Facebook Google Plus Twitter LinkedIn YouTube RSS Menu Search Resource - BlogResource - WebinarResource - ReportResource - Eventicons_066 icons_067icons_068icons_069icons_070

Blogs Tenable

June 17, 2025

GerriScary: Hacking the Supply Chain of Popular Google Products (ChromiumOS, Chromium, Bazel, Dart & More)

Tenable Cloud Research discovered a supply chain compromise vulnerability in Google's Gerrit code-collaboration platform which we dubbed GerriScary. GerriScary allowed unauthorized code submission to at least 18 Google projects including ChromiumOS (CVE-2025-1568), Chromium, Dart and Bazel, which are now remediated. Third-party organizations that use Gerrit may also be at risk from GerriScary.

December 7, 2021

Présentation de Tenable.cs : cycle de vie complet, sécurité cloud native

The new offering extends the recently acquired Accurics platform to enable DevSecOps and “shift left security” with integrated controls for development and runtime workflows, focused on Infrastructure as Code (IaC)....


December 6, 2021

Sécurisation des environnements IT-OT : les défis rencontrés par les professionnels de la sécurité IT

When providing cybersecurity in converged IT and operational technology environments, it’s critical for infosec pros to understand the differences between the two and utilize a toolset that delivers a comprehensive picture of both in a single view....


novembre 30, 2021

#GivingTuesday: Favorite Charities of Tenable Employees

This year for #GivingTuesday, we highlight some of the causes that Tenable employees have championed this year and invite you to do the same. ...


23, 2021 novembre

Not Just Buckets: Are You Aware of ALL Your Public Resources?

A misconfiguration of resource-based policies can inadvertently make resources public. Do you have such misconfigured policies present in your environment?...


23, 2021 novembre

Fake Bitcoin, Ethereum, Dogecoin, Cardano, Ripple and Shiba Inu Giveaways Proliferate on YouTube Live

Scammers are leveraging compromised YouTube accounts to promote fake cryptocurrency giveaways for Bitcoin, Ethereum, Dogecoin, Cardano, Ripple, Shiba Inu and other cryptocurrencies....


18, 2021 novembre

Identifying Server Side Request Forgery: How Tenable.io Web Application Scanning Can Help

Learn how SSRF flaws arise, why three common attack paths are so challenging to mitigate and how Tenable.io Web Application Scanning can help....


17, 2021 novembre

4 questions pour réduire le cyber-risque lié à vos applications web et assets publics.

Ask the following four questions to help reduce cyber risk in your public-facing assets and web apps....


15, 2021 novembre

New Data Reveals Company Size May Be Tied To Remote-Worker Cybersecurity Practices

Employees at the largest firms are least likely to adhere to wifi and password security guidelines....


15, 2021 novembre

Tales Of Zero-Day Disclosure: Tenable Researchers Reveal Recommendations for a Successful Experience

Real life stories of vulnerability discovery and disclosure from Tenable’s Zero Day Research team offer guidance you can use to refine your organization's policies....


Des actualités utiles sur la cyber-sécurité

Saisissez votre adresse e-mail et ne manquez plus aucune alerte ni aucun conseil en matière de sécurité de la part de nos experts Tenable.

Coup d’œil sur l'écosystème des ransomwares

Téléchargez le rapport >