FreshRSS

๐Ÿ”’
โŒ About FreshRSS
There are new available articles, click to refresh the page.
Before yesterdayDark Reading:

New Normal Demands New Security Leadership Structure

By Kelly Sheridan Staff Editor, Dark Reading
At the inaugural Omdia Analyst Summit, experts discuss where the past year has created gaps in traditional security strategy and how organizations can fill them.

  • August 2nd 2021 at 18:35

Multiple Zero-Day Flaws Discovered in Popular Hospital Pneumatic Tube System

By Kelly Jackson Higgins Executive Editor at Dark Reading
"PwnedPiper" flaws could allow attackers to disrupt delivery of lab samples or steal hospital employee credentials, new research shows.

  • August 2nd 2021 at 13:00

8 Security Tools to be Unveiled at Black Hat USA

By Ericka Chickowski Contributing Writer
Security researchers and practitioners share a host of new cyber tools for penetration testing, reverse engineering, malware defense, and more.

  • July 28th 2021 at 19:00

Biden Administration Responds to Geopolitical Cyber Threats

By Tanner Johnson Principal Analyst, Data Security, Omdia
In response to growing concerns regarding the recent uptick in large-scale, nation-state-backed ransomware attacks on critical infrastructure, the Biden administration is taking new action to tackle the evolving challenges posed by ransomware attacks.

  • July 23rd 2021 at 18:50

7 Hot Cyber Threat Trends to Expect at Black Hat

By Ericka Chickowski Contributing Writer
A sneak peek of some of the main themes at Black Hat USA next month.

  • July 22nd 2021 at 16:45

Law Firm for Ford, Pfizer, Exxon Discloses Ransomware Attack

By Dark Reading Staff
Campbell Conroy & O'Neil reports the attack affected personal data including Social Security numbers, passport numbers, and payment card data for some individuals.

  • July 19th 2021 at 21:24

US Accuses China of Using Criminal Hackers in Cyber Espionage Operations

By Jai Vijayan Contributing Writer
DOJ indicts four Chinese individuals for alleged role in attacks targeting intellectual property, trade secrets belonging to defense contractors, maritime companies, aircraft service firms, and others.

  • July 19th 2021 at 20:40

How Gaming Attack Data Aids Defenders Across Industries

By Robert Lemos Contributing Writer
Web application attacks against the video game industry quadrupled in 2020 compared to the previous year, but companies outside entertainment can learn from the data.

  • July 19th 2021 at 20:30

NSO Group Spyware Used On Journalists & Activists Worldwide

By Dark Reading Staff
An investigation finds Pegasus spyware, intended for use on criminals and terrorists, has been used in targeted campaigns against others around the world.

  • July 19th 2021 at 18:53

When Ransomware Comes to (Your) Town

While steps for defending against a ransomware attack vary based on the size of the government entity and the resources available to each one, rooting out ransomware ultimately will come down to two things: system architecture and partnerships.
  • July 19th 2021 at 17:25

7 Ways AI and ML Are Helping and Hurting Cybersecurity

By Andrey Shklyarov & Dmitry Vyrostkov Chief Compliance Officer, DataArt / Chief Software Architect, Security Services, DataArt
In the right hands, artificial intelligence and machine learning can enrich our cyber defenses. In the wrong hands, they can create significant harm.

  • July 19th 2021 at 14:00

Breaking Down the Threat of Going All-In With Microsoft Security

By Nat Kausik CEO and Co-Founder of Bitglass
Limit risk by dividing responsibility for infrastructure, tools, and security.

  • July 19th 2021 at 14:00

Researchers Create New Approach to Detect Brand Impersonation

By Kelly Sheridan Staff Editor, Dark Reading
A team of Microsoft researchers developed and trained a Siamese Neural Network to detect brand impersonation attacks.

  • July 16th 2021 at 20:29

Recent Attacks Lead to Renewed Calls for Banning Ransom Payments

By Robert Lemos Contributing Writer
While attackers in protected jurisdictions continue to get massive sums for continuing to breach organizations, the ransomware threat will only continue to grow.

