Dark Reading

NSA's Rogers: No White House Request for Action Against Russian Hacking

02/27/2018
US Cyber Command head Michael Rogers told US Senate Armed Services Committee that actions to deter Russian hackers from interfering with upcoming US elections requires an order from the White House.

SAML Flaw Lets Hackers Assume Users' Identities

02/27/2018
Vulnerability affects single sign-on for SAML-reliant services including OneLogin, Duo Security, Clever, and OmniAuth.

Security Starts with the User Experience

02/27/2018
Preventing a data breach is safer and more cost-effective than dealing with a breach after it has already happened. That means a focus on security in the design phase.

Incident 'Management': What IT Security Can Learn from Public Safety

02/27/2018
How a framework developed for fighting California wildfires back in the '70s can fortify first responders to a modern cyberattack.

Splunk to Acquire Phantom

02/27/2018
$350 million deal scheduled to close Q1 2018.

Misleading Cyber Foes with Deception Technology

02/27/2018
Today's deception products go far beyond the traditional honeypot by catching attackers while they are chasing down non-existent targets inside your networks.

Threats from Mobile Ransomware & Banking Malware Are Growing

02/26/2018
The number of unique mobile malware samples increased sharply in 2017 compared to a year ago, according to Trend Micro.

Adobe Flash Vulnerability Reappears in Malicious Word Files

02/26/2018
CVE-2018-4878, a Flash zero-day patched earlier this month, has resurfaced in another campaign as attackers capitalize on the bug.

PhishMe Acquired, Rebranded as Cofense in $400M Deal

02/26/2018
Cofense is the new name for PhishMe, which was purchased by a private equity consortium.

7 Key Stats that Size Up the Cybercrime Deluge

02/26/2018
Updated data on zero-days, IoT threats, cryptomining, and economic costs should keep eyebrows raised in 2018.

6 Cybersecurity Trends to Watch

02/26/2018
Expect more as the year goes on: more breaches, more IoT attacks, more fines...

93% of Cloud Applications Aren't Enterprise-Ready

02/23/2018
The average business uses 1,181 cloud services, and most don't meet all recommended security requirements, Netskope says.

'OMG': New Mirai Variant Converts IoT Devices into Proxy Servers

02/23/2018
The new malware also can turn bots into DDoS attack machines, says Fortinet.

10 Can't-Miss Talks at Black Hat Asia

02/23/2018
With threats featuring everything from nation-states to sleep states, the sessions taking place from March 20-23 in Singapore are relevant to security experts around the world.

Visa: EMV Cards Drove 70% Decline in Fraud

02/23/2018
Merchants who adopted chip technology saw a sharp decline in counterfeit fraud between 2015 and 2017, Visa reports.

Leveraging Security to Enable Your Business

02/23/2018
When done right, security doesn't have to be the barrier to employee productivity that many have come to expect. Here's how.

Enabling Better Risk Mitigation with Threat Intelligence

02/23/2018
In order to get the maximum benefit from threat intel you need to be able to operationalize it. Here's how.

Best Practices for Recruiting & Retaining Women in Security

02/22/2018
Gender diversity can help fill the security talent gap, new Forrester Research report says.

Criminals Obtain Code-Signing Certificates Using Stolen Corporate IDs

02/22/2018
The certificates are available on demand at prices ranging from $299 to $1,599, says Recorded Future.

It's Not What You Know, It's What You Can Prove That Matters to Investigators

02/22/2018
Achieving the data visibility to ensure you can provide auditors with the information they need after a breach, and do so in just a few days, has never been more difficult.