Generated by All in One SEO v5.0.1.1, this is an llms.txt file, used by LLMs to index the site. # White Hat IT Security Think Like an Adversary, Act Like a White Hat ## Sitemaps - [XML Sitemap](https://whitehat.eu/sitemap.xml): Contains all public & indexable URLs for this website. ## Posts - [Blog](https://whitehat.eu/blog/) - [Artificial intelligence and cybersecurity - threat or opportunity?](https://whitehat.eu/blog/artificial-intelligence-and-cybersecurity-threat-or-opportunity/) - Since ChatGPT has become available to all Internet users, major vendors have been announcing a series of AI-enabled products and services, including in the field of cybersecurity. We are undoubtedly entering a period of widespread use of AI, which will soon have a noticeable impact on the security of cyberspace. Opportunity or threat, many are - [NIS2 blackjack - who will win with Article 21?](https://whitehat.eu/blog/nis2-blackjack-who-will-win-with-article-21/) - The next few months are likely to be dominated by the NIS2 Directive in the cybersecurity industry. Let's find out which article will trigger the most reactions! There are emblematic passages in European cybersecurity regulations that can be found in everything from the press, through sales presentations by major technology companies, to the final exams - [Metabase Under Attack: A Critical SQL Injection Flaw](https://whitehat.eu/blog/metabase-under-attack-a-critical-sql-injection-flaw/) - CVE-2026-72898 is a critical SQL injection flaw in Metabase with a CVSS score of 10.0, allowing unauthenticated attackers to manipulate user records. - [„ZÁROLT_”: elemeztük az Ügyészség nevével visszaélő zsarolóvírust – itt a visszafejtő](https://whitehat.eu/hu/blog/zarolt-ugyeszseg-nevevel-terjedo-zsarolovirus-visszafejto/) - Az Ügyészség nevében érkezik a levél, de ransomware van mögötte. Elemeztük az országot körbejáró legújabb zsarlóvírus támadást és elkészítettük a visszafejtő programot, aminek segítségével bárki fizetés nélkül visszaállíthatja fájljait. Űrlap a visszafejtő program letöltéséhez A Nemzeti Kiberbiztonsági Intézet (NKI) 2026. szeptember 3-án riasztást adott ki egy Magyarországon terjedő ransomware-kampány miatt, amelyben a támadók Magyarország Ügyészségének - [Microsoft Purview Data Security - Adatbiztonság GRC-szemléletben](https://whitehat.eu/hu/blog/microsoft-purview-data-security-adatbiztonsag-grc-szemleletben/) - Hogyan támogatja a Microsoft Purview Data Security a szervezetek biztonságos adatkezelését? Érvényesülnek-e a szabályok a gyakorlatban technikai kontrollokkal? - [Microsoft Purview Data Governance - Az adatvagyon irányíthatósága](https://whitehat.eu/hu/blog/microsoft-purview-data-governance-az-adatvagyon-iranyithatosaga/) - Ismerje meg, hogyan támogatja a Microsoft Purview Data Governance az adatvagyon átláthatóságát, a felelősségi köröket, adatminőséget és GRC-kontrollokat. - [CoSnitch: When Copilot Starts Snitching](https://whitehat.eu/blog/copilot-cosnitch-cve-2026-24301/) - CVE-2026-24301, or CoSnitch, is a CVSS 8.8 Microsoft Copilot flaw that could let attackers exfiltrate sensitive data from connected apps and memory. - [From Auto-Login to Full RCE: Inside the IBM Langflow CVE](https://whitehat.eu/blog/ibm-langflow-cve-2026-9198-unauthenticated-rce/) - AI has been a hotspot for everything recently and that's true for attacks too proven by the recently discovered and also exploited IBM Langflow OSS (versions 1.0.0 through 1.10.0) vulnerability CVE-2026-9198, our #CVEoftheWeek. The issue was addressed in the release of version 1.10.1 on 24th June, which contained many security updates, but known Proof-of-Concepts (PoC) - [Infostealer infection through fake Windows Update Error Fix](https://whitehat.eu/blog/infostealer-infection-through-fake-windows-update-error-fix/) - An infostealer infection effecting through a fake Windows update error fix with a premade script is analysed by our experienced colleagues. - [Bad Build: RCE Hits TeamCity](https://whitehat.eu/blog/bad-build-rce-hits-teamcity-cve/) - CVE-2026-63077 is a critical TeamCity RCE flaw allowing unauthenticated attackers to execute system commands. Update affected on-premises servers now. - [N-able N-central - Take Control Taken Over](https://whitehat.eu/blog/n-able-n-central-take-control-taken-over/) - Learn how CVE-2026-18577 lets attackers bypass authentication, abuse N-central Take Control, and gain admin access through an incomplete patch. - [AI Inventory - naprakész és döntéstámogató AI-nyilvántartás](https://whitehat.eu/hu/blog/ai-inventory-naprakesz-es-dontestamogato-ai-nyilvantartas-grc/) - AI Inventory: hogyan építsünk naprakész és döntéstámogató AI-nyilvántartást? A minőségre törekedjünk, ne a mennyiségre! - [A White Hat IT Security a Microsoft Intelligent Security Association (MISA) tagja lett, és a Microsoft által ajánlott partner a folyamatos kiberbiztonság területén a közép-európai régióban](https://whitehat.eu/blog/white-hat-it-security-has-joined-the-microsoft-intelligent-security-association-misa/) - A White Hat IT Security, amely közép- és nagyvállalati partnereinek szolgáltat klasszikus és folyamatos (menedzselt) kiberbiztonsági szolgáltatásokat, első magyar vállalatként és a régióban is egyik elsőként csatlakozhatott a Microsoft magas presztízsű, biztonsági cégeket tömörítő kezdeményezéséhez, a MISA programhoz. A szenior IT biztonsági szakemberekből és “etikus hekkerekből” álló vállalat saját White Hat MSS folyamatos biztonsági szolgáltatása - [White Hat IT Security has joined the Microsoft Intelligent Security Association (MISA)](https://whitehat.eu/blog/white-hat-it-security-has-joined-the-microsoft-intelligent-security-association-misa/) - White Hat IT Security offers managed security solutions and classic cyber security services for its medium and large enterprise clients and has recently become a member of MISA, the Microsoft