Dark Reading

NIST Seeking Comments on New AppSec Practices Standards

04/17/2018
Working in conjunction with SAFECode, NIST is opening the floor to suggestions at RSA about secure software development life cycle guidelines.

Microsoft to Roll Out Azure Sphere for IoT Security

04/16/2018
Azure Sphere, now in preview, is a three-part program designed to secure the future of connected devices and powered by its own custom version of Linux.

Cisco, ISARA to Test Hybrid Classic, Quantum-Safe Digital Certificates

04/13/2018
Goal is to make it easier for organizations to handle the migration to quantum computing when it becomes available.

Former Airline Database Administrator Sentenced for Hacking Reservation System

04/13/2018
Former PenAir IT staffer gets five-year probation sentence via plea deal.

Federal Agency Data Under Siege

04/13/2018
Seventy-one percent of IT security professionals in US federal agencies have reported breaches in their organizations.

7 Steps to a Smooth, Secure Cloud Transition

04/13/2018
Security leaders share their top steps to keep in mind as your organization moves data and applications to the cloud.

Android Patches Can Skip a Beat

04/12/2018
Researchers have found that some Android devices are skipping patches and lying about it.

Businesses Calculate Cost of GDPR as Deadline Looms

04/12/2018
Surveys highlight the financial burden of GDPR as companies scramble to meet the May 25 deadline.

Facebook Rolls Out 'Data Abuse Bounty' Program

04/11/2018
The social media giant also got hit with a lawsuit the day before unveiling its new reward program.

Attacker Dwell Time Still Too Long, Research Shows

04/11/2018
New DBIR and M-Trends reports show the window between compromise and discovery are still way too long.

'SirenJack' Vulnerability Lets Hackers Hijack Emergency Warning System

04/10/2018
Unencrypted radio protocol that controls sirens left alert system at risk.

On-Premise Security Tools Struggle to Survive in the Cloud

04/10/2018
Businesses say their current security tools aren't effective in the cloud but hesitate to adopt cloud-based security systems.

Microsoft Issues Rare Patch for Wireless Keyboard Flaw

04/10/2018
Patch Tuesday includes 67 fixes - the most critical of which are browser-related.

Attackers Exploit Cisco Switch Issue as Vendor Warns of Yet Another Critical Flaw

04/09/2018
Cisco says companies fixing previously known protocol issue should also patch against critical remote-code execution issue.

Ransomware Up for Businesses, Down for Consumers in Q1

04/09/2018
Ransomware, spyware, and cryptomining were the biggest enterprise threats during an otherwise quiet quarter for malware, researchers report.

Deep Instinct Adds MacOS Support

04/09/2018
Deep Instinct adds support for MacOS, Citrix, and multi-tenancy in its version 2.2 release.

6 Myths About IoT Security

04/09/2018
Here are common misconceptions about these securing these devices - and tips for locking them down.

Businesses Fear 'Catastrophic Consequences' of Unsecured IoT

04/06/2018
Only 29% of respondents in a new IoT security survey say they actively monitor the risk of connected devices used by third parties.

Mirai Variant Botnet Takes Aim at Financials

04/05/2018
In January, a botnet based on Mirai was used to attack at least three European financial institutions.

Sears & Delta Airlines Are Latest Victims of Third-Party Security Breach

04/05/2018
An insecure ecosystem of third parties connected to an enterprise network poses a growing risk, security analysts say.