Blog
3AM Ransomware Attackers Pose as IT Support to Compromise Networks
By Graham Cluley on Fri, 05/23/2025
Cybercriminals are getting smarter. Not by developing new types of malware or exploiting zero-day vulnerabilities, but by simply pretending to be helpful IT support desk workers.Attackers affiliated with the 3AM ransomware group have combined a variety of different techniques to trick targeted employees into helping them break into networks.It works like this.First, a company employee finds their...
Blog
The Rising Tide: Understanding the Surge in Cyber Attacks in India
By Kirsten Doyle on Tue, 06/03/2025
Over the past year, India witnessed a steep rise in cyberattacks. While news focused on big-ticket data breaches and mainstream ransomware attacks, it ignored how the overall threat landscape has become more sophisticated and ingrained.India detected over 369 million malware events between October 2023 and September 2024, at a rate of 702 potential threats per minute on average. This is reflective...
Blog
The Evolution of Anomaly Detection and the Importance of Configuration Monitoring in Cybersecurity
By Anirudh Chand on Wed, 01/10/2024
Back in 1992, when I was more concerned about my acne breakouts and being selected for the Junior cricket team, a freshman at Purdue University was studying the impact of the 1988 Morris Worm event and how it brought about unwarranted changes on Unix systems as it propagated across the network, resulting in the first Denial of Service (DoS) attack. He...
Blog
The Unique Cybersecurity Risks in the Manufacturing Sector
By Josh Breaker-Rolfe on Tue, 05/27/2025
For the fourth year running, in 2025, the IBM X-Force Threat Intelligence Index crowned the manufacturing sector as the number one targeted industry for cybercrime, representing 26% of incidents. The problem is so bad that manufacturing has even managed to defy malware's decline, with attackers exploiting the industry's legacy technology to deploy ransomware at a massive scale. But why is the...
Datasheet
NERC CIP Best Practices: The Tripwire Approach
Industrial operators subject to the North American Electric Reliability Corporation Critical Infrastructure Protection (NERC CIP) standard know that achieving compliance is no minor feat, and serious strategic consideration is required to ensure efficient resource use in the compliance process. By meeting NERC CIP compliance, these companies take important steps towards securing their IT/OT...
Demo
Industrial Cybersecurity With Fortra’s Tripwire
Bridging the Gap From IT to OTThe digital infrastructure of industrial control systems is remarkably different from traditional IT environments, making it challenging for organizations to apply effective cybersecurity controls across both their IT and OT systems.With more than 25 years of leadership in the cybersecurity industry, Fortra’s Tripwire is a trusted partner to industrial organizations...
Blog
Securing Our Water: Understanding the Water Cybersecurity Enhancement Act of 2025
By Kirsten Doyle on Wed, 06/25/2025
Cyberattacks on public infrastructure are no longer hypothetical. From ransomware disabling city services to foreign actors probing utility networks, the risks are real and rising. Among the most vulnerable targets are our public water systems. Often underfunded, technologically fragmented, and encumbered by legacy systems, water utilities are easy pickings for determined attackers.In recent years...
Datasheet
Why Energy Utilities Can Count on Fortra’s Tripwire
As an energy industry professional, you understand the consequences of subpar protection and the need for reliable, iron-clad security controls. Evaluating new cybersecurity software to protect your energy environment shouldn’t involve guesswork, especially when you are trying to match capabilities to your particular needs. This datasheet provides a quick view of Tripwire’s energy solution. See...
Blog
Clean Up in the Cybersecurity Aisle: Cybercriminals and Groceries
By Guest Authors on Mon, 06/23/2025
Picture this: You’re at the supermarket, looking for your favorite brand of cereal. But the shelves are empty, staff are frazzled, and the checkout terminals are flickering ominously. That’s not just a supply chain hiccup, it’s a direct result of the latest wave of cyberattacks targeting the UK’s biggest grocery chains.In 2025, major retailers like Co-op, Marks & Spencer, and Harrods found...
Blog
Advanced Tips for Leveraging the NIST Cybersecurity Framework for Compliance
By PJ Bradley on Mon, 10/14/2024
Depending on the industry, location, and business operations of your organization, you may have any number of cybersecurity regulations to comply with. Keeping track of each law that affects your organization and the various requirements associated with them can be overwhelming, but the consequences of noncompliance are often far worse.While diligent adherence to regulatory requirements is not a...
