FreshRSS

๐Ÿ”’
โ˜ โ˜† โœ‡ Dark Reading:

'Beware the Lady Named Katie'

By Edge Editors Dark Reading โ€” June 10th 2021 at 20:30
A semester-long course boiled down to two minutes and 45 seconds.

โ˜ โ˜† โœ‡ Dark Reading:

The Workforce Shortage in Cybersecurity Is a Myth

By Michael Roytman Chief Data Scientist, Kenna Security โ€” June 10th 2021 at 19:00
What we really have is an automation-in-the-wrong-place problem.

โ˜ โ˜† โœ‡ Dark Reading:

Intl. Law Enforcement Operation Disrupts Slilpp Marketplace

By Dark Reading Staff โ€” June 10th 2021 at 18:23
A seizure warrant affidavit unsealed today states Slilpp had sold allegedly stolen login credentials since 2012.

โ˜ โ˜† โœ‡ Dark Reading:

Deepfakes Are on the Rise, but Don't Panic Just Yet

By John Donegan Enterprise analyst at ManageEngine โ€” June 10th 2021 at 17:00
Deepfakes will likely give way to deep suspicion, as users try to sort legitimate media from malicious.

โ˜ โ˜† โœ‡ Dark Reading:

11 Cybersecurity Vendors to Watch in 2021

By Jai Vijayan Contributing Writer โ€” June 10th 2021 at 16:15
The cybersecurity landscape continues to spawn new companies and attract new investments. Here is just a sampling of what the industry has to offer.

โ˜ โ˜† โœ‡ Dark Reading:

Cyber Is the New Cold War & AI Is the Arms Race

By Nancy Grady Chief Data Scientist & Solutions Architect โ€” June 10th 2021 at 14:00
Continual cyberattacks have pushed us into a new kind of Cold War, with artificial intelligence the basis of this new arms race.

โ˜ โ˜† โœ‡ Dark Reading:

Required MFA Is Not Sufficient for Strong Security: Report

By Robert Lemos Contributing Writer โ€” June 9th 2021 at 22:30
Attackers and red teams find multiple ways to bypass poorly deployed MFA in enterprise environments, underscoring how redundancy and good design are still required.

โ˜ โ˜† โœ‡ Dark Reading:

What to Know About Updates to the PCI Secure Software Standard

By Sean Smith Manager II, PCI Compliance Services, Optiv โ€” June 9th 2021 at 22:15
New requirements add 50 controls covering five control objectives. Here's a high-level look at each objective.

โ˜ โ˜† โœ‡ Dark Reading:

RSA Spins Off Fraud & Risk Intelligence Unit

By Kelly Sheridan Staff Editor, Dark Reading โ€” June 9th 2021 at 21:38
The new company, called Outseer, will continue to focus on payment authentication and fraud detection and analysis.

โ˜ โ˜† โœ‡ Dark Reading:

CISA Addresses Rise in Ransomware Threatening OT Assets

By Dark Reading Staff โ€” June 9th 2021 at 21:02
The agency has released guidance in response to a rise of ransomware attacks affecting OT assets and control systems.

โ˜ โ˜† โœ‡ Dark Reading:

New Security Event @Hack to Take Place in Saudi Arabia

By Dark Reading Staff โ€” June 9th 2021 at 19:54
The Saudi Federation of Cybersecurity, Programming, and Drones (SAFCSP) and Informa Tech will launch a multi-day event in Riyadh this November.

โ˜ โ˜† โœ‡ Dark Reading:

With Cloud, CDO and CISO Concerns Are Equally Important

By Ameesh Divatia Co-Founder & CEO of Baffle โ€” June 9th 2021 at 17:00
Navigated properly, a melding of these complementary perspectives can help keep an organization more secure.

โ˜ โ˜† โœ‡ Dark Reading:

Hardening the Physical Security Supply Chain to Mitigate the Cyber-Risk

By IFSEC Global Staff โ€” June 9th 2021 at 16:00
Nick Smith, Regional Manager at Genetec, details how physical security professionals can improve their resilience to cyberattacks by reviewing the cybersecurity policies of those they work with in the supply chain. This includes everyone from component vendors to installers and engineers.

โ˜ โ˜† โœ‡ Dark Reading:

Ransomware Is Not the Problem

By Adam Shostack Consultant, Entrepreneur, Technologist, Game Designer โ€” June 9th 2021 at 14:00
Arbitrarily powerful software -- applications, operating systems -- is a problem, as is preventing it from running on enterprise systems.

โ˜ โ˜† โœ‡ Dark Reading:

Phished Account Credentials Mostly Verified in Hours

By Robert Lemos Contributing Writer โ€” June 8th 2021 at 22:20
Almost two-thirds of all phished credentials are verified by attackers within a day and then used in a variety of schemes, including business email compromise and targeting other users with malicious code.

