FreshRSS

๐Ÿ”’
โŒ About FreshRSS
There are new available articles, click to refresh the page.
Before yesterdayDark Reading:

Google Translate Helps BEC Groups Scam Companies in Any Language

By Becky Bracken, Editor, Dark Reading
BEC gangs Midnight Hedgehog and Mandarin Capybara show how online marketing and translation tools are making it easy for these threat groups to scale internationally.

  • February 17th 2023 at 21:00

Inglis Retires as National Cyber Director Ahead of Biden's Cybersecurity EO

By Dark Reading Staff, Dark Reading
The long-time NSA and cyber specialist says he's exiting the public sector.

  • February 17th 2023 at 19:00

Not Stoked: Burton Snowboards' Online Orders Disrupted After Cyberattack

By Dark Reading Staff, Dark Reading
The snow sports specialist is investigating to see what caused the operations-disrupting "cyber incident."

  • February 17th 2023 at 18:20

Massive GoAnywhere RCE Exploit: Everything You Need to Know

By Nate Nelson, Contributing Writer, Dark Reading
Weeks after an exploit was first announced in a popular cloud-based file transfer service, could some organizations still be vulnerable? The answer is yes.

  • February 17th 2023 at 17:35

AppSec Threats Deserve Their Own Incident Response Plan

By Omer Yaron, Head of Research, Enso Security
With a rearranging of priorities and good incident response plans, organizations can be ready to face the future of software attacks.

  • February 17th 2023 at 15:00

Encrypted Traffic, Once Thought Safe, Now Responsible For Most Cyberthreats

By Deepen Desai, CISO and VP, Security Research, Zscaler
It's a classic attacker move: Use security protections against those who deploy them. But organizations can still defuse and prevent these encrypted attacks.

  • February 16th 2023 at 08:00

ESXi Ransomware Update Outfoxes CISA Recovery Script

By Dark Reading Staff, Dark Reading
New ESXiArgs-ransomware attacks include a workaround for CISA's decryptor, researchers find.

  • February 16th 2023 at 22:34

Atlassian: Leaked Data Stolen via Third-Party App

By Dark Reading Staff, Dark Reading
SiegedSec threat group leaked data that Atlassian says was taken from app used to coordinate in-office resources.

  • February 16th 2023 at 22:10

MVP Vibe Fest Bridges Gap Between Athletics and Cybersecurity

Top athletes compete both on and off the track in a mix of track and field events and cyber games.
  • February 16th 2023 at 21:00

WatchGuard Launches New Line of Firewall Products to Enhance Unified Security for Remote and Distributed Businesses

Powered by WatchGuardโ€™s Unified Security Platformยฎ architecture, new Fireboxes deliver enhanced performance and added security capabilities that MSPs and IT admins can easily manage in WatchGuard Cloud.
  • February 16th 2023 at 19:51

Cybersecurity Jobs Remain Secure Despite Recession Fears

By Robert Lemos, Contributing Writer, Dark Reading
Only 10% of corporate executives expect to lay off members of cybersecurity teams in 2023, much lower than other areas, as companies protect hard-to-find skill sets.

  • February 16th 2023 at 19:34

SideWinder APT Spotted Targeting Crypto

By Elizabeth Montalbano, Contributor, Dark Reading
The nation-state threat group has been attacking a wider range of victims and regions than previously thought.

  • February 16th 2023 at 16:41

Window Snyder's Startup Launches Security Platform for IoT Device Makers

By Jai Vijayan, Contributing Writer, Dark Reading
Thistle's technology will give device makers a way to easily integrate features for secure updates, memory management, and communications into their products, Snyder says.

  • February 16th 2023 at 15:35

Simplify to Survive: How Organizations Can Navigate Cyber-Risk

By Richard Watson, Global and Asia-Pacific Cybersecurity Consulting Leader, EY
Simplification can result in efficiencies, reduced overhead, and the ability to respond to cyber threats more quickly.

  • February 16th 2023 at 15:00

Descope Handles Authentication So Developers Don't Have To

By Fahmida Y. Rashid, Managing Editor, Features, Dark Reading
Developers don't have to build authentication and user management from scratch, and can devote their energies to the core functions of the application, instead.

  • February 16th 2023 at 02:00

Infrastructure Risks Increase As IT and OT Converge

By Microsoft Security, Microsoft
Explosive growth of devices associated with the Internet of Things and operational technologies gives attackers a larger pool of targets.

  • February 15th 2023 at 08:00

Oligo Security Takes Aim at Open Source Vulnerabilities

By Dark Reading Staff, Dark Reading
The startup's software helps organizations secure their containers in the cloud by teasing out which packages are running and which are vulnerable.