Blog
Glimmer Of Good News On The Ransomware Front As Encryption Rates Plummet
By Graham Cluley on Thu, 10/17/2024
No-one would be bold enough to say that the ransomware problem is receding, but a newly-published report by Microsoft does deliver a slither of encouraging news amongst the gloom. And boy do we need some good news - amid reports that 389 US-based healthcare institutions were hit by ransomware last year - more than one every single day. The 114-page Microsoft Digital Defense Report (MMDR) looks at...
Blog
What’s New in Tripwire Enterprise 9.3?
By People at Tripwire on Thu, 06/12/2025
Protecting your organization from cyber threats and meeting compliance requirements is simpler than ever with the new Tripwire Enterprise 9.3 release, which includes the following enhancements: IPv6 Support IPv6-Only Support: Now fully compatible with environments that operate exclusively on IPv6. This is helpful to: U.S. Federal agencies that must adhere to OMB Memorandum M-21-07 Organizations...
Blog
Why Financial Websites Should Treat Web Application Firewalls Like Insurance
By Guest Authors on Wed, 07/09/2025
Most financial sites don’t think twice about WAFs until a bot army drains their API or a misstep leaks trading data. That’s when panic sets in and puts the target service in the eye of a perfect storm. That’s why WAFs aren’t optional anymore; they’re your digital insurance policy.This piece will break down real-world threats like credential stuffing and parameter abuse that cripple fintech APIs,...
Datasheet
Tripwire Enterprise App for Splunk Enterprise
Quickly and easily visualize the overall health of your IT environment with the right data and the business context around that data. Tripwire Enterprise offers the rich data, controls and policies, and Splunk provides the means to visualize the data in easy-to-implement dashboards. This will reduce the cycle-time of identifying vulnerabilities or security violations and reduce the mean-time-to-repair. Pick, choose and reuse dashboards and panels Easily view system state and vulnerability data from Tripwire Fast reporting and drill-down over large amounts of data Quickly detect, prioritize and investigate risk Launch Tripwire Enterprise in context on specific changes and policy tests.
Blog
Why Agentic Security Doesn’t Mean Letting Go of Control
By Kirsten Doyle on Mon, 07/21/2025
Autonomous agents are changing the way we think about security. Not in the distant future, right now. These systems (intelligent, self-directed, and capable of making decisions) are starting to play an active role in the SOC. They’re not only collecting data; they’re analyzing it, correlating alerts, prioritizing risks, and even initiating response actions. This is Agentic AI, and it makes people...
Datasheet
Customizing Your Compliance Program with Tripwire Enterprise
Flexible, Automated, Multi-Policy ComplianceMost large-scale entities need to prove compliance with multiple regulatory standards. Whether it be finance companies, retailers, manufacturers, or hospitality firms; meeting compliance mandates can be a major drain on time and resources, if you let it. On top of that, it’s not uncommon to have an internally-created compliance standard that demands...
Datasheet
Tripwire Enterprise Integration Framework
Organizations have continually found new ways to unlock the value of Tripwire Enterprise, adding additional leverage to a valuable strategic business solution. And now you can extend Tripwire Enterprise to achieve better, faster and more cost-effective cyberthreat protection and compliance.
cta_page
Tripwire Cybersecurity Solutions
Protect the security and integrity of your infrastructure with Tripwire. Tripwire protects the world’s leading organizations from the most damaging cyberattacks. Defend your organization across IT to OT with our industry-leading cybersecurity and compliance solutions.
window._wq = window._wq || [];
_wq.push({
id: "t054beewaw",
options: {
preload: "auto"
}
});
...
Blog
Continuous PCI DSS Compliance with File Integrity Monitoring
By Guest Authors on Tue, 10/28/2025
PCI DSS compliance is often seen as a one-off task, that is, you do the audit, implement controls, and then move on.But then there comes the problem - systems aren’t static, meaning that files, scripts, and configurations change constantly, and even small untracked changes can create gaps that lead to non-compliance or security issues.This is where File Integrity Monitoring (FIM) comes in. It...