Geek-Guy.com

Category: Threat and Vulnerability Management, Vulnerabilities

Discovery of compromised Shellter security tool raises disclosure debate

CISOs whose staff use the commercial Shellter Elite antivirus evasion software to detect vulnerabilities need to immediately update to the latest version after the recent discovery that threat actors are using a stolen version to distribute malware. It’s not because the abuse of security tools is news — it isn’t. Threat actors have been leveraging…

Beyond CVE: The hunt for other sources of vulnerability intel

The recent brief scare over the potential discontinuation of the Common Vulnerabilities and Exposures (CVE) program highlighted the security industry’s heavy reliance on it and sparked discussions on contingency strategies should the standardized vulnerability identification and cataloguing system become unavailable. The short-lived drama was triggered by a letter from MITRE’s director to CVE board members,…

Beyond CVE: The hunt for other sources of vulnerability intel

The recent brief scare over the potential discontinuation of the Common Vulnerabilities and Exposures (CVE) program highlighted the security industry’s heavy reliance on it and sparked discussions on contingency strategies should the standardized vulnerability identification and cataloguing system become unavailable. The short-lived drama was triggered by a letter from MITRE’s director to CVE board members,…