FreshRSS

πŸ”’
❌ About FreshRSS
There are new available articles, click to refresh the page.
Before yesterdayDark Reading:

Cyber-Physical Systems Vulnerability Disclosures Reach Peak, While Disclosures by Internal Teams Increase 80% Over 18 Months

State of XIoT Security Report: 2H 2022 from Claroty's Team82 reveals positive impact by researchers on strengthening XIoT security and increased investment among XIoT vendors in securing their products.
  • February 14th 2023 at 16:00

Lessons All Industries Can Learn From Automotive Security

By Sergej Dechand, CEO and Co-Founder, Code Intelligence
Industry standards must evolve as digital transformation makes all companies software companies. Security testing boosts development speed and software quality.

  • February 14th 2023 at 15:00

Embattled VMware ESXi Hypervisor Flaw Exploitable in Myriad Ways

By Jai Vijayan, Contributing Writer, Dark Reading
It's not just Internet-accessible hosts that are vulnerable, researchers say.

  • February 14th 2023 at 13:00

Dark Web Revenue Down Dramatically After Hydra's Demise

By Becky Bracken, Editor, Dark Reading
Competitor markets working to replace Hydra's money-laundering services for cybercriminals.

  • February 13th 2023 at 22:51

9 Scammers Busted for 5M Euro Phishing Fraud Ring

By Dark Reading Staff, Dark Reading
The network is alleged to have operated 100 bank accounts and stolen millions from American people and companies.

  • February 13th 2023 at 22:24

Accenture Acquires Morphus, Brazil-Based Cybersecurity Company

Morphus's deep cybersecurity research expertise, cyber defense and threat intelligence services widen Accenture's cybersecurity footprint in Latin America.
  • February 13th 2023 at 21:30

Healthcare in the Crosshairs of North Korean Cyber Operations

By Jai Vijayan, Contributing Writer, Dark Reading
CISA, FBI, and South Korean intelligence agencies warn that the North Korean government is sponsoring ransomware attacks to fund its cyber-espionage activities.

  • February 13th 2023 at 20:50

Russian Hackers Disrupt NATO Earthquake Relief Operations

By Dark Reading Staff, Dark Reading
Killnet claims DDoS attack against NATO Special Operations Headquarters, Strategic Airlift Capability, and more.

  • February 13th 2023 at 19:50

What Happened to #OpRussia?

By Alex Haynes, Chief Information Security Officer, IBS Software
The cyberwar to attack Russia has never really stopped, despite a decreasing interest from the West.

  • February 13th 2023 at 15:00

Reddit Hack Shows Limits of MFA, Strengths of Security Training

By Robert Lemos, Contributing Writer, Dark Reading
A tailored spear-phishing attack successfully convinced a Reddit employee to hand over their credentials and their one-time password, but soon after, the same worker notified security.

  • February 10th 2023 at 21:36

Trickbot Members Sanctioned for Pandemic-Era Ransomware Hits

By Tara Seals, Managing Editor, News, Dark Reading
The US Treasury Department linked the notorious cybercrime gang to Russian Intelligence Services because cyberattacks that disrupted hospitals and other critical infrastructure align with Russian state interests.

  • February 10th 2023 at 19:25

MagicWeb Mystery Highlights Nobelium Attacker's Sophistication

By Robert Lemos, Contributing Writer, Dark Reading
The authentication bypass used by the Nobelium group, best known for the supply chain attack on SolarWinds, required a massive, real-time investigation to uncover, Microsoft says.

  • February 10th 2023 at 18:21

Malicious Game Mods Target Dota 2 Game Users

By Jai Vijayan, Contributing Writer, Dark Reading
Valve's unpatched JavaScript engine and incomplete modification vetting process for Steam-delivered mods led to user systems being backdoored.

  • February 10th 2023 at 17:38

Attacker Allure: A Look at the Super Bowl's Operational Cyber-Risks

By Nathan Eddy, Contributing Writer, Dark Reading
Event organizers should be exercising various cyberattack scenarios to ensure they have the proper checks and balances in place to respond accordingly and maintain resilience.

  • February 10th 2023 at 17:25

Addressing the Elephant in the Room: Getting Developers & Security Teams to Work Together

By Idan Tendler, Senior Vice President of Code & Application Security, Palo Alto Networks
Bridging the divide between developers and security can create a culture change organically.

  • February 10th 2023 at 15:00

Google Cloud Connects Chronicle to Health ISAC Feed

By Dark Reading Staff, Dark Reading
Members of the Health-ISAC can ingest threat indicators directly into Chronicle to investigate whether the threat is present in their environment.

