Two critical vulnerabilities were patched in the SD-WAN vManage software, alongside three high-severity issues. The bugs are not dependent on one another and their exploitation doesn’t require exploitation of the others. One of the critical flaws (CVE-2021-1468, CVSS score 9.8) could allow unauthenticated, remote attackers to call privileged actions and even create new administrative accounts,…

I’m glad this column is coming out now instead of earlier this year. Cloud security is more topical than ever when considering all the fun things that have happened in 2021 with security startups! Before talking about innovation and startups though, let’s talk about a brief history of cloud security… especially public cloud. Securing the…

The funding round was led by Sapphire Ventures, with participation from previous investor Bain Capital Ventures. The company plans to use the new funds to scale up its engineering, product development, and go-to-market capabilities. It will also invest in growing its self-service capacity for small and midsize companies. Founded in 2018, the North Carolina-based firm…

ATT&CK is a knowledge base of adversary tactics and techniques that is based on real-world observations. ATT&CK v9 adds container-related attack techniques, which is the result of a project conducted by MITRE’s Center for Threat-Informed Defense and sponsored by Microsoft, Citigroup and JPMorgan Chase. There has been a debate on whether or not container techniques…

The funding, which brings the total raised by the company to more than $400 million, was led by CVC Capital Partners VII. Acronis announced achieving “unicorn” status in 2019 after raising $147 million. The money raised in the latest funding round will be invested in sales, staff resources, R&D, and to expand its product portfolio…