ecosystem of independent software vendors and managed security service providers that have integrated their solutions to better defend against a world of increasing threats. This - [The REvil is in the details](https://whitehat.eu/blog/the-revil-is-in-the-details/) - The REvil (also known as Sodinokibi) ransomware operation has taken the spotlight in recent years. The Russian group operates by direct attacks, and also in a ransomware-as-a-service (RaaS) model, through affiliates who provide access to networks, carry out ransomware attacks or negotiate on behalf of REvil. In the RaaS model, affiliates keep about 70% of - [Anatova – A Cool Proof-Of-Concept Ransomware](https://whitehat.eu/blog/anatova-ransomware-experts-believe-it-will-be-a-dangerous-threat/) - The Anatova ransomware first came to light in 2019 January. It was discovered on a private P2P network, and McAfee detected over 300 instances of the malware worldwide at the time. Anatova's objective is to encrypt important files and network shares and demanding a cryptocurrency ransom of 10 DASH for unlocking them, worth about $700 - [Távmunka IT biztonsági kérdőív](https://whitehat.eu/hu/blog/tavmunka-it-biztonsagi-kerdoiv/) - A karanténhelyzet talán egyik legérdekesebb hozadéka az otthoni munkavégzés kiterjesztése. Akik eddig is dolgoztak otthonról, azoknál egyszerűbb lehetett – de még ott sem biztos, hogy az IT felkészült a teljes cég távoli munkavégzésének biztosítására. Vajon megfelelőek a biztonsági intézkedések a kiadott laptopoknál? Tudják a dolgozók, mit tegyenek, ha otthon dolgoznak, hogyan őrizzék meg a céges - [Incident response case study featuring Ryuk and Trickbot (part 2)](https://whitehat.eu/blog/incident-response-case-study-featuring-ryuk-and-trickbot-part-2/) - This is part 2 of our recent incident response study encountering a Trickbot infection. Initial compromise Right after tricking a user into running the malicious Office macro on their machine, thus gaining code execution, the first stage Trickbot executable is downloaded and executed. The first stage payload is responsible for three things: First, Trickbot tries - [Startup Safari - Incident Communication](https://whitehat.eu/blog/startup-safari-incident-communication/) - Startup Safari - Incident Communication In recent years more and more data breaches seem to have reached world-wide publicity. Rightly so: after all, most companies collect and store vast amounts of PII for their services (see all the GDPR scare and hissy fit for proof), thus a compromise usually means the loss, or worse, the - [Incident response case study featuring Ryuk and Trickbot (part 1)](https://whitehat.eu/blog/incident-response-case-study-featuring-ryuk-and-trickbot-part-1/) - Incident - Ryuk We have recently been contacted by a company in the CE region to do incident response for them. Like with many incidents in the past couple of years, the detection was obvious - the whole IT infrastructure shut down within minutes and ransom notes appeared on the screens of servers. In order - [Our course at Óbuda University launches February 2019](https://whitehat.eu/blog/kepzesunk-2019-februarjaban-indul-az-obudai-egyetemen/) - Hands-on and practical, immediately usable knowledge integrated into academic education – our course at Óbuda University launches February 2019. Are you a BSc or MSc student of Computer Engineering or the Cyber Security Expert course at the John von Neumann Faculty of Informatics of Óbuda University? Are you interested in the field of IT security, - [Képzésünk 2019 februárjában indul az Óbudai Egyetemen](https://whitehat.eu/blog/kepzesunk-2019-februarjaban-indul-az-obudai-egyetemen/) - Gyakorlati és azonnal hasznosítható tudás az egyetemi képzésbe integrálva – 2019 februárjára már felvehető a képzésünk az Óbudai Egyetemen Az Óbudai Egyetem Neumann János kara mérnök-informatikus BSc és Msc hallgatója, vagy a kiberbiztonsági szakember és szakmérnök képzés hallgatója vagy? Érdekel az IT biztonsági terület, vagy gondolkodsz rajta, hogy egyszer nagyvállalati hálózatok IT védelmében töltenél be - [WHCD](https://whitehat.eu/hu/blog/whcd/) - [National Cyber Challenge](https://whitehat.eu/blog/national-cyber-challenge/) - The 2019 Cyber 9/12 Student Challenge is a unique, world-wide table top exercise event that – for the 5th consecutive time – will be held in Switzerland in 2019. Its Hungarian “little brother” has been launched in 2017 – the National Cyber Challenge (“Nemzeti Kiberverseny”) that gives the opportunity to students from any Hungarian-speaking area - [AI-bevezetés: governance-szel vagy anélkül?](https://whitehat.eu/hu/blog/ai-bevezetes-governance-szel-vagy-anelkul/) - Az AI-bevezetés szervezeteknél történhet governance nélkül is - sőt, általában így gyorsabb. De megéri? Mi a minimum modell, ami GRC szempontból már működik? - [CertiGhost: The Certificate That Shouldn't Exist](https://whitehat.eu/blog/certighost-the-certificate-that-shouldnt-exist-cve/) - CertiGhost, a newly disclosed AD CS flaw, lets low-privileged users obtain Domain Controller certificates, paving the way for full Active Directory compromise. - [HermeticReader: The PDF That Read Your WhatsApp / CVE of the Week #30](https://whitehat.eu/blog/hermeticreader-acrobat-pdf-whatsapp-cve/) - HermeticReader: A vulnerability chain in the Adobe Acrobat PDF Chrome extension could lead to a silent hijack of a user's WhatsApp data - [Introduction to Cyber Threat Intelligence and Threat Actors](https://whitehat.eu/blog/introduction-to-cyber-threat-intelligence-and-threat-actors/) - What is Cyber Threat Intelligence, and why does it matter? Learn the CTI lifecycle, intelligence types, and how threat intelligence helps prevent cyberattacks. - [When the attacker gets attacked: The LockBit story](https://whitehat.eu/blog/the-happy-end-of-the-lockbit-group/) - International cyber law enforcement team