FreshRSS

๐Ÿ”’
โ˜ โ˜† โœ‡ Dark Reading:

How to Stop Attackers That Target Healthcare Imaging Data

By Kolawole Samuel Adebayo, Contributing Writer โ€” February 22nd 2023 at 03:30
Attribute-based encryption could help keep sensitive metadata off of the Dark Web.

โ˜ โ˜† โœ‡ Dark Reading:

Scrut Automation Raises Funding of $7.5M, Led by MassMutual Ventures, Lightspeed, and Endiya Partners

February 22nd 2023 at 00:07
With the fresh capital, Scrut aims to focus on simplifying risk management and infosec compliance for cloud-native SaaS, Fintech, and Healthtech companies
โ˜ โ˜† โœ‡ Dark Reading:

Malwarebytes Expands Platform With New Application Block Capabilities

February 21st 2023 at 23:20
Latest threat prevention module helps resource-strapped security teams block unsafe, untrusted or vulnerable applications.
โ˜ โ˜† โœ‡ Dark Reading:

Analysts Slam Twitter's Decision to Disable SMS-Based 2FA

By Jai Vijayan, Contributing Writer, Dark Reading โ€” February 21st 2023 at 23:00
Making the option available only to paid subscribers โ€” while also claiming SMS authentication is broken โ€” doesn't make sense, some say. Is it a cash grab?

โ˜ โ˜† โœ‡ Dark Reading:

Name That Toon: Join the Club

By John Klossner, Cartoonist โ€” February 21st 2023 at 18:45
Feeling creative? Submit your caption and our panel of experts will reward the winner with a $25 Amazon gift card.

โ˜ โ˜† โœ‡ Dark Reading:

Cyberthreats, Regulations Mount for Financial Industry

By Robert Lemos, Contributing Writer, Dark Reading โ€” February 21st 2023 at 18:45
Nation-state adversaries, new reporting regulations, and a fast-paced threat landscape mean that financial services and technology firms need to bolster their security posture.

โ˜ โ˜† โœ‡ Dark Reading:

Coinbase Crypto Exchange Ensnared in 'Oktapus'-Related Smishing Attack

By Elizabeth Montalbano, Contributor, Dark Reading โ€” February 21st 2023 at 18:40
Some employees' personal data was leaked, but the company responded swiftly to a socially engineered incident that gained access to legitimate employee login credentials.

โ˜ โ˜† โœ‡ Dark Reading:

Third-Party Providers Create Identity and Access Control Challenges for Fintech Apps

By Shira Shamban, CEO and Co-founder, Solvo โ€” February 21st 2023 at 18:35
Fintech has drastically shifted the financial services industry toward digital technologies and, in so doing, has introduced a variety of new risks.

โ˜ โ˜† โœ‡ Dark Reading:

Israel's Top Tech University Targeted by DarkBit Ransomware

By Nathan Eddy, Contributing Writer, Dark Reading โ€” February 21st 2023 at 18:08
An Israeli university is being blackmailed by hackers. However, they aren't just after money but are looking to send a political message โ€” and maybe something more.

โ˜ โ˜† โœ‡ Dark Reading:

Insider Threats Don't Mean Insiders Are Threatening

By Szilveszter Szebeni, Co-Founder & CISO, Tresorit โ€” February 21st 2023 at 15:00
By implementing tools that enable internal users to do their jobs efficiently and securely, companies reduce insider threat risk by building insider trust.

โ˜ โ˜† โœ‡ Dark Reading:

Modern Software: What's Really Inside?

By Britta Glade, Vice President, Content and Curation, RSA Conference โ€” February 20th 2023 at 15:00
Open source has changed the software game from build or buy to assemble with care.

โ˜ โ˜† โœ‡ Dark Reading:

Despite Breach, LastPass Demonstrates the Power of Password Management

By Michael Bargury, CTO & Co-Founder, Zenity โ€” February 20th 2023 at 14:01
What's scarier than keeping all of your passwords in one place and having that place raided by hackers? Maybe reusing insecure passwords.

โ˜ โ˜† โœ‡ Dark Reading:

Majority of Ransomware Attacks Last Year Exploited Old Bugs

By Jai Vijayan, Contributing Writer, Dark Reading โ€” February 20th 2023 at 14:00
New research shows that 57 vulnerabilities that threat actors are currently using in ransomware attacks enable everything from initial access to data theft.