  • February 10th 2023 at 02:00

Reddit Breached With Stolen Employee Credentials

By Dark Reading Staff, Dark Reading
Reddit code, internal documents, dashboards, and business systems were compromised in the cyberattack.

  • February 9th 2023 at 23:36

NewsPenguin Goes Phishing for Maritime & Military Secrets

By Nate Nelson, Contributing Writer, Dark Reading
A sophisticated cyber-espionage attack against high-value targets attending a maritime technology conference in Pakistan this weekend has been in the works since last year.

  • February 9th 2023 at 22:15

Avast Threat Report: Consumers Plagued With Refund Fraud, Tech Support Scams, and Adware

Avast researchers also discovered and reported two zero-day vulnerabilities, and observed the spread of information-stealing malware, remote access trojans, and botnets.
  • February 9th 2023 at 21:00

4 Ways to Handle AI Decision-Making in Cybersecurity

As evolving cyber threats force security teams to adopt AI to automate workflows, we ask how the relationship between humans and AI will pan out.

  • February 9th 2023 at 21:00

7 Critical Cloud Threats Facing the Enterprise in 2023

By Elizabeth Montalbano, Contributor, Dark Reading
From shadow data to misconfigurations, and overpermissioning to multicloud sprawl, Dark Reading's cloud security slideshow helps security pros understand the threat horizon.

  • February 9th 2023 at 20:45

Kaspersky Finds Growing Number of Parents Experiencing Ransomware Attacks on Children's Schools

Schools paying higher ransoms and seeing longer closures, according to survey of parents.
  • February 9th 2023 at 20:24

Cryptographers Decode Secret Letters of Mary, Queen of Scots

By Dark Reading Staff, Dark Reading
Nearly a half-millennium after her execution, encrypted letters from the imprisoned royal offer a fascinating look into early cryptography.

  • February 9th 2023 at 19:53

Phishing Surges Ahead, as ChatGPT & AI Loom

By Elizabeth Montalbano, Contributor, Dark Reading
AI and phishing-as-a-service (PaaS) kits are making it easier for threat actors to create malicious email campaigns, which continue to target high-volume applications using popular brand names.

  • February 9th 2023 at 18:52

NIST Picks IoT Standard for Small Electronics Cybersecurity

By Dark Reading Staff, Dark Reading
NIST announces that it will use Ascon as a cryptography standard for lightweight IoT device protection.

  • February 9th 2023 at 18:10

In Perfect Harmony: Cybersecurity Regulation Harmonization

By David Fairman, Chief Information Officer and Chief Security Officer APAC, Netskope
By simplifying compliance management, security and risk teams can focus on managing operational risk, not compliance risk β€” and better counter threats.

  • February 9th 2023 at 18:00

Twitter Implements API Paywall, but Will That Solve Its Enormous Bot Crisis?

By Nate Nelson, Contributing Writer, Dark Reading
Restricting the Twitter API will have implications across Twitter, the broader Internet, and society, experts say. Is there a cybersecurity silver lining, or will threat actors pay to play?

  • February 9th 2023 at 16:47

Lessons From the Cold War: How Quality Trumps Quantity in Cybersecurity

By Mark Pelkoski, Senior Director of Solutions Architecture USA, CYE
High-quality tools and standards remain critical components in cybersecurity efforts even as budgets decline. It's important that staff knows response procedures and their roles, and also communicates well.

  • February 9th 2023 at 15:00

How Do Playbooks Help CISOs Improve SecOps?

By Aimei Wei, Founder and CTO, Stellar Cyber
Extended detection and response (XDR) solutions have evolved to offer automated tools, such as playbooks, that enhance context and response.

  • February 9th 2023 at 11:23

CISA Releases Recovery Script for Victims of ESXiArgs Ransomware

By Jai Vijayan, Contributing Writer, Dark Reading
The malware has affected thousands of VMware ESXi hypervisors in the last few days.

  • February 8th 2023 at 22:31

Jailbreak Trick Breaks ChatGPT Content Safeguards

By Dark Reading Staff, Dark Reading
Jailbreak command creates ChatGPT alter ego DAN, willing to create content outside of its own content restriction controls.

  • February 8th 2023 at 22:05

Building Up IAM in a Multicloud World

By Karen Spiegelman, Features Editor
In the cloud-first world, the security goal is to ensure only qualified users can access information across clouds.

  • February 8th 2023 at 21:37

Exclu Shutdown Underscores Outsized Role Messaging Apps Play in Cybercrime

By Ericka Chickowski, Contributing Writer, Dark Reading
Apps like Telegram, WhatsApp, and Discord are a hotbed of cybercriminal communication and scams.