succeeds in liquidating the LockBit Ransomware Group. - [AI Might Not Take the Pentester's Job After All - But It's Not for Lack of Trying](https://whitehat.eu/blog/ai-might-not-take-the-pentesters-job-after-all-but-its-not-for-lack-of-trying/) - Can AI replace human pentesters? We examine the limits, risks, and realities of AI-driven penetration testing - and why human expertise still matters. - [White Hat It Security recognized as the winner of 2025 Microsoft Hungary Partner of the Year Award](https://whitehat.eu/blog/white-hat-it-security-recognized-as-the-winner-of-2025-microsoft-hungary-partner-of-the-year-award/) - White Hat It Security recognized as the winner of 2025 Microsoft Hungary Partner of the Year Award for the second time - [Hackrate Joins the White Hat Family: A Strategic Move Toward Stronger Ethical Hacking Capabilities](https://whitehat.eu/blog/managed-bug-bounty-through-hackrate-integration/) - Hackrate officially joins the White Hat portfolio, expanding our cybersecurity services with a key strategic offer: managed bug bounty program. - [Satellite Security in the Cyber-Space Domain](https://whitehat.eu/blog/satellite-security-in-the-cyber-space-domain/) - The topic of cybersecurity in space systems is becoming increasingly highlighted and proves as a serious threat for companies who own these systems. - [Cybersecurity Incident Handling in the Context of NIS2 Regulation](https://whitehat.eu/blog/cybersecurity-incident-handling-in-the-context-of-nis2-regulation/) - NIS2 Directive takes effect today in the EU. We highlight key incident handling elements, enhancing detection, reporting and response under the new regulations. - [Experiences of CrowdStrike global IT outage](https://whitehat.eu/blog/experiences-of-crowdstrike-global-it-outage/) - In July 2024, CrowdStrike's security software update caused global chaos. This event highlighted the delicate balance between security and system stability. - [Healthcare and cybersecurity - a challenge still unresolved](https://whitehat.eu/blog/healthcare-and-cybersecurity-a-challenge-still-unresolved/) - Ransomware attacks continue to be a major concern for healthcare actors, as well as threats through supply chains. - [Business Email Compromise - old scams, new techniques](https://whitehat.eu/blog/business-email-compromise-old-scams-new-techniques/) - One of the most widespread cybercrimes in recent years is Business Email Compromise. Let's see what's the process of this kind of cyberattack. - [MedusaLocker ransomware - Part 2](https://whitehat.eu/blog/medusalocker-ransomware-part-2/) - After discussing the nature of ransomware attacks and aspects of MedusaLocker’s behavior, we delve into the malware analysis and explain why it is interesting. - [Vulnerability trends in early 2024](https://whitehat.eu/blog/vulnerability-trends-in-early-2024/) - Vulnerability scene - increasing number of vulnerabilities in network security software products, network security solution vendors are in evolving threat. - [Roles in the Security Operation Center (SOC)](https://whitehat.eu/blog/roles-in-the-security-operation-center-soc/) - Dive into the dynamic roles shaping cybersecurity: we unveil the SOC teamwork and expertise essential for safeguarding ICT systems. - [A Medusa, you really don’t want to encounter](https://whitehat.eu/blog/a-medusa-you-really-dont-want-to-encounter/) - Understanding MedusaLocker, a type of ransomware, is crucial as it poses a significant threat to both individuals and organizations. - [ChatGPT and Cybersecurity - Microsoft Copilot for Security in Practice](https://whitehat.eu/blog/chatgpt-and-cybersecurity-microsoft-copilot-for-security-in-practice/) - What benefits has AI in cybersecurity? The Microsoft Copilot for Security is available only to selected partners, but some of the use cases are already obvious! - [Microsoft Copilot for Security - the game-changer](https://whitehat.eu/blog/microsoft-copilot-for-security-the-game-changer/) - White Hat IT Security today announced its participation in the Microsoft Copilot for Security Partner Private Preview. - [Bridging the Gap: Private Sector's Vital Role in Military Cyber Defense](https://whitehat.eu/blog/bridging-the-gap-private-sectors-vital-role-in-military-cyber-defense/) - In the Russia-Ukraine conflict's cyber battleground, the need for blending civilian cyber defense prowess with military strategies is a challenging shift in modern warfare dynamics. - [How to be a "good" hacker - the white hat burden in practice](https://whitehat.eu/blog/how-to-be-a-good-hacker-the-white-hat-burden-in-practice/) - Ethical hacking is now a separate profession, with specific rules and practical difficulties that outsiders are not well aware of. - [Ransomware groups - who are they, what do they want and how do they do it?](https://whitehat.eu/blog/ransomware-groups-who-are-they-what-do-they-want-and-how-do-they-do-it/) - Ransomware - a cybersecurity term that is now familiar to the general public as it has a detrimental impact on all areas of the economy. - [White Hat journey to MXDR](https://whitehat.eu/blog/white-hat-journey-to-mxdr/) - Get to know more about White Hat's journey to MXDR verification in the Microsoft partnership evolution. - [When artificial intelligence is the target and not the tool of the attack...](https://whitehat.eu/blog/when-artificial-intelligence-is-the-target-and-not-the-tool-of-the-attack/) - Machine learning is the most widely used of all artificial intelligence solutions, and it's also the basis for cyber defence. - [Developers in the crosshairs - why are there more and more cyber attacks against software vendors?](https://whitehat.eu/blog/developers-in-the-crosshairs-why-are-there-more-and-more-cyber-attacks-against-software-vendors/) - Why are there more and more cyber attacks on software development environments and how is software