{"id":29496,"date":"2019-10-04T17:33:56","date_gmt":"2019-10-04T17:33:56","guid":{"rendered":"https:\/\/blog.trendmicro.com\/?p=543273"},"modified":"2019-10-04T17:33:56","modified_gmt":"2019-10-04T17:33:56","slug":"decrypting-what-zero-trust-is-and-what-it-likely-isnt","status":"publish","type":"post","link":"https:\/\/www.threatshub.org\/blog\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\/","title":{"rendered":"Decrypting What Zero Trust Is, And What It Likely Isn\u2019t"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" width=\"299\" height=\"136\" src=\"https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2018\/09\/TM_logo_red_2c_rgb.jpg\" class=\"attachment-medium size-medium wp-post-image\" alt=\"https:\/\/blog.trendmicro.com\/answers-to-your-questions-on-our-mac-apps-store\/\"><\/p>\n<p>It\u2019s always an indicator of confusion when instead of hearing \u201cI want Q\u201d I\u2019m asked \u201cwhat is Q?\u201d. In this case the \u2018Q\u2019 is Zero Trust.&nbsp; I\u2019ll try and give my best take on what I understand Zero Trust to be.<\/p>\n<p><strong>History Repeats<\/strong><\/p>\n<p>Let\u2019s start with the background. Quite a while back the Jericho Forum proposed a changed trust model to the effect that if hosts could be self-defending, then perimeter controls were not required.&nbsp; There was interest in the idea of more secure hosts but the proposal had flaws in that there weren\u2019t many organizations where all hosts were managed or controlled, and network or volumetric DDOS attacks meant even well managed hosts could be DOS\u2019d without network controls.<\/p>\n<p>There was a variation on the Jericho-like models where a central security controller would be used to manage all security.&nbsp; This was a pre-cursor to NAC, and the model had the flaw that the controller itself would become the target, including by DDOS.&nbsp; There was an improvement that the concept of unmanaged hosts could be an asset that was defended somehow.&nbsp; This became the precursor that we would later call NAC, although NAC\u2019s scope would be much more precise and deal better with availability.&nbsp; NAC isn\u2019t everywhere though because of other challenges, however NAC is a viable safeguard.<\/p>\n<p>Zero Trust seems to be a variation on Jericho and NAC, with instead of the focus being on self-defending hosts the model is based on not allowing activity to untrusted entities.&nbsp; It turns out that denying untrusted entities goes back 30 years in firewalling as \u2018Deny-All\u2019.&nbsp; It\u2019s been a best practice that the last rule in a firewall rules base is almost always Deny-All.&nbsp; Another long serving principal has been least-privilege, meaning that you don\u2019t allow entities to have more privilege than they need.<\/p>\n<p><strong>Lots of Security Technologies and Markets That Get Into the Discussion<\/strong><\/p>\n<p>Microsegmentation has been a very cool area of security tech.&nbsp; In a nutshell, microsegmentation is about being more explicit about what privileges zones have to communicate, and having more zones, and not limiting communication to \u2018north-south\u2019.&nbsp; The most common example of north-south communication is internet-webserver-appserver-dataserver.&nbsp; I mention microsegmentation because it evolved to deal primarily with enforcing separation and segmentation for mostly east-west communication in response to increased lateral movement attacks. &nbsp;One example use case is making sure the dev web server doesn\u2019t communicate with the live prod web server.&nbsp; In short, a technology to make sure that just because things were at the same tier they weren\u2019t assumed to trust one another.<\/p>\n<p>I include IPS and EPP as technologies here as well.&nbsp; EPP because an agented endpoint has exceptional security value, and IPS for providing virtual inline patching means that unmanaged or unagented endpoints can still be protected and not be exploited as well.&nbsp; In allowing A to talk to B, the state of A and B has great security relevance.<\/p>\n<p><strong>Naughty Marketing Has Confused Things<\/strong><\/p>\n<p>I\u2019ve observed that conflating what the zero and trust mean has been an issue.&nbsp; One group of definitions and marketing has been that you end up not having to trust anything and thus have zero risk.&nbsp; Ugh.&nbsp; Trust isn\u2019t binary except in&nbsp; very few environments.&nbsp; Think about IoT.&nbsp; Knowing that something is unpatched, doesn\u2019t have an agent, and yet must be a member of my network is very useful.&nbsp; An MRI machine.&nbsp; Do I trust it?&nbsp; Not completely.&nbsp; The second group of definitions center on not trusting things blindly being the solution.&nbsp; That is a much more reasonable view, and is what Deny-All has always been about, and maybe those rules or exceptions above the Deny-All rule.&nbsp; And within that Deny-All variation sometimes elements of least-privilege are attached.<\/p>\n<p><strong>So What Is Zero Trust?<\/strong><\/p>\n<p>I don\u2019t think that Zero Trust is a market or a product type.&nbsp; Buying a product with a lot of Zero Trust labeling won\u2019t fix your security on its own.&nbsp; My thinking is that Zero Trust is more a model or guiding design principal. Deny-All, least-privilege, NAC, and microsegmentation may be some or all of the technologies or approaches.&nbsp; Never be deluded that security architecture is easy: in my opinion it is the most advanced and challenging role and task in security.