  • February 16th 2023 at 01:00

ChatGPT Subs In as Security Analyst, Hallucinates Only Occasionally

By Robert Lemos, Contributing Writer, Dark Reading
Incident response triage and software vulnerability discovery are two areas where the large language model has demonstrated success, although false positives are common.

  • February 15th 2023 at 22:50

Brivo Reveals Top Security Trends for 2023: Convenience Is King in Securing the Hybrid Workplaces of the Future

Factoring user experience and convenience into how employees and tenants access buildings is top concern for security professionals says benchmark industry survey.
  • February 15th 2023 at 20:47

Call for Speakers Now Open for the RH-ISAC Cyber Intelligence Summit

Retail & Hospitality ISAC invites industry leaders, experts, and innovators to submit proposals for presentations and panel discussions.
  • February 15th 2023 at 20:45

GAO Calls for Improved Data Privacy Protections

By Dark Reading Staff, Dark Reading
US federal watchdog agency outlines key measures for better protecting sensitive data under the federal government's control.

  • February 15th 2023 at 20:18

2023 Is the Year of Risk: 5 Ways to Prepare

2022 saw a record number of cyberattacks. In response, regulators are prescribing how companies should manage their risks. How do you prepare?
  • February 15th 2023 at 20:00

3 Ways CISOs Can Lead Effectively and Avoid Burnout

By Steve Shelton, CEO, Green Shoe Consulting
Information security is a high-stakes field with sky-high expectations. Here's how CISOs can can offset the pressures and stay healthy.

  • February 15th 2023 at 19:55

What Purple Teams Wish Companies Knew

By Dark Reading Staff, Dark Reading
Here are some of the easily avoidable mistakes most companies made last year, gleaned from hundreds of cybersecurity engagements by red and blue teams.

  • February 15th 2023 at 19:00

Build Cyber Resiliency With These Security Threat-Mitigation Considerations

By Steve Durbin, CEO, Information Security Forum
CISOs need to define their risk tolerance, identify specific critical data, and make changes based on strategic business goals.

  • February 15th 2023 at 18:00

5th State of CCPA, CPRA, and GDPR Compliance Report Shows More Than 90% of Companies Are Not Compliant

As CPRA went into effect on January 1, latest CYTRIO research says 91% of companies still uncompliant with GDPR; 92% not compliant with CCPA and CPRA.
  • February 15th 2023 at 16:21

NIST's New Crypto Standard a Step Forward in IoT Security

By Robert Lemos, Contributing Writer, Dark Reading
The National Institute of Standards and Technology has settled on a standard for encrypting Internet of Things (IoT) communications, but many devices remain vulnerable and unpatched.

  • February 15th 2023 at 15:30

How Security Teams Can Protect Employees Beyond Corporate Walls

By Josh Yavor, CISO, Tessian
De-shaming security mistakes and taking the blame and punishment out of incident reporting can strengthen security efforts both inside and outside of the workplace.

  • February 15th 2023 at 15:00

Russian Cybercriminal Faces Decades in Prison for Hacking and Trading Operation

By Elizabeth Montalbano, Contributor, Dark Reading
Vladislav Klyushin and co-conspirators used SEC filings stolen from the networks of Tesla, Roku, and other publicly traded companies to earn nearly $100 million in illegal trades.

  • February 15th 2023 at 14:00

Expel Tackles Cloud Threats With MDR for Kubernetes

By Dark Reading Staff, Dark Reading
The new managed detection and response platform simplifies cloud security for Kubernetes applications.

  • February 15th 2023 at 01:00

OT Network Security Myths Busted in a Pair of Hacks

By Kelly Jackson Higgins, Editor-in-Chief, Dark Reading
How newly exposed security weaknesses in industrial wireless, cloud-based interfaces, and nested PLCs serve as a wake-up call for hardening the physical process control layer of the OT network.

  • February 14th 2023 at 22:47

9 New Microsoft Bugs to Patch Now

By Jai Vijayan, Contributing Writer, Dark Reading
78 new CVEs patched in this month's batch โ€” nearly half of which are remotely executable and three of which attackers already are exploiting.

  • February 14th 2023 at 22:20

Oakland City Services Struggle to Recover From Ransomware Attack

By Dark Reading Staff, Dark Reading
Fire emergency, 911 services functioning, along with Oakland financial systems, city says.

  • February 14th 2023 at 19:50

Configuration Issues in SaltStack IT Tool Put Enterprises at Risk

By Elizabeth Montalbano, Contributor, Dark Reading
Researchers flag common misconfiguration errors and a template injection technique that could let an attacker take over the IT management network and connected systems.