โ˜ โ˜† โœ‡ Dark Reading:

Microsoft Patches 6 Zero-Days Under Active Attack

By Kelly Sheridan Staff Editor, Dark Reading โ€” June 8th 2021 at 21:42
The June 2021 Patch Tuesday fixes 50 vulnerabilities, six of which are under attack and three of which were publicly known at the time of disclosure.

โ˜ โ˜† โœ‡ Dark Reading:

FBI Issued Encrypted Devices to Capture Criminals

By Dark Reading Staff โ€” June 8th 2021 at 20:53
A sting operation delivered devices into the hands of global criminals and used the intelligence gathered to stop drug crimes.

โ˜ โ˜† โœ‡ Dark Reading:

Colonial Pipeline CEO: Ransomware Attack Started via Pilfered 'Legacy' VPN Account

By Dark Reading Staff โ€” June 8th 2021 at 20:42
No multifactor authentication was attached to the stolen VPN password used by the attackers, Colonial Pipeline president & CEO Joseph Blount told a Senate committee today.

โ˜ โ˜† โœ‡ Dark Reading:

Microsoft CISO Shares Remote Work Obstacles & Lessons Learned

By Kelly Sheridan Staff Editor, Dark Reading โ€” June 8th 2021 at 19:44
Bret Arsenault explains changes he implemented along the way as Microsoft's workforce went from 20% to 97% remote.

โ˜ โ˜† โœ‡ Dark Reading:

How Employees Can Keep Their 401(k)s Safe From Cybercriminals

By Matt Lindley COO and CISO at NINJIO โ€” June 8th 2021 at 19:00
As retirement fund balances grow, cybercriminals are becoming more brazen in their efforts to deplete people's savings.

โ˜ โ˜† โœ‡ Dark Reading:

Cyber Resilience: The Emerald City of the Security World

By Ryan Weeks Chief Information Security Officer at Datto โ€” June 8th 2021 at 17:00
Small and midsize businesses and managed service providers must use their heart, brain, and courage as they follow the Yellow Brick Road to cyber resilience.

โ˜ โ˜† โœ‡ Dark Reading:

An Answer to APP Scams You Can Bank On

By Amelia Ahlgren EVP, Strategy and Operations, BioCatch โ€” June 8th 2021 at 14:00
Financial institutions' usual fraud-detection methods can't detect most authorized push payment (APP) scams, putting customers and banks at risk.

โ˜ โ˜† โœ‡ Dark Reading:

First Known Malware Surfaces Targeting Windows Containers

By Jai Vijayan Contributing Writer โ€” June 7th 2021 at 22:20
Siloscape is designed to create a backdoor in Kubernetes clusters to run malicious containers.

โ˜ โ˜† โœ‡ Dark Reading:

DoJ Seizes $2.3M in Bitcoin Paid to Colonial Pipeline Attackers

By Dark Reading Staff โ€” June 7th 2021 at 21:57
The amount allegedly represents a May 8 payment to the DarkSide ransomware group.

โ˜ โ˜† โœ‡ Dark Reading:

Latvian Woman Charged for Role In Crafting Trickbot Malware

By Dark Reading Staff โ€” June 7th 2021 at 19:36
Alla Witte and her associates are accused of using Trickbot to infect tens of millions of computers around the world, the Justice Department reports.

โ˜ โ˜† โœ‡ Dark Reading:

CISA Warns Criminals Seek to Exploit Critical VMware Bug

By Dark Reading Staff โ€” June 7th 2021 at 18:58
Organizations running vCenter Server and VMware Cloud Foundation are urged to apply fixes deployed on May 25.

โ˜ โ˜† โœ‡ Dark Reading:

Cartoon Caption Winner: Road Trip

By John Klossner Cartoonist โ€” June 7th 2021 at 18:20
And the winner of Dark Reading's cartoon caption contest is ...

โ˜ โ˜† โœ‡ Dark Reading:

Cyber Athletes Compete to Form US Cyber Team

By Jessica Gulick US Cyber Games Commissioner โ€” June 7th 2021 at 17:00
Here's how security pros can showcase value to future employers: a field of friendly strife to measure their aptitude against competitors.

โ˜ โ˜† โœ‡ Dark Reading:

NortonLifeLock Criticized for New Cryptomining Feature

By Robert Lemos Contributing Writer โ€” June 7th 2021 at 14:25
While the crypto crowd applauds the move, critics worry about the environmental impact, supporting a currency used for ransomware, and mining further slowing down systems.

โ˜ โ˜† โœ‡ Dark Reading:

How Can I Test the Security of My Home-Office Employees' Routers?