&nbsp; All security architectures do need to consider though whether the network is too flat, how are unmanaged endpoints dealt with, and regulating separation, segmentation and isolation. So look to implementing the good principles of Zero Trust, but beware of overly enthusiastic marketing of it as being something it likely isn\u2019t.&nbsp; I like Chase Cunningham\u2019s blog post on \u201cZero Trust On a Beer Budget\u201d.&nbsp; (go.forrester.com\/blogs\/zero-trust-on-a-beer-budget)<\/p>\n<p><strong>OK, OK, But What Products Enable Zero Trust?<\/strong><\/p>\n<p>Yeah, I do tend to go on, sorry.&nbsp; So here are the products within the Trend portfolio that best help implement a Zero Trust model, and what element:<\/p>\n<ul>\n<li><a href=\"https:\/\/www.trendmicro.com\/en_ca\/business\/products\/user-protection.html\">EPP<\/a> (Endpoint Protection Platform): an agented endpoint minimizes losing control, and maximizing identification. 2FA, whitelisting, app control, and encryption on endpoints. Apex One<\/li>\n<li><a href=\"https:\/\/www.trendmicro.com\/en_ca\/business\/products\/hybrid-cloud.html\">CWPP<\/a> (Cloud workload Protection Platform): provides whitelisting apps and resources, control of servers and containers in multi-cloud. Deep Security<\/li>\n<li><a href=\"https:\/\/www.trendmicro.com\/en_ca\/business\/products\/network.html\">Network IPS<\/a>: Shielding resources that can\u2019t be otherwise managed. TippingPoint<\/li>\n<li><a href=\"https:\/\/www.trendmicro.com\/en_ca\/business\/products\/network\/advanced-threat-protection.html\">Network Analytics<\/a>: mapping out afterwards where you have holes in your architecture, especially for \u2018surprise\u2019 lateral movements. Deep Discovery<\/li>\n<\/ul>\n<p> Read More <a href=\"https:\/\/blog.trendmicro.com\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\/\">HERE<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>It\u2019s always an indicator of confusion when instead of hearing \u201cI want Q\u201d I\u2019m asked \u201cwhat is Q?\u201d. In this case the \u2018Q\u2019 is Zero Trust.\u00a0 I\u2019ll try and give my best take on what I understand Zero Trust to be. History Repeats Let\u2019s start with the background. Quite a while back the Jericho Forum&#8230;<br \/>\nThe post Decrypting What Zero Trust Is, And What It Likely Isn&#8217;t appeared first on . Read More HERE&#8230;<\/p>\n","protected":false},"author":2,"featured_media":29497,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"colormag_page_layout":"default_layout","footnotes":""},"categories":[61],"tags":[311,307,254],"class_list":["post-29496","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-trendmicro","tag-current-news","tag-security","tag-uncategorized"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.7 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Decrypting What Zero Trust Is, And What It Likely Isn\u2019t 2026 | ThreatsHub Cybersecurity News<\/title>\n<meta name=\"description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.threatshub.org\/blog\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Decrypting What Zero Trust Is, And What It Likely Isn\u2019t 2026 | ThreatsHub Cybersecurity News\" \/>\n<meta property=\"og:description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.threatshub.org\/blog\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\/\" \/>\n<meta property=\"og:site_name\" content=\"ThreatsHub Cybersecurity News\" \/>\n<meta property=\"article:published_time\" content=\"2019-10-04T17:33:56+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2019\/10\/decrypting-what-zero-trust-is-and-what-it-likely-isnt.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"299\" \/>\n\t<meta property=\"og:image:height\" content=\"136\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"TH Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@threatshub\" \/>\n<meta name=\"twitter:site\" content=\"@threatshub\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"TH Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\\\/\"},\"author\":{\"name\":\"TH Author\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\"},\"headline\":\"Decrypting What Zero Trust Is, And What It Likely Isn\u2019t\",\"datePublished\":\"2019-10-04T17:33:56+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\\\/\"},\"wordCount\":947,\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2019\\\/10\\\/decrypting-what-zero-trust-is-and-what-it-likely-isnt.jpg\",\"keywords\":[\"Current News\",\"Security\"],\"articleSection\":[\"TrendMicro\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\\\/\",\"name\":\"Decrypting What Zero Trust Is, And What It Likely Isn\u2019t 2026 | ThreatsHub Cybersecurity News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2019\\\/10\\\/decrypting-what-zero-trust-is-and-what-it-likely-isnt.jpg\",\"datePublished\":\"2019-10-04T17:33:56+00:00\",\"description\":\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2019\\\/10\\\/decrypting-what-zero-trust-is-and-what-it-likely-isnt.