Category Archives: General

CVE-2019-0708 Critical Security Advice from edgescan

May 17, 2019 / by

Windows CVE-2019-0708? This blog explains CVE-2019-0708, how to identify if you are vulnerable and highlights how this type of threat was identified in the edgescan 2019 Vulnerability Stats Report.   What is it? A remote code execution vulnerability exists in Remote Desktop Services – formerly known as Terminal Services – when an unauthenticated attacker connects […]

Read more

edgescan is CREST Approved for Penetration Testing

May 8, 2019 / by

BCC Risk Advisory/edgescan is CREST Accredited for Penetration Testing BCC Risk Advisory/edgescan recently applied for accreditation to CREST for our Penetration Testing services. CREST is a not-for-profit accreditation and certification body that represents and supports the technical information security industry. CREST provides internationally recognised accreditation for organisations providing technical security services and professional level certifications […]

Read more

Popular WordPress WAF bypass Zeroday discovered by edgescan

April 9, 2019 / by

WordFence WAF XSS Bypass – CVE-2019-9669 by Anthony Yalcin A Web Application Firewall (WAF) is an application firewall that filters, monitors, and blocks malicious HTTP traffic. By inspecting HTTP traffic, it can prevent attacks related to web application security flaws, such as SQL injection, cross-site scripting (XSS), and security misconfigurations. WAFs may come in the […]

Read more

Don’t forget the fundamentals

April 3, 2019 / by

Firefighting: Looking back at 2018 the evidence supports that many organisations struggle with the fundamentals of maintaining a reasonably secure posture. We’re still seeing large amounts of vulnerabilities which have been common place for over 15 years. Items such as Cross-site scripting, SQL injection and command Injection, all are still relatively common. The question is […]

Read more

edgescan Metrics

February 12, 2019 / by

  During February we are releasing a new Vulnerability Metrics tab on the edgescan dashboard.   Currently Full Reporting & API access for metrics is available, so that you can report on any asset or vulnerability at any time, open or closed. We also offer the ability to report on assets that are tagged with […]

Read more

edgescan at RSA

February 12, 2019 / by

We’re at RSA San Francisco between March 4th and 8th demonstrating our SaaS based Vulnerability intelligence platform. Our CEO, Eoin Keary, COO, Rahim Jina and some of our senior team shall be in attendance. We shall be demonstrating how edgescan works, discussing our 2019 Vulnerability Stats Report and showing you “why edgescan”! There is a […]

Read more

edgescan achieve ISO 27001:2013 Certification

September 5, 2018 / by

We’re very happy to announce that edgescan is now a certified ISO 27001:2013 Vulnerability Management SaaS.  – One of very few Vulnerability Management SaaS organizations globally. Certificate can be found here What does this mean to you? Well, simply we can prove we deliver our Vulnerability management SaaS in accordance with industry best practice.  In effect we operate […]

Read more

False Positives, False Negatives and Tooling

July 12, 2018 / by

Beware of False prophets: Something we have encountered with our clients when using MSSP’s (Managed Security Service Providers) is in relation to tools and validation. Tools are necessary to discover security weaknesses across the fullstack which is nothing new. Fullstack visibility of security controls is key when operating a robust vulnerability management operation but there […]

Read more

edgescan continues to expand in revenue, staff and global clients

July 6, 2018 / by

Dublin 06 July 2018. edgescan announced today that their revenue has increased by 60% in the first six months of 2018. “The growth is based on global outreach and delivering something different to solve an age old problem” says COO Rahim Jina. The edgescan staff count has doubled since 2016, now at over 40 staff […]

Read more

edgescan sponsors the dublin game summit 2018

July 6, 2018 / by

edgescan are proud to be prime sponsors of the dublin game summit to be held on the 19th July in the Alex Hotel. Eoin Keary our CEO/Founder and previously a Global board member of the OWASP Foundation shall be discussing cyber security and the games industry. Some of the edgescan team shall be at the […]

Read more