April 2024 | Cloud-Based Platform AIONCLOUD

[2024.04 Vulnerability Report] OAST Application Security Testing Techniques

1. What is AST? Application security testing (AST) is an important component of IT security that focuses on identifying and mitigating vulnerabilities and weaknesses within software applications. AST encompasses a variety of techniques and tools designed to assess the security posture of applications, including web and mobile applications. The primary goal of an AST is Read more about [2024.04 Vulnerability Report] OAST Application Security Testing Techniques[…]

SSE Platform Essential Security Elements – FWaaS

  Hello, We are MONITORAPP. Today, as in the last time, we will continue to learn more about AIONCLOUD’s Security Service Edge (SSE) platform, Secure Internet Access (SIA).   SIA is a Zero-Trust-based security solution that includes ‘SWG’, ‘FWaaS’, ‘CASB’, ‘NG DPI’, ‘ATP’ and ‘RBI’ Following the introduction of SWG last time, today I will Read more about SSE Platform Essential Security Elements – FWaaS[…]

Spring 2024 Workshop (Seoul Circumference Trails Tracking)

    Hello, We’re MONITORAPP.  It is hot and rainy these days like early summer.     MONITORAPP held a workshop for all members on April 19th (Friday).  We’d like to share the news of the workshop, which was well attended by all members. (By the way, MONITORAPP holds workshops once in the first and Read more about Spring 2024 Workshop (Seoul Circumference Trails Tracking)[…]

Zero Trust SRAs complete with server connectors

  We have explained several times that to use AIONCLOUD’s SSE platform, you need to install an agent called AIConnector on your device.               After installing the agent and authenticating, all network traffic is encrypted and tunneled through the SSE platform to access not only regular websites but also Read more about Zero Trust SRAs complete with server connectors[…]

[2024.04 Vulnerability Report] JetBrains TeamCity Authentication Bypass Vulnerability

1. Overview TeamCity is JetBrains’ build management and continuous integration server, and this article summarizes our analysis of the authentication bypass vulnerabilities, CVE-2024-27198 and CVE-2024-27199, that were recently discovered in the service. Source : https://www.helpnetsecurity.com/2024/03/21/exploiting-cve-2024-27198/ 2. Attack Type In March 2024, JetBrains released patches for CVE-2024-27198 and CVE-2024-27199, which were discovered in TeamCity, and Rapid7 Read more about [2024.04 Vulnerability Report] JetBrains TeamCity Authentication Bypass Vulnerability[…]

The reality of cybersecurity threats and how to respond

    Cybersecurity threats are becoming one of the important issues in modern society. As technology advances and digitization progresses, various security threats related to this are also increasing. As a result, responding to cybersecurity threats has become a critical challenge.   Cybersecurity Threat Outlook   Advances in modern technologies such as artificial intelligence, big Read more about The reality of cybersecurity threats and how to respond[…]

Scroll Up