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2019\\\/10\\\/decrypting-what-zero-trust-is-and-what-it-likely-isnt.jpg\",\"width\":299,\"height\":136},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Current News\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/tag\\\/current-news\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"Decrypting What Zero Trust Is, And What It Likely Isn\u2019t\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"name\":\"ThreatsHub Cybersecurity News\",\"description\":\"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"alternateName\":\"Threatshub.org\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\",\"name\":\"ThreatsHub.org\",\"alternateName\":\"Threatshub.org\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"width\":432,\"height\":435,\"caption\":\"ThreatsHub.org\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/threatshub\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\",\"name\":\"TH Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"caption\":\"TH Author\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Decrypting What Zero Trust Is, And What It Likely Isn\u2019t 2026 | ThreatsHub Cybersecurity News","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.threatshub.org\/blog\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\/","og_locale":"en_US","og_type":"article","og_title":"Decrypting What Zero Trust Is, And What It Likely Isn\u2019t 2026 | ThreatsHub Cybersecurity News","og_description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","og_url":"https:\/\/www.threatshub.org\/blog\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\/","og_site_name":"ThreatsHub Cybersecurity News","article_published_time":"2019-10-04T17:33:56+00:00","og_image":[{"width":299,"height":136,"url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2019\/10\/decrypting-what-zero-trust-is-and-what-it-likely-isnt.jpg","type":"image\/jpeg"}],"author":"TH Author","twitter_card":"summary_large_image","twitter_creator":"@threatshub","twitter_site":"@threatshub","twitter_misc":{"Written by":"TH Author","Est. reading time":"5 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.threatshub.org\/blog\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\/#article","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\/"},"author":{"name":"TH Author","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476"},"headline":"Decrypting What Zero Trust Is, And What It Likely Isn\u2019t","datePublished":"2019-10-04T17:33:56+00:00","mainEntityOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\/"},"wordCount":947,"publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2019\/10\/decrypting-what-zero-trust-is-and-what-it-likely-isnt.jpg","keywords":["Current News","Security"],"articleSection":["TrendMicro"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.threatshub.org\/blog\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\/","url":"https:\/\/www.threatshub.org\/blog\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\/","name":"Decrypting What Zero Trust Is, And What It Likely Isn\u2019t 2026 | ThreatsHub Cybersecurity News","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\/#primaryimage"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2019\/10\/decrypting-what-zero-trust-is-and-what-it-likely-isnt.jpg","datePublished":"2019-10-04T17:33:56+00:00","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","breadcrumb":{"@id":"https:\/\/www.threatshub.org\/blog\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.threatshub.org\/blog\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\/#primaryimage","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2019\/10\/decrypting-what-zero-trust-is-and-what-it-likely-isnt.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2019\/10\/decrypting-what-zero-trust-is-and-what-it-likely-isnt.jpg","width":299,"height":136},{"@type":"BreadcrumbList","@id":"https:\/\/www.threatshub.org\/blog\/decrypting-what-zero-trust-is-and-what-it-likely-isnt\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.threatshub.org\/blog\/"},{"@type":"ListItem","position":2,"name":"Current News","item":"https:\/\/www.threatshub.org\/blog\/tag\/current-news\/"},{"@type":"ListItem","position":3,"name":"Decrypting What Zero Trust Is, And What It Likely Isn\u2019t"}]},{"@type":"WebSite","@id":"https:\/\/www.threatshub.org\/blog\/#website","url":"https:\/\/www.threatshub.org\/blog\/","name":"ThreatsHub Cybersecurity News","description":"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform","publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"alternateName":"Threatshub.org","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.threatshub.org\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.threatshub.org\/blog\/#organization","name":"ThreatsHub.org","alternateName":"Threatshub.org","url":"https:\/\/www.threatshub.org\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","width":432,"height":435,"caption":"ThreatsHub.org"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/threatshub"]},{"@type":"Person","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476","name":"TH Author","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","caption":"TH Author"}}]}},"_links":{"self":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/29496","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/comments?post=29496"}],"version-history":[{"count":0,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/29496\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media\/29497"}],"wp:attachment":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media?parent=29496"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/categories?post=29496"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/tags?post=29496"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}