SECURITY RESOURCES

Offensive minded security exploit development
What is Threat Modeling?

Threat Modeling

What is Threat Modeling?

A common question asked by people new to the specifics of cybersecurity. Threat modeling is a practical measure used to protect your business’ data and networks from cyber threats and attacks.

Read More
A Pasta Threat Modeling Solution for Complex Cybersecurity Tasks

A Pasta Threat Modeling Solution for Complex Cybersecurity Tasks

PASTA is not a complicated static framework. It’s an agile methodology that breaks down and solves complex cybersecurity tasks, allows scaling, and evolves with the cybersecurity landscape and business goals.

Read More
The Process for Attack Simulation and Threat Analysis

Cybersecurity Library, Ebooks & Guides, Threat Modeling, VerSprite Security Resources

The Process for Attack Simulation and Threat Analysis

PASTA is the Process for Attack Simulation & Threat Analysis and is a risk-centric threat modeling methodology aimed at identifying viable threat patterns against an application or system environment.

Download eBook
Threat Modeling: A Comprehensive Guide

Threat Modeling: A Comprehensive Guide

In this model, you will see engineers, network professionals, developers, architects, business analysts, project managers, security champions, pentesters, and quality assurance engineers. Because they all have some level of involvement and collaboration at different stages of application, as well as organizational, threat modeling ensures effective results.

Read More
Using Risk-Based Threat Modeling to Protect Your Supply Chain

Cybersecurity Library, Ebooks & Guides, Supply Chains, VerSprite Security Resources

Using Risk-Based Threat Modeling to Protect Your Supply Chain

Why are supply chains a popular target for cybercriminals? VerSprite CEO, Tony UcedaVélez, introduces our risk-based threat modeling approach, PASTA, and how it allows organizations to better protect their supply chain software from threat actors.

Read More
Attacking Your Assumptions: How Criminal Tactics Can Save Your Organization

Attacking Your Assumptions: How Criminal Tactics Can Save Your Organization

In this article, VerSprite’s Offensive Security team explore the difference between common security risk assessments (vulnerability assessment, penetration testing, and red teaming) as we walk you through real exploits we have used to test organizations’ security protocols.

Read More

Category

View All
Is Your Managed Detection and Response (MDR) Service ‘Right Sized’ for You?
Threat Intelligence

Is Your Managed Detection and Response (MDR) Service ‘Right Sized’ for You?

Unified Automated Threat Models are Here
Application Security, Threat Modeling

Unified Automated Threat Models are Here

Why Treating Threat Modeling as a Net-New Security Activity Will Strain Your Enterprise
Threat Modeling

Why Treating Threat Modeling as a Net-New Security Activity Will Strain Your Enterprise

Navigating the Updated Cybersecurity Guidance for Healthcare: How VerSprite Can Help Your Organization Stay Secure
Integrated Risk Management (IRM)

Navigating the Updated Cybersecurity Guidance for Healthcare: How VerSprite Can Help Your Organization Stay Secure

Threat Intelligence Services Help Navigate the Latest Financial Industry Cybersecurity Regulations
Integrated Risk Management (IRM), Threat Intelligence

Threat Intelligence Services Help Navigate the Latest Financial Industry Cybersecurity Regulations

The DevOps Approach to Automating C2 Infrastructure (Part Two)
Application Security, Penetration Testing

The DevOps Approach to Automating C2 Infrastructure (Part Two)

Slipping Malware Through Microsoft Security Checks
Security Awareness, Security Research

Slipping Malware Through Microsoft Security Checks

Retail Cyber Security Threats
Reports, Threat & Vulnerability Management

Retail Cyber Security Threats

The DevOps Approach to Automating C2 Infrastructure (Part One)
Application Security, Penetration Testing

The DevOps Approach to Automating C2 Infrastructure (Part One)

What is Threat Modeling?
Threat Modeling

What is Threat Modeling?

Implementing Threat Modeling for Cybersecurity across an Enterprise
Application Security, Threat Modeling

Implementing Threat Modeling for Cybersecurity across an Enterprise

Envisions Critical Threat Report 2024
eBook, Integrated Risk Management (IRM)

Envisions Critical Threat Report 2024

Effectively Integrate RASP into a DevSecOps Model for AppSec
DevSecOps

Effectively Integrate RASP into a DevSecOps Model for AppSec

A Pasta Threat Modeling Solution for Complex Cybersecurity Tasks
Application Security, Threat Modeling

A Pasta Threat Modeling Solution for Complex Cybersecurity Tasks

Year-End Results: How to Measure the Success of Your Cybersecurity Program
Governance Risk & Compliance

Year-End Results: How to Measure the Success of Your Cybersecurity Program

ci cd security, devsecops ci/cd, web app penetration testing

Subscribe for Our
Updates

Please enter your email address and receive the latest updates