Cloud Security

Not a Flip of the Switch: How IT Managers Implement Zero Trust Models

Over the last few years, zero trust, and more specifically zero trust network access (ZTNA) has rapidly gained popularity. In fact, according to a recent study published by ESG, the vast majority of survey respondents reported using ZTNA either extensively (46%) or for certain use cases (40%) in support of zero trust at their organizations. […]
June 18, 2024
Read More
VPNs

May/June ‘24 Cybersecurity News Roundup: RAT Malware & Vulnerabilities Target Network Security 

Summer isn’t the only thing that’s heating up. So far in 2024, there have been at least 20 major cyber attacks, according to Tech Radar, with at least six of those happening in May alone.  From late April through early June, threat actors have exploited vulnerabilities in VPN products as well as server software and […]
June 18, 2024
Read More
Remote Access

Watch on Demand: Strengthening Remote Access in Healthcare with Zero Trust 

Recently, OpenVPN hosted a webinar for those in the healthcare industry to learn more about how zero trust can keep their patient data safe. If you missed the webinar, you can still catch the replay here. Network Security Challenges in Healthcare Healthcare organizations, especially those with remote employees or providers who travel between multiple sites, […]
June 12, 2024
Read More
Announcements

Addressing the Hyperbole: OpenVPN Zero-Day Vulnerabilities

Recently, certain outlets incorrectly reported four zero-day vulnerabilities in OpenVPN2 that allow an attack called OVPNX. These reportedly included CVE-2024-27903, CVE-2024-27459, and CVE-2024-24974.  The news was alarming to many, as the OpenVPN2 protocol is used not only in OpenVPN’s commercial products, but in several other VPN providers’ products. However, the report contained several inaccuracies, and […]
May 6, 2024
Read More
VPNs

April ‘24 Cybersecurity News Roundup: Brute Force Attacks & Vulnerabilities on VPNs & SSH

The second quarter of 2024 is proving busy for bad actors, specifically for those targeting network security providers like VPNs and Secure Shell (SSH). From mid-January to March 2024, CISA published several advisories regarding VPN vendors, releasing an emergency directive in early February after 1700 organizations fell victim to a campaign by an unknown Chinese […]
April 30, 2024
Read More