Dark Reading

Encrypted Traffic, Once Thought Safe, Now Responsible For Most Cyberthreats

02/16/2023
It's a classic attacker move: Use security protections against those who deploy them. But organizations can still defuse and prevent these encrypted attacks.

Descope Handles Authentication So Developers Don't Have To

02/15/2023
Developers don't have to build authentication and user management from scratch, and can devote their energies to the core functions of the application, instead.

Oligo Security Takes Aim at Open Source Vulnerabilities

02/15/2023
The startup's software helps organizations secure their containers in the cloud by teasing out which packages are running and which are vulnerable.

ChatGPT Subs In as Security Analyst, Hallucinates Only Occasionally

02/15/2023
Incident response triage and software vulnerability discovery are two areas where the large language model has demonstrated success, although false positives are common.

Brivo Reveals Top Security Trends for 2023: Convenience Is King in Securing the Hybrid Workplaces of the Future

02/15/2023
Factoring user experience and convenience into how employees and tenants access buildings is top concern for security professionals says benchmark industry survey.

Call for Speakers Now Open for the RH-ISAC Cyber Intelligence Summit

02/15/2023
Retail & Hospitality ISAC invites industry leaders, experts, and innovators to submit proposals for presentations and panel discussions.

GAO Calls for Improved Data Privacy Protections

02/15/2023
US federal watchdog agency outlines key measures for better protecting sensitive data under the federal government's control.

2023 Is the Year of Risk: 5 Ways to Prepare

02/15/2023
2022 saw a record number of cyberattacks. In response, regulators are prescribing how companies should manage their risks. How do you prepare?

3 Ways CISOs Can Lead Effectively and Avoid Burnout

02/15/2023
Information security is a high-stakes field with sky-high expectations. Here's how CISOs can can offset the pressures and stay healthy.

What Purple Teams Wish Companies Knew

02/15/2023
Here are some of the easily avoidable mistakes most companies made last year, gleaned from hundreds of cybersecurity engagements by red and blue teams.

Build Cyber Resiliency With These Security Threat-Mitigation Considerations

02/15/2023
CISOs need to define their risk tolerance, identify specific critical data, and make changes based on strategic business goals.

5th State of CCPA, CPRA, and GDPR Compliance Report Shows More Than 90% of Companies Are Not Compliant

02/15/2023
As CPRA went into effect on January 1, latest CYTRIO research says 91% of companies still uncompliant with GDPR; 92% not compliant with CCPA and CPRA.

How Security Teams Can Protect Employees Beyond Corporate Walls

02/15/2023
De-shaming security mistakes and taking the blame and punishment out of incident reporting can strengthen security efforts both inside and outside of the workplace.

Russian Cybercriminal Faces Decades in Prison for Hacking and Trading Operation

02/15/2023
Vladislav Klyushin and co-conspirators used SEC filings stolen from the networks of Tesla, Roku, and other publicly traded companies to earn nearly $100 million in illegal trades.

Infrastructure Risks Increase As IT and OT Converge

02/15/2023
Explosive growth of devices associated with the Internet of Things and operational technologies gives attackers a larger pool of targets.

Expel Tackles Cloud Threats With MDR for Kubernetes

02/14/2023
The new managed detection and response platform simplifies cloud security for Kubernetes applications.

OT Network Security Myths Busted in a Pair of Hacks

02/14/2023
How newly exposed security weaknesses in industrial wireless, cloud-based interfaces, and nested PLCs serve as a wake-up call for hardening the physical process control layer of the OT network.

9 New Microsoft Bugs to Patch Now

02/14/2023
78 new CVEs patched in this month's batch — nearly half of which are remotely executable and three of which attackers already are exploiting.

Oakland City Services Struggle to Recover From Ransomware Attack

02/14/2023
Fire emergency, 911 services functioning, along with Oakland financial systems, city says.

Configuration Issues in SaltStack IT Tool Put Enterprises at Risk

02/14/2023
Researchers flag common misconfiguration errors and a template injection technique that could let an attacker take over the IT management network and connected systems.