Dark Reading

Skybox Security Appoints Cybersecurity Veteran Mordecai Rosen as CEO

02/08/2023
Skybox closes $50 million in financing to drive growth of its SaaS-based security platform.

SecuriThings Brings Managed Service Capabilities to Physical Security, With New Managed Service Platform

02/08/2023
Platform opens new opportunities for managed service providers to manage, visualize, and secure customer devices from a single pane of glass, including automated maintenance and other operations.

GAO Calls for Action to Protect Cybersecurity of Critical Energy, Communications Networks

02/08/2023
Enhanced industrial control systems cybersecurity for energy and communications sector among top recommendations in new GAO cybersecurity assessment.

Gigamon Exits NDR Market, Sells ThreatInsight Business to Fortinet

02/08/2023
Omdia has learned that Gigamon sold its ThreatInsight NDR business to Fortinet for approximately $31 million. The deal highlights what may be a pivot point for the NDR market.

It Isn't Time to Worry About Quantum Computing Just Yet

02/08/2023
Don't let something that's a decade away distract you from today's cyber threats.

Toyota Global Supply Chain Portal Flaw Put Hacker in the Driver's Seat

02/08/2023
The automaker closed a hole that allowed a security researcher to gain system administrator access to more than 14,000 corporate and partner accounts and troves of sensitive data.

Why ChatGPT Isn't a Death Sentence for Cyber Defenders

02/08/2023
Generative AI combined with user awareness training creates a security alliance that can let organizations work protected from ChatGPT.

How to Optimize Your Cyber Insurance Coverage

02/08/2023
From prevention and detection processes to how you handle policy information, having strong cyber insurance coverage can help mitigate cybersecurity attacks.

Why Some Cloud Services Vulnerabilities Are So Hard to Fix

02/08/2023
Five months after AWS customers were alerted about three vulnerabilities, nearly none had plugged the holes. The reasons why underline a need for change.

Cloud Apps Still Demand Way More Privileges Than They Use

02/07/2023
Hackers can't steal a credential that doesn't exist.

'Money Lover' Finance App Exposes User Data

02/07/2023
A broken access control vulnerability could have led to dangerous follow-on attacks for users of the money-management app.

Fresh, Buggy Clop Ransomware Variant Targets Linux Systems

02/07/2023
For the moment, victims can decrypt data without paying a ransom. But Clop is a ransomware variant that has caused havoc on Windows systems, so that's bound to change.

DPRK Using Unpatched Zimbra Devices to Spy on Researchers

02/07/2023
Lazarus Group used a known Zimbra bug to steal data from medical and energy researchers.

New Banking Trojan Targeting 100M Pix Payment Platform Accounts

02/07/2023
New malware demonstrates how threat actors are pivoting toward payment platform attacks, researchers say.

Ongoing VMware ESXi Ransomware Attack Highlights Inherent Virtualization Risks

02/07/2023
The global assault on vulnerable VMware hypervisors may have been mitigated by updating to the latest version of the product, but patch management is only part of the story.

With TikTok Bans, the Time for Operational Governance Is Now

02/07/2023
Emerging risks and trends need to be monitored, but cybersecurity challenges can be fixed with a focus on the fundamentals.

Backdoor in Dingo Cryptocurrency Allows Creator to Steal (Nearly) Everything

02/07/2023
A tax variable in the software implementing the Dingo Token allows the creators to charge 99% in fees per transaction, essentially stealing funds, an analysis finds.

5 Ways to Survive Scam Season — or Rather, Tax Season

02/07/2023
Security pros need to look beyond user education to find and disarm fraudulent actors.

Optimizing Cybersecurity Investments in a Constrained Spending Environment

02/07/2023
Three ways to stay safe in an economically uncertain 2023.

A Fool With a Tool Is Still a Fool: A Cyber Take

02/07/2023
New tech often requires new thinking — but that's harder to install.