SECURITY RESOURCES

Black Hat minded security exploit development
What is Threat Modeling?

Threat Modeling

What is Threat Modeling?

A common question asked by people new to the specifics of cybersecurity. Threat modeling is a practical measure used to protect your business’ data and networks from cyber threats and attacks.

Read About Threat Modeling
What Is PASTA Threat Modeling? 7 Stages Explained for Modern Security

What Is PASTA Threat Modeling? 7 Stages Explained for Modern Security

PASTA is not a complicated static framework. It’s an agile methodology that breaks down and solves complex cybersecurity tasks, allows scaling, and evolves with the cybersecurity landscape and business goals.

Read About PASTA Threat Modeling
The Process for Attack Simulation and Threat Analysis

Cybersecurity Library, VerSprite Security Resources, Threat Modeling, Ebooks & Guides

The Process for Attack Simulation and Threat Analysis

PASTA is the Process for Attack Simulation & Threat Analysis and is a risk-centric threat modeling methodology aimed at identifying viable threat patterns against an application or system environment.

Download PASTA Threat Modeling eBook
Attacking Your Assumptions: How Criminal Tactics Can Save Your Organization

Attacking Your Assumptions: How Criminal Tactics Can Save Your Organization

In this article, VerSprite’s Offensive Security team explore the difference between common security risk assessments (vulnerability assessment, penetration testing, and red teaming) as we walk you through real exploits we have used to test organizations’ security protocols.

Read About Criminal Tactics

Category

View All
Digging up the Past: OS X File Versioning
Digital Forensics & Incident Response, Security Research

Digging up the Past: OS X File Versioning

Why Healthcare is an Attractive Target for Malicious Actors
Data Privacy & Development of Security Policies, Integrated Risk Management (IRM), Regulatory Compliance

Why Healthcare is an Attractive Target for Malicious Actors

Attacking Weakly-Configured EAP-TLS Wireless Infrastructures
Application Security, Information Security Management System (ISMS)

Attacking Weakly-Configured EAP-TLS Wireless Infrastructures

Growing Intersection of Geopolitics and Cybersecurity
Integrated Risk Management (IRM)

Growing Intersection of Geopolitics and Cybersecurity

Preparing Your Microsoft Office 365 Environment for Forensic Analysis
Security Training, VerSprite Security Resources

Preparing Your Microsoft Office 365 Environment for Forensic Analysis

Back to Basics: Finding Clarity in General Data Protection Regulation (GDPR) Compliance
VerSprite Security Resources, Webinars

Back to Basics: Finding Clarity in General Data Protection Regulation (GDPR) Compliance

NTML Passwords Insecure
Threat & Vulnerability Management

NTML Passwords Insecure

Critical Vulnerability in WordPress Core
Threat & Vulnerability Management

Critical Vulnerability in WordPress Core

Incident Response: When The General Data Protection Regulation (GDPR) Requires Action
Data Privacy & Development of Security Policies, Regulatory Compliance, Security Governance

Incident Response: When The General Data Protection Regulation (GDPR) Requires Action

Building a Valid Threat Library for Cloud-Based Applications
VerSprite Security Resources, Threat Modeling

Building a Valid Threat Library for Cloud-Based Applications

Identity and Access Management in Amazon Web Services (AWS)
Threat & Vulnerability Management

Identity and Access Management in Amazon Web Services (AWS)

The Huawei Hoopla: ICTs, Chinese Tech, and the Need for Geo-Cyber Strategy
Geopolitical Risk, Reports, VerSprite Security Resources

The Huawei Hoopla: ICTs, Chinese Tech, and the Need for Geo-Cyber Strategy

Understand Digital Forensics & Incident Response (DFIR)
Digital Forensics & Incident Response

Understand Digital Forensics & Incident Response (DFIR)

Gig Economy & Growing Security Gaps
Data Privacy & Development of Security Policies, Integrated Risk Management (IRM), Security Governance

Gig Economy & Growing Security Gaps

Phishing Site Uses Google Translate
Application Security, Digital Forensics & Incident Response, Security Governance

Phishing Site Uses Google Translate

ci cd security, devsecops ci/cd, web app pen testing

Subscribe for Our
Updates

Please enter your email address and receive the latest updates