Facebook Google Plus Twitter LinkedIn YouTube RSS Menu Recherche Resource - BlogResource - WebinarResource - ReportResource - Eventicons_066 icons_067icons_068icons_069icons_070

Media room

Tenable news, announcements and global media coverage

Bienvenue dans la salle des médias de Tenable. Consultez nos dernières annonces et bénéficiez de notre couverture médiatique, accédez à nos coordonnées dans le monde et téléchargez notre kit média ci-dessous.

Get the latest Tenable news

Des versions produit innovantes aux rapports d'étude du secteur, en passant par les partenariats stratégiques, bénéficiez des actualités et des annonces officielles les plus récentes, directement dans votre boîte aux lettres.

S'abonner

Communiqués de presse

Columbia, MD

Tenable Appoints Eric Doerr as Chief Product Officer

Columbia, MD

Tenable to Highlight Holistic Approach to Cyber Exposure at GISEC 2025

Columbia, MD

Tenable Wins AI Security Category in the 2025 Cybersecurity Excellence Awards

Columbia, MD

Tenable Appoints Steve Vintz and Mark Thurmond as Co-CEOs

Tokyo, Japan

Tenable Empowers erex with Continuous Cybersecurity Protection, Eliminating Costly Outsourcing

Columbia, MD

Tenable Achieves FedRAMP Authorization for Tenable One and Tenable Cloud Security


Tenable Co-CEO Steve Vintz highlights growth of exposure management market, Vulcan Cyber acquisition

CNBC Worldwide Exchange

Steve Vintz, Tenable Co-CEO and CFO, was interviewed on CNBC Worldwide Exchange about Tenable’s most recent earnings results, his outlook for cyber spending in 2025 and how the acquisition of Vulcan Cyber will accelerate Tenable’s dominance in the growing exposure management market. Vintz also comments on how public sector spending may be impacted by DOGE and potential trade wars. 
 

Tenable's $150M Vulcan Cyber Buy Boosts Exposure Management

Data Breach Today

Tenable plans to purchase an exposure management startup led by a former Israeli intelligence officer to more effectively integrate telemetry data from third-party security products.

The Baltimore, Maryland-based vendor said its proposed $150 million acquisition of Tel Aviv, Israel-based Vulcan Cyber will help CISOs gain a unified view of risk through its more than 100 third-party integrations across endpoint security, cloud security and threat intelligence, according to co-CEO and COO Mark Thurmond. He said Vulcan's reputation in performance, scalability and integrations made them an appealing target. 

Most online Exchange Servers vulnerable to ProxyLogon still not remediated

SC Media

Ninety-one percent of almost 30,000 internet-exposed Microsoft Exchange Server instances impacted by the ProxyLogon flaw leveraged by Chinese state-backed threat operation Salt Typhoon continue to be vulnerable to attacks involving the bug, tracked as CVE-2021-26855, nearly four years after it was patched according to Tenable Research. 

 

One of Salt Typhoon's favorite flaws still wide open on 91% of at-risk Exchange Servers

The Register

One of the critical security flaws exploited by China's Salt Typhoon to breach US telecom and government networks has had a patch available for nearly four years - yet despite repeated warnings from law enforcement and private-sector security firms, nearly all public-facing Microsoft Exchange Server instances with this vulnerability remain unpatched.

According to cyber-risk management firm Tenable, 91 percent of the nearly 30,000 openly reachable instances of Exchange vulnerable to CVE-2021-26855, aka ProxyLogon, have not been updated to close the hole.

Zero-day vulnerability in SonicWall SMA series under attack

TechTarget

SonicWall released a hotfix for a critical pre-authentication remote code execution vulnerability in Secure Mobile Access 1000 products amidst reports of zero-day exploitation.
 

While information is currently limited, Scott Caveza, staff research engineer at Tenable, told Informa TechTarget that SonicWall's security advisory implies that the vulnerability was potentially exploited in the wild. Tenable cannot confirm the activity, but it is monitoring the situation for further developments, he added.