โ˜ โ˜† โœ‡ Dark Reading:

Researchers Create an AI Cyber Defender That Reacts to Attackers

By Robert Lemos, Contributing Writer, Dark Reading โ€” February 20th 2023 at 14:00
The system based on deep reinforcement learning can adapt to defenders' tactics and stop 95% of simulated attacks, according to its developers.

โ˜ โ˜† โœ‡ Dark Reading:

Is OWASP at Risk of Irrelevance?

By Ericka Chickowski, Contributing Writer, Dark Reading โ€” February 17th 2023 at 23:05
A growing group of OWASP members and board leaders are calling for the AppSec group to make big changes to stay apace with modern development.

โ˜ โ˜† โœ‡ Dark Reading:

Check Point Boosts AppSec Focus With CNAPP Enhancements

By Jeffrey Schwartz, Contributing Writer, Dark Reading โ€” February 17th 2023 at 21:49
Established network security players like Check Point are responding to the shift to cloud-native applications, which have exposed more vulnerabilities in open source software supply chains.

โ˜ โ˜† โœ‡ Dark Reading:

Novel Spy Group Targets Telecoms in 'Precision-Targeted' Cyberattacks

By Jai Vijayan, Contributing Writer, Dark Reading โ€” February 17th 2023 at 21:34
The primary victims so far have been employees of telcos in the Middle East, who were hit with custom backdoors via the cloud, in a likely precursor to a broader attack.

โ˜ โ˜† โœ‡ Dark Reading:

Google Translate Helps BEC Groups Scam Companies in Any Language

By Becky Bracken, Editor, Dark Reading โ€” February 17th 2023 at 21:00
BEC gangs Midnight Hedgehog and Mandarin Capybara show how online marketing and translation tools are making it easy for these threat groups to scale internationally.

โ˜ โ˜† โœ‡ Dark Reading:

Inglis Retires as National Cyber Director Ahead of Biden's Cybersecurity EO

By Dark Reading Staff, Dark Reading โ€” February 17th 2023 at 19:00
The long-time NSA and cyber specialist says he's exiting the public sector.

โ˜ โ˜† โœ‡ Dark Reading:

Not Stoked: Burton Snowboards' Online Orders Disrupted After Cyberattack

By Dark Reading Staff, Dark Reading โ€” February 17th 2023 at 18:20
The snow sports specialist is investigating to see what caused the operations-disrupting "cyber incident."

โ˜ โ˜† โœ‡ Dark Reading:

Massive GoAnywhere RCE Exploit: Everything You Need to Know

By Nate Nelson, Contributing Writer, Dark Reading โ€” February 17th 2023 at 17:35
Weeks after an exploit was first announced in a popular cloud-based file transfer service, could some organizations still be vulnerable? The answer is yes.

โ˜ โ˜† โœ‡ Dark Reading:

AppSec Threats Deserve Their Own Incident Response Plan

By Omer Yaron, Head of Research, Enso Security โ€” February 17th 2023 at 15:00
With a rearranging of priorities and good incident response plans, organizations can be ready to face the future of software attacks.

โ˜ โ˜† โœ‡ Dark Reading:

Encrypted Traffic, Once Thought Safe, Now Responsible For Most Cyberthreats

By Deepen Desai, CISO and VP, Security Research, Zscaler โ€” February 16th 2023 at 08:00
It's a classic attacker move: Use security protections against those who deploy them. But organizations can still defuse and prevent these encrypted attacks.

โ˜ โ˜† โœ‡ Dark Reading:

ESXi Ransomware Update Outfoxes CISA Recovery Script

By Dark Reading Staff, Dark Reading โ€” February 16th 2023 at 22:34
New ESXiArgs-ransomware attacks include a workaround for CISA's decryptor, researchers find.

โ˜ โ˜† โœ‡ Dark Reading:

Atlassian: Leaked Data Stolen via Third-Party App

By Dark Reading Staff, Dark Reading โ€” February 16th 2023 at 22:10
SiegedSec threat group leaked data that Atlassian says was taken from app used to coordinate in-office resources.