  • February 8th 2023 at 21:07

ActZero Unveils Next-Generation MDR Platform

Latest release gives small and mid-sized enterprises AI-driven analysis tools and unified visibility across IT environments for stronger ransomware protection.
  • February 8th 2023 at 20:20

Skybox Security Appoints Cybersecurity Veteran Mordecai Rosen as CEO

Skybox closes $50 million in financing to drive growth of its SaaS-based security platform.
  • February 8th 2023 at 20:00

SecuriThings Brings Managed Service Capabilities to Physical Security, With New Managed Service Platform

Platform opens new opportunities for managed service providers to manage, visualize, and secure customer devices from a single pane of glass, including automated maintenance and other operations.
  • February 8th 2023 at 18:50

GAO Calls for Action to Protect Cybersecurity of Critical Energy, Communications Networks

By Dark Reading Staff, Dark Reading
Enhanced industrial control systems cybersecurity for energy and communications sector among top recommendations in new GAO cybersecurity assessment.

  • February 8th 2023 at 18:45

Gigamon Exits NDR Market, Sells ThreatInsight Business to Fortinet

By Andrew Braunberg, Principal Analyst, SecOps, Omdia
Omdia has learned that Gigamon sold its ThreatInsight NDR business to Fortinet for approximately $31 million. The deal highlights what may be a pivot point for the NDR market.

  • February 8th 2023 at 18:10

It Isn't Time to Worry About Quantum Computing Just Yet

By Rob Jenks, Senior Vice President, Corporate Strategy, Tanium
Don't let something that's a decade away distract you from today's cyber threats.

  • February 8th 2023 at 18:00

Toyota Global Supply Chain Portal Flaw Put Hacker in the Driver's Seat

By Elizabeth Montalbano, Contributor, Dark Reading
The automaker closed a hole that allowed a security researcher to gain system administrator access to more than 14,000 corporate and partner accounts and troves of sensitive data.

  • February 8th 2023 at 18:00

Why ChatGPT Isn't a Death Sentence for Cyber Defenders

By Jose Lopez, Principal Data Scientist, Mimecast
Generative AI combined with user awareness training creates a security alliance that can let organizations work protected from ChatGPT.

  • February 8th 2023 at 15:00

How to Optimize Your Cyber Insurance Coverage

By Microsoft Security, Microsoft
From prevention and detection processes to how you handle policy information, having strong cyber insurance coverage can help mitigate cybersecurity attacks.

  • February 8th 2023 at 13:00

Why Some Cloud Services Vulnerabilities Are So Hard to Fix

By Karen Spiegelman, Features Editor
Five months after AWS customers were alerted about three vulnerabilities, nearly none had plugged the holes. The reasons why underline a need for change.

  • February 8th 2023 at 13:00

Cloud Apps Still Demand Way More Privileges Than They Use

By Dark Reading Staff, Dark Reading
Hackers can't steal a credential that doesn't exist.

  • February 7th 2023 at 23:35

'Money Lover' Finance App Exposes User Data

By Nate Nelson, Contributing Writer, Dark Reading
A broken access control vulnerability could have led to dangerous follow-on attacks for users of the money-management app.

  • February 7th 2023 at 22:54

Fresh, Buggy Clop Ransomware Variant Targets Linux Systems

By Jai Vijayan, Contributing Writer, Dark Reading
For the moment, victims can decrypt data without paying a ransom. But Clop is a ransomware variant that has caused havoc on Windows systems, so that's bound to change.

  • February 7th 2023 at 22:21

DPRK Using Unpatched Zimbra Devices to Spy on Researchers

By Dark Reading Staff, Dark Reading
Lazarus Group used a known Zimbra bug to steal data from medical and energy researchers.

  • February 7th 2023 at 21:05

New Banking Trojan Targeting 100M Pix Payment Platform Accounts

By Dark Reading Staff, Dark Reading
New malware demonstrates how threat actors are pivoting toward payment platform attacks, researchers say.

  • February 7th 2023 at 19:18

Ongoing VMware ESXi Ransomware Attack Highlights Inherent Virtualization Risks

By Elizabeth Montalbano, Contributor, Dark Reading
The global assault on vulnerable VMware hypervisors may have been mitigated by updating to the latest version of the product, but patch management is only part of the story.

  • February 7th 2023 at 18:06

With TikTok Bans, the Time for Operational Governance Is Now

By Barrett Lyon, Co-Founder and Chief Architect, Netography
Emerging risks and trends need to be monitored, but cybersecurity challenges can be fixed with a focus on the fundamentals.

  • February 7th 2023 at 18:00
❌