"Microsoft's Threat Intelligence Center reported the issue to SonicWall, which suggests there have been observations of exploitation," Caveza said in an email. "Despite the uncertainty around exploitation, threat actors have targeted SonicWall devices in the past and several SonicWall vulnerabilities have been featured on the Known Exploited Vulnerabilities (KEV) catalog from the U.S. Cybersecurity & Infrastructure Security Agency (CISA). Patching of impacted SonicWall devices should take priority to ensure this threat is mitigated as soon as possible."

The 20 Coolest Cloud Security Companies Of The 2025 Cloud 100

CRN

Tenable Once Again Named One of the Top 20 Cloud Security Companies by CRN

Most online Exchange Servers vulnerable to ProxyLogon still not remediated

SC Media

Ninety-one percent of almost 30,000 internet-exposed Microsoft Exchange Server instances impacted by the ProxyLogon flaw leveraged by Chinese state-backed threat operation Salt Typhoon continue to be vulnerable to attacks involving the bug, tracked as CVE-2021-26855, nearly four years after it was patched according to Tenable Research. 

 

Tenable integrates DSPM, AI-DSPM to cloud security platform

SC Media

Exposure management provider Tenable has introduced new data security posture management and artificial intelligence security posture management capabilities to its Tenable Cloud Security platform. The updates, available to Tenable Cloud Security and Tenable One customers, address the increasing complexity of cloud environments, which often face risks from misconfigurations, overexposed workloads, and excessive privileges. Tenable Research identified that 38% of organizations struggle with a "toxic cloud triad" -- a combination of exposed, vulnerable, and highly privileged cloud workloads.

 

Tenable's Scott McKinnel discusses how preventive cybersecurity can reduce insurance premiums

TickerTV

Tenable's Scott McKinnel discusses how preventive cybersecurity can reduce insurance premiums.

“Our ecosystem is made up of GSI and MSSP”: Johann Demangeot, Country Manager France at Tenable

Channel Biz

In an interview with Channel Biz Johann Demangeot, senior sales director EMEA South, discusses Tenable's channel strategy in the region

What Will The NIS2 Directive Mean For Smaller Organisations?

Cyber Security Intelligence

In this opinion piece, published by Cyber Security Intelligence, Bernard Montel looks at the expanded scope of NIS2 as the countdown begins to the October deadline

How Misconfigurations Threaten Your Cloud Security: The Big Interview with Bernard Montel, EMEA Technical Director, Tenable

Techopedia

In an interview with Techopedia, EMEA technical director and security strategist, Bernard Montel, talked about the misconfigurations that can threaten cloud security and why companies need to shift from reactive threat detection to proactive cloud security.

Tenable launches LLM-powered ExposureAI product

TechTarget
ExposureAI will be integrated into Tenable One, the vendor's encompassing exposure management platform, and is the latest cybersecurity produce to employ large language models.

Satnam Narang discusses insights from 2022 Threat Landscape Report

Ticker Insight
Satnam Narang discusses insights from 2022 Threat Landscape Report

Satnam Narang provides insights into old and new threats within the metaverse

Ticker Insight
Satnam Narang provides insights into old and new threats within the metaverse

Tenable One offers MSSPs unified cyber exposure visibility, Tenable says

IT Europa
Bernard Montel is interviewed by IT Europa to hear more about Tenable One and the benefit it brings to MSSPs.

Satnam Narang breaks down how Pig Butchering scams work

Ticker Insight

Vallourec better secures Microsoft's Active Directory with Tenable

Solutions Numeriques
Solution Numerique's write up of Tenable's customer case study: Vallourec - a multinational industrial company headquartered in Meudon, France - and how it is using Tenable.ad to secure Microsoft's Active Directory software.

Nationale Cybersicherheitsstrategie erfordert Cyberhygiene

ZDNet
Roger Scheer reacts to German Interior Minister Faeser's announcement of a protection program against hacker attacks.

Glen Pendley on transparency from cloud infrastructure providers

TickerTV
Glen Pendley on transparency from cloud infrastructure providers.