company security becoming a key issue in the supply chain? - [Analysing a latent malware infection on a recently MDE-onboarded machine (Part 2)](https://whitehat.eu/blog/analysing-a-latent-malware-infection-on-a-recently-mde-onboarded-machine-part-2/) - Recently, an interesting latent malware infection was found on a newly onboarded machine at one of our clients (Client). Microsoft Defender for Endpoint (MDE) reported anomalies about the computer shortly after onboarding, but uncovering the inner workings of the malware and the infection methods required thorough investigation We present the second part of the investigation - [Analysing a latent malware infection on a recently MDE-onboarded machine (Part 1)](https://whitehat.eu/blog/analysing-a-latent-malware-infection-on-a-recently-mde-onboarded-machine/) - Recently, an interesting latent malware infection was found on a newly onboarded machine at one of our clients (Client). Microsoft Defender for Endpoint (MDE) reported anomalies about the computer shortly after onboarding, but uncovering the inner workings of the malware and the infection methods required thorough investigation, which anonymized version we present in this article - [Reflections on Financing European Cyberdefence](https://whitehat.eu/blog/reflections-on-financing-european-cyberdefence/) - Building cybersecurity is expensive. In a threat environment that is changing daily, newer and newer defence technologies are emerging that would need to be operated in a highly skills-scarce environment. Moreover, new cybersecurity technologies require knowledge that may not be available in the professional domain, such as artificial intelligence. However, compliance requirements such as NIS2 - [UNLOCK THE POWER OF AN EXTERNAL SOC – BY TOMORROW MORNING!](https://whitehat.eu/blog/unlock-the-power-of-an-external-soc-by-tomorrow-morning/) - A webinar on how and why outsourcing your security to an MSSP can help transforms your organization and create a 24/7 available and alert attack detection and reaction capacity instantly – to help you protect your data and infrastructure even when you’re on holiday. In case you missed it, let us recap our recent cybersecurity - [SIEM, EDR, XDR, MDR – what do they mean and how do they effect the daily information security operation?](https://whitehat.eu/blog/siem-edr-xdr-mdr/) - The information security profession is full of three- and four-letter acronyms. Those who just listen to a cybersecurity lecture are likely to lose the plot very quickly. But sometimes even those in the industry are not necessarily able to keep up with the incredibly fast pace of development dictated by the vendors, which means that - [Understanding the EU's NIS2 Directive](https://whitehat.eu/blog/understanding-the-eus-nis2-directive/) - The NIS2 Directive (https://eur-lex.europa.eu/eli/dir/2022/2555) will certainly open a new chapter in Europe's cyber defence. Although the expectations that all Member States will have to apply it by 18 October 2024 at the latest, details are still poorly understood by the organizations covered by the new legislation. While NIS2 will certainly be discussed on many platforms - [The Ferrari incident and why the automotive industry is a favourite of cyber criminals](https://whitehat.eu/blog/the-ferrari-incident-and-why-the-automotive-industry-is-a-favourite-of-cyber-criminals/) - Ferrari’s recent incident shows yet again why the automotive industry is a prime target for cybercriminals and ransomware groups – joining a long line of similar attacks including Ferrari’s hit last year, the “Conti” incident of Volkswagen and Audi or Renault as collateral in the WannaCry campaign, to just name the more news-worthy ones. As - [Are your Exchange Online accounts safe?](https://whitehat.eu/blog/are-your-exchange-online-accounts-safe/) - You might think your corporate email accounts are safe enough, maybe you have a decent password policy, and your email service does a pretty good job of filtering suspicious emails and malicious URLs. Still, there are ways attackers could gain access, and the playing field isn't level, cybersecurity threats are asymmetric. Meaning an attacker wins - [TTX – Felkészülés az incidensekre biztonságos környezetben](https://whitehat.eu/hu/blog/ttx-felkeszules-az-incidensekre-biztonsagos-kornyezetben/) - A Tabletop Exercise, vagyis TTX egy valósághű szimuláció, amelyben a szervezet biztonságos környezetben tesztelheti incidenskezelési folyamatait. - [Security debt - amikor a „majd később” kiberbiztonsági kockázattá válik](https://whitehat.eu/hu/blog/security-debt-amikor-a-majd-kesobb-kiberbiztonsagi-kockazatta-valik/) - Cégvezetőként, irányítóként hogyan kerülheti el a security debt kockázatát a vállalatánál? Mi jelenthet valódi veszélyt? - [Microsoft Partner of the Year Award 2024](https://whitehat.eu/blog/microsoft-partner-of-the-year-award-2024/) - White Hat IT Security won the Hungary 2024 Microsoft Partner of the Year Award. The company was honored for demonstrating excellence in innovation and implementation of customer solutions based on Microsoft technology. ## Pages - [Home Page](https://whitehat.eu/) - Full-scope Cybersecurity for Companies. Zero trust approach to 24/7 managed security. Full SOC coverage with remote onboarding – even within hours! - [Would you like to have Your own Security Operations Center? – By tomorrow morning!](https://whitehat.eu/campaigns/your-own-security-operations-center/) - Join our webinar and learn how White Hat IT Security delivers Microsoft-based managed security with 7/24 remote SOC service – in days. It’s more cost-effective and adaptable than an in-house security team, and it’s scalable, so it’s a perfect fit for your business needs. REGISTER FOR OUR FREE WEBINAR! Discover the remarkable potential of building - [Incidens](https://whitehat.eu/hu/adatkezelesi-tajekoztato/incidens/) - Adatkezelési