Why new compliance rules are changing the game for CISOs [Q&A]


The job of the CISO is becoming increasingly complex, with new rules around security and compliance, disclosure requirements following incidents, and more.
We spoke to John Morello, CTO of Gutsy, a company which was the first to apply process mining to security, to find out how things are changing and how CISOs should respond.
HP could take up to three months to patch a critical vulnerability in HP Enterprise LaserJet and HP LaserJet Managed printers


HP has issued a security warning about a vulnerability which affects numerous HP Enterprise LaserJet and HP LaserJet Managed printers. The flaw is tracked as CVE-2023-1707 is described as "critical" having been assigned a CVSS rating of 9.1.
Despite the severity of the bug -- which HP says could lead to "information disclosure when IPsec is enabled with FutureSmart version 5.6" -- it could take up to 90 days to issue a fix. However, the company has provided a temporary firmware mitigation.