Facebook Google Plus Twitter LinkedIn YouTube RSS Menu Search Resource - BlogResource - WebinarResource - ReportResource - Eventicons_066 icons_067icons_068icons_069icons_070

Tenable blog

May 13, 2025

CVE-2025-4427、CVE-2025-4428:Ivanti Endpoint Manager Mobile (EPMM) 遠端程式碼執行

Remote code execution vulnerability in a popular mobile device management solution from Ivanti has been exploited in the wild in limited attacks...


May 13, 2025

Microsoft 2025 年 5 月的 Patch Tuesday 解決了 71 個 CVE (CVE-2025-32701、CVE-2025-32706、CVE-2025-30400)

Microsoft addresses 71 CVEs including seven zero-days, five of which were exploited in the wild....


May 12, 2025

偵測攻擊者利用的遠端監控與管理工具

Following up on last year’s LOLDriver plugin, Tenable Research is releasing detection plugins for the top Remote Monitoring and Management (RMM) tools that attackers have been more frequently leveraging in victim environments....


May 12, 2025

曝險管理協助您加強安全工具的 6 個方法

Each Monday, the Tenable Exposure Management Academy provides the practical, real-world guidance you need to shift from vulnerability management to exposure management. In this post, the second of two parts, we look closely at six ways exposure management can help you tame security tool sprawl....


May 9, 2025

網路安全概要: 英國NCSC’s Best Cyber Advice on AI Security, the Quantum Threat, API Risks, Mobile Malware and More

In this special edition of the Cybersecurity Snapshot, we bring you some of the most valuable guidance offered by the U.K. National Cyber Security Centre (NCSC) in the past 18 months. Check out best practices, recommendations and insights on protecting your AI systems, APIs and mobile devices, as we...


May 8, 2025

從管理弱點到管理曝險:您不能忽視的關鍵轉變

Vulnerability management remains core to reducing cyber risk — but as the attack surface grows, teams need a risk-driven strategy that looks beyond vulnerabilities to see the bigger picture. Discover how exposure management unifies data and prioritizes real exposures — keeping teams proactive and ah...


May 7, 2025

5 分鐘內加強雲端安全:保護您的雲端身分

After covering cloud security posture management (CSPM) and cloud workload protection (CWP) in the first two installments of Tenable’s “Stronger Cloud Security in Five” blog series, today we focus on securing your cloud identities. Protecting them is a tall order, but it’s critical because identitie...


May 6, 2025

Vibe Coding 常見問答集

Vibe coding has attracted much attention in recent weeks with the release of many AI-driven tools. This blog answers some of the Frequently Asked Questions (FAQ) around vibe coding....


May 5, 2025

How Exposure Management Can Ease the Pain of Security Tool Sprawl

Each Monday, the Tenable Exposure Management Academy provides the practical, real-world guidance you need to shift from vulnerability management to exposure management. In this post, the first of two parts, we explore how exposure management can help ease the pain of having too many siloed security ...


May 2, 2025

網路安全概要: CISA’s Best Cyber Advice on Securing Cloud, OT, Apps and More

In this special edition of the Cybersecurity Snapshot, we’re highlighting some of the most valuable guidance offered by the U.S. Cybersecurity and Infrastructure Security Agency in the past 12 months. Check out best practices, recommendations and insights on protecting your cloud environments, OT sy...


April 30, 2025

MCP Prompt Injection: Not Just For Evil

MCP tools are implicated in several new attack techniques. Here's a look at how they can be manipulated for good, such as logging tool usage and filtering unauthorized commands....


April 30, 2025

雲端存取管理的未來: Tenable Cloud Security 如何重新定義 Just-in-Time 存取

Traditional approaches to cloud access rely on static, permanent permissions that are often overprivileged. Learn how just-in-time access completely changes the game....


您可以利用的網路安全最新消息

輸入您的電子郵件,就不會錯過來自 Tenable 專家提供的及時警示與安全指引。

Apache Log4j 缺陷讓第三方軟體成為目光焦點

取得詳細資訊 >