By John Bock, senior research scientist, Optiv: This can be a challenging question because it depends on your user population and how creative your legal department wants to be. โ€” June 7th 2021 at 14:00
From the most accurate to the most practical, here are a few ways to ensure both employees and organizations are protected from risk.

โ˜ โ˜† โœ‡ Dark Reading:

The US Must Redefine Critical Infrastructure for the Digital Era

By Caleb Barlow CEO and President, CynergisTek โ€” June 7th 2021 at 14:00
The template being used to manage essential connectivity isn't just outdated, it's actively counter-productive.

โ˜ โ˜† โœ‡ Dark Reading:

SentinelOne Files S-1 for IPO

By Dark Reading Staff โ€” June 4th 2021 at 19:15
The security company looks to raise up to $100 million in its IPO, its filing reveals.

โ˜ โ˜† โœ‡ Dark Reading:

Organizations Shift Further Left in App Development

By Dark Reading Staff โ€” June 4th 2021 at 15:46
Most IT and security professionals surveyed think security is a critical enough reason to pause app development.

โ˜ โ˜† โœ‡ Dark Reading:

Data Breaches Drive Higher Loan Interest Rates

By Robert Lemos Contributing Writer โ€” June 4th 2021 at 15:30
Businesses that suffer a security breach may not see their stock price tumble, but they may pay higher rates for loans and be forced to provide collateral, researchers report.

โ˜ โ˜† โœ‡ Dark Reading:

Welcome to the New Workplace

By Joshua Goldfarb Director of Product Management at F5 โ€” June 4th 2021 at 14:15
The pandemic has changed the landscape in which security pros work. Here are five ways how.

โ˜ โ˜† โœ‡ Dark Reading:

What the FedEx Logo Taught Me About Cybersecurity

By Matt Shea Head of Federal @ MixMode โ€” June 4th 2021 at 14:00
Cyber threats are staring you in the face, but you can't see them.

โ˜ โ˜† โœ‡ Dark Reading:

The Perfect Storm for PAM to Grow In

By Don Tait Senior Analyst, Identity, Authentication, Access, Omdia โ€” June 4th 2021 at 13:00
With more staff working remotely, privileged access management (or PAM) has never been more important. Market forecasts, drivers, and trends are explored.

โ˜ โ˜† โœ‡ Dark Reading:

Proposed Sale Casts Cloud Over Future of FireEye's Products

By Jai Vijayan Contributing Writer โ€” June 3rd 2021 at 22:15
Symphony Technology Group, which is buying FireEye, already owns multiple security companies "with redundancies in numerous areas."

โ˜ โ˜† โœ‡ Dark Reading:

Google Experts Explore Open Source Security Challenges & Fixes

By Kelly Sheridan Staff Editor, Dark Reading โ€” June 3rd 2021 at 21:54
An open source security event brought discussions of supply chain security and managing flaws in open source projects.

โ˜ โ˜† โœ‡ Dark Reading:

NY & Mass. Transportation Providers Targeted in Recent Attacks

By Dark Reading Staff โ€” June 3rd 2021 at 20:36
New York's Metropolitan Transportation Authority and the Steamship Authority of Massachusetts were both victims of cyberattacks.

โ˜ โ˜† โœ‡ Dark Reading:

REvil Behind JBS Ransomware Attack: FBI

By Dark Reading Staff โ€” June 3rd 2021 at 19:19
Officials attribute the attack to REvil/Sodinokibi and say they are working to bring the threat actors to justice.

โ˜ โ˜† โœ‡ Dark Reading:

The True Cost of a Ransomware Attack

By Tyler Hudak Practice Lead, Incident Response, at TrustedSec โ€” June 3rd 2021 at 17:00
Companies need to prepare for the costs of an attack now, before they get attacked. Here's a checklist to help.

โ˜ โ˜† โœ‡ Dark Reading:

The Colonial Pipeline Attack Is Your Boardroom Wake-Up Call

By Dan Verton Director, ThreatConnect โ€” June 3rd 2021 at 14:00
Why business leaders must adopt a risk-led approach to cybersecurity.

โ˜ โ˜† โœ‡ Dark Reading:

Phishing Emails Remain in User Inboxes Over 3 Days Before They're Removed

By Jai Vijayan Contributing Writer โ€” June 2nd 2021 at 22:25
Most malicious emails get blocked, but the ones that get through linger around dangerously long, a new study shows.

โ˜ โ˜† โœ‡ Dark Reading:

FireEye Sells Products Business to Symphony Group for $1.2B

By Dark Reading Staff โ€” June 2nd 2021 at 21:04
The transaction will include the FireEye brand name; the business that remains will be called Mandiant Solutions.

