Dark Reading

Deepfakes Are on the Rise, but Don't Panic Just Yet

06/10/2021
Deepfakes will likely give way to deep suspicion, as users try to sort legitimate media from malicious.

11 Cybersecurity Vendors to Watch in 2021

06/10/2021
The cybersecurity landscape continues to spawn new companies and attract new investments. Here is just a sampling of what the industry has to offer.

Cyber Is the New Cold War & AI Is the Arms Race

06/10/2021
Continual cyberattacks have pushed us into a new kind of Cold War, with artificial intelligence the basis of this new arms race.

Required MFA Is Not Sufficient for Strong Security: Report

06/09/2021
Attackers and red teams find multiple ways to bypass poorly deployed MFA in enterprise environments, underscoring how redundancy and good design are still required.

What to Know About Updates to the PCI Secure Software Standard

06/09/2021
New requirements add 50 controls covering five control objectives. Here's a high-level look at each objective.

RSA Spins Off Fraud & Risk Intelligence Unit

06/09/2021
The new company, called Outseer, will continue to focus on payment authentication and fraud detection and analysis.

CISA Addresses Rise in Ransomware Threatening OT Assets

06/09/2021
The agency has released guidance in response to a rise of ransomware attacks affecting OT assets and control systems.

New Security Event @Hack to Take Place in Saudi Arabia

06/09/2021
The Saudi Federation of Cybersecurity, Programming, and Drones (SAFCSP) and Informa Tech will launch a multi-day event in Riyadh this November.

With Cloud, CDO and CISO Concerns Are Equally Important

06/09/2021
Navigated properly, a melding of these complementary perspectives can help keep an organization more secure.

Hardening the Physical Security Supply Chain to Mitigate the Cyber-Risk

06/09/2021
Nick Smith, Regional Manager at Genetec, details how physical security professionals can improve their resilience to cyberattacks by reviewing the cybersecurity policies of those they work with in the supply chain. This includes everyone from component vendors to installers and engineers.

Ransomware Is Not the Problem

06/09/2021
Arbitrarily powerful software -- applications, operating systems -- is a problem, as is preventing it from running on enterprise systems.

Phished Account Credentials Mostly Verified in Hours

06/08/2021
Almost two-thirds of all phished credentials are verified by attackers within a day and then used in a variety of schemes, including business email compromise and targeting other users with malicious code.

Microsoft Patches 6 Zero-Days Under Active Attack

06/08/2021
The June 2021 Patch Tuesday fixes 50 vulnerabilities, six of which are under attack and three of which were publicly known at the time of disclosure.

FBI Issued Encrypted Devices to Capture Criminals

06/08/2021
A sting operation delivered devices into the hands of global criminals and used the intelligence gathered to stop drug crimes.

Colonial Pipeline CEO: Ransomware Attack Started via Pilfered 'Legacy' VPN Account

06/08/2021
No multifactor authentication was attached to the stolen VPN password used by the attackers, Colonial Pipeline president & CEO Joseph Blount told a Senate committee today.

Microsoft CISO Shares Remote Work Obstacles & Lessons Learned

06/08/2021
Bret Arsenault explains changes he implemented along the way as Microsoft's workforce went from 20% to 97% remote.

How Employees Can Keep Their 401(k)s Safe From Cybercriminals

06/08/2021
As retirement fund balances grow, cybercriminals are becoming more brazen in their efforts to deplete people's savings.

Cyber Resilience: The Emerald City of the Security World

06/08/2021
Small and midsize businesses and managed service providers must use their heart, brain, and courage as they follow the Yellow Brick Road to cyber resilience.

An Answer to APP Scams You Can Bank On

06/08/2021
Financial institutions' usual fraud-detection methods can't detect most authorized push payment (APP) scams, putting customers and banks at risk.

First Known Malware Surfaces Targeting Windows Containers

06/07/2021
Siloscape is designed to create a backdoor in Kubernetes clusters to run malicious containers.