Dark Reading

Name That Toon: Road Trip

05/17/2021
Feeling creative? Submit your caption in the comments, and our panel of experts will reward the winner with a $25 Amazon gift card.

Rapid7 Source Code Accessed in Supply Chain Attack

05/14/2021
An investigation of the Codecov attack revealed intruders accessed Rapid7 source code repositories containing internal credentials and alert-related data.

How Faster COVID-19 Research Is Being Made Possible by Secure Silicon

05/14/2021
When Intel and Leidos set up a "trusted execution environment" to enable a widespread group of researchers to securely share and confidentially compute real-world data, it was no small achievement.

Cisco Confirms Plans to Acquire Kenna Security

05/14/2021
Cisco plans to integrate Kenna's vulnerability management technology into its SecureX platform.

Chart: Cybersecurity Now a Top Corporate Priority

05/14/2021
Majority of global IT decision makers say cybersecurity is extremely or more important now than it was pre-pandemic, according to Cisco.

SOC Teams Burdened by Alert Fatigue Explore XDR

05/14/2021
ESG research finds a complex attack surface and threat landscape make alerts too overwhelming to monitor accurately

Wi-Fi Design, Implementation Flaws Allow a Range of Frag Attacks

05/14/2021
Every Wi-Fi product is affected by at least one fragmentation and aggregation vulnerability, which could lead to a machine-in-the-middle attack, researcher says.

Security Trends to Follow at RSA Conference 2021

05/14/2021
Here are three key categories of sessions that provide an inside look at some of today's most interesting cybersecurity trends.

Software, Incident Response Among Big Focus Areas in Biden's Cybersecurity Executive Order

05/13/2021
Overall objectives are good, but EO may be too prescriptive in parts, industry experts say.

85% of Data Breaches Involve Human Interaction: Verizon DBIR

05/13/2021
Ransomware, phishing, and Web application attacks all increased during a year in which the majority of attacks involved a human element.

Firms Struggle to Secure Multicloud Misconfigurations

05/13/2021
Half of companies had at least one case of having all ports open to the public, while more than a third had an exposed database.

Dragos & IronNet Partner on Critical Infrastructure Security

05/13/2021
The IT and OT security providers will integrate solutions aimed at improving critical infrastructure security

When AI Becomes the Hacker

05/13/2021
Bruce Schneier explores the potential dangers of artificial intelligence (AI) systems gone rogue in society.

Microsoft Adds GPS Location to Identity & Access Control in Azure AD

05/13/2021
New capabilities let admins restrict access to resources from privileged access workstations or regions based on GPS location.

Adapting to the Security Threat of Climate Change

05/13/2021
Business continuity plans that address natural and manmade disasters can help turn a cataclysmic business event into a minor slowdown.

Defending the Castle: How World History Can Teach Cybersecurity a Lesson

05/13/2021
Cybersecurity attackers follow the same principles practiced in warfare for millennia. They show up in unexpected places, seeking out portions of an organization's attack surface that are largely unmonitored and undefended.

Verizon DBIR 2021: "Winners" No Surprise, But All-round Vigilance Essential

05/13/2021
Verizon's Data Breach Investigations Report (DBIR) covers 2020 -- a year like no other. Phishing, ransomware, and innovation caused big problems.

Despite Heightened Breach Fears, Incident Response Capabilities Lag

05/12/2021
Many organizations remain unprepared to detect, respond, and contain a breach, a new survey shows.

Researchers Unearth 167 Fake iOS & Android Trading Apps

05/12/2021
The apps are disguised as financial trading, banking, and cryptocurrency apps from well-known and trusted organizations.

Putting The Spotlight on DarkSide

05/12/2021
Incident responders share insight on the DarkSide ransomware group connected to the recent Colonial Pipeline ransomware attack.