Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Analytics //

Security Monitoring

Seeing Into Security 'Blind Spots' With Bay Dynamics' Gautam Aggarwal

100%
0%

Gautam Aggarwal, CMO of Bay Dynamics, visits Dark Reading News Desk to explain that its important to not just develop a cybersecurity strategy, but to also better understand what your security blind spots are so you can effectively manage risk.

Comment  | 
Print  | 
Comments
Newest First  |  Oldest First  |  Threaded View
s_phish
50%
50%
s_phish,
User Rank: Apprentice
9/1/2015 | 1:07:56 PM
Interesting product
UBAs are a very up and coming topic. This looks like some interesting stuff and a new approach to security. I am curious to see how this company moves forward in the space. How come no one has thought of this before?
mattwilliamsfromseattle
50%
50%
mattwilliamsfromseattle,
User Rank: Apprentice
8/31/2015 | 10:59:05 PM
Blind Spot Visibility
It is interesting to work in cybersecurity to see how the less "mature" organizations, oftentimes will think they have less blindspots.
securityfirst
50%
50%
securityfirst,
User Rank: Apprentice
8/31/2015 | 8:36:47 PM
Its good to know what you don't know!
Interesting perspective. What keeps me up at night as a security practitioner is the "I don't know what I don't know' set of facts. Just yesterday was having a talk with some senior executives about vendors in our eco systems. How much we depend on that but also how they can be our weakest link when it comes to cyberseurity.  

 

 
Edge-DRsplash-10-edge-articles
I Smell a RAT! New Cybersecurity Threats for the Crypto Industry
David Trepp, Partner, IT Assurance with accounting and advisory firm BPM LLP,  7/9/2021
News
Attacks on Kaseya Servers Led to Ransomware in Less Than 2 Hours
Robert Lemos, Contributing Writer,  7/7/2021
Commentary
It's in the Game (but It Shouldn't Be)
Tal Memran, Cybersecurity Expert, CYE,  7/9/2021
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
The State of Cybersecurity Incident Response
In this report learn how enterprises are building their incident response teams and processes, how they research potential compromises, how they respond to new breaches, and what tools and processes they use to remediate problems and improve their cyber defenses for the future.
Flash Poll
How Enterprises are Developing Secure Applications
How Enterprises are Developing Secure Applications
Recent breaches of third-party apps are driving many organizations to think harder about the security of their off-the-shelf software as they continue to move left in secure software development practices.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2021-22521
PUBLISHED: 2021-07-30
A privileged escalation vulnerability has been identified in Micro Focus ZENworks Configuration Management, affecting version 2020 Update 1 and all prior versions. The vulnerability could be exploited to gain unauthorized system privileges.
CVE-2021-34629
PUBLISHED: 2021-07-30
The SendGrid WordPress plugin is vulnerable to authorization bypass via the get_ajax_statistics function found in the ~/lib/class-sendgrid-statistics.php file which allows authenticated users to export statistic for a WordPress multi-site main site, in versions up to and including 1.11.8.
CVE-2021-34630
PUBLISHED: 2021-07-30
In the Pro and Enterprise versions of GTranslate < 2.8.65, the gtranslate_request_uri_var function runs at the top of all pages and echoes out the contents of $_SERVER['REQUEST_URI']. Although this uses addslashes, and most modern browsers automatically URLencode requests, this plugin is still vu...
CVE-2021-3636
PUBLISHED: 2021-07-30
It was found in OpenShift, before version 4.8, that the generated certificate for the in-cluster Service CA, incorrectly included additional certificates. The Service CA is automatically mounted into all pods, allowing them to safely connect to trusted in-cluster services that present certificates s...
CVE-2021-29297
PUBLISHED: 2021-07-30
Buffer Overflow in Emerson GE Automation Proficy Machine Edition v8.0 allows an attacker to cause a denial of service and application crash via crafted traffic from a Man-in-the-Middle (MITM) attack to the component "FrameworX.exe" in the module "MSVCR100.dll".