Dark Reading

Criminals Targeting Magento Sites with Brute-Force Password Attacks

04/03/2018
Forcepoint says it is aware of at least 1,000 sites using Magento's e-commerce platform that have been recently compromised.

7 Deadly Security Sins of Web Applications

04/03/2018
The top ways organizations open themselves up to damaging Web app attacks.

New Attack Vector Shows Dangers of S3 Sleep Mode

04/03/2018
Researchers at Black Hat Asia demonstrated how they can compromise the security of a machine as it powers down and wakes up.

Medical Device Security Startup Launches

04/03/2018
Cynerio lands multi-million dollar funding round.

Francisco Partners Buys Bomgar

04/03/2018
Private equity firm Francisco Partners plans to acquire Bomgar, a privileged access and identity management company.

Hudson's Bay Brands Hacked, 5 Million Credit Card Accounts Stolen

04/02/2018
The infamous Carbanak/FIN7 cybercrime syndicate breached Saks and Lord & Taylor and is now selling some of the stolen credit card accounts on the Dark Web.

'Hack the Defense Travel System': DoD Extends its Bug Bounty Program

04/02/2018
The fifth US Department of Defense bug bounty program, launched with HackerOne, will target a DoD enterprise system used by millions.

Qualys Buys 1Mobility Software Assets

04/02/2018
Qualys has purchased the software assets of 1Mobility for an undisclosed sum.

Is Security Accelerating Your Business?

04/02/2018
With an ever-growing list of security and compliance requirements, security can hinder or slow business initiatives. Is your security department stuck in slow gear or can it go faster?

Microsoft Rushes Out Fix for Major Hole Caused by Previous Meltdown Patch

03/30/2018
Issue affects Windows 7 x64 and Windows Server 2008 R2 x64 systems.

Accused LinkedIn, DropBox Hacker Appears in US Court After Diplomatic Battle

03/30/2018
Russian national indicted for the 2012 LinkedIn hack that led to the theft of 117 million passwords has been extradited from the Czech Republic to the US.

10 Women in Security You May Not Know But Should

03/30/2018
The first in a series of articles shining a spotlight on women who are quietly changing the game in cybersecurity.

Under Armour App Breach Exposes 150 Million Records

03/30/2018
A breach in a database for MyFitnessPal exposes information on 150 million users.

The Cybersecurity Mandates Keep On Coming

03/30/2018
There's a good reason for the proliferation of mandates like the one in New York state, but companies may struggle to answer this question: "Are we in compliance?"

MITRE Evaluates Tools for APT Detection

03/29/2018
A new service from MITRE will evaluate products based on how well they detect advanced persistent threats.

Deconstructing the DOJ Iranian Hacking Indictment

03/29/2018
The alleged attackers used fairly simple tools, techniques and procedures to compromise a new victim organization on an almost weekly basis for over five years.

WannaCry Re-emerges at Boeing

03/29/2018
Computers at the aerospace giant were hit by the WannaCry malware but systems are back to normal

FBI IC3: Tech Support Scam Losses Rose 86% in 2017

03/29/2018
Most victims are in the US, but FBI IC3 has logged cases from 85 different countries.

University Networks Become Fertile Ground for Cryptomining

03/29/2018
Sixty percent of cryptomining detections in a Vectra study occurred on higher-education networks.

US Election Swing States Score Low Marks in Cybersecurity

03/29/2018
C and D grades for Florida, Michigan, New Hampshire, Nevada, and Ohio, SecurityScorecard assessment shows.