Dark Reading

Optiv MXDR Enhances Detection Coverage With Expanded Cloud Integration

06/14/2022
Service ingests AWS, GCP and Microsoft Azure data.

Beware the 'Secret Agent' Cloud Middleware

06/14/2022
New open source database details the software that cloud service providers typically silently install on enterprises' virtual machines — often unbeknownst to customers.

Understanding and Mitigating Single Sign-on Risk

06/14/2022
SSO's one-to-many architecture is both a big advantage and a weakness.

Corel Acquires Awingu

06/13/2022
The combination of Awingu and the Parallels Remote Application Server platform will enable end users to securely work from anywhere, at any time, on any device, or OS.

CISA Recommends Organizations Update to the Latest Version of Google Chrome

06/13/2022
Google last week reported seven vulnerabilities in the browser, four of which it rated as high severity.

Kaiser Permanente Breach Exposes Data on 70K Patients

06/13/2022
Employee email compromise potentially exposed patients' medical information, including lab test results and dates of services.

Exposed Travis CI API Leaves All Free-Tier Users Open to Attack

06/13/2022
Public Travis CI logs loaded with GitHub, AWS, Docker Hub account tokens, and other sensitive data could be leveraged for lateral cloud attacks.

In Security, Less Is More

06/13/2022
Cut away everything that costs more attention, storage, or time than its impact is worth.

Tony Jarvis on Shifting Security Gears as We Move to the Cloud

06/13/2022
In this new episode of Tech Talks, Darktrace's Tony Jarvis and Dark Reading's Terry Sweeney discuss how to protect networks after the death of the perimeter.

3 Big Takeaways From the Verizon DBIR 2022

06/13/2022
The annual report is always filled with useful security information. Here are several of the most important lessons from this year's edition.

DoS Vulnerability Allows Easy Envoy Proxy Crashes

06/13/2022
The DoS vulnerability allows an attacker to create a Brotli "zip bomb," resulting in acute performance issues on Envoy proxy servers.

Security Leaders Discuss Industry Drivers at Dark Reading's News Desk at RSAC 2022

06/12/2022
Tune into Dark Reading's News Desk interviews with the industry’s leaders, discussing news and hot topics, such as this year’s "Transofrm" theme, at RSA Conference 2022 in San Francisco

CrowdStrike Introduces Humio for Falcon, Redefining Threat Hunting with Unparalleled Scale and Speed

06/10/2022
Humio for Falcon provides long-term, cost-effective data retention with powerful index-free search and analysis of enriched security telemetry across enterprise environments

Symbiote Malware Poses Stealthy, Linux-Based Threat to Financial Industry

06/10/2022
A Linux-based banking Trojan is a master at staying under the radar.

CrowdStrike Introduces CrowdStrike Asset Graph to Help Organizations Proactively Identify and Eliminate Blind Spots

06/10/2022
CrowdStrike Asset Graph provides unprecedented visibility of assets in an IT environment to optimize cyber defense strategies and manage risk.

CrowdStrike Adds Strategic Partners to CrowdXDR Alliance and Expands Falcon XDR Capabilities

06/10/2022
New CrowdXDR Alliance partners include Menlo Security, Ping Identity, and Vectra AI.

EU Debates AI Act to Protect Human Rights, Define High-Risk Uses

06/10/2022
The commission argues that legislative action is needed to ensure a well-functioning market for AI systems that balances benefits and risks.

How to Blunt the Virulence of the New Ransomware

06/10/2022
Halcyon's Jon Miller joins Dark Reading's Terry Sweeney at Dark Reading News Desk during RSA Conference to discuss how to mitigate ransomware.

How to Secure a High-Profile Event Like the Super Bowl

06/10/2022
Cisco's TK Keanini and the NFL's Tomás Maldonado join Dark Reading's Terry Sweeney at Dark Reading News Desk during RSA Conference to talk about end-to-end security.

Application Security Testing Is on the Mend With Automated Remediation

06/10/2022
Mend's Arabella Hallawell joins Dark Reading's Terry Sweeney at Dark Reading News Desk at RSA Conference to talk about the benefits of automated remediation.