The Backdoor in the Backplane: Why Your Server Management is a Silent Risk
In the race to secure data centers and applications, many organizations have left the front door wide open at the hardware level. I’m referring to the Intelligent Platform Management Interface (IPMI) that’s built into every server. Chances are, you’re more familiar with its OEM implementations, such as Dell iDRAC, HPE ... Read More
The Backdoor in the Backplane: Why Your Server Management is a Silent Risk
In the race to secure data centers and applications, many organizations have left the front door wide open at the hardware level. I’m referring to the Intelligent Platform Management Interface (IPMI) that’s built into every server. Chances are, you’re more familiar with its OEM implementations, such as Dell iDRAC, HPE ... Read More
Rethinking Microsegmentation During a VMware Exit
Introduction Broadcom’s acquisition of VMware and the subsequent shift to subscription-based licensing and bundled offerings have forced many organizations to re-evaluate their long-term reliance on the VMware ecosystem. While some large enterprises have managed to negotiate acceptable commercial terms, many customers, particularly small and mid-sized organizations, are experiencing increased costs, reduced flexibility, ... Read More
Securing the Software Supply Chain: Why Microsegmentation Belongs in OWASP’s Next Chapter
Background A few weeks ago, I wrote about the findings in Verizon’s 2025 Data Breach Investigation Report, which found that third parties were responsible for a third of breaches. Examples cited included Solar Winds, GitHub, Snowflake, and MOVEit. Source: Verizon 2025 Data Breach Investigations Report In that article, I also wrote about using microsegmentation to limit the blast radius of 3rd-party software ... Read More
Unpacking the Verizon 2025 Data Breach Investigations Report
Verizon released its annual Data Breach Investigations Report a few weeks ago, and as always, it has been a pleasure to read it. Not just for the facts and statistics but also the subtle humor that makes reading a 100-plus-page document entertaining! We have all been guilty of asking our ... Read More
ColorTokens OT-in-a-Box:Â From Concept to Completion
This year, we had a fantastic time meeting attendees, partners, friends, and customers at the RSA Conference Expo floor. You probably noticed this contraption attached to our coffee machine if you stopped by our booth for coffee. What was this, and how did it come to be? And what was ... Read More
When the Perimeter Fails: Microsegmentation as the Last Line of Defense
Perimeter defenses can fail. Learn how microsegmentation halts lateral movement, securing your network from internal threats. The post When the Perimeter Fails: Microsegmentation as the Last Line of Defense appeared first on ColorTokens ... Read More
Mounting Threats to Cyber-Physical Systems
Over the past few years, cyber adversaries have increasingly set their sights on systems that bridge digital and physical operations. These targets include vital infrastructure in sectors such as oil, gas, and water, where breaches can have severe repercussions. A notable example involved malicious actors interfering with Operational Technology (OT) ... Read More
Breach Readiness: Elevating Your Security Posture in a Constantly Evolving Threat LandscapeÂ
The digital economy thrives on openness, interconnectivity, and near-instantaneous data exchange. Yet, this very environment also paves the way for sophisticated cyber threats that continue to surge in both frequency and severity. Today’s organizations must acknowledge a fundamental reality: breaches are no longer an improbable scenario, but an eventual certainty ... Read More

