SECURITY RESOURCES

Offensive minded security exploit development
What is Threat Modeling?

Threat Modeling

What is Threat Modeling?

A common question asked by people new to the specifics of cybersecurity. Threat modeling is a practical measure used to protect your business’ data and networks from cyber threats and attacks.

Read More
A Pasta Threat Modeling Solution for Complex Cybersecurity Tasks

A Pasta Threat Modeling Solution for Complex Cybersecurity Tasks

PASTA is not a complicated static framework. It’s an agile methodology that breaks down and solves complex cybersecurity tasks, allows scaling, and evolves with the cybersecurity landscape and business goals.

Read More
The Process for Attack Simulation and Threat Analysis

Cybersecurity Library, Ebooks & Guides, Threat Modeling, VerSprite Security Resources

The Process for Attack Simulation and Threat Analysis

PASTA is the Process for Attack Simulation & Threat Analysis and is a risk-centric threat modeling methodology aimed at identifying viable threat patterns against an application or system environment.

Download eBook
Integrating Threat Modeling Throughout Your Enterprise

Integrating Threat Modeling Throughout Your Enterprise

In this model, you will see engineers, network professionals, developers, architects, business analysts, project managers, security champions, pentesters, and quality assurance engineers. Because they all have some level of involvement and collaboration at different stages of application, as well as organizational, threat modeling ensures effective results.

Read More
Using Risk-Based Threat Modeling to Protect Your Supply Chain

Cybersecurity Library, Ebooks & Guides, Supply Chains, VerSprite Security Resources

Using Risk-Based Threat Modeling to Protect Your Supply Chain

Why are supply chains a popular target for cybercriminals? VerSprite CEO, Tony UcedaVélez, introduces our risk-based threat modeling approach, PASTA, and how it allows organizations to better protect their supply chain software from threat actors.

Read More
Attacking Your Assumptions: How Criminal Tactics Can Save Your Organization

Attacking Your Assumptions: How Criminal Tactics Can Save Your Organization

In this article, VerSprite's Offensive Security team explore the difference between common security risk assessments (vulnerability assessment, penetration testing, and red teaming) as we walk you through real exploits we have used to test organizations' security protocols.

Read More

Category

View All
PASTA Threat Modeling RACI Diagram
VerSprite Security Resources

PASTA Threat Modeling RACI Diagram

Staying Lean with Cybersecurity Efforts when Budgets are Tight
Virtual Security Operations Center vSOC

Staying Lean with Cybersecurity Efforts when Budgets are Tight

Building a Modern Effective SOC – A Realistic Undertaking in 2022?
Virtual Security Operations Center vSOC

Building a Modern Effective SOC – A Realistic Undertaking in 2022?

Long Live The Organizational Threat Model! ERAs Are Dead
Threat Modeling

Long Live The Organizational Threat Model! ERAs Are Dead

Ransomware Readiness – When Failing is Good
Red Teaming and Social Engineering

Ransomware Readiness – When Failing is Good

Russia-Ukraine War, Cyberwarfare, and the Impact on Businesses Worldwide
Threat Intelligence

Russia-Ukraine War, Cyberwarfare, and the Impact on Businesses Worldwide

Why Context is King for Your Governance Program
Governance Risk & Compliance

Why Context is King for Your Governance Program

Age of Misinformation
Threat & Vulnerability Management

Age of Misinformation

Retail Cyber Security Threats
Reports, Threat & Vulnerability Management

Retail Cyber Security Threats

Penetration Testing Standards – a Viral Topic at RSAC 2022
Red Teaming and Social Engineering, VerSprite Security Resources

Penetration Testing Standards – a Viral Topic at RSAC 2022

Threats of IoT Devices
Application Security

Threats of IoT Devices

Overview of OSINT and Its Importance for Businesses & Organizations
Red Teaming and Social Engineering, Security Awareness

Overview of OSINT and Its Importance for Businesses & Organizations

Insight Into Critical Threat Report Envisions 2022
Integrated Risk Management (IRM), Reports

Insight Into Critical Threat Report Envisions 2022

Bazarloader & Exotic Lily Analysis
Research Advisories, VerSprite Security Resources

Bazarloader & Exotic Lily Analysis

Envisions 2022
Cybersecurity Library, Ebooks & Guides, Geopolitical Risk, VerSprite Security Resources

Envisions 2022

ci cd security, devsecops ci/cd

Subscribe for Our
Updates

Please enter your email address and receive the latest updates