Threat Intelligence

7/10/2018
11:30 AM
50%
50%

AT&T to Buy AlienVault

Terms of the deal - which closes in Q3 - were not disclosed.

AT&T today announced that it will acquire threat intelligence company AlienVault in a move to extend its security offerings to small-to-midsized organizations.

While terms of the deal were not disclosed, AT&T said it plans to invest in the evolution of AlienVault's Unified Security Management platform and Open Threat Exchange community, and the integration of AlienVault's offerings into AT&T's.

"Regardless of size or industry, businesses today need cyber threat detection and response technologies and services," said Thaddeus Arroyo, CEO of AT&T Business, in a statement. "AlienVault's expertise in threat intelligence will improve our ability to help organizations detect and respond to cybersecurity attacks. Together, with our enterprise-grade detection, response and remediation capabilities, we're providing scalable, intelligent, affordable security for business customers of all sizes."

AT&T said the acquisition is scheduled to close in the third quarter of this year.

Read more here

 

 

 

Black Hat USA returns to Las Vegas with hands-on technical Trainings, cutting-edge Briefings, Arsenal open-source tool demonstrations, top-tier security solutions and service providers in the Business Hall. Click for information on the conference and to register.

Dark Reading's Quick Hits delivers a brief synopsis and summary of the significance of breaking news events. For more information from the original source of the news item, please follow the link provided in this article. View Full Bio

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
Christian Bryant
100%
0%
Christian Bryant,
User Rank: Ninja
7/10/2018 | 8:47:22 PM
Concern With Cybersecurity Acquisitions by Telecoms & ISPs
For months we've been seeing a flurry of cybersecurity sector acquisitions by big money, from ISP management companies to heavy hitter telecoms. I get it - ISP, wireless and cellular service providers are getting hit hard and the key to customers continuing with their current providers - and especially new users signing on - is a sense of security, improved and guaranteed. But this one gives me pause.

AlienVault are the folks behind Open Threat Exchange (OTX). It's one of the coolest communities out there based around threat data sharing and discussion. I jumped on board as soon as I had the opportunity. Part of what made this possible was AlienVault's then independent status, and later collaboration with Intel and HP brought valuable realtime data into the mix. What if AT&T had acquired AlienVault in 2011? Would OTX have even been released, or would it have carried a hefty subscription fee?

I worry acquisition of forward-thinking cybersecurity firms like AlienVault could have a negative impact on projects like OTX. While not the same setup as AlienVault, I can't imagine what would become of RedTeam Security, for example, if Verizon were to acquire them. I hate to see my favorite cyber warriors getting snatched up, but out of respect for their founders I also wish them the best. We wouldn't be where we are today without them.
What We Talk About When We Talk About Risk
Jack Jones, Chairman, FAIR Institute,  7/11/2018
Ticketmaster Breach Part of Massive Payment Card Hacking Campaign
Jai Vijayan, Freelance writer,  7/10/2018
Lessons from My Strange Journey into InfoSec
Lysa Myers, Security Researcher, ESET,  7/12/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment: Cyberspace is much less secure than my old lamp.
Current Issue
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2018-6681
PUBLISHED: 2018-07-17
Abuse of Functionality vulnerability in the web interface in McAfee Network Security Management (NSM) 9.1.7.11 and earlier allows authenticated users to allow arbitrary HTML code to be reflected in the response web page via appliance web interface.
CVE-2018-13864
PUBLISHED: 2018-07-17
A directory traversal vulnerability has been found in the Assets controller in Play Framework 2.6.12 through 2.6.15 (fixed in 2.6.16) when running on Windows. It allows a remote attacker to download arbitrary files from the target server via specially crafted HTTP requests.
CVE-2018-14338
PUBLISHED: 2018-07-17
samples/geotag.cpp in the example code of Exiv2 0.26 misuses the realpath function on POSIX platforms (other than Apple platforms) where glibc is not used, possibly leading to a buffer overflow.
CVE-2018-14337
PUBLISHED: 2018-07-17
The CHECK macro in mrbgems/mruby-sprintf/src/sprintf.c in mruby 1.4.1 contains a signed integer overflow, possibly leading to out-of-bounds memory access because the mrb_str_resize function in string.c does not check for a negative length.
CVE-2018-14329
PUBLISHED: 2018-07-17
In HTSlib 1.8, a race condition in cram/cram_io.c might allow local users to overwrite arbitrary files via a symlink attack.