  • February 14th 2023 at 19:08

Hospitals Sued for Using Meta's Ad-Tracking Code, Violating HIPAA

By Dark Reading Staff, Dark Reading
Lawsuits say hospitals using Meta Pixel code violated patient privacy โ€” sharing conditions, medications, and more with Facebook.

  • February 14th 2023 at 18:59

Why SecDataOps Is the Future of Your Security Program

By Jonathan Rau, CISO, Lightspin
The goal: Ensure that data is always finely curated and accessible, and that security decisions get made with high-fidelity data.

  • February 14th 2023 at 18:00

Cyber-Physical Systems Vulnerability Disclosures Reach Peak, While Disclosures by Internal Teams Increase 80% Over 18 Months

State of XIoT Security Report: 2H 2022 from Claroty's Team82 reveals positive impact by researchers on strengthening XIoT security and increased investment among XIoT vendors in securing their products.
  • February 14th 2023 at 16:00

Lessons All Industries Can Learn From Automotive Security

By Sergej Dechand, CEO and Co-Founder, Code Intelligence
Industry standards must evolve as digital transformation makes all companies software companies. Security testing boosts development speed and software quality.

  • February 14th 2023 at 15:00

Embattled VMware ESXi Hypervisor Flaw Exploitable in Myriad Ways

By Jai Vijayan, Contributing Writer, Dark Reading
It's not just Internet-accessible hosts that are vulnerable, researchers say.

  • February 14th 2023 at 13:00

Dark Web Revenue Down Dramatically After Hydra's Demise

By Becky Bracken, Editor, Dark Reading
Competitor markets working to replace Hydra's money-laundering services for cybercriminals.

  • February 13th 2023 at 22:51

9 Scammers Busted for 5M Euro Phishing Fraud Ring

By Dark Reading Staff, Dark Reading
The network is alleged to have operated 100 bank accounts and stolen millions from American people and companies.

  • February 13th 2023 at 22:24

Accenture Acquires Morphus, Brazil-Based Cybersecurity Company

Morphus's deep cybersecurity research expertise, cyber defense and threat intelligence services widen Accenture's cybersecurity footprint in Latin America.
  • February 13th 2023 at 21:30

Healthcare in the Crosshairs of North Korean Cyber Operations

By Jai Vijayan, Contributing Writer, Dark Reading
CISA, FBI, and South Korean intelligence agencies warn that the North Korean government is sponsoring ransomware attacks to fund its cyber-espionage activities.

  • February 13th 2023 at 20:50

Russian Hackers Disrupt NATO Earthquake Relief Operations

By Dark Reading Staff, Dark Reading
Killnet claims DDoS attack against NATO Special Operations Headquarters, Strategic Airlift Capability, and more.

  • February 13th 2023 at 19:50

What Happened to #OpRussia?

By Alex Haynes, Chief Information Security Officer, IBS Software
The cyberwar to attack Russia has never really stopped, despite a decreasing interest from the West.

  • February 13th 2023 at 15:00

Reddit Hack Shows Limits of MFA, Strengths of Security Training

By Robert Lemos, Contributing Writer, Dark Reading
A tailored spear-phishing attack successfully convinced a Reddit employee to hand over their credentials and their one-time password, but soon after, the same worker notified security.

  • February 10th 2023 at 21:36

Trickbot Members Sanctioned for Pandemic-Era Ransomware Hits

By Tara Seals, Managing Editor, News, Dark Reading
The US Treasury Department linked the notorious cybercrime gang to Russian Intelligence Services because cyberattacks that disrupted hospitals and other critical infrastructure align with Russian state interests.

  • February 10th 2023 at 19:25

MagicWeb Mystery Highlights Nobelium Attacker's Sophistication

By Robert Lemos, Contributing Writer, Dark Reading
The authentication bypass used by the Nobelium group, best known for the supply chain attack on SolarWinds, required a massive, real-time investigation to uncover, Microsoft says.

  • February 10th 2023 at 18:21

Malicious Game Mods Target Dota 2 Game Users

By Jai Vijayan, Contributing Writer, Dark Reading
Valve's unpatched JavaScript engine and incomplete modification vetting process for Steam-delivered mods led to user systems being backdoored.

  • February 10th 2023 at 17:38

Attacker Allure: A Look at the Super Bowl's Operational Cyber-Risks

By Nathan Eddy, Contributing Writer, Dark Reading
Event organizers should be exercising various cyberattack scenarios to ensure they have the proper checks and balances in place to respond accordingly and maintain resilience.

  • February 10th 2023 at 17:25

Addressing the Elephant in the Room: Getting Developers & Security Teams to Work Together

By Idan Tendler, Senior Vice President of Code & Application Security, Palo Alto Networks
Bridging the divide between developers and security can create a culture change organically.

  • February 10th 2023 at 15:00
โŒ