โ˜ โ˜† โœ‡ Dark Reading:

MVP Vibe Fest Bridges Gap Between Athletics and Cybersecurity

February 16th 2023 at 21:00
Top athletes compete both on and off the track in a mix of track and field events and cyber games.
โ˜ โ˜† โœ‡ Dark Reading:

WatchGuard Launches New Line of Firewall Products to Enhance Unified Security for Remote and Distributed Businesses

February 16th 2023 at 19:51
Powered by WatchGuardโ€™s Unified Security Platformยฎ architecture, new Fireboxes deliver enhanced performance and added security capabilities that MSPs and IT admins can easily manage in WatchGuard Cloud.
โ˜ โ˜† โœ‡ Dark Reading:

Cybersecurity Jobs Remain Secure Despite Recession Fears

By Robert Lemos, Contributing Writer, Dark Reading โ€” February 16th 2023 at 19:34
Only 10% of corporate executives expect to lay off members of cybersecurity teams in 2023, much lower than other areas, as companies protect hard-to-find skill sets.

โ˜ โ˜† โœ‡ Dark Reading:

SideWinder APT Spotted Targeting Crypto

By Elizabeth Montalbano, Contributor, Dark Reading โ€” February 16th 2023 at 16:41
The nation-state threat group has been attacking a wider range of victims and regions than previously thought.

โ˜ โ˜† โœ‡ Dark Reading:

Window Snyder's Startup Launches Security Platform for IoT Device Makers

By Jai Vijayan, Contributing Writer, Dark Reading โ€” February 16th 2023 at 15:35
Thistle's technology will give device makers a way to easily integrate features for secure updates, memory management, and communications into their products, Snyder says.

โ˜ โ˜† โœ‡ Dark Reading:

Simplify to Survive: How Organizations Can Navigate Cyber-Risk

By Richard Watson, Global and Asia-Pacific Cybersecurity Consulting Leader, EY โ€” February 16th 2023 at 15:00
Simplification can result in efficiencies, reduced overhead, and the ability to respond to cyber threats more quickly.

โ˜ โ˜† โœ‡ Dark Reading:

Descope Handles Authentication So Developers Don't Have To

By Fahmida Y. Rashid, Managing Editor, Features, Dark Reading โ€” February 16th 2023 at 02:00
Developers don't have to build authentication and user management from scratch, and can devote their energies to the core functions of the application, instead.

โ˜ โ˜† โœ‡ Dark Reading:

Infrastructure Risks Increase As IT and OT Converge

By Microsoft Security, Microsoft โ€” February 15th 2023 at 08:00
Explosive growth of devices associated with the Internet of Things and operational technologies gives attackers a larger pool of targets.

โ˜ โ˜† โœ‡ Dark Reading:

Oligo Security Takes Aim at Open Source Vulnerabilities

By Dark Reading Staff, Dark Reading โ€” February 16th 2023 at 01:00
The startup's software helps organizations secure their containers in the cloud by teasing out which packages are running and which are vulnerable.

โ˜ โ˜† โœ‡ Dark Reading:

ChatGPT Subs In as Security Analyst, Hallucinates Only Occasionally

By Robert Lemos, Contributing Writer, Dark Reading โ€” February 15th 2023 at 22:50
Incident response triage and software vulnerability discovery are two areas where the large language model has demonstrated success, although false positives are common.

โ˜ โ˜† โœ‡ Dark Reading:

Brivo Reveals Top Security Trends for 2023: Convenience Is King in Securing the Hybrid Workplaces of the Future

February 15th 2023 at 20:47
Factoring user experience and convenience into how employees and tenants access buildings is top concern for security professionals says benchmark industry survey.
โ˜ โ˜† โœ‡ Dark Reading:

Call for Speakers Now Open for the RH-ISAC Cyber Intelligence Summit

February 15th 2023 at 20:45
Retail & Hospitality ISAC invites industry leaders, experts, and innovators to submit proposals for presentations and panel discussions.
โ˜ โ˜† โœ‡ Dark Reading:

GAO Calls for Improved Data Privacy Protections

By Dark Reading Staff, Dark Reading โ€” February 15th 2023 at 20:18
US federal watchdog agency outlines key measures for better protecting sensitive data under the federal government's control.

โ˜ โ˜† โœ‡ Dark Reading:

2023 Is the Year of Risk: 5 Ways to Prepare

February 15th 2023 at 20:00
2022 saw a record number of cyberattacks. In response, regulators are prescribing how companies should manage their risks. How do you prepare?
โ˜ โ˜† โœ‡ Dark Reading:

3 Ways CISOs Can Lead Effectively and Avoid Burnout

By Steve Shelton, CEO, Green Shoe Consulting โ€” February 15th 2023 at 19:55
Information security is a high-stakes field with sky-high expectations. Here's how CISOs can can offset the pressures and stay healthy.

