March 11, 2024, 6:57 a.m. | /u/GreenKittenXi

cybersecurity www.reddit.com

I am curious if CISA recently performed an audit or vulnerability scan of the systems that were reported to have been compromised?

Vulnerability scanning tools by vendors such as Qualys, Tenable, and R7 (just to name a few) are prone to false negatives, false positives, detection failures, and even vulnerabilities of their own which greatly increases risk.

In addition, vulnerability management platforms that rely on version numbers in web apps or APIs are in many cases, ineffective, when something with …

audit cisa compromised cybersecurity detection failures false negatives false positives hack ivanti name qualys scan scanning software systems tenable tools vendors vulnerabilities vulnerability vulnerability scan vulnerability scanning vulnerability scanning tools

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Security Compliance Strategist

@ Grab | Petaling Jaya, Malaysia

Cloud Security Architect, Lead

@ Booz Allen Hamilton | USA, VA, McLean (1500 Tysons McLean Dr)