FreshRSS

๐Ÿ”’
โŒ About FreshRSS
There are new available articles, click to refresh the page.
Before yesterdayDark Reading:

'Beware the Lady Named Katie'

By Edge Editors Dark Reading
A semester-long course boiled down to two minutes and 45 seconds.

  • June 10th 2021 at 20:30

The Workforce Shortage in Cybersecurity Is a Myth

By Michael Roytman Chief Data Scientist, Kenna Security
What we really have is an automation-in-the-wrong-place problem.

  • June 10th 2021 at 19:00

Intl. Law Enforcement Operation Disrupts Slilpp Marketplace

By Dark Reading Staff
A seizure warrant affidavit unsealed today states Slilpp had sold allegedly stolen login credentials since 2012.

  • June 10th 2021 at 18:23

Deepfakes Are on the Rise, but Don't Panic Just Yet

By John Donegan Enterprise analyst at ManageEngine
Deepfakes will likely give way to deep suspicion, as users try to sort legitimate media from malicious.

  • June 10th 2021 at 17:00

11 Cybersecurity Vendors to Watch in 2021

By Jai Vijayan Contributing Writer
The cybersecurity landscape continues to spawn new companies and attract new investments. Here is just a sampling of what the industry has to offer.

  • June 10th 2021 at 16:15

Cyber Is the New Cold War & AI Is the Arms Race

By Nancy Grady Chief Data Scientist & Solutions Architect
Continual cyberattacks have pushed us into a new kind of Cold War, with artificial intelligence the basis of this new arms race.

  • June 10th 2021 at 14:00

Required MFA Is Not Sufficient for Strong Security: Report

By Robert Lemos Contributing Writer
Attackers and red teams find multiple ways to bypass poorly deployed MFA in enterprise environments, underscoring how redundancy and good design are still required.

  • June 9th 2021 at 22:30

What to Know About Updates to the PCI Secure Software Standard

By Sean Smith Manager II, PCI Compliance Services, Optiv
New requirements add 50 controls covering five control objectives. Here's a high-level look at each objective.

  • June 9th 2021 at 22:15

RSA Spins Off Fraud & Risk Intelligence Unit

By Kelly Sheridan Staff Editor, Dark Reading
The new company, called Outseer, will continue to focus on payment authentication and fraud detection and analysis.

  • June 9th 2021 at 21:38

CISA Addresses Rise in Ransomware Threatening OT Assets

By Dark Reading Staff
The agency has released guidance in response to a rise of ransomware attacks affecting OT assets and control systems.

  • June 9th 2021 at 21:02

New Security Event @Hack to Take Place in Saudi Arabia

By Dark Reading Staff
The Saudi Federation of Cybersecurity, Programming, and Drones (SAFCSP) and Informa Tech will launch a multi-day event in Riyadh this November.

  • June 9th 2021 at 19:54

With Cloud, CDO and CISO Concerns Are Equally Important

By Ameesh Divatia Co-Founder & CEO of Baffle
Navigated properly, a melding of these complementary perspectives can help keep an organization more secure.

  • June 9th 2021 at 17:00

Hardening the Physical Security Supply Chain to Mitigate the Cyber-Risk

By IFSEC Global Staff
Nick Smith, Regional Manager at Genetec, details how physical security professionals can improve their resilience to cyberattacks by reviewing the cybersecurity policies of those they work with in the supply chain. This includes everyone from component vendors to installers and engineers.

  • June 9th 2021 at 16:00

Ransomware Is Not the Problem

By Adam Shostack Consultant, Entrepreneur, Technologist, Game Designer
Arbitrarily powerful software -- applications, operating systems -- is a problem, as is preventing it from running on enterprise systems.

  • June 9th 2021 at 14:00

Phished Account Credentials Mostly Verified in Hours

By Robert Lemos Contributing Writer
Almost two-thirds of all phished credentials are verified by attackers within a day and then used in a variety of schemes, including business email compromise and targeting other users with malicious code.

  • June 8th 2021 at 22:20

Microsoft Patches 6 Zero-Days Under Active Attack

By Kelly Sheridan Staff Editor, Dark Reading
The June 2021 Patch Tuesday fixes 50 vulnerabilities, six of which are under attack and three of which were publicly known at the time of disclosure.

  • June 8th 2021 at 21:42

FBI Issued Encrypted Devices to Capture Criminals

By Dark Reading Staff
A sting operation delivered devices into the hands of global criminals and used the intelligence gathered to stop drug crimes.

  • June 8th 2021 at 20:53

Colonial Pipeline CEO: Ransomware Attack Started via Pilfered 'Legacy' VPN Account

By Dark Reading Staff
No multifactor authentication was attached to the stolen VPN password used by the attackers, Colonial Pipeline president & CEO Joseph Blount told a Senate committee today.

  • June 8th 2021 at 20:42

Microsoft CISO Shares Remote Work Obstacles & Lessons Learned

By Kelly Sheridan Staff Editor, Dark Reading
Bret Arsenault explains changes he implemented along the way as Microsoft's workforce went from 20% to 97% remote.