โ˜ โ˜† โœ‡ Dark Reading:

What Purple Teams Wish Companies Knew

By Dark Reading Staff, Dark Reading โ€” February 15th 2023 at 19:00
Here are some of the easily avoidable mistakes most companies made last year, gleaned from hundreds of cybersecurity engagements by red and blue teams.

โ˜ โ˜† โœ‡ Dark Reading:

Build Cyber Resiliency With These Security Threat-Mitigation Considerations

By Steve Durbin, CEO, Information Security Forum โ€” February 15th 2023 at 18:00
CISOs need to define their risk tolerance, identify specific critical data, and make changes based on strategic business goals.

โ˜ โ˜† โœ‡ Dark Reading:

5th State of CCPA, CPRA, and GDPR Compliance Report Shows More Than 90% of Companies Are Not Compliant

February 15th 2023 at 16:21
As CPRA went into effect on January 1, latest CYTRIO research says 91% of companies still uncompliant with GDPR; 92% not compliant with CCPA and CPRA.
โ˜ โ˜† โœ‡ Dark Reading:

NIST's New Crypto Standard a Step Forward in IoT Security

By Robert Lemos, Contributing Writer, Dark Reading โ€” February 15th 2023 at 15:30
The National Institute of Standards and Technology has settled on a standard for encrypting Internet of Things (IoT) communications, but many devices remain vulnerable and unpatched.

โ˜ โ˜† โœ‡ Dark Reading:

How Security Teams Can Protect Employees Beyond Corporate Walls

By Josh Yavor, CISO, Tessian โ€” February 15th 2023 at 15:00
De-shaming security mistakes and taking the blame and punishment out of incident reporting can strengthen security efforts both inside and outside of the workplace.

โ˜ โ˜† โœ‡ Dark Reading:

Russian Cybercriminal Faces Decades in Prison for Hacking and Trading Operation

By Elizabeth Montalbano, Contributor, Dark Reading โ€” February 15th 2023 at 14:00
Vladislav Klyushin and co-conspirators used SEC filings stolen from the networks of Tesla, Roku, and other publicly traded companies to earn nearly $100 million in illegal trades.

โ˜ โ˜† โœ‡ Dark Reading:

Expel Tackles Cloud Threats With MDR for Kubernetes

By Dark Reading Staff, Dark Reading โ€” February 15th 2023 at 01:00
The new managed detection and response platform simplifies cloud security for Kubernetes applications.

โ˜ โ˜† โœ‡ Dark Reading:

OT Network Security Myths Busted in a Pair of Hacks

By Kelly Jackson Higgins, Editor-in-Chief, Dark Reading โ€” February 14th 2023 at 22:47
How newly exposed security weaknesses in industrial wireless, cloud-based interfaces, and nested PLCs serve as a wake-up call for hardening the physical process control layer of the OT network.

โ˜ โ˜† โœ‡ Dark Reading:

9 New Microsoft Bugs to Patch Now

By Jai Vijayan, Contributing Writer, Dark Reading โ€” February 14th 2023 at 22:20
78 new CVEs patched in this month's batch โ€” nearly half of which are remotely executable and three of which attackers already are exploiting.

โ˜ โ˜† โœ‡ Dark Reading:

Oakland City Services Struggle to Recover From Ransomware Attack

By Dark Reading Staff, Dark Reading โ€” February 14th 2023 at 19:50
Fire emergency, 911 services functioning, along with Oakland financial systems, city says.

โ˜ โ˜† โœ‡ Dark Reading:

Configuration Issues in SaltStack IT Tool Put Enterprises at Risk

By Elizabeth Montalbano, Contributor, Dark Reading โ€” February 14th 2023 at 19:08
Researchers flag common misconfiguration errors and a template injection technique that could let an attacker take over the IT management network and connected systems.

โ˜ โ˜† โœ‡ Dark Reading:

Hospitals Sued for Using Meta's Ad-Tracking Code, Violating HIPAA

By Dark Reading Staff, Dark Reading โ€” February 14th 2023 at 18:59
Lawsuits say hospitals using Meta Pixel code violated patient privacy โ€” sharing conditions, medications, and more with Facebook.

โ˜ โ˜† โœ‡ Dark Reading:

Why SecDataOps Is the Future of Your Security Program

By Jonathan Rau, CISO, Lightspin โ€” February 14th 2023 at 18:00
The goal: Ensure that data is always finely curated and accessible, and that security decisions get made with high-fidelity data.

โŒ