Facebook Google Plus Twitter LinkedIn YouTube RSS Menu Search Resource - BlogResource - WebinarResource - ReportResource - Eventicons_066 icons_067icons_068icons_069icons_070

Tenable blog

January 22, 2025

Oracle January 2025 Critical Patch Update Addresses 186 CVEs

Oracle addresses 186 CVEs in its first quarterly update of 2025 with 318 patches, including 30 critical updates.BackgroundOn January 21, Oracle released its Critical Patch Update (CPU) for January 202...

December 17, 2021

CVE-2021-44228, CVE-2021-45046, CVE-2021-4104: Frequently Asked Questions About Log4Shell and Associated Vulnerabilities

A list of frequently asked questions related to Log4Shell and associated vulnerabilities....


December 14, 2021

Microsoft’s December 2021 Patch Tuesday Addresses 67 CVEs (CVE-2021-43890)

Microsoft addresses 67 CVEs in its December 2021 Patch Tuesday release, including a zero-day vulnerability that has been exploited in the wild....


December 14, 2021

Log4Shell: 5 Steps The OT Community Should Take Right Now

Operational technology (OT) environments are equally at risk from the Apache Log4j flaw. Here's what you can do today....


December 13, 2021

Apache Log4j Flaw: A Fukushima Moment for the Cybersecurity Industry

Organizations around the world will be dealing with the long-tail consequences of this vulnerability, known as Log4Shell, for years to come....


December 12, 2021

Apache Log4j Flaw Puts Third-Party Software in the Spotlight

Even in the most mature organizations, addressing the issue, also known as Log4Shell, requires a complex mix of software development practices, vulnerability management and web application scanning....


December 10, 2021

CVE-2021-44228: Proof-of-Concept for Critical Apache Log4j Remote Code Execution Vulnerability Available (Log4Shell)

Critical vulnerability in the popular logging library, Log4j 2, impacts a number of services and applications, including Minecraft, Steam and Apple iCloud. Attackers have begun actively scanning for and attempting to exploit the flaw....


December 9, 2021

How to Start Up Your Cloud Security

Startups may think they can postpone implementing a cloud security program but should in fact take early action — here’s why, and easy steps for doing so....


December 7, 2021

Introducing Tenable.cs: Full Lifecycle, Cloud Native Security

The new offering extends the recently acquired Accurics platform to enable DevSecOps and “shift left security” with integrated controls for development and runtime workflows, focused on Infrastructure as Code (IaC)....


December 6, 2021

Securing IT-OT Environments: Why IT Security Professionals Struggle

When providing cybersecurity in converged IT and operational technology environments, it’s critical for infosec pros to understand the differences between the two and utilize a toolset that delivers a comprehensive picture of both in a single view....


Cybersecurity news you can use

Enter your email and never miss timely alerts and security guidance from the experts at Tenable.

A Look Inside the Ransomware Ecosystem

Download the Report >