  • July 16th 2021 at 18:20

4 Future Integrated Circuit Threats to Watch

By Dr. Matthew Areno Principal Engineer, Security Architecture and Engineering, Intel
Threats to the supply chains for ICs and other computer components are poised to wreak even more havoc on organizations.

  • July 16th 2021 at 14:00

How to Attract More Computer Science Grads to the Cybersecurity Field

By Biagio DeSimone Enterprise Solution Architect, Aqua Security
With 465,000 cybersecurity job openings in the United States, why is recruiting so difficult? A recent college graduate offers his take.

  • July 16th 2021 at 13:30

Attackers Exploited 4 Zero-Day Flaws in Chrome, Safari & IE

By Jai Vijayan Contributing Writer
At least two government-backed actors -- including one Russian group -- used the now-patched flaws in separate campaigns, Google says.

  • July 15th 2021 at 22:35

State Dept. to Pay Up to $10M for Information on Foreign Cyberattacks

By Robert Lemos Contributing Writer
The Rewards for Justice program, a counterterrorism tool, is now aimed at collecting information on nation-states that use hackers to disrupt critical infrastructure.

  • July 15th 2021 at 21:10

CISA Launches New Website to Aid Ransomware Defenders

By Dark Reading Staff
StopRansomware.gov provides information to help organizations protect against, and respond to, ransomware attacks.

  • July 15th 2021 at 19:58

Microsoft: Israeli Firm's Tools Used to Target Activists, Dissidents

By Kelly Sheridan Staff Editor, Dark Reading
Candiru sold spyware that exploited Windows vulnerabilities and had been used in attacks against dissidents, activists, and journalists.

  • July 15th 2021 at 19:54

IoT-Specific Malware Infections Jumped 700% Amid Pandemic

By Dark Reading Staff
Gafgyt and Mirai malware represented majority of IoT malware, new data from Zscaler shows.

  • July 15th 2021 at 19:36

How to Bridge On-Premises and Cloud Identity

By Gerry Gebel Head of Standards, Strata Identity
Identity fabric, a cloud-native framework, removes the need for multiple, siloed, proprietary identity systems.

  • July 15th 2021 at 17:00

What to Look for in an Effective Threat Hunter

By Troy Gill Manager of Security Research and Zix's AppRiver Threat Research Team
The most important personality traits, skills, and certifications to look for when hiring a threat hunting team.

  • July 15th 2021 at 14:00

SonicWall: 'Imminent' Ransomware Attack Targets Older Products

By Dark Reading Staff
The attack exploits a known vulnerability that was fixed in new versions of firmware released this year.

  • July 14th 2021 at 21:42

Google to Bring HTTPS-First Mode to Chrome Browser

By Dark Reading Staff
Beginning in M94, Chrome will offer HTTPS-First Mode, which will attempt to upgrade all page loads to HTTPS.

  • July 14th 2021 at 21:00

Targeted Attack Activity Heightens Need for Orgs. to Patch New SolarWinds Flaw

By Jai Vijayan Contributing Writer
A China-based threat actor -- previously observed targeting US defense industrial base organizations and software companies -- is exploiting the bug in SolarWinds' Serv-U software, Microsoft says.

  • July 14th 2021 at 20:20

Did the Cybersecurity Workforce Gap Distract Us From the Leak?

By Jessica Gulick US Cyber Games Commissioner
Cyber games can play a critical role in re-engaging our workforce and addressing the employee retention crisis.

  • July 14th 2021 at 17:00

10 Mistakes Companies Make In Their Ransomware Responses

By Joan Goodchild Staff Editor
Hit by ransomware? These missteps can take a bad scenario and make it even worse.

  • July 14th 2021 at 16:15

4 Integrated Circuit Security Threats and How to Protect Against Them

By Dr. Matthew Areno Principal Engineer, Security Architecture and Engineering, Intel
Little-understood threats involving the IC supply chain are putting organizations around the world at risk.

  • July 14th 2021 at 14:00

New Phishing Campaign Targets Individuals of Interest to Iran

By Jai Vijayan Contributing Writer
TA453 group spoofed two scholars at University of London to try and gain access to email inboxes belonging to journalists, think tank personnel, academics, and others, security vendor says.

