Resources
Cybersecurity white papers, data sheets, webinars, videos and more
Resource Library
Press
SecurityScorecard Appoints Former U.S. National Intelligence Deputy Director and Cybersecurity Expert Susan M. Gordon to Board of Directors
SecurityScorecard appoints former U.S. National Intelligence Deputy Director and cybersecurity expert Susan M. Gordon to its Board of Directors.
Press
SecurityScorecard Enables Organizations to View Risks and Measure the ROI of Security Investments in the Midst of Turbulent Economic Times
SecurityScorecard unveils resources to aid organizations in demonstrating the ROI of security investments amid economic uncertainty.
Data Sheet
SecurityScorecard and Snowflake
Combine, enrich, and contextualize SecurityScorecard vendor security data in Snowflake for an integrated view of third-party risk
Third-Party Risk Management
Research
A Detailed Analysis Of The Quantum Ransomware
Learn more in this resource.
Attack Surface Management
Cyber Insurance
Cyber Threat Intelligence
Research
A Detailed Analysis Of The Quantum Ransomware
Learn more in this resource.
Attack Surface Management
Cyber Insurance
Cyber Threat Intelligence
Webinars
The Fast & Frivolous: The Race for Vulnerability Remediation
Learn more in this resource.
Attack Surface Management
Case Studies
SecurityScorecard Helps Cyber Insurance Provider Make Smarter Risk Assessments During the Underwriting Process
The provider’s global corporate and commercial group uses SecurityScorecard to evaluate the cyber risk of applicants in order to make a green light/red light decision about accepting them as customers.
Cyber Insurance
Case Studies
SecurityScorecard Helps Cyber Insurance Provider Make Smarter Risk Assessments During the Underwriting Process
The provider’s global corporate and commercial group uses SecurityScorecard to evaluate the cyber risk of applicants in order to make a green light/red light decision about accepting them as customers.
Cyber Insurance
Press
NTT DATA UK&I Teams with SecurityScorecard to Transform Cyber Risk Monitoring Across the UK and Ireland
NTT DATA UK&I and SecurityScorecard announce a partnership to enhance cyber risk monitoring and security management across the UK and Ireland.
Infographic
Board Top10 Qs
Learn more in this resource.
Ebook
5 Ways To Secure Your Organization In Turbulent Times
Learn more in this resource.
Case Studies
SecurityScorecard Helps Security Technology Consultant Take Control of Its Own Cyber Risk
NVC uses SecurityScorecard to track its risks and ensure they are appropriately remediated, while also using Badges to give customers more peace of mind.
Blog
TTPs Associated With a New Version of the BlackCat Ransomware
In this post, we describe a real engagement that we recently handled by giving details about the tools, techniques, and procedures (TTPs) used by this threat actor.
Cyber Threat Intelligence
STRIKE Team
Blog
Analysis of APT35 infrastructure reveals interest in Egyptian Shipping Companies
Executive Summary SecurityScorecard has identified domains resolving to Iran-linked Advanced Persistent Threat (APT) infrastructure, likely to be used to support phishing campaigns against Egypt-based shipping and marine services companies. In at least three instances, Iran-linked APT actors may have gained unauthorized access to the DNS configuration of legitimate domains to create rogue subdomains. CNAME records
STRIKE Team
Webinars
Managing Cyber Complexities in Supply Chain Risk Management
Learn more in this resource.
Security Ratings
Supply Chain Cyber Risk
Research
A Deep Dive Into Black Basta Ransomware
Executive Summary of Black Basta Ransomware Black Basta ransomware is a recent threat that compiled its first malware samples in February 2022. The ransomware deletes all Volume Shadow Copies, creates a new JPG image set as the Desktop Wallpaper and an ICO file representing the encrypted files. Unlike other ransomware families, the malware doesn’t skip
STRIKE Team
Case Studies
Software-as-a-Service Company, Providing Cloud-based Human Resource Solutions, highlights multiple benefits from use of SecurityScorecard
The company now has a more direct way to measure its own security maturity against its vendors and partners—and executives have a window into security risk in a context they can understand. The company can better gauge and track real world security risk with all the partners it depends on to perform its business optimally.
Case Studies
SecurityScorecard Helps Major Airline Protect Passengers and Planes from Cyber Threats
The major airline uses SecurityScorecard to discover and track its vulnerabilities so it can make informed decisions about how to improve security.\r\n\r\nThanks to SecurityScorecard, this major airline has unmatched insight into its attack surface that it uses to prioritize and remediate any vulnerabilities that can impact the customer experience or flight operations.
Attack Surface Management
Cyber Insurance
Cyber Threat Intelligence
Case Studies
SecurityScorecard Helps Major Airline Protect Passengers and Planes from Cyber Threats
The major airline uses SecurityScorecard to discover and track its vulnerabilities so it can make informed decisions about how to improve security.\r\n\r\nThanks to SecurityScorecard, this major airline has unmatched insight into its attack surface that it uses to prioritize and remediate any vulnerabilities that can impact the customer experience or flight operations.
Attack Surface Management
Cyber Insurance
Cyber Threat Intelligence
Case Studies
SecurityScorecard Helps Regional Bank Protect its IT System from Vendor Risk
The grades issued by SecurityScorecard give the bank a strong idea of the strengths and weaknesses of new, existing and returning vendors. If the cybersecurity team finds weaknesses, they can then inform the vendor about the issues. The vendor then can correct the issues so the systems can connect safely.
Case Studies
How Exclaimer Made SecurityScorecard a Signature Provider
Exclaimer has created a portfolio of 50 related companies (vendors, competitors, potential acquisitions, etc.) that it tracks to assess the quality of its cybersecurity platforms. Although the company has not yet needed to drop a vendor due to poor cybersecurity posture, it has the data necessary to do so, if required.