Author

 Reg Harnish
Twitter
LinkedIn
RSS
E-Mail

Profile of Reg Harnish

CEO, GreyCastle Security
Member Since: 8/28/2018
Author
News & Commentary Posts: 1
Comments: 2

Reg Harnish is an entrepreneur, speaker, author and CEO of GreyCastle Security, a leading cybersecurity firm headquartered in Troy, New York.

With two decades of experience practicing cybersecurity, Reg brings a thought-provoking perspective to the industry which has earned him many prestigious recognitions, including fellowship at the National Cybersecurity Institute and the designation of Cybersecurity Consultant of the Year in North America for 2017 and 2018.

Reg is a nationally-recognized speaker and has presented at countless industry and security events for organizations including Security BSides, ISSA, ISC2, ISACA, and InfraGard.

In addition to co-authoring several books on cybersecurity awareness, he is a contributor for Forbes.com as a member of the Forbes Technology Council, an invitation-only organization for senior-level technology executives. His successes and expert commentary also have been featured in Time, CIO Magazine, Dark Matter, Software Magazine, ComputerWorld, InfoWorld and Security Magazine.

Articles by Reg Harnish
New Cold Boot Attack Gives Hackers the Keys to PCs, Macs
Kelly Sheridan, Staff Editor, Dark Reading,  9/13/2018
Yahoo Class-Action Suits Set for Settlement
Dark Reading Staff 9/17/2018
RDP Ports Prove Hot Commodities on the Dark Web
Kelly Sheridan, Staff Editor, Dark Reading,  9/17/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment: In Russia, application hangs YOU!
Current Issue
Flash Poll
How Data Breaches Affect the Enterprise
How Data Breaches Affect the Enterprise
This report, offers new data on the frequency of data breaches, the losses they cause, and the steps that organizations are taking to prevent them in the future. Read the report today!
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2018-6693
PUBLISHED: 2018-09-18
An unprivileged user can delete arbitrary files on a Linux system running ENSLTP 10.5.1, 10.5.0, and 10.2.3 Hotfix 1246778 and earlier. By exploiting a time of check to time of use (TOCTOU) race condition during a specific scanning sequence, the unprivileged user is able to perform a privilege escal...
CVE-2018-16515
PUBLISHED: 2018-09-18
Matrix Synapse before 0.33.3.1 allows remote attackers to spoof events and possibly have unspecified other impacts by leveraging improper transaction and event signature validation.
CVE-2018-16794
PUBLISHED: 2018-09-18
Microsoft ADFS 4.0 Windows Server 2016 and previous (Active Directory Federation Services) has an SSRF vulnerability via the txtBoxEmail parameter in /adfs/ls.
CVE-2018-16819
PUBLISHED: 2018-09-18
admin/index.php in Monstra CMS 3.0.4 allows arbitrary file deletion via id=filesmanager&path=uploads/.......//./.......//./&delete_file= requests.
CVE-2018-16820
PUBLISHED: 2018-09-18
admin/index.php in Monstra CMS 3.0.4 allows arbitrary directory listing via id=filesmanager&path=uploads/.......//./.......//./ requests.