  • July 13th 2021 at 22:00

Microsoft Patches 3 Windows Zero-Days Amid 117 CVEs

By Kelly Sheridan Staff Editor, Dark Reading
The July Patch Tuesday release also includes the out-of-band fix for the Windows Print Spooler remote code execution flaw under attack.

  • July 13th 2021 at 21:25

DoD-Validated Data Security Startup Emerges From Stealth

By Dark Reading Staff
The Code-X platform has been tested by the US Department of Defense and members of the intelligence community.

  • July 13th 2021 at 18:34

Why We Need to Raise the Red Flag Against FragAttacks

By Amichai Shulman CTO and Co-founder of AirEye
Proliferation of wireless devices increases the risk that corporate networks will be attacked with this newly discovered breed of Wi-Fi-based cyber assault.

  • July 13th 2021 at 17:00

Enterprises Altering Their Supply Chain Defenses on Heels of Latest Breaches

By Edge Editors Dark Reading
More than half of enterprises surveyed for Dark Reading's State of Malware Threats report indicate they are making at least a few changes to their supply chain security defenses following recent attacks on software vendors such as SolarWinds.

  • July 13th 2021 at 15:30

Can Government Effectively Help Businesses Fight Cybercrime?

By Robert Lemos Contributing Writer
From the Biden administration's pledge to take action to INTERPOL's focus on ransomware as a global threat, governments are looking to help businesses cope with cyberattacks. But can it really work?

  • July 13th 2021 at 15:00

The Trouble With Automated Cybersecurity Defenses

By Steve Durbin CEO of the Information Security Forum
While there's enormous promise in AI-powered tools and machine learning, they are very much a double-edged sword.

  • July 13th 2021 at 14:00

Tool Sprawl & False Positives Hold Security Teams Back

By Kelly Sheridan Staff Editor, Dark Reading
Security teams spend as much time addressing false positive alerts as they do addressing actual cyberattacks, survey data shows.

  • July 13th 2021 at 12:30

SolarWinds Discloses Zero-Day Under Active Attack

By Dark Reading Staff
The company confirms this is a new vulnerability that is not related to the supply chain attack discovered in December 2020.

  • July 12th 2021 at 20:47

Microsoft Confirms Acquisition of RiskIQ

By Dark Reading Staff
RiskIQ's technology helps businesses assess their security across the Microsoft cloud, Amazon Web Services, other clouds, and on-premises.

  • July 12th 2021 at 18:26

Kaseya Releases Security Patch as Companies Continue to Recover

By Robert Lemos Contributing Writer
Estimates indicate the number of affected companies could grow, while Kaseya faces renewed scrutiny as former employees reportedly criticize its lack of focus on security.

  • July 12th 2021 at 15:35

AI and Cybersecurity: Making Sense of the Confusion

By Oleg Brodt R&D Director of Deutsche Telekom Innovation Labs, Israel, and Chief Innovation Officer for Cyber@Ben-Gurion University
Artificial intelligence is a maturing area in cybersecurity, but there are different concerns depending on whether you're a defender or an attacker.

  • July 12th 2021 at 14:00

Navigating Active Directory Security: Dangers and Defenses

By Kelly Sheridan Staff Editor, Dark Reading
Microsoft Active Directory, ubiquitous across enterprises, has long been a primary target for attackers seeking network access and sensitive data.

  • July 12th 2021 at 13:30

How Dangerous Is Malware? New Report Finds It's Tough to Tell

By Dark Reading Staff
Determining which malware is most damaging, and worthy of immediate attention, has become difficult in environments filled with alerts and noise.

  • July 9th 2021 at 20:11

CISA Analysis Reveals Successful Attack Techniques of FY 2020

By Dark Reading Staff
The analysis shows potential attack paths and the most effective techniques for each tactic documented in CISA's Risk and Vulnerability Assessments.

  • July 9th 2021 at 19:04

New Framework Aims to Describe & Address Complex Social Engineering Attacks

By Kelly Sheridan Staff Editor, Dark Reading
As attackers use more synthetic media in social engineering campaigns, a new framework is built to describe threats and provide countermeasures.

