SECURITY RESOURCES

Offensive minded security exploit development
What is Threat Modeling?

Threat Modeling

What is Threat Modeling?

A common question asked by people new to the specifics of cybersecurity. Threat modeling is a practical measure used to protect your business’ data and networks from cyber threats and attacks.

Read About Threat Modeling
A Pasta Threat Modeling Solution for Complex Cybersecurity Tasks

A Pasta Threat Modeling Solution for Complex Cybersecurity Tasks

PASTA is not a complicated static framework. It’s an agile methodology that breaks down and solves complex cybersecurity tasks, allows scaling, and evolves with the cybersecurity landscape and business goals.

Read About PASTA
The Process for Attack Simulation and Threat Analysis

Cybersecurity Library, Ebooks & Guides, Threat Modeling, VerSprite Security Resources

The Process for Attack Simulation and Threat Analysis

PASTA is the Process for Attack Simulation & Threat Analysis and is a risk-centric threat modeling methodology aimed at identifying viable threat patterns against an application or system environment.

Download eBook
Threat Modeling: A Comprehensive Guide

Threat Modeling: A Comprehensive Guide

In this model, you will see engineers, network professionals, developers, architects, business analysts, project managers, security champions, pentesters, and quality assurance engineers. Because they all have some level of involvement and collaboration at different stages of application, as well as organizational, threat modeling ensures effective results.

Learn About Threat Modeling
Using Risk-Based Threat Modeling to Protect Your Supply Chain

Cybersecurity Library, Ebooks & Guides, Supply Chains, VerSprite Security Resources

Using Risk-Based Threat Modeling to Protect Your Supply Chain

Why are supply chains a popular target for cybercriminals? VerSprite CEO, Tony UcedaVélez, introduces our risk-based threat modeling approach, PASTA, and how it allows organizations to better protect their supply chain software from threat actors.

Read About Risk-Based Threat Modeling
Attacking Your Assumptions: How Criminal Tactics Can Save Your Organization

Attacking Your Assumptions: How Criminal Tactics Can Save Your Organization

In this article, VerSprite’s Offensive Security team explore the difference between common security risk assessments (vulnerability assessment, penetration testing, and red teaming) as we walk you through real exploits we have used to test organizations’ security protocols.

Read About Criminal Tactics

Category

View All
Razer Synapse 3 Security Vulnerability Analysis Report
Security Research

Razer Synapse 3 Security Vulnerability Analysis Report

DevSecOps: Automating Security Testing in a CI/CD Pipeline
Security Operations

DevSecOps: Automating Security Testing in a CI/CD Pipeline

Red Hat Linux iSCSI Subsystem Vulnerability Report
Reports, Threat Intelligence

Red Hat Linux iSCSI Subsystem Vulnerability Report

Blind Spots in Security Awareness Training Programs
Application Security

Blind Spots in Security Awareness Training Programs

Companies Using VMware ESXi Are Being Targeted by Ransomware
Threat Intelligence

Companies Using VMware ESXi Are Being Targeted by Ransomware

Windows Named Pipes Part 4: Taking a Trip Down Static Analysis Lane
Security Research

Windows Named Pipes Part 4: Taking a Trip Down Static Analysis Lane

Third-Party Risk Management Software (VRA vs. TPRM) vs. Vendor Risk Assessment Services
Cybersecurity Library, Ebooks & Guides, VerSprite Security Resources

Third-Party Risk Management Software (VRA vs. TPRM) vs. Vendor Risk Assessment Services

Informe Sobre Amenazas a la Seguridad Empresarial 2021
Governance Risk & Compliance

Informe Sobre Amenazas a la Seguridad Empresarial 2021

2021 Business Security Threats Briefing
Governance Risk & Compliance, Reports

2021 Business Security Threats Briefing

Top 6 Cybersecurity Threats in 2021
Cybersecurity Library, Ebooks & Guides, Geopolitical Risk, Reports, VerSprite Security Resources

Top 6 Cybersecurity Threats in 2021

Operation SignSight: Software Supply Chain Attack Hits Vietnamese Government
Supply Chains

Operation SignSight: Software Supply Chain Attack Hits Vietnamese Government

VerSprite Cybersecurity Discusses Sunburst and Vendor Supply Chain Attacks
Supply Chains

VerSprite Cybersecurity Discusses Sunburst and Vendor Supply Chain Attacks

A Targeted Vendor Risk Assessment Exposes Vulnerabilities
Application Security

A Targeted Vendor Risk Assessment Exposes Vulnerabilities

Using Risk-Based Threat Modeling to Protect Your Supply Chain
Cybersecurity Library, Ebooks & Guides, Supply Chains, VerSprite Security Resources

Using Risk-Based Threat Modeling to Protect Your Supply Chain

A Geopolitical Perspective on Supply Chain Risks and Opportunities
Geopolitical Risk, Supply Chains, VerSprite Security Resources

A Geopolitical Perspective on Supply Chain Risks and Opportunities

ci cd security, devsecops ci/cd, web app pen testing

Subscribe for Our
Updates

Please enter your email address and receive the latest updates