tájékoztató incidenskezelési és helyreállítási információk átadásához, valamint kapcsolódó üzleti megkeresésekhez kapcsolódó adatkezelésről 1. Az adatkezelő megnevezése Adatkezelő neve: White Hat IT Security Szolgáltató és Kereskedelmi Korlátolt Felelősségű Társaság, a továbbiakban: White Hat vagy Adatkezelő Székhely: 1021 Budapest, Ötvös János u. 3. Telephely / levelezési cím: 1021 Budapest, Ötvös János u. 3. Adószám: 26373643-2-41 Cégjegyzékszám: - [Adatkezelési tájékoztató](https://whitehat.eu/privacy-policy/) - Adatkezelési tájékoztatók magánszemélyek számára, hírlevél feliratkozás, álláshirdetésre, eseményekre jelentkezéshez - [Események](https://whitehat.eu/events/) - Vegyen részt IT biztonsággal kapcsolatos szakmai eseményeinken. - [Kötelező kiberbiztonsági továbbképzés cégvezetőknek](https://whitehat.eu/?page_id=9576) - Teljesítse nálunk kötelező cégvezetői kiberbiztonsági továbbképzését! Ismerje meg a trendeket, a vállalati kockázatokat és legyen tudatosabb döntéshozó! - [Főoldal](https://whitehat.eu/) - Teljeskörű kiberbiztonság nagyvállalatoknak. Menedzselt szolgáltatások (MXDR, SOC, CTI), pentest, megfelelőségi tanácsadás és gyors incidensreagálás. - [Sajtó](https://whitehat.eu/about/press-release/) - newsletter Szeretne értesülni a legfrissebb kiberbiztonsági híreinkről vagy közelgő rendezvényeinkről? Iratkozzon fel hírlevelünkre FELIRATKOZOM Védekezni is tudni kell https://www.itbusiness.hu/technology/aktualis_lapszam/path/Vedekezni_is_tudni_kell Hackerképzés sok helyen folyik, de mi legyen azokkal, akik vállalati rendszereket szeretnének megvédeni? Piaci főtevékenységei mellett az ő képzésüket is célul tűzte ki egy nemrég indult magyar IT-biztonsági vállalkozás. Tovább Ez a fehér cápa nem támad, - [Irányítási, kockázatkezelési és megfelelőségi szolgáltatások](https://whitehat.eu/cybersecurity-services/governance-risk-management-and-compliance-services/) - Segítünk Önnek abban, hogy vállalata biztonságosabbá, megfelelőség szempontjából ellenőrizhetőbbé és kockázatállóbbá váljon. Széleskörű GRC szolgáltatások. - [About](https://whitehat.eu/about/) - About White Hat We at White Hat believe that every customer, every system and every device needs a different approach, but along the same fundamental guidelines. Let us help you – every step of the way if need be, from research & development, inventory and assessment, security consulting and expert as a service, to actual - [Kampány](https://whitehat.eu/campaigns/) - [Rendszergazda](https://whitehat.eu/jobs/system-administrator/) - Rendszergazdát keresünk vállalatunk belső IT infrastruktúrájának stabil és biztonságos üzemeltetésére, fejlesztésére. - [Pentest Team vezető](https://whitehat.eu/jobs/pentest-team-lead/) - Bővülés miatt keresünk a meglévő penetration testing csapatba agilis és motivált vezetőt. Egy szuper szakmai csapat vár rád! - [Incidens-reagálási szolgáltatások](https://whitehat.eu/hu/kampany/incidens-reagalasi-szolgaltatasok-ransomware/) - Kibertámadás érte vállalatát? A White Hat gyors reagálást és teljeskörű incidenskezelést egyaránt végez, így a zsarolóvírus-támadások és bármely fenyegetettség elhárításában gyors és hatékony segítséget nyújt – biztosítva hálózata biztonságát és hosszú távú védettségét. check Zsarolóvírus- és incidens-reagálás check Digitális nyomrögzítés, forensics és okfeltárás check Hosszútávú védettség biztosítása Adatvédelmi incidens esetén az észleléstől számított 72 órán - [Folyamatos biztonság](https://whitehat.eu/cybersecurity-services/managed-security/) - Folyamatos biztonsági szolgáltatások (MSS, MDR) Mobil fókuszú, minden platformmal kompatibilis menedzselt megoldás, átlátható árazással, skálázhatóan, valódi szakértőktől. check Könnyű integrálhatóság bevezető biztonsági vizsgálattal és sérülékenységi leltárral check A hálózatbiztonság specialistái és szenior szakértők gondoskodnak infrastruktúrája védelméről check Nincsenek rejtett költségek, nincs szükség kezdő befektetésre és egyéb eszközökre, programokra és antivírus alkalmazásokra Szeretné ingyen kipróbálni a - [Gyors incidensreagálás](https://whitehat.eu/cybersecurity-services/incident-response/) - White Hat IT Security Gyors incidensreagálás - [White Hat Certified Defender](https://whitehat.eu/cybersecurity-services/white-hat-certified-defender/) - A kurzus célja, hogy a piacon hiánypótló, kézzelfogható és azonnal hasznosítható tudást adjon át a nagyvállalati hálózatok biztonsági csapatában szerepkört betöltők vagy betölteni kívánók számára. Ennek során egy életszerű APT támadás incidenskezelésén keresztül szemléltetjük az elhárítási folyamat egyes lépéseit, azok egymásra épülését, és azt, hogy ez mit tesz szükségessé az emberi erőforrás oldalon. Részletesen tárgyaljuk - [Információbiztonsági politika](https://whitehat.eu/hu/adatkezelesi-tajekoztato/politika/) - 1. Dokumentum alapadatai 1.1. Dokumentum célja és az érintettek köre Jelen Információbiztonsági Politika célja a White Hat IT Security Szolgáltató és Kereskedelmi Kft. (Székhely: 1021 Budapest, Ötvös János u. 3.; Adószám: 26373643-2-41; Képviselő: Fehér Sándor ügyvezető) információbiztonsági alapvetéseinek, missziójának és távlati terveinek meghatározása. Jelen Politika azért jött létre, hogy a lehető legmagasabb szinten támogassa a - [Álláshirdetés](https://whitehat.eu/privacy-policy/recruitment/) - Adatkezelési tájékoztató álláspályázók részére - [Események](https://whitehat.eu/privacy-policy/events/) - a White Hat IT Security Kft. által szervezett eseményekre regisztrálók részére Bevezetés A White Hat IT Security Kft. (székhely: 1021 Budapest, Ötvös János u. 3.; cégjegyzékszáma: 01-09-326869, adószám: 26373643-2-41, a továbbiakban: a „White Hat”) kiemelt figyelmet fordít arra, hogy az általa szervezett eseményre regisztráló személyek személyes adatait A természetes személyeknek a személyes adatok kezelése tekintetében - [Hírlevél](https://whitehat.eu/privacy-policy/newsletter/) - Adatkezelési tájékoztató hírlevélre feliratkozó magánszemélyek részére - [Képzések](https://whitehat.eu/privacy-policy/trainings/) - Adatkezelési tájékoztató kiberbiztonsági képzésre és továbbképzésre jelentkezők részére - [Magánszemélyek](https://whitehat.eu/privacy-policy/individuals/) - Adatkezelési tájékoztató üzleti megkeresés küldésével kapcsolatos adatkezelések esetén magánszemélyek részére - [Incident Response Manager](https://whitehat.eu/jobs/incident-response-manager/) - Incident Response Manager Send application What will you be responsible for? Managing the Incident Response department, maintaining client relationships, and participating in pre-sales activities Responding with urgency to arising IR needs, assembling the team, managing internal human resource allocation Assessing client needs, understanding business and technical challenges, and developing and delivering tailored solutions with the - [White Hat Certified Defender](https://whitehat.eu/cybersecurity-services/white-hat-certified-defender/) - Our aim is to give our students hands-on, real-life oriented practical knowledge that can instantly be used by those who play – or wish to play – a role in the security team in an enterprise environment. Throughout the course we illustrate and analyse the individual steps of the defence procedure through the incident management - [Rapid Incident Response](https://whitehat.eu/cybersecurity-services/incident-response/) - Rapid Incident Response for cyber incidents and breaches. Fast containment, expert remediation, and support to reduce business impact. - [Trainings](https://whitehat.eu/privacy-policy/trainings/) - Privacy policy for applicants to cybersecurity training and continuing training programmes - [Recruitment](https://whitehat.eu/privacy-policy/recruitment/) - Information for job applicants on data management 1. Name of Data Controller The name of the Data Controller is White Hat IT Security Service and Trade Ltd. (hereinafter referred to as White Hat or the Organisation) Head office: 1021 Budapest, Ötvös János u. 3; Location / mailing address: 1021 Budapest, Ötvös János u. 3; Tax - [Newsletter](https://whitehat.eu/privacy-policy/newsletter/) - Privacy Policy for individuals subscribing to the newsletter - [Individuals](https://whitehat.eu/privacy-policy/individuals/) - Privacy Policy – on the processing of data relating to the sending of business enquiries to individuals - [Events](https://whitehat.eu/privacy-policy/events/) - Privacy Policy for registrants of events organised by White Hat IT Security Kft. Introduction White Hat IT Security Kft. (headquarters: 1021 Budapest, Ötvös János u. 3. ; company registration number: 01-09-326869, tax number: 26373643-2-41, hereinafter referred to as “White Hat”) takes utmost care to ensure that the personal data of persons registering for the event - [Managed Cyber Threat Intelligence](https://whitehat.eu/cybersecurity-services/managed-cyber-threat-intelligence/) - Managed Cyber Threat Intelligence helps prevent cyberattacks with 24/7 monitoring of global threats and real-time situational awareness. - [Managed Security](https://whitehat.eu/cybersecurity-services/managed-security/) - Managed Security Services (MSS, MDR) True expert approach to mobile-focused multi-platform managed solutions, with transparent pricing and scalability check Easy and swift onboarding with initial assessment and vulnerability inventory check Top-level senior experts and specialist to manage your network security check Zero investment solution with no hidden fees or extra devices or tools needed Would - [Master NIS2 Compliance With White Hat and Microsoft](https://whitehat.eu/campaigns/master-nis2-compliance-with-white-hat-and-microsoft/) - Master NIS2 compliance with White Hat and Microsoft REGISTER NOW FOR THE WEBINAR FREE WEBINAR FOR SECURITY LEADERS AND EXECUTIVES Preparing for NIS2 compliance is overwhelming but we make it easy for you. Join us for actionable insights on how to build a robust cybersecurity strategy and achieve regulatory adherence before the deadline. WHAT WILL - [Pentest Team Lead](https://whitehat.eu/jobs/pentest-team-lead/) - Due to expansion, we are looking for an agile and motivated Lead to join our existing penetration testing team. A great team is waiting for you! - [Home Alone](https://whitehat.eu/campaigns/home-alone/) - A limited managed security offer for a carefree holiday season for companies. Get our 7/24 SOC service for 30 days for free* - [Governance, Risk Management and Compliance Services](https://whitehat.eu/cybersecurity-services/governance-risk-management-and-compliance-services/) - White Hat IT Security’s GRC services help your organization become more secure, more auditable in terms of compliance, and more resilient against risks. - [IT Security Day Prague](https://whitehat.eu/events/it-security-day-prague/) - IT Security Day Prague | Industry Insights From The Frontline | Customer Event with Microsoft Security Partners - [IT Security Day Bucharest](https://whitehat.eu/events/it-security-day-bucharest/) - An exclusive, managed security-focused event for medium and large enterprise business and technical decision makers - with the support of Microsoft. - [IT Security Day Bratislava](https://whitehat.eu/events/it-security-day-bratislava/) - IT Security Day Bratislava | Industry Insights From The Frontline | Customer Event with Microsoft Security Partners - [Privacy Policy](https://whitehat.eu/privacy-policy/) - Privacy Policy / Individuals Details Privacy Policy / Events Details Privacy Policy / Recruitment Details Privacy Policy / Newsletter Details Privacy Policy / Trainings Details - [Cybersecurity Services](https://whitehat.eu/cybersecurity-services/) - Strengthen your cybersecurity posture with services from pentesting and GRC to awareness trainings