Marty Edwards discusses how operational environments have changed

Ticker News
Marty Edwards discusses what organisations in Australia should focus on given the flurry of alerts coming from the Australian Cyber Security Centre and Part 2 of the Critical Infrastructure Bill in the wake of recent events.

FTC: Companies Could Face Legal Action for Failing to Patch Log4j

Dark Reading
Amit Yoran says its 'about time' as the FTC issued a strongly worded statement saying it will use its "... full legal authority to pursue companies that fail to take reasonable steps to protect consumer data from exposure as a result of Log4j, or similar known vulnerabilities in the future."

Tenable commends Australia's Ransomware Action Plan

TickerTV Australia
Scott McKinnel, Country Manager for Tenable ANZ discusses why the Ransomware Action Plan is a step in the right direction but also urges the industry to do its part.

Software Industry Awaits Details on Biden’s Order to Report Hacks

The Wall Street Journal
Amit Yoran offers his thoughts on the importance of transparency as part of President Biden's cybersecurity executive order.

Tenable Co-CEO Steve Vintz highlights growth of exposure management market, Vulcan Cyber acquisition

CNBC Worldwide Exchange

Steve Vintz, Tenable Co-CEO and CFO, was interviewed on CNBC Worldwide Exchange about Tenable’s most recent earnings results, his outlook for cyber spending in 2025 and how the acquisition of Vulcan Cyber will accelerate Tenable’s dominance in the growing exposure management market. Vintz also comments on how public sector spending may be impacted by DOGE and potential trade wars. 
 

Most online Exchange Servers vulnerable to ProxyLogon still not remediated

SC Media

Ninety-one percent of almost 30,000 internet-exposed Microsoft Exchange Server instances impacted by the ProxyLogon flaw leveraged by Chinese state-backed threat operation Salt Typhoon continue to be vulnerable to attacks involving the bug, tracked as CVE-2021-26855, nearly four years after it was patched according to Tenable Research. 

 

Zero-day vulnerability in SonicWall SMA series under attack

TechTarget

SonicWall released a hotfix for a critical pre-authentication remote code execution vulnerability in Secure Mobile Access 1000 products amidst reports of zero-day exploitation.
 

While information is currently limited, Scott Caveza, staff research engineer at Tenable, told Informa TechTarget that SonicWall's security advisory implies that the vulnerability was potentially exploited in the wild. Tenable cannot confirm the activity, but it is monitoring the situation for further developments, he added.

"Microsoft's Threat Intelligence Center reported the issue to SonicWall, which suggests there have been observations of exploitation," Caveza said in an email. "Despite the uncertainty around exploitation, threat actors have targeted SonicWall devices in the past and several SonicWall vulnerabilities have been featured on the Known Exploited Vulnerabilities (KEV) catalog from the U.S. Cybersecurity & Infrastructure Security Agency (CISA). Patching of impacted SonicWall devices should take priority to ensure this threat is mitigated as soon as possible."

The 20 Coolest Cloud Security Companies Of The 2025 Cloud 100

CRN

Tenable Once Again Named One of the Top 20 Cloud Security Companies by CRN

China's cyber intrusions took a sinister turn in 2024

The Register

"What's unique about Volt Typhoon is the post-exploitation activity," Tenable research engineer Scott Caveza told The Register. It doesn't use custom malware, which can be more easily spotted by antivirus software, but instead uses legitimate software products and credentials to snoop around and avoid detection.

 

Apple warns 2 macOS zero-day vulnerabilities under attack

TechTarget

The macOS Sequoia vulnerabilities are the latest to be targeted and exploited by threat actors as cybersecurity vendors report a shift in the landscape.

Satnam Narang, senior staff research engineer at Tenable, told TechTarget Editorial that Apple is known for providing limited technical details in their advisories. However, he highlighted one aspect of Apple's advisory.

"The one interesting aspect about these two zero days is that the advisories called out exploitation specifically for Intel-based Mac systems, which are now considered legacy products for Apple. Apple switched over to their own Apple silicon in late 2020," Narang said. "Typically, zero-day exploitation of vulnerabilities is part of limited, targeted attacks. When you add that these were attributed to researchers at Google's Threat Analysis Group, which are often tasked with investigating targeted attacks, it supports that hypothesis. Until Googles Threat Analysis Group publishes their own research into the attacks, we won’t know more than what's in the advisories."

