc., announced the acquisition of Intrigue, a leader in the emerging attack surface management market. Intrigue’s attack surface management technology will be integrated into the Mandiant Advantage platform, enabling organizations to discover, monitor, and manage risk across their entire attack surface.

“We’re beyond excited to bring our capabilities to the Mandiant Advantage platform, accelerating and greatly expanding our mission-driven team’s impact. I believe our combined capabilities will enable security teams to gain a significant edge against today’s threats.”

The acquisition of Intrigue is aligned with Mandiant’s strategy of scaling its expertise and intelligence gained on the frontlines of incident response to customers through technology. By offering Intrigue’s technology through the Mandiant Advantage platform, customers will be able to address critical gaps in their security programs by leveraging the latest attack surface management capabilities in an easy-to-use software-as-a-service (SaaS) platform.

The combination of Mandiant’s best-in-class intelligence and Intrigue’s powerful attack surface discovery capabilities delivers a deeper understanding of risk across multi-cloud, hybrid, and on-premise environments. This actionable insight gives organizations immediate visibility and understanding of their risk profile and the potential impact of the latest attacks on both them and their full supply chain. With this acquisition, Mandiant will expand its SaaS capabilities in conjunction with the other modules currently offered through its Mandiant Advantage platform: Mandiant Threat Intelligence, Security Validation and Automated Defense.

By coupling intelligence on the vulnerabilities that are being exploited by adversaries with visibility across the entire attack surface, Mandiant Advantage with Intrigue’s capabilities advances the ability of today’s overworked security teams to understand what assets they have, and where to prioritize activities as they seek to focus on the exposures that matter most right now.

“We are excited to welcome the Intrigue team to Mandiant. Intrigue is a strategic and immediately impactful addition to the Mandiant Advantage platform. Discovering and continuously monitoring the dynamic attack surface of a modern cloud-enabled organization is critical to assess risk and prioritize response,” said Colby DeRodeff, Chief Technology Officer, Mandiant Advantage. “Mandiant knows what adversaries are doing right now and what vulnerabilities they are currently exploiting. By combining this intelligence with the capabilities of Intrigue, we are rapidly evolving our customers’ ability to efficiently manage risk and prioritize their resources.”

“The vision of Intrigue is to provide continuous, in-depth visibility of organizations’ attack surface and risk,” said Jonathan Cran, Intrigue Founder and CEO prior to the acquisition. “We’re beyond excited to bring our capabilities to the Mandiant Advantage platform, accelerating and greatly expanding our mission-driven team’s impact. I believe our combined capabilities will enable security teams to gain a significant edge against today’s threats.”

For more details on this news, please visit https://www.fireeye.com/blog/products-and-services/2021/08/an-intriguing-update-to-mandiant-advantage.html.

Image licensed by pexels.com

Related News:

New Mandiant Services Help Organizations Balance Effective Cyber Security and Business Risk

Top 7 Tips for Implementing an Organizational Risk Management Strategy

The post Mandiant’s Attack Surface Management added to its SaaS Portfolio with the Acquisition of Intrigue appeared first on Digital IT News.

]]>
Rampant Cloud Service Misconfigurations & Over 2 Million Exposed Databases: Censys Labs Finds https://digitalitnews.com/rampant-cloud-service-misconfigurations-over-2-million-exposed-databases-censys-labs-finds/ Fri, 14 May 2021 20:26:21 +0000 https://digitalitnews.com/?p=4079 Censys, announced a new Cloud Security Offering, including cloud storage bucket discovery and risk analysis, daily asset scanning, and a centralized and complete cloud inventory across all your cloud providers as part of the Censys Attack Surface Management Platform security offering. Censys Cloud Security Dashboard Data breaches have become an increasingly commonplace incident in the [...]

The post Rampant Cloud Service Misconfigurations & Over 2 Million Exposed Databases: Censys Labs Finds appeared first on Digital IT News.

]]>
Censys, announced a new Cloud Security Offering, including cloud storage bucket discovery and risk analysis, daily asset scanning, and a centralized and complete cloud inventory across all your cloud providers as part of the Censys Attack Surface Management Platform security offering.

Data breaches have become an increasingly commonplace incident in the modern enterprise, and the role of the cloud in its growing prevalence is undeniable.

“We recently analyzed our own Universal Internet DataSet and found million database exposures across the most common cloud providers, as well as 1.9 million RDP exposures,” said Censys’ Security Research Lead, Megan DeBlois. “We know that database exposures lead to data breaches, and past research has shown that RDP accounts for 70-80% of network breaches.”

Increasing concern from customers and our internal research pushed Censys to address the underlying lack of cloud visibility that is causing these risks. Many of our customers used CSPM, CASB, and CWPP platforms, but these only monitor known cloud accounts. Customers can now continually discover cloud assets and risks ranging from unknown cloud accounts and providers to unmanaged cloud storage buckets, thereby eliminating security blindspots and resolving some of the Internet’s most alarming risks.

Daily Discovery of Cloud Providers, Accounts, and Cloud Storage Buckets at Scale

Censys Cloud Security is a big step toward addressing modern security concerns. Censys now harnesses its industry-leading asset discovery capabilities in combination with cloud provider integrations such as AWS, Azure, GCP to ensure multi-cloud visibility. Censys combines data obtained from these methods to provide a single unified asset inventory containing both known and potentially unknown Internet-facing cloud assets. Unlike competitors, Censys also addresses the ephemeral nature of cloud assets with twice daily scans of the top 100 IPv4 ports.

“Most Fortune 500 companies have hundreds of cloud accounts. While some are managed through cloud security tools, many are simultaneously created by non-IT groups and don’t have technical controls to prevent a breach,” said Censys Co-Founder Zakir Durumeric. “Security teams are left with a huge environment to protect, but are blind to many of their riskiest accounts.”

Unmanaged cloud accounts  can contain an organization’s riskiest assets. “One of our customers thought they had just 800 hosts in their attack surface, but after connecting their AWS accounts to Censys Cloud Security, we inventoried a total of 1,439 – nearly an 80% increase. This discovery revealed 60 exposed protocols and end-of-life software risks on otherwise unknown assets,” said Durumeric. “In order to maintain compliance and avoid security breaches, it is imperative to have comprehensive and continual cloud asset discovery for all assets regardless of the cloud account or provider.”

In addition, discovery of new cloud asset types such as storage buckets have provided immediate value to customers. “A significant problem that remains is dealing with data loss from misconfigured databases and buckets, which has resulted in numerous data loss events over the years,” said Derek Abdine, CTO at Censys. “Censys has added storage bucket discovery after overwhelming demand from customers. After switching on the feature with one customer, we found 18 exposed buckets, one with a completely configurable access control list. That means anyone on the Internet could have changed the settings and accessed the data.”

Using Censys Cloud Security, teams can finally get full visibility of their cloud footprint across all providers and deployment models, reduce their attackable surface area by shutting down shadow IT, and meet compliance objectives in the cloud.

Image licensed by: Unsplash.com

Related News:

Digital IT News Q&A: Entisys360’s Adam Bolio

90% of Companies Are Vulnerable to Security Breaches Due to Cloud Misconfigurations: Aqua Security Researchers

The post Rampant Cloud Service Misconfigurations & Over 2 Million Exposed Databases: Censys Labs Finds appeared first on Digital IT News.

]]>