September 23, 2023

ALO ALTO, Calif., Aug. 16, 2023 /PRNewswire/ — CyCognito, an Exterior Assault Floor Administration platform, immediately launched its semi-annual “State of External Exposure Management,” revealing a staggering variety of susceptible public cloud, cell and internet purposes exposing delicate information, together with unsecured APIs and private identifiable data (PII). Developed by CyCognito’s analysis division, the report is predicated on the evaluation of three.5 million property throughout its enterprise buyer base, together with quite a lot of Fortune 500 corporations.

“The most recent MOVEit exploit is a cautionary story for all CISOs that attackers stay many steps forward of internet utility and cloud safety,” mentioned Rob Gurzeev, CEO and co-founder of CyCognito. “The quantity of uncovered PII stemming from this disastrous breach helps our findings and underscores the crucial want for full-scope visibility of all property throughout a corporation’s assault floor. Companies can not afford to neglect their digital shadow and the various unknown and unmanaged dangers inside their programs.”

Click on here to obtain the total report.

Key findings embody:

  • 74 % of property with PII are susceptible to no less than one identified main exploit, and one in 10 have no less than one simply exploitable situation.
  • 70 % of internet purposes have extreme safety gaps, like missing WAF safety or an encrypted connection like HTTPS, whereas 25 % of all internet purposes (internet apps) lacked each.
  • The standard world enterprise has over 12 thousand internet apps, which embody APIs, SaaS purposes, servers, and databases, amongst others. At the least 30 % of those internet apps—over 3,000 property—have no less than one exploitable or excessive threat vulnerability. Half of those doubtlessly susceptible internet apps are hosted within the cloud. 
  • 98 % of internet apps are doubtlessly GDPR non-compliant attributable to lack of alternative for customers to choose out of cookies.  

Gurzeev continued, “The scale of an organization’s assault floor fluctuates up and down by as a lot as 10 % a month, making it a shifting goal rife with safety gaps able to be exploited. Our newest analysis is just not solely a wake-up name that no enterprise is resistant to threat; it is also clear proof that unknown and undiscovered property current a serious menace to a corporation.”


CyCognito solves some of the elementary enterprise issues in cybersecurity: seeing how attackers view your group, the place they’re almost definitely to interrupt in, what programs and property are in danger and how one can remove the publicity. Based by nationwide intelligence company veterans, CyCognito has a deep understanding of how attackers exploit blind spots and a path of least resistance. Based mostly in Palo Alto, CyCognito serves quite a lot of massive enterprises and Fortune 500 organizations, together with Colgate-Palmolive, Tesco and plenty of others.

Sustain with the newest cybersecurity threats, newly-discovered vulnerabilities, information breach data, and rising traits. Delivered each day or weekly proper to your e mail inbox.