As governments gradually return to pre-pandemic ways of operating, they must gird themselves for an uncertain future.
It’s nothing new that social media is a hotbed of hot takes. Even the most innocuous posts somehow manage to offend or anger someone out there on the internet. But that doesn’t mean that it should all be dismissed as nonsense, especially when it comes to information security. News of critical vulnerabilities, dangerous exploits, breaches, […]
Last week, the number of CVE vulnerabilities received and analyzed by the National Vulnerability Database for 2022 surpassed the total number of CVEs for 2021. With nine weeks still left in 2022, we are on pace to crush last year’s record of vulnerabilities. And we are bound to set another record in 2023. When we […]
Mischief, fright, haunting … These are just a few terms that apply to this time of year: Halloween. But these terms can also explain cyberattacks and the paranormal. Yes, we said it, cyberattacks and the paranormal, both things that go bump in the night (and often bump in the daylight, too). Both involve something that […]
On top of the usual challenges, in 2023, security pros will see more risk coming from internal forces, such as enabling anywhere work and the future of the office. Learn more in our 2023 predictions.
In 2023, the risk function will rise at European organisations, but one major firm will lose employee trust through misuse of tech. Find out more in our 2023 cybersecurity predictions.
Learn why an autonomous security operations center is an unrealistic vision for any security organization.
(special thanks to my colleague Jess Burn who assisted with this blog) Faithful readers of my infrequent Forrester blog posts might remember my penchant for using analogies to discuss specific cybersecurity issues. I am pleased to continue that tradition, so I am going to discuss how crashing a bike is relevant to cybersecurity incident response. […]
The Cybersecurity & Infrastructure Security Agency (CISA) kicked off Cybersecurity Awareness Month with a bang yesterday, with its latest binding operational directive that requires federal agencies to account for a complete inventory of assets and vulnerabilities. In past CISA coverage, we recommended that organizations doing business with the federal government, looking to maintain good cyber […]
Learn how to reduce the three most common types of insider threats in this Security & Risk event preview.
Local governments have become frequent targets of cyber attacks, and funding and planning for preventing for more attacks have been left largely to the local level. A new initiative is changing that.