Dark Reading

Will the Biggest Clouds Win? Lessons From Google's Mandiant Buy

03/21/2022
Google eventually won out in the competition for Mandiant, but Microsoft's interest underscores the trend in consolidation of security services into large cloud providers, experts say.

Half of Orgs Use Web Application Firewalls to Paper Over Flaws

03/18/2022
WAFs remain a popular backfill for complex and fraught patch management.

Code-Sabotage Incident in Protest of Ukraine War Exposed Open Source Risks

03/18/2022
The maintainer of a widely used npm module served up an unwelcome surprise for developers.

CyCognito Launches Exploit Intelligence

03/18/2022
Risk intelligence solution provides insight, visibility, and guidance to identify, prioritize, and remediate vulnerabilities like Log4j

A Chance to Raise Shields Right

03/18/2022
CISA's "Shields Up" alert provides urgency — and opportunity — for supply chain conversations.

Menlo Security: Less Than Three in 10 Organizations Are Equipped to Combat Growing Wave of Web-Based Cyber Threats

03/18/2022
Report finds that 62 percent of IT decision makers have suffered a browser-based attack in the past 12 months.

Security Teams Struggle to Get Started With Zero Trust

03/18/2022
Nearly a third of respondents in a Dark Reading survey on endpoint security strategy say zero trust is too confusing to implement.

Satellite Networks Worldwide at Risk of Possible Cyberattacks, FBI & CISA Warn

03/18/2022
Agencies provide mitigation steps to protect satellite communication (SATCOM) networks amid "current geopolitical situation."

The Road Ahead for Cyber and Infrastructure Security

03/18/2022
Despite cost, it's time to focus on securing legacy systems and physical infrastructure along with digital systems.

6 Reasons Not to Pay Ransomware Attackers

03/17/2022
Paying a ransom might appear to be the best option, but it comes with its own costs.

ThreatMapper Updated With New Scanning Tools

03/17/2022
ThreatMapper 1.3.0 features secret scanning and the ability to enumerate a software bill of materials (SBOM) at runtime to help secure serverless, Kubernetes, container and multi-cloud environments.

Nok Nok Labs Unveils S3 Authentication Suite

03/17/2022
Enhancements include support for OpenID Connect as an integration mechanism.

Multiple Automotive Manufacturers Infected With Emotet

03/17/2022
Telemetry from industrial systems security firm Dragos has spotted the malware command-and-control servers communicating with several automotive manufacturer systems.

Cloudflare Announces API Gateway

03/17/2022
Organizations can secure, manage, and monitor all of their APIs in one easy-to-use dashboard.

Titaniam Announces Completion of Product Suite

03/17/2022
The Titaniam Suite includes ransomware and extortion defense capabilities in the form of five products.

Glasswall Launches Freemium Version of its Desktop Content Disarm and Reconstruction App

03/17/2022
Glasswall technology offers proactive protection from file-based cybersecurity threats.

Stopping Russian Cyberattacks at Their Source

03/17/2022
Step up training with cybersecurity drills, teach how to avoid social engineering traps, share open source monitoring tools, and make multifactor authentication the default.

Cut Down on Alert Overload and Leverage Layered Security Measures

03/17/2022
Feeling overwhelmed by the number of alerts? It doesn't have to be that way.

Enhancing DLP With Natural Language Understanding for Better Email Security

03/16/2022
Natural language understanding is well-suited for scanning enterprise email to detect and filter out spam and other malicious content. Armorblox introduces a data loss prevention service to its email security platform using NLU.

How Pen Testing Gains Critical Security Buy-in and Defense Insight

03/16/2022
It's more important than ever for companies to challenge their defenses, learning about new gaps and opportunities for improvement along the way.