  • July 9th 2021 at 18:59

I Smell a RAT! New Cybersecurity Threats for the Crypto Industry

By David Trepp Partner, IT Assurance with accounting and advisory firm BPM LLP
The ElectroRAT Trojan attacker's success highlights the increasingly sophisticated nature of threats to cryptocurrency exchanges, wallets, brokerages, investing, and other services.

  • July 9th 2021 at 14:30

It's in the Game (but It Shouldn't Be)

By Tal Memran Cybersecurity Expert, CYE
Five ways that game developers (and others) can avoid falling victim to an attack like the one that hit EA.

  • July 9th 2021 at 14:00

Cartoon Caption Winner: Sight Unseen

By John Klossner Cartoonist
And the winner of Dark Reading's June contest is ...

  • July 9th 2021 at 13:10

Morgan Stanley Discloses Data Breach

By Dark Reading Staff
Attackers were able to compromise customers' personal data by targeting the Accellion FTA server of a third-party vendor.

  • July 8th 2021 at 20:56

New WildPressure Malware Capable of Targeting Windows and MacOS

By Dark Reading Staff
The Trojan sends information back to the attackers' servers about the programming language of a target device.

  • July 8th 2021 at 19:44

Kaseya Hacked via Authentication Bypass

By Don Tait Senior Analyst, Identity, Authentication, Access, Omdia
The Kaseya ransomware attack is believed to have been down to an authentication bypass. Yes, ransomware needs to be on your radar -- but good authentication practices are also imperative.

  • July 8th 2021 at 15:00

The NSA's 'New' Mission: Get More Public With the Private Sector

By Kelly Jackson Higgins Executive Editor at Dark Reading
The National Security Agency's gradual emergence from the shadows was "inevitable" in cybersecurity, says Vinnie Liu, co-founder and CEO of offensive security firm Bishop Fox and a former NSA analyst. Now the agency has to figure out how to best work with the private sector, especially organizations outside the well-resourced and seasoned Fortune 100.

  • July 8th 2021 at 14:30

What Colonial Pipeline Means for Commercial Building Cybersecurity

By Megan Samford Chief Product Security Officer for Energy Management at Schneider Electric
Banks and hospitals may be common targets, but now commercial real estate must learn to protect itself against stealthy hackers.

  • July 8th 2021 at 14:00

Attacks on Kaseya Servers Led to Ransomware in Less Than 2 Hours

By Robert Lemos Contributing Writer
Automation allowed a REvil affiliate to move from exploitation of vulnerable servers to installing ransomware on downstream companies faster than most defenders could react.

  • July 7th 2021 at 20:55

Fake Android Apps Promise Cryptomining Services to Steal Funds

By Dark Reading Staff
Researchers discover more than 170 Android apps that advertise cloud cryptocurrency mining services and fail to deliver.

  • July 7th 2021 at 19:34

Sophos Acquires Capsule8 for Linux Server & Container Security

By Dark Reading Staff
The deal was announced the same day ZeroFox bought Dark Web intelligence firm Vigilante as a wave of security M&A continues.

  • July 7th 2021 at 18:54

Are Security Attestations a Necessity for SaaS Businesses?

By Viral Trivedi Chief Business Officer at Ampcus Cyber
Are security attestations becoming business imperatives, or are they merely token additions on the list of regulatory requirements?

  • July 7th 2021 at 17:00

Microsoft Releases Emergency Patch for 'PrintNightmare' Vuln

By Jai Vijayan Contributing Writer
It urges organizations to immediately apply security update, citing exploit activity.

  • July 7th 2021 at 16:30

Security 101: The 'PrintNightmare' Flaw

By Jai Vijayan Contributing Writer
A closer look at the printer software vulnerability - and what you can do about it.

  • July 7th 2021 at 14:50

Autonomous Security Is Essential if the Edge Is to Scale Properly

By Harley Stowell Founder and CEO, Sea Street Technology
Service demands at the network edge mean customers need to get cost, performance, and security right.

  • July 7th 2021 at 14:00
โŒ