Dark Reading

DigiCert Advances Passwordless Authentication with Support for Windows Hello for Business

12/07/2021
Managing Windows Hello hybrid certificate trust model on DigiCert PKI platform streamlines enterprise passwordless authentication and access, an industry first for public Certification Authorities (CAs).

5 Ways GRC & Security Can Partner to Reduce Insider Risk

12/07/2021
In 2022, data governance, risk, and compliance (GRC) and security need to partner to implement a modern approach to data protection: insider risk management.

Defending Against the Use of Deepfakes for Cyber Exploitation

12/07/2021
Deepfakes are increasingly concerning because they use AI to imitate human activities and can be used to augment social engineering attacks.

Cybersecurity Takes the Wheel as Auto Industry's Top Priority

12/07/2021
Part mainframe, part mobile device, cars will increasingly become targets for cyberattackers.

MITRE Engenuity & Cybrary Surpass 25,000 Users in MITRE ATT&CK Defender Certification Program

12/06/2021
The program helps close the skill gap to enable defenders to gain the advantage over cyber adversaries.

Microsoft Seizes Malicious Websites Used by Prolific Chinese APT Group

12/06/2021
The so-called Nikel cyber espionage attack group - aka APT15, Vixen Panda, KE3CHANG, Royal APT, and Playful Dragon - has been in Microsoft's sights since 2016.

US Military Has Acted Against Ransomware Groups: Report

12/06/2021
Gen. Paul Nakasoke, head of US Cyber Command and director of the NSA, said the military has taken offensive action against ransomware groups.

Russian Actors Behind SolarWinds Attack Hit Global Business & Government Targets

12/06/2021
Clusters of activity associated with the attack group behind last year's supply chain breach reveal novel techniques, researchers say.

5 Ways to Keep Fraudsters at Bay Over the Holidays

12/06/2021
Organizations want to focus on customer satisfaction and increased revenues during the holiday shopping season. Here are some smart security and fraud protections to keep in mind.

SEARCH for Hidden Cyber Threats: 6 Steps to Unleash a Hyper-effective Threat Hunting Team

12/06/2021
SEARCH is a carefully-tuned methodology that balances people, process and technology for threat hunters actively searching for, and disrupting, distinctly human threats.

Why the C-Suite Doesn't Need Access to All Corporate Data

12/06/2021
If zero trust is to work properly, then it must apply to everyone.

One-Third of Black Friday Shoppers Were Bots, Fake Users

12/03/2021
Fake traffic observed on Nov. 26 included malicious scrapers, sophisticated botnets, fake accounts, and click farms.

NSO Group Spyware Used to Breach US State Dept. Phones

12/03/2021
At least nine US State Department employee iPhones were targeted with sophisticated spyware developed by the Israeli firm NSO Group.

IGI Cybersecurity Introduces CISO Team-as-a-Service

12/03/2021
Service gives customers access to a CISO-led team of practitioners with a variety of skills and expertise.

How Criminals Are Using Synthetic Identities for Fraud

12/03/2021
Organizations must improve their cybersecurity protocols to detect fraudulent identities and make sure they're safeguarding their consumers’ personal information.

Logiq.ai Tackles Observability Problem With LogFlow

12/03/2021
LogFlow addresses data risks associated with machine data pipelines.

USB Devices the Common Denominator in All Attacks on Air-Gapped Systems

12/03/2021
A new study of 17 malware frameworks shows threat actors always use USB drives to sneak malware into air-gapped environments and then steal data from there.

An Insider's Account of Disclosing Vulnerabilities

12/03/2021
Vendors drag their heels when it comes to identifying software vulnerabilities and are often loath to expedite the fixes.

Ransomware, Carding, and Initial Access Brokers: Group-IB Presents Report on Trending Crimes

12/02/2021
Report explores cybercrime developments from the second half of 2020 through the first half of 2021.

Darktrace Reports 30% More Ransomware Attacks Targeting Organizations During the Holiday Period

12/02/2021
Researchers also observed a 70% average increase in attempted ransomware attacks.