darkreading
Poppy Gustafsson to Step Down As CEO of Darktrace; Jill Popelka Appointed Successor
1 year 3 months ago
Remote Access Sprawl Strains Industrial OT Network Security
1 year 3 months ago
A veritable grab bag of tools used to access critical infrastructure networks are wildly insecure, and they're blobbing together to create a widening attack surface.
Becky Bracken, Senior Editor, Dark Reading
How Law Enforcement's Ransomware Strategies Are Evolving
1 year 3 months ago
The threat of ransomware hasn't gone away. But law enforcement has struck a blow by adjusting its tactics and taking out some of the biggest adversaries in the ransomware scene.
Gareth Owenson
Air-Gapped Networks Vulnerable to Acoustic Attack via LCD Screens
1 year 3 months ago
In the "PixHell" attack, sound waves generated by pixels on a screen can transmit information across seemingly impenetrable air gaps.
Nate Nelson, Contributing Writer
'Ancient' MSFT Word Bug Anchors Taiwanese Drone-Maker Attacks
1 year 3 months ago
An attack dubbed "WordDrone" that uses an old flaw to install a backdoor could be related to previously reported cyber incidents against Taiwan's military and satellite industrial supply chain.
Elizabeth Montalbano, Contributing Writer
India Needs Better Cybersecurity for Space, Critical Infrastructure
1 year 3 months ago
As attacks on satellites rise with nation-state conflicts, the South Asian nation joins other space-capable countries in doubling down on cybersecurity.
Robert Lemos, Contributing Writer
Google Updates Cloud Backup, Disaster Recovery Service
1 year 3 months ago
The combination of immutability, indelibility, centralized governance, and user empowerment provides a comprehensive backup strategy, Google said.
Jennifer Lawinski, Contributing Writer
Wiz Launches Wiz Code Application Security Tool
1 year 3 months ago
Wiz Code identifies and flags cloud risks in code to help improve collaboration between security and development teams.
Jennifer Lawinski, Contributing Writer
Microsoft Discloses 4 Zero-Days in September Update
1 year 3 months ago
This month's Patch Tuesday contains a total of 79 vulnerabilities — the fourth largest of the year.
Jai Vijayan, Contributing Writer
How a Centuries-Old Company Reached Security Maturity
1 year 3 months ago
In this case study, a 180-year-old life and pension insurer brought its security infrastructure into the modern age.
Karen D. Schwartz, Contributing Writer
Cyber Staffing Shortages Remain CISOs' Biggest Challenge
1 year 3 months ago
Besides operational issues connected to a talent shortage, the cost of running security platforms — and their training costs — also keeps CISOs up at night.
Kristina Beek, Associate Editor, Dark Reading
Mustang Panda Feeds Worm-Driven USB Attack Strategy
1 year 3 months ago
A fresh wave of attacks on APAC government entities involves both self-propagating malware spreading via removable drives and a spear-phishing campaign.
Elizabeth Montalbano, Contributing Writer
Platform Engineering Is Security Engineering
1 year 3 months ago
For modern applications built on Kubernetes and microservices, platform engineering is not just about building functional systems but also about embedding security into the fabric of those systems.
Michelle Ensey
Dark Reading Confidential: Pen Test Arrests, Five Years Later
1 year 3 months ago
Episode 3: On September 11, 2019, two cybersecurity professionals were arrested in Dallas County, Iowa and forced to spend the night in jail -- just for doing their jobs. Gary De Mercurio and Justin Wynn. Despite the criminal charges against them eventually being dropped, the saga that night five years ago continues to haunt De Mercurio and Wynn personally and professionally. In this episode, the pair and Coalfire's CEO Tom McAndrew share how the arrest and fallout has shaped their lives and careers as well as how it has transformed physical penetration tests for the cybersecurity industry as a whole.
Dark Reading Staff
Gallup Addresses XSS Bugs in Website
1 year 3 months ago
Researchers flagged a pair of Gallup site XSS vulnerabilities.
Becky Bracken, Senior Editor, Dark Reading
Gallup.com Bugs Open Door to Election Misinformation
1 year 3 months ago
Researchers flagged a pair of Gallup polling site XSS vulnerabilities that could have allowed malicious actors to execute arbitrary code, access sensitive data, or take over a victim account.
Becky Bracken, Senior Editor, Dark Reading
Chinese Tag Team APTs Keep Stealing Asian Gov't Secrets
1 year 3 months ago
A PRC threat cluster known as "Crimson Palace" is demonstrating the benefits of having specialized units carry out distinct stages of a wider attack chain.
Nate Nelson, Contributing Writer
10 Writing Tips for Cybersecurity Professionals
1 year 3 months ago
It takes more than technical knowledge to write about cybersecurity in a way people want to read. It takes creativity, discipline, and other key skills.
Joshua Goldfarb
Akira Ransomware Actors Exploit SonicWall Bug for RCE
1 year 3 months ago
CISA has added CVE-2024-40766 to its Known Exploited Vulnerabilities catalog.
Jai Vijayan, Contributing Writer
Checked
9 hours 34 minutes ago
Public RSS feed
darkreading feed