โ˜ โ˜† โœ‡ Dark Reading:

Encryption Helps Companies Avoid Breach Notifications

By Robert Lemos Contributing Writer โ€” June 2nd 2021 at 20:55
With nearly twice as many firms suffering a breach compared with the previous year, limiting the damage becomes more important, a survey finds.

โ˜ โ˜† โœ‡ Dark Reading:

Microsoft Buys ReFirm Labs to Drive IoT Security Efforts

By Kelly Sheridan Staff Editor, Dark Reading โ€” June 2nd 2021 at 18:52
The acquisition will bring ReFirm's firmware analysis capabilities alongside Microsoft's Azure Defender for IoT to boost device security.

โ˜ โ˜† โœ‡ Dark Reading:

A View From Inside a Deception

By Sara Peters Senior Editor at Dark Reading โ€” June 2nd 2021 at 18:35
Pen-testing today's threat deception technology is not for the faint-hearted. Do modern deception tools truly frustrate adversaries, and are they ready for the enterprise SOC?

โ˜ โ˜† โœ‡ Dark Reading:

Critical Zero-Day Discovered in Fancy Product Designer WordPress Plug-in

By Dark Reading Staff โ€” June 2nd 2021 at 17:42
The plug-in under active attack has been installed on more than 17,000 websites, say researchers.

โ˜ โ˜† โœ‡ Dark Reading:

Is Your Adversary James Bond or Mr. Bean?

By Jonathan Couch Senior VP of Strategy, ThreatQuotient โ€” June 2nd 2021 at 17:00
Especially with nation-state attacks, its critical to assess whether you're up against jet fighter strength or a bumbler who tries to pick locks.

โ˜ โ˜† โœ‡ Dark Reading:

Microsoft 365: Most Common Threat Vectors & Defensive Tips

By Kelly Sheridan Staff Editor, Dark Reading โ€” June 2nd 2021 at 16:00
Security pros discuss the most typical ways attackers leverage Microsoft 365 and share their guidance for defenders.

โ˜ โ˜† โœ‡ Dark Reading:

Chaos for the Sake of Chaos? Yes, Nation-States Are That Cynical

By Adam Darrah Director of Intelligence, Vigilante โ€” June 2nd 2021 at 14:00
Many nation-state-backed attacks are intended to destabilize the US government, not steal from it.

โ˜ โ˜† โœ‡ Dark Reading:

Processor Morphs Its Architecture to Make Hacking Really Hard

By Robert Lemos Contributing Writer โ€” June 2nd 2021 at 13:10
Researchers create a processor that uses encryption to modify its memory architecture during runtime, making it very difficult for hackers to exploit memory-based vulnerabilities.

โ˜ โ˜† โœ‡ Dark Reading:

US Seizes Attacker Domains Used in USAID Phishing Campaign

By Kelly Sheridan Staff Editor, Dark Reading โ€” June 1st 2021 at 22:40
The move follows last week's disclosure of an ongoing attack designed to mimic emails from the US Agency for International Development.

โ˜ โ˜† โœ‡ Dark Reading:

New Barebones Ransomware Strain Surfaces

By Jai Vijayan Contributing Writer โ€” June 1st 2021 at 22:20
The authors of Epsilon Red have offloaded many tasks that are usually integrated into the ransomware -- such as Volume Shadow Copy deletion -- to PowerShell scripts.

โ˜ โ˜† โœ‡ Dark Reading:

Meat Producer JBS USA Hit By Ransomware Attack

By Dark Reading Staff โ€” June 1st 2021 at 20:22
The company says recovery from the attack may delay transactions with customers and suppliers.

โ˜ โ˜† โœ‡ Dark Reading:

Return to Basics: Email Security in the Post-COVID Workplace

By Eyal Benishti CEO & Founder of IRONSCALES โ€” June 1st 2021 at 17:00
As we reimagine the post-pandemic workplace, we must also reevaluate post-pandemic email security practices.

โ˜ โ˜† โœ‡ Dark Reading:

Name That Edge Toon: In Tow

By John Klossner Cartoonist โ€” June 1st 2021 at 16:15
Feeling creative? Submit your caption in the comments, and our panel of experts will reward the winner with a $25 Amazon gift card.

โ˜ โ˜† โœ‡ Dark Reading:

CISO Confidence Is Rising, but Issues Remain

By Marc Wilczek Digital Strategist & COO of Link11 โ€” June 1st 2021 at 14:00
New research reveals how global CISOs dealt with COVID-19 and their plans for 2022-2023.

โ˜ โ˜† โœ‡ Dark Reading:

Cybersecurity Group Hopes to Push 30 More National Priorities

By Robert Lemos Contributing Writer โ€” June 1st 2021 at 13:00
The Cyberspace Solarium Commission worked with legislators and the Trump administration to get 27 recommendations implemented in policy last year. It's aiming for 30 more in 2021.

โŒ