and Managed CTI—tailored to your organization’s needs. - [Kötelező képzés Információbiztonsági Felelősöknek (IBF)](https://whitehat.eu/?page_id=9582) - Gyakorlatorientált továbbképzés NIS2 kötelezett cégek IBF-einek. A mindennapi munka során jól használható segédanyagokkal, egy gyakorló IBF tapasztalataival. - [Jobs](https://whitehat.eu/jobs/) - It is great to work with us! See what we offer you and check our open jobs! - [Karrier](https://whitehat.eu/jobs/) - Dolgozz velünk egy dinamikusan növekvő, lelkes és támogató csapatban, hogy közösen biztosítsuk fejlődésünket és előrehaladásunkat! - [Events](https://whitehat.eu/events/) - Upcoming events - [IT Security Day Budapest](https://whitehat.eu/events/it-security-day-budapest/) - IT Security Day Budapest NIS2 megfelelés és vállalati információbiztonság szakértőktől - érthetően Ügyféltalálkozó Microsoft Security Partnerekkel 2026. május 19. kedd, 10 – 14 óráig Microsoft Magyarország, 1031 Budapest, Graphisoft Park 3., M épület Parkolási lehetőség a Graphisoft Park vendégparkolójában (mélygarázs), bejárat a Gázgyár utca felől. Regisztráció A NIS2 audit csak a kezdet. A NIS2 audit - [IT Security Day Budapest](https://whitehat.eu/events/it-security-day-budapest/) - NIS2 megfelelés és vállalati információbiztonság szakértőktől - érthetően. Ügyféltalálkozó Microsoft Security Partnerekkel - [Incident Response Manager](https://whitehat.eu/jobs/incident-response-manager/) - Incident Response Manager munkakörbe keresünk kollégát a dinamikusan növekvő, nemzetközi ügyfélkörrel rendelkező kiberbiztonsági csapatunkba. - [Irodai adminisztrátor](https://whitehat.eu/hu/karrier/irodai-adminisztrator/) - Irodai adminisztrátor munkakörbe keresünk releváns tapasztalattal rendelkező, pontos, megbízható, rendszerező kiválóan tudó, akár fogyatékkal élő kollégát. - [System Administrator](https://whitehat.eu/jobs/system-administrator/) - We are looking for a System Administrator to ensure the stable and secure operation and development of the company’s internal IT infrastructure. - [Menedzselt Cyber Threat Intelligence](https://whitehat.eu/cybersecurity-services/managed-cyber-threat-intelligence/) - Segítünk megvédeni szervezetét a kibertámadásoktól, mielőtt bekövetkeznének - valós idejű helyzetkép a globális kiberbiztonsági incidensek 24/7 monitorozásával. - [Rólunk](https://whitehat.eu/about/) - Mi a White Hat-nél hiszünk abban, hogy minden ügyfél, minden rendszer és minden eszköz egyedi és speciális hozzáállást igényel – de ugyanazon alapelvek mentén. - [Tanúsítványok](https://whitehat.eu/about/certifications/) - Kollégáink által megszerzett magas szintű tanúsítványok szakmai tudásunk objektív mérőszámai. Fontosnak tartjuk a folyamatos szakmai fejlődést. - [Információbiztonsági szolgáltatások](https://whitehat.eu/cybersecurity-services/) - Információbiztonsági szolgáltatások - Értékelés. Tanácsadás. Iránymutatás. A legmagasabb szintű előírásoknak megfelelve. - [IT Security Day Tallinn](https://whitehat.eu/events/it-security-day-tallinn/) - An exclusive, managed security-focused event for medium and large enterprise business and technical decision makers - with the support of Microsoft. - [Certifications](https://whitehat.eu/about/certifications/) - White Hat IT Security Certifications - [Press Release](https://whitehat.eu/about/press-release/) - NIS2 – Van miről beszélni podcastsorozat 05/05/2025 A Brind és a White Hat IT Security közös podcast-sorozatában a NIS2-t és a hozzá kapcsolódó fontos, érdekes és sokszor még bizonytalan kérdéseket járjuk körbe – könnyen érthető, mégis mély szakmai, őszinte és gondolatébresztő beszélgetések formájában. 25+ elismert szakmai vendéggel beszélget Enyedi Alexandra a White Hat GRC vezetője - [Blog](https://whitehat.eu/blog/) ## Categories - [Uncategorized](https://whitehat.eu/blog/category/uncategorized/) - [Cyber security](https://whitehat.eu/hu/blog/category/cyber-security-hu/) - [Global news](https://whitehat.eu/hu/blog/category/globalnews-hu/) - [Education](https://whitehat.eu/hu/blog/category/education-2/) - [Announcement](https://whitehat.eu/blog/category/announcement/) - [GRC](https://whitehat.eu/hu/blog/category/grc/) - [Penetration Testing](https://whitehat.eu/blog/category/pentest/) - [Governance, Risk and Compliance](https://whitehat.eu/blog/category/grc/) - [Security Operations Center](https://whitehat.eu/blog/category/soc/) - [Cyber Threat Intelligence](https://whitehat.eu/blog/category/cti/) - [Incident Response](https://whitehat.eu/blog/category/csirt/) - [Bug Bounty](https://whitehat.eu/blog/category/bug-bounty/) - [Trainings](https://whitehat.eu/blog/category/trainings/) ## Tags - [cyber security alert](https://whitehat.eu/blog/tag/cyber-security-alert/) - [internet](https://whitehat.eu/blog/tag/internet/) - [ransomware](https://whitehat.eu/blog/tag/ransomware/) - [security](https://whitehat.eu/blog/tag/security/) - [trojan](https://whitehat.eu/blog/tag/trojan/) - [virus](https://whitehat.eu/blog/tag/virus/) - [ransomware](https://whitehat.eu/blog/tag/ransomware/) - [ryuk](https://whitehat.eu/blog/tag/ryuk/) - [trickbot](https://whitehat.eu/blog/tag/trickbot/) - [white