<p>Infostealers do exactly as their name implies: The malware secretly steals sensitive information, such as passwords and financial information, from user endpoints and then transfers that information to a location selected by the attacker.</p> <p>Infostealers have become far more prevalent…
Category: Search Security Resources and Information from TechTarget
Most security pros say their culture is ‘just average’
<p>Not even one in three cybersecurity professionals views their organization’s cybersecurity culture as better than average, according to a new survey.</p> <p>That leaves plenty of room for improvement, concluded “The Life and Times of Cybersecurity Professionals.” Now in its eighth…
Zscaler lays out its vision to secure the AI era at Zenith Live
<p>At its annual customer event, Zenith Live, Zscaler showcased a number of innovations spanning its already broad portfolio. The breadth of announcements supports Zscaler’s goal of expanding its conversations from the network and digital transformation focus that has driven its…
Continuous innovation keeps tape relevant
<p>Skyrocketing data volumes, intensifying ransomware threats and long-term retention costs are forcing enterprises to re-evaluate where cold data belongs.</p> <p>HDDs and cloud systems can store massive amounts of data, but they also entail costs, environmental trade-offs, and security trade-offs. For…
The OpenClaw security risks every CISO needs to know
<p>Viral AI agent platform OpenClaw is spreading through enterprises like wildfire — and bringing with it major cyber-risk.</p> <p><a href=”https://www.techtarget.com/searchcio/feature/OpenClaw-and-Moltbook-explained-The-latest-AI-agent-craze”>OpenClaw</a>, an open source, self-hosted AI personal assistant, burst onto the scene in late 2025. Created by Austrian developer Peter Steinberger,…
Cloud security metrics and KPIs: A CISO’s guide
<p>Cloud security is no longer just about deploying controls. Instead, it’s about measuring effectiveness, demonstrating risk reduction and <a href=”https://www.techtarget.com/searchsecurity/feature/6-ways-to-spur-cybersecurity-board-engagement”>communicating outcomes</a> clearly to leadership and to the board.</p> <p>To that end, cloud security metrics and KPIs are essential. These tools…
Florida public sector training on SimSpace cyber range: Case study
<p>Experience is the best teacher, but in cybersecurity, it often comes at a cost. Just ask anyone — from a CISO to a Tier 1 analyst — who has lived through a major breach.</p> <p>In Florida, however, thousands of public-sector…
Cyber insurance forces companies to rethink risk management
<p>Cyber insurance is a unique risk transfer product for enterprises. When a company purchases property insurance, the fire that might damage its offices isn’t trying to figure out better ways to burn down the building.</p> <p>Cybersecurity professionals know that digital…
It’s time to update incident response for the AI era
<p>In the age of AI, incident response is becoming a wholly different activity for security teams. Just a few years ago, a cybersecurity incident was almost always an attack or insider threat with a human behind it. At the Gartner…
The prosecution gap: Why cybercrimes go unpunished
<p>Cybercrime activity is rapidly escalating as attackers continue to explore both established and novel methods to defraud victims of their assets. The “FBI Internet Crime Report 2025” logged more than one million cybercrime complaints for the first time in the…
How to build AI security guardrails without blocking innovation
<p>While adoption of AI tools has surged, security has not kept pace.</p> <p>McKinsey’s “State of AI: Global Survey 2025” found that 88% of organizations now use AI in at least one business function. IBM’s “Cost of a Data Breach Report…
What is incident response? A complete guide
<p>Incident response is an organized, strategic approach to detecting and managing cyberattacks in ways that minimize damage, recovery time and total costs.</p> <p><a href=”https://www.techtarget.com/searchsecurity/tip/Incident-management-vs-incident-response-explained”>Incident response is a subset of incident management</a>. <i>Incident management</i> is an umbrella term for an enterprise’s broad handling…
Gartner Security & Risk Management Summit 2026: Adapting for AI
<p>The Gartner Security & Risk Management Summit gathers CISOs, business leaders and decision-makers with Gartner analysts to explore the current and future state of cybersecurity.</p> <p>This year’s Summit is being held June 1-3, 2026, at the Gaylord National Resort and…
AI in cyberdefense: Learning from threat actors’ playbooks
<p>When Sun Tzu said, “To know your enemy, you must become your enemy,” he never could have imagined how his wisdom would be applied to AI 2,500 years later.</p> <p>During his session at the Gartner Cybersecurity and Risk Management Summit…
Top identity and access management risks
<p><a href=”https://www.techtarget.com/searchsecurity/definition/identity-access-management-IAM-system”>Identity and access management</a> has evolved from a supporting IT function into the foundation of enterprise security. In modern organizations, identity governs access not only for employees, but also for contractors, cloud workloads, SaaS platforms, APIs, automation pipelines and,…
CISO role changes as cyber-risk appetites in the C-suite grow
<p>While cybersecurity incidents are inevitable, they’re rarely existential threats, according to Will Candrick, analyst at Gartner, who discussed shifting cyber-risk appetites during a session at the firm’s 2026 Security and Risk Management Summit.</p> <p>”In the long run, the likelihood of…
CISO’s guide to data minimization
<p>Many enterprise cybersecurity conversations still focus primarily on prevention technologies. While these controls remain critically important, CISOs today recognize that one of the most effective ways to lessen breach impact is far simpler in concept: reduce the amount of sensitive…
Researchers build autonomous AI worm that can reason and adapt
<p>University of Toronto researchers said they used open source technology to create an agentic AI worm that reasons and adapts — identifying each targeted device’s unique vulnerabilities and creating tailored attack strategies on the fly.</p> <p>Traditional worms are one-trick ponies…
How to secure data at rest, in use and in motion
<p>Data security is a non-negotiable strategic imperative cloaked with business implications for risk management and competitive advantage.</p> <p>Organizations today face ever-increasing cybersecurity risks — both internal and external. Safeguarding data against financial losses, regulatory penalties and reputational damage is not…
How to find cyber-risk data sources for a FAIR analysis
<p>In today’s enterprise, some degree of cyber-risk exposure is inevitable. CISOs must use limited resources to <a href=”https://www.techtarget.com/searchsecurity/tip/Enterprise-risk-management-should-inform-cyber-risk-strategies”>strategically address the most significant risks</a>, in alignment with their organizations’ <a href=”https://www.techtarget.com/searchsecurity/feature/How-to-define-cyber-risk-appetite-as-a-security-leader”>cyber-risk appetites</a>.</p> <p>The easiest and fastest — but also least reliably…