Cybersecurity Insights with Contrast SVP of Cyber Strategy Tom Kellermann | 6/28
Insight #1 Most ransomware deploys a remote-access Trojan (RAT), which allows for secondary infections to occur and enables access to victims’ networks to be sold in Darkweb forums.  Insight #2 Most ransomware is delivered initially through the exploitation of a vulnerability. Runtime Security can mitigate this: It’s a highly ... Read More
How Runtime Security Protects Apps from Legacy COTS and API Vulnerability Risks | Contrast Security
It used to be that the weakest link in the enterprise IT security chain was the user, but times have changed. ... Read More
Cybersecurity Insights with Contrast SVP of Cyber Strategy Tom Kellermann | 12/8
Insight #1 Guard against island hopping. The recent ransomware attack against 60 credit unions was due to the lack of proactive cybersecurity in a managed service provider (MSP). It is high time that every organization expands penetration testing and threat hunting to their MSPs.  Insight #2 As geopolitical tension ... Read More
Security Observability: Intelligent security assessment improves visibility into critical applications and APIs
Contrast Security’s 2023Cyber Bank Heists report showed that hackers and cybercrime cartels from Russia, North Korea and China have mastered the growing complexity of attack surfaces and are hiding behind that complexity to hijack application programming interfaces (APIs) and to launch attacks against customers. ... Read More
What is an island hopping cybersecurity attack? | Cyber Bank Heists Report | Contrast Security
Cyber Bank Heists report sheds light on the evolution of island-hopping cyber threats This year’sCyber Bank Heists report by Contrast Security was eye-opening. The annual report sheds light on the cybersecurity threats facing the financial sector, and the findings reflect the impact that the cybercrime events of the past year ... Read More
WAF cybersecurity limitations and alternatives | Contrast Security
Why WAFs leave you adrift in the treacherous waters of cybersecurity In the ever-shifting currents of the cybersecurity ocean, debates about the relevance and effectiveness of various defense mechanisms continue to surface, much like a ship's course correction. One such debate centers around the fate of web application firewalls (WAFs) ... Read More
Financial cybercrime trends: Reverse BEC & e-fraud | Contrast Security
Turla — a Russian advanced persistent threat (APT) group closely affiliated with the FSB Russian intelligence agency — is attacking Ukrainian defense forces with spying malware, according to research published on July 18 by the country’s computer emergency response team (CERT-UA) ... Read More
Cybersecurity Insights with Contrast SVP of Cyber Strategy Tom Kellermann | 7/7
Insight #1 When responding to a ransomware attack, recognize that most ransomware will deploy a remote-access Trojan (RAT). If you do not identify and terminate the RAT, the attackers will return.  Insight #2 If you conduct pen tests, remember that you need to have ground truth per your applications ... Read More

