Tag: security
-
People matter: How to solve security skills shortage challenges The skills shortage in the security industry stretches as far back as we can remember having an industry. Everyone knows it’s a challenge with no easy short-term solutions. The root of the security skills shortage gap remains murky, and some observers say the pandemic and reallocations of security resources could be widening that gap. The […] Read more -
What is IP Spoofing? How does IP spoofing work? To break things down, IP (Internet Protocol) packets house information like IP addresses and the destination IP addresses. IP addresses allow computers to send and receive information, when connected to wi-fi. Hackers operate spoofing attacks by changing the source address in the packet header to make the destination think someone […] Read more -
What is identity and access management (IAM)? Most enterprise security teams run an identity and access management (IAM) platform and deploy some form of Multi-Factor Authentication (MFA) on top of it. Yet, only 21% of companies deploy phishing-resistant MFA after suffering a breach, per Forrester’s 2025 Security & Risk Summit. That leaves almost 80% of organizations making IAM policy decisions based on […] Read more -
Why strong authentication for every employee makes sense By now, it’s an all-too-familiar routine… Step 1: Organization suffers an expensive and embarrassing security breach. Step 2: Organization hastily introduces multi-factor authentication (or steps up its efforts to mandate its usage). Oftentimes, it takes a breach to make organizations fully embrace strong authentication. But why? We know that usernames and passwords alone cannot provide sufficient security, and we know that SMS two-factor authentication (2FA) has been deprecated time […] Read more -
Wrapping up 2020: A year where technology and internet security prevailed Never has the world been more dependent on the internet, and never has it been more attacked than in 2020. In fact, it proved to be a year where trust in many of our systems was challenged. Yet I remain an eternal optimist and believe that we can transform the hard lessons learned in 2020 […] Read more -
4 things ‘Among Us’ can teach professionals about authentication You’re making good progress on this task. One more data upload and then you’re out of here. But right before you can complete the upload, a klaxon blares. There’s been an attack! Time to head to the meeting room for the usual finger-pointing and scapegoating before the team decides who to jettison from the ship. […] Read more -
Lessons from the SolarWinds incident Last week, a large and expertly run espionage operation was made public — one that began no later than October 2019, and which had been actively exploiting victims since at least early 2020. This incident is particularly interesting for several reasons: for the breadth of sensitive global government and industry targets, for misuse of a […] Read more -
What is FIPS 140-2? Learn More Developer Resources Read more -
Two-factor authentication (2FA) The problem with passwords Two-factor authentication has become the standard Most service providers such as Google, Facebook and Apple already support 2FA and consider it an integral part of the authentication process. Types of two-factor authentication Read more -
4 reasons to consider a security-first approach to product development The internet is a powerful invention. It was originally built for collaboration, but it’s far surpassed the capabilities anyone could have expected, and has become a core function of society. As developers, we contribute to these incredible advancements every day, but it’s also our job to help protect and preserve the future of the internet. […] Read more