Jan. 6, 2023, 8:03 a.m. | /u/shinobi500

cybersecurity www.reddit.com

Imagine a Solarwinds type supply chain compromise but with a Vulnerability scanning platform instead, like if a malicious update is somehow pushed out to something like Nessus or OpenVAS.

Vuln scanners are by design supposed to reach every segment of your network, even the critical ones. Actually, especially the critical ones.

Even better, most firewalls, IDS, and IPS systems have exceptions for allowing the traffic and silencing any alarms. And even if they did trigger any alerts analysts would say …

case compromise cybersecurity design fun malicious nessus network openvas platform playbook scanners scanning scenario security segment share solarwinds supply supply chain supply chain compromise update vuln vulnerability vulnerability scanning

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Information Security Engineers

@ D. E. Shaw Research | New York City

Staff DFIR Investigator

@ SentinelOne | United States - Remote

Senior Consultant.e (H/F) - Product & Industrial Cybersecurity

@ Wavestone | Puteaux, France

Information Security Analyst

@ StarCompliance | York, United Kingdom, Hybrid

Senior Cyber Security Analyst (IAM)

@ New York Power Authority | White Plains, US