  • June 8th 2021 at 19:44

How Employees Can Keep Their 401(k)s Safe From Cybercriminals

By Matt Lindley COO and CISO at NINJIO
As retirement fund balances grow, cybercriminals are becoming more brazen in their efforts to deplete people's savings.

  • June 8th 2021 at 19:00

Cyber Resilience: The Emerald City of the Security World

By Ryan Weeks Chief Information Security Officer at Datto
Small and midsize businesses and managed service providers must use their heart, brain, and courage as they follow the Yellow Brick Road to cyber resilience.

  • June 8th 2021 at 17:00

An Answer to APP Scams You Can Bank On

By Amelia Ahlgren EVP, Strategy and Operations, BioCatch
Financial institutions' usual fraud-detection methods can't detect most authorized push payment (APP) scams, putting customers and banks at risk.

  • June 8th 2021 at 14:00

First Known Malware Surfaces Targeting Windows Containers

By Jai Vijayan Contributing Writer
Siloscape is designed to create a backdoor in Kubernetes clusters to run malicious containers.

  • June 7th 2021 at 22:20

DoJ Seizes $2.3M in Bitcoin Paid to Colonial Pipeline Attackers

By Dark Reading Staff
The amount allegedly represents a May 8 payment to the DarkSide ransomware group.

  • June 7th 2021 at 21:57

Latvian Woman Charged for Role In Crafting Trickbot Malware

By Dark Reading Staff
Alla Witte and her associates are accused of using Trickbot to infect tens of millions of computers around the world, the Justice Department reports.

  • June 7th 2021 at 19:36

CISA Warns Criminals Seek to Exploit Critical VMware Bug

By Dark Reading Staff
Organizations running vCenter Server and VMware Cloud Foundation are urged to apply fixes deployed on May 25.

  • June 7th 2021 at 18:58

Cartoon Caption Winner: Road Trip

By John Klossner Cartoonist
And the winner of Dark Reading's cartoon caption contest is ...

  • June 7th 2021 at 18:20

Cyber Athletes Compete to Form US Cyber Team

By Jessica Gulick US Cyber Games Commissioner
Here's how security pros can showcase value to future employers: a field of friendly strife to measure their aptitude against competitors.

  • June 7th 2021 at 17:00

NortonLifeLock Criticized for New Cryptomining Feature

By Robert Lemos Contributing Writer
While the crypto crowd applauds the move, critics worry about the environmental impact, supporting a currency used for ransomware, and mining further slowing down systems.

  • June 7th 2021 at 14:25

How Can I Test the Security of My Home-Office Employees' Routers?

By John Bock, senior research scientist, Optiv: This can be a challenging question because it depends on your user population and how creative your legal department wants to be.
From the most accurate to the most practical, here are a few ways to ensure both employees and organizations are protected from risk.

  • June 7th 2021 at 14:00

The US Must Redefine Critical Infrastructure for the Digital Era

By Caleb Barlow CEO and President, CynergisTek
The template being used to manage essential connectivity isn't just outdated, it's actively counter-productive.

  • June 7th 2021 at 14:00

SentinelOne Files S-1 for IPO

By Dark Reading Staff
The security company looks to raise up to $100 million in its IPO, its filing reveals.

  • June 4th 2021 at 19:15

Organizations Shift Further Left in App Development

By Dark Reading Staff
Most IT and security professionals surveyed think security is a critical enough reason to pause app development.

  • June 4th 2021 at 15:46

Data Breaches Drive Higher Loan Interest Rates

By Robert Lemos Contributing Writer
Businesses that suffer a security breach may not see their stock price tumble, but they may pay higher rates for loans and be forced to provide collateral, researchers report.

  • June 4th 2021 at 15:30

Welcome to the New Workplace

By Joshua Goldfarb Director of Product Management at F5
The pandemic has changed the landscape in which security pros work. Here are five ways how.

  • June 4th 2021 at 14:15

What the FedEx Logo Taught Me About Cybersecurity

By Matt Shea Head of Federal @ MixMode
Cyber threats are staring you in the face, but you can't see them.

  • June 4th 2021 at 14:00

The Perfect Storm for PAM to Grow In

By Don Tait Senior Analyst, Identity, Authentication, Access, Omdia
With more staff working remotely, privileged access management (or PAM) has never been more important. Market forecasts, drivers, and trends are explored.

  • June 4th 2021 at 13:00

Proposed Sale Casts Cloud Over Future of FireEye's Products

By Jai Vijayan Contributing Writer
Symphony Technology Group, which is buying FireEye, already owns multiple security companies "with redundancies in numerous areas."

  • June 3rd 2021 at 22:15

Google Experts Explore Open Source Security Challenges & Fixes

By Kelly Sheridan Staff Editor, Dark Reading
An open source security event brought discussions of supply chain security and managing flaws in open source projects.

  • June 3rd 2021 at 21:54

NY & Mass. Transportation Providers Targeted in Recent Attacks

By Dark Reading Staff
New York's Metropolitan Transportation Authority and the Steamship Authority of Massachusetts were both victims of cyberattacks.