hat](https://whitehat.eu/blog/tag/white-hat/) - [ReflectiveDLLInjection](https://whitehat.eu/blog/tag/reflectivedllinjection/) - [incident](https://whitehat.eu/blog/tag/incident/) - [response](https://whitehat.eu/blog/tag/response/) - [study](https://whitehat.eu/blog/tag/study/) - [white](https://whitehat.eu/blog/tag/white/) - [hat](https://whitehat.eu/blog/tag/hat/) - [képzés](https://whitehat.eu/blog/tag/kepzes-2/) - [white](https://whitehat.eu/blog/tag/white-2-2/) - [hat](https://whitehat.eu/blog/tag/hat-2-2/) - [óbudai](https://whitehat.eu/blog/tag/obudai-2/) - [egyetem](https://whitehat.eu/blog/tag/egyetem-2/) - [cyber](https://whitehat.eu/blog/tag/cyber/) - [challenge](https://whitehat.eu/blog/tag/challenge/) - [kiber](https://whitehat.eu/blog/tag/kiber/) - [képzés](https://whitehat.eu/blog/tag/kepzes-2/) - [óbudai](https://whitehat.eu/blog/tag/obudai-2/) - [egyetem](https://whitehat.eu/blog/tag/egyetem-2/) - [startup](https://whitehat.eu/blog/tag/startup/) - [safari](https://whitehat.eu/blog/tag/safari/) - [communication](https://whitehat.eu/blog/tag/communication/) - [távmunka](https://whitehat.eu/hu/blog/tag/tavmunka/) - [biztonsági](https://whitehat.eu/hu/blog/tag/biztonsagi/) - [it](https://whitehat.eu/hu/blog/tag/it/) - [kérdőív](https://whitehat.eu/hu/blog/tag/kerdoiv/) - [whcd](https://whitehat.eu/hu/blog/tag/whcd/) - [misa](https://whitehat.eu/blog/tag/misa/) - [microsoft](https://whitehat.eu/blog/tag/microsoft/) - [partner](https://whitehat.eu/blog/tag/partner/) - [gold](https://whitehat.eu/blog/tag/gold/) - [misa](https://whitehat.eu/blog/tag/misa/) - [microsoft](https://whitehat.eu/blog/tag/microsoft/) - [partner](https://whitehat.eu/blog/tag/partner/) - [gold](https://whitehat.eu/blog/tag/gold/) - [exchange](https://whitehat.eu/blog/tag/exchange/) - [azure ad](https://whitehat.eu/blog/tag/azure-ad/) - [webinar](https://whitehat.eu/blog/tag/webinar/) - [SOC](https://whitehat.eu/blog/tag/soc/) - [enterprise](https://whitehat.eu/blog/tag/enterprise/) - [cybersecurity](https://whitehat.eu/blog/tag/cybersecurity/) - [cyber defence](https://whitehat.eu/blog/tag/cyber-defence/) - [European Union](https://whitehat.eu/blog/tag/european-union/) - [cyberdefence](https://whitehat.eu/blog/tag/cyberdefence/) - [artificial intelligence](https://whitehat.eu/blog/tag/artificial-intelligence/) - [MSSP](https://whitehat.eu/blog/tag/mssp/) - [MXDR](https://whitehat.eu/blog/tag/mxdr/) - [cybercriminals](https://whitehat.eu/blog/tag/cybercriminals/) - [hacker](https://whitehat.eu/blog/tag/hacker/) - [ethical](https://whitehat.eu/blog/tag/ethical/) - [legislation](https://whitehat.eu/blog/tag/legislation/) - [war](https://whitehat.eu/blog/tag/war/) - [cyberdefense](https://whitehat.eu/blog/tag/cyberdefense/) - [vulnerability](https://whitehat.eu/blog/tag/vulnerability/) - [exploit](https://whitehat.eu/blog/tag/exploit/) - [security software](https://whitehat.eu/blog/tag/security-software/) - [malware](https://whitehat.eu/blog/tag/malware/) - [analysis](https://whitehat.eu/blog/tag/analysis/) - [infostealer](https://whitehat.eu/blog/tag/infostealer/) - [infection](https://whitehat.eu/blog/tag/infection/) - [award](https://whitehat.eu/blog/tag/award/) - [partnership](https://whitehat.eu/blog/tag/partnership/) - [achievement](https://whitehat.eu/blog/tag/achievement/) - [CrowdStrike](https://whitehat.eu/blog/tag/crowdstrike/) - [global IT outage](https://whitehat.eu/blog/tag/global-it-outage/) - [cybercrime](https://whitehat.eu/blog/tag/cybercrime/) - [space](https://whitehat.eu/blog/tag/space/) - [satellite](https://whitehat.eu/blog/tag/satellite/) - [jamming](https://whitehat.eu/blog/tag/jamming/) - [spoofing](https://whitehat.eu/blog/tag/spoofing/) - [bug bounty](https://whitehat.eu/blog/tag/bug-bounty/) - [acquisition](https://whitehat.eu/blog/tag/acquisition/) - [hackrate](https://whitehat.eu/blog/tag/hackrate/) - [ethical hacking](https://whitehat.eu/blog/tag/ethical-hacking/) - [AI](https://whitehat.eu/blog/tag/ai/) - [penetration testing](https://whitehat.eu/blog/tag/penetration-testing/) - [cyberattack](https://whitehat.eu/blog/tag/cyberattack/) - [Mythos](https://whitehat.eu/blog/tag/mythos/) - [Claude](https://whitehat.eu/blog/tag/claude/) - [Anthropic](https://whitehat.eu/blog/tag/anthropic/) - [OpenAI](https://whitehat.eu/blog/tag/openai/) - [ChatGPT](https://whitehat.eu/blog/tag/chatgpt/) - [GRCszerda](https://whitehat.eu/hu/blog/tag/grcszerda/) - [governance](https://whitehat.eu/hu/blog/tag/governance/) - [threat actors](https://whitehat.eu/blog/tag/threat-actors/) - [CTI](https://whitehat.eu/blog/tag/cti/) - [threat intelligence](https://whitehat.eu/blog/tag/threat-intelligence/) - [CVE of the Week](https://whitehat.eu/blog/tag/cve-of-the-week/) - [N-able](https://whitehat.eu/blog/tag/n-able/) - [N-central](https://whitehat.eu/blog/tag/n-central/) - [AI Act](https://whitehat.eu/hu/blog/tag/ai-act/) - [AI bevezetés](https://whitehat.eu/hu/blog/tag/ai-bevezetes/) - [TeamCity](https://whitehat.eu/blog/tag/teamcity/) - [bypass authentication](https://whitehat.eu/blog/tag/bypass-authentication/) - [remote code execution](https://whitehat.eu/blog/tag/remote-code-execution/) - [AI inventory](https://whitehat.eu/hu/blog/tag/ai-inventory/) - [IBM Langflow](https://whitehat.eu/blog/tag/ibm-langflow/) - [Microsoft Purview Data Security](https://whitehat.eu/hu/blog/tag/microsoft-purview-data-security/) - [Insider Risk](https://whitehat.eu/hu/blog/tag/insider-risk/) - [data loss prevention](https://whitehat.eu/hu/blog/tag/data-loss-prevention/) - [DLP](https://whitehat.eu/hu/blog/tag/dlp/) - [Copilot](https://whitehat.eu/blog/tag/copilot/) - [CoSnitch](https://whitehat.eu/blog/tag/cosnitch/) - [unauthorized](https://whitehat.eu/blog/tag/unauthorized/) - [Microsoft Purview Data Governance](https://whitehat.eu/hu/blog/tag/microsoft-purview-data-governance/) - [Purview](https://whitehat.eu/hu/blog/tag/purview/) - [Unified Catalog](https://whitehat.eu/hu/blog/tag/unified-catalog/) - [Data Map](https://whitehat.eu/hu/blog/tag/data-map/) - [zsarolóvírus](https://whitehat.eu/hu/blog/tag/zsarolovirus/) - [ügyészség](https://whitehat.eu/hu/blog/tag/ugyeszseg/) - [zárolt](https://whitehat.eu/hu/blog/tag/zarolt/) - [Metabase](https://whitehat.eu/blog/tag/metabase/) - [Business Intelligence](https://whitehat.eu/blog/tag/business-intelligence/) - [SQL injection](https://whitehat.eu/blog/tag/sql-injection/) - [CVE](https://whitehat.eu/blog/tag/cve/) ## Testimonial category - [Services](https://whitehat.eu/blog/testimonial-category/services/) - [Services_HU](https://whitehat.eu/blog/testimonial-category/services_hu/)