English | 简体中文 | 繁體中文 | 한국어 | 日本語
Thursday, 9 October 2014, 11:00 HKT/SGT
Share:
    

Source: Tenable Network Security
Tenable Network Security Customers Gain Fast Advantage over Shellshock
New plugins, wizard and dashboard for Tenable's popular Nessus and Security Center products help businesses stay ahead of emerging threat

SINGAPORE, Oct 9, 2014 - (ACN Newswire) - On Sept. 24, the world learned about Shellshock, a major security vulnerability in the ubiquitous Bash Unix shell. Less than 24 hours after the news broke, Tenable Network Security(R), Inc., the leader in continuous network monitoring, announced the release of a robust set of detection plugins and a new Shellshock policy wizard for its Nessus(R) vulnerability scanner, the global standard in detecting and assessing network data. These upgrades were followed closely by a special Shellshock dashboard for SecurityCenter Continuous View(TM), which allows for the most comprehensive and integrated view of network health.

"Protecting your business from something like Shellshock means staying ahead of the people who mean you harm," said Ron Gula, CEO at Tenable. "From the first news of the vulnerability, Tenable was working hard to ensure that our customers had up-to-date and actionable information about Shellshock in their networks."

Shellshock comes only months after the discovery of Heartbleed, a massive vulnerability in the Internet's cryptography protocol, Open SSL. While the long-term impact of Shellshock remains undetermined, Gula believes it surpasses Heartbleed in severity due in part to detection difficulty.

"Heartbleed was relatively easy to detect," said Gula. "Shellshock, on the other hand, is harder to detect because you have to check every possible attack vector, which means having the proper configuration and auditing every single one of your network assets."

"Widespread vulnerabilities such as Heartbleed and Shellshock have a tendency to reappear in your environment," said Paul Asadoorian, product marketing manager at Tenable. "Determining where and how your business is vulnerable to Shellshock requires verifying that the patch was properly installed on the system, which is something Nessus and SecurityCenter CV do quite well."

The discovery of security holes in two of the world's most widely adopted open source programs highlights what may be yet to come.

"We are in a situation where many of these decades-old open source programs have become industry standards and provide the underpinning for the Internet as we know it. We must do more as an industry to audit and secure these key elements of our digital infrastructure," said Gula.

To ensure that their systems are safe, existing Tenable customers should download the Nessus Shellshock plugins by visiting the Nessus Newest Plugins page. SecurityCenter users should also take advantage of the Shellshock dashboard to identify affected subnets, key indicators of compromise, and vulnerable systems by operating system and type. Those who want to learn more about how Tenable's Nessus Policy Wizard identifies Shellshock vulnerability can visit the Nessus Discussions forum.

Tenable's Sept 25 release on Shellshock: www.tenable.com/blog/tenable-issues-shellshock-detection-plugins-updated.

About Tenable Network Security

Tenable Network Security provides continuous network monitoring to identify vulnerabilities, reduce risk and ensure compliance. Our family of products includes SecurityCenter Continuous View(TM), which provides the most comprehensive and integrated view of network health, and Nessus(R), the global standard in detecting and assessing network data. Tenable is relied upon by more than 24,000 organizations, including the entire U.S. Department of Defense and many of the world's largest companies and governments. For more information, please visit www.tenable.com.

Contact Information:

Christine Tee
Tenable Network Security
Tel: +65 9679 1481
Email: ctee@tenable.com


Topic: New Security Issue
Source: Tenable Network Security

Sectors: Cloud & Enterprise
https://www.acnnewswire.com
From the Asia Corporate News Network


Copyright © 2024 ACN Newswire. All rights reserved. A division of Asia Corporate News Network.

 

Tenable Network Security Related News
Sept 10, 2014 14:00 HKT/SGT
Tenable's Technology Risk Management Dashboard Eases Compliance with Hong Kong's Financial Services Regulations
July 18, 2014 11:30 HKT/SGT
Tenable's TRM Dashboard Eases Compliance with Singapore's Complex Financial Services Regulations
More news >>
Copyright © 2024 ACN Newswire - Asia Corporate News Network
Home | About us | Services | Partners | Events | Login | Contact us | Cookies Policy | Privacy Policy | Disclaimer | Terms of Use | RSS
US: +1 214 890 4418 | China: +86 181 2376 3721 | Hong Kong: +852 8192 4922 | Singapore: +65 6549 7068 | Tokyo: +81 3 6859 8575