  • June 3rd 2021 at 20:36

REvil Behind JBS Ransomware Attack: FBI

By Dark Reading Staff
Officials attribute the attack to REvil/Sodinokibi and say they are working to bring the threat actors to justice.

  • June 3rd 2021 at 19:19

The True Cost of a Ransomware Attack

By Tyler Hudak Practice Lead, Incident Response, at TrustedSec
Companies need to prepare for the costs of an attack now, before they get attacked. Here's a checklist to help.

  • June 3rd 2021 at 17:00

The Colonial Pipeline Attack Is Your Boardroom Wake-Up Call

By Dan Verton Director, ThreatConnect
Why business leaders must adopt a risk-led approach to cybersecurity.

  • June 3rd 2021 at 14:00

Phishing Emails Remain in User Inboxes Over 3 Days Before They're Removed

By Jai Vijayan Contributing Writer
Most malicious emails get blocked, but the ones that get through linger around dangerously long, a new study shows.

  • June 2nd 2021 at 22:25

FireEye Sells Products Business to Symphony Group for $1.2B

By Dark Reading Staff
The transaction will include the FireEye brand name; the business that remains will be called Mandiant Solutions.

  • June 2nd 2021 at 21:04

Encryption Helps Companies Avoid Breach Notifications

By Robert Lemos Contributing Writer
With nearly twice as many firms suffering a breach compared with the previous year, limiting the damage becomes more important, a survey finds.

  • June 2nd 2021 at 20:55

Microsoft Buys ReFirm Labs to Drive IoT Security Efforts

By Kelly Sheridan Staff Editor, Dark Reading
The acquisition will bring ReFirm's firmware analysis capabilities alongside Microsoft's Azure Defender for IoT to boost device security.

  • June 2nd 2021 at 18:52

A View From Inside a Deception

By Sara Peters Senior Editor at Dark Reading
Pen-testing today's threat deception technology is not for the faint-hearted. Do modern deception tools truly frustrate adversaries, and are they ready for the enterprise SOC?

  • June 2nd 2021 at 18:35

Critical Zero-Day Discovered in Fancy Product Designer WordPress Plug-in

By Dark Reading Staff
The plug-in under active attack has been installed on more than 17,000 websites, say researchers.

  • June 2nd 2021 at 17:42

Is Your Adversary James Bond or Mr. Bean?

By Jonathan Couch Senior VP of Strategy, ThreatQuotient
Especially with nation-state attacks, its critical to assess whether you're up against jet fighter strength or a bumbler who tries to pick locks.

  • June 2nd 2021 at 17:00

Microsoft 365: Most Common Threat Vectors & Defensive Tips

By Kelly Sheridan Staff Editor, Dark Reading
Security pros discuss the most typical ways attackers leverage Microsoft 365 and share their guidance for defenders.

  • June 2nd 2021 at 16:00

Chaos for the Sake of Chaos? Yes, Nation-States Are That Cynical

By Adam Darrah Director of Intelligence, Vigilante
Many nation-state-backed attacks are intended to destabilize the US government, not steal from it.

  • June 2nd 2021 at 14:00

Processor Morphs Its Architecture to Make Hacking Really Hard

By Robert Lemos Contributing Writer
Researchers create a processor that uses encryption to modify its memory architecture during runtime, making it very difficult for hackers to exploit memory-based vulnerabilities.

  • June 2nd 2021 at 13:10

US Seizes Attacker Domains Used in USAID Phishing Campaign

By Kelly Sheridan Staff Editor, Dark Reading
The move follows last week's disclosure of an ongoing attack designed to mimic emails from the US Agency for International Development.

  • June 1st 2021 at 22:40

New Barebones Ransomware Strain Surfaces

By Jai Vijayan Contributing Writer
The authors of Epsilon Red have offloaded many tasks that are usually integrated into the ransomware -- such as Volume Shadow Copy deletion -- to PowerShell scripts.

  • June 1st 2021 at 22:20

Meat Producer JBS USA Hit By Ransomware Attack

By Dark Reading Staff
The company says recovery from the attack may delay transactions with customers and suppliers.

  • June 1st 2021 at 20:22

Return to Basics: Email Security in the Post-COVID Workplace

By Eyal Benishti CEO & Founder of IRONSCALES
As we reimagine the post-pandemic workplace, we must also reevaluate post-pandemic email security practices.

  • June 1st 2021 at 17:00

Name That Edge Toon: In Tow

By John Klossner Cartoonist
Feeling creative? Submit your caption in the comments, and our panel of experts will reward the winner with a $25 Amazon gift card.

  • June 1st 2021 at 16:15

CISO Confidence Is Rising, but Issues Remain

By Marc Wilczek Digital Strategist & COO of Link11
New research reveals how global CISOs dealt with COVID-19 and their plans for 2022-2023.

  • June 1st 2021 at 14:00

Cybersecurity Group Hopes to Push 30 More National Priorities

By Robert Lemos Contributing Writer
The Cyberspace Solarium Commission worked with legislators and the Trump administration to get 27 recommendations implemented in policy last year. It's aiming for 30 more in 2021.

  • June 1st 2021 at 13:00
โŒ