An NTP amplification attack is a reflection-based volumetric distributed denial-of-service (DDoS) attack in which an attacker exploits a Network Time Protocol (NTP) server functionality to overwhelm a targeted network or server with an amplified amount of UDP traffic, rendering the target and its surrounding infrastructure inaccessible to regular traffic. An...
Blog
NSFOCUS Sets a New Benchmark as the World’s First to Achieve Dual-Domain CMMI V3.0 Level 5 Certification
SANTA CLARA, Calif., June 4, 2024 – NSFOCUS, a global leader in cybersecurity solutions, proudly announces a groundbreaking achievement: becoming the world’s first company to receive CMMI V3.0 Level 5 certification in both Development (DEV) and Security (SEC) domains. Following the CMMI Institute's recent update to version 3.0 on April...
Contextual Intelligence is the Key
With the increasing complexity and frequency of cybersecurity threats, organizations face many network threats. The importance of threat intelligence has become increasingly prominent. During this year's RSA Conference, Sierra Stanczyk, the Senior Manager of Global Threat intelligence at PwC, and Allison Wikoff, the Director of Global Threat Intelligence for the...
O que é uma API? Entenda a importância e suas funções
As APIs têm sido cada vez mais utilizadas no mundo da tecnologia, mas nem todo mundo sabe exatamente o que elas são e como funcionam. Uma API é um conjunto de regras e protocolos que permite a comunicação entre diferentes softwares, tornando a integração e a troca dessas informações mais...
Confluence Remote Code Execution Vulnerability (CVE-2024-21683) Notification
Overview Recently, NSFOCUS CERT detected that Atlassian issued a security announcement and fixed the remote code execution vulnerability in Confluence Data Center and Server (CVE-2024-21683), with a CVSS score of 8.3. Authenticated attackers can realize remote code execution by constructing malicious requests, which will have a great impact on the...
API Security Events Classification
The risk levels of API security events for NSFOCUS WAF version 6080 are categorized as follows: :Low Risk Events :Medium Risk Events :High Risk Events API Security Event Types: Event TypeDescriptionAbuseAttacks covered include JavaScript-related, account takeover, and CSRF.Sensitive Data ExposureAttacks covered include sensitive information leakage, anti-crawling, information leakage prevention, and...





