SECURITY RESOURCES

Offensive minded security exploit development
ERAs are Dead. Long Live the Organizational Threat Model!

ERAs are Dead. Long Live the Organizational Threat Model!

The OTM is a 7-stage process, inspired by the application threat modeling methodology, PASTA, that is applied at an organizational level. Much like application threat models, the intent is to have risks proven by various important contexts – business impact, likelihood, and the effectiveness of native countermeasures (or controls) that help reduce inherent risk levels.

Watch Now
The Process for Attack Simulation and Threat Analysis

Cybersecurity Library, Ebooks & Guides, Threat Modeling, VerSprite Security Resources

The Process for Attack Simulation and Threat Analysis

PASTA is the Process for Attack Simulation & Threat Analysis and is a risk-centric threat modeling methodology aimed at identifying viable threat patterns against an application or system environment.

Watch Now
Integrating Threat Modeling Throughout Your Enterprise

Integrating Threat Modeling Throughout Your Enterprise

In this model, you will see engineers, network professionals, developers, architects, business analysts, project managers, security champions, pentesters, and quality assurance engineers. Because they all have some level of involvement and collaboration at different stages of application, as well as organizational, threat modeling ensures effective results.

Watch Now
Using Risk-Based Threat Modeling to Protect Your Supply Chain

Cybersecurity Library, Ebooks & Guides, Supply Chains, VerSprite Security Resources

Using Risk-Based Threat Modeling to Protect Your Supply Chain

Why are supply chains a popular target for cybercriminals? VerSprite CEO, Tony UcedaVélez, introduces our risk-based threat modeling approach, PASTA, and how it allows organizations to better protect their supply chain software from threat actors.

Watch Now
Is Using Public WiFi Safe?

Is Using Public WiFi Safe?

Using public WiFi can leave you and your employees open to man-in-the-middle cyber attacks. With the increase of remote work, organizations must teach their employees how to stay safe on open WiFi networks. Get our tips on how to protect against hackers while on open WiFi networks.

Watch Now

Category

View All
Grey Box Application Testing: What It Is and Why You Need It
Application Security, OffSec

Grey Box Application Testing: What It Is and Why You Need It

VerSprite and AppSecEngineer Partner to Operationalize Security Training
Security Training

VerSprite and AppSecEngineer Partner to Operationalize Security Training

Nordstream Pipelines Attacks
Geopolitical Risk, News

Nordstream Pipelines Attacks

Envisions Geopolitical Threat Report:
eBook, Geopolitical Risk

Envisions Geopolitical Threat Report:

DATA *MIS*MANAGEMENT: ONE OF THE LEADING CAUSES OF SECURITY BREACHES
Data Privacy & Development of Security Policies, Governance Risk & Compliance

DATA *MIS*MANAGEMENT: ONE OF THE LEADING CAUSES OF SECURITY BREACHES

Domain Spoofing and Phishing Attacks
Governance Risk & Compliance, Security Awareness

Domain Spoofing and Phishing Attacks

PCI DSS 4.0: What You Need to Know and What You Need to Do
OffSec, Regulatory Compliance

PCI DSS 4.0: What You Need to Know and What You Need to Do

AI and Cybersecurity: Threats and Opportunities
OffSec

AI and Cybersecurity: Threats and Opportunities

Welcome to The World of Geopolitics and Cybersecurity!
eBook, Geopolitical Risk

Welcome to The World of Geopolitics and Cybersecurity!

Why Bad Guys Do Bad Things: How Maslow’s Hierarchy of Needs Can Help Identify Cyber Threats
Threat Intelligence

Why Bad Guys Do Bad Things: How Maslow’s Hierarchy of Needs Can Help Identify Cyber Threats

Analyzing the State of Cybersecurity at the End of 2022
eBook, Geopolitical Risk, Security Awareness

Analyzing the State of Cybersecurity at the End of 2022

Chrome Exploitation: How to easily launch a Chrome RCE+SBX exploit chain with one command
Application Security, Security Research

Chrome Exploitation: How to easily launch a Chrome RCE+SBX exploit chain with one command

Digital AdTech Firm’s CTO Focuses on Strategic Cybersecurity Alliances to Build Resiliency for Digital Turbine
Red Teaming and Social Engineering, VerSprite Security Resources

Digital AdTech Firm’s CTO Focuses on Strategic Cybersecurity Alliances to Build Resiliency for Digital Turbine

VerSprite Cyberwatch: Latest Security News and Advisories
CyberWatch, VerSprite Security Resources

VerSprite Cyberwatch: Latest Security News and Advisories

The Origins of Threat Modeling
Reports, Threat Modeling

The Origins of Threat Modeling

ci cd security, devsecops ci/cd

Subscribe for Our
Updates

Please enter your email address and receive the latest updates