Satnam Narang provides insights into old and new threats within the metaverse

Ticker Insight
Satnam Narang provides insights into old and new threats within the metaverse

Satnam Narang talks about the ransomware boom

TickerTV
Satnam Narang, senior staff research engineer sheds light into the various players within the ecosystem and the extortion tactics that have emerged since double extortion was made popular three years ago by the Maze ransomware group.

Satnam Narang on metaverse threats

TickerTV
Satnam Narang spoke to Ticker News Australia about what cyber threats in the metaverse might look like as more NFT projects promote integrations in this space. He also shared findings from his new research showing that scammers are hacking verified and unverified accounts to steal popular NFTs.

Satnam Narang discusses 2021 Threat Landscape Retrospective

TickerTV
Satnam Narang highlights key findings from the 2021 Threat Landscape Retrospective.

Cybercriminals gave government departments a run for their money in 2021

The Mandarin
New data on the number of cyberattacks in 2021 shows that for the Asia Pacific, government departments were targeted the most.

Scammer use YouTube Shorts for posting stolen videos from TikTok: Report

The Economic Times of India
Tenable's Satnam Narang reveals how scammers are stealing existing short-form videos from TikTok and reposting them to YouTube Shorts, racking up millions of views and gaining tens of thousands of subscribers.

Bernard Montel, Tenable: Faced with the increasing sophistication of cyber threats, solutions must enable companies to move to a strategy focused on prevention

Global Security Mag

In an interview with Global Security Magazine Bernard Montel discusses the value Tenable One affords organisations and the virtue of a preventative versus reactive security posture.

How Misconfigurations Threaten Your Cloud Security: The Big Interview with Bernard Montel, EMEA Technical Director, Tenable

Techopedia

In an interview with Techopedia, EMEA technical director and security strategist, Bernard Montel, talked about the misconfigurations that can threaten cloud security and why companies need to shift from reactive threat detection to proactive cloud security.

Exclusive Feature: Data Privacy

Tahawultech News

Bernard Montel, EMEA Technical Director and Security Strategist, used Data Privacy Day to remind everyone that you can't have privacy without security.

Citrix confirms two new NetScaler vulnerabilities as firms urged to patch immediately

IT Pro

Senior Staff Research Engineer, Satnam Narang, responded to news that Citrix has issued patches for two new vulnerabilities in its NetScaler ADC and Gateway appliances.

The Innovator – Gavin Millard

Security Buyer

Deputy CTO Gavin Millard was interviewed by Security Buyer to discuss, what he has dubbed, the 'Jay-Z rule - you've got 99 flaws, but all they need is one.

We shall not be moved!

Computing Security

In an interview with Computing Security, Satnam Narang, Senior Staff Research Engineer, discussed how LockBit is breaching some of the world's largest organisations.


Media contacts

Corporate Public Relations [email protected]
(443) 545-2102 ext. 1544
Brazil
Capital Informação
[email protected]
+ 55 11 3926.9517
France
PR Paradigm
[email protected]
+33 7 88 32 33 38
Middle East
Oak Consulting
[email protected]
+97 1 43 81 73 65
USA
Mission North
[email protected]
(415) 503-1818
UK
Flame PR
[email protected]
+44 20 3357 9740
Australia
Allison + Partners Australia
[email protected]
+61 408 441 662
India
Star Squared PR
[email protected]
+91 98451 76974
Mexico
Pedrote
[email protected]
+ 52 55 6578 3492
Germany
H zwo B Kommunikation
[email protected]
0049.9131.81281-25
Japan
Allison and Partner K.K
[email protected]
+81-3-6809-1300
Singapore
Eastwest PR
[email protected]
+65 96374747

Kit média

Download the Tenable media kit, complete with company and product logos and usage guidelines, executive headshots and the corporate fact sheet.


Download all assets