Issue Archives
Dark Reading December Tech Digest
Publish Date: Nov 17,2014
Dark Reading's November Tech Digest
Publish Date: Nov 11,2014
Dark Reading's November Tech Digest
Publish Date: Nov 5,2014
Dark Reading's October Tech Digest
Publish Date: Oct 13,2014
Dark Reading Must Reads - September 25, 2014
Publish Date: Sep 25,2014
Dark Reading, September 16, 2014
Publish Date: Sep 16,2014
Dark Reading August 12, 2014 Tech Digest
Publish Date: Aug 12,2014
Dark Reading Must Reads August 5, 2014
Publish Date: Aug 5,2014
Dark Reading Must Reads July 15, 2014
Publish Date: Jul 15,2014
DarkReading Tech Digest -June 9, 2014
Publish Date: Jul 8,2014
Dark Reading June 2014 Tech Digest
Publish Date: Jun 9,2014
Dark Reading May 2014 Must Reads
Publish Date: May 28,2014
Dark Reading - June 2014
Publish Date: May 20,2014
Dark Reading April 2014
Publish Date: Mar 18,2014
Dark Reading February 2014 Tech Digest
Publish Date: Feb 10,2014
Dark Reading January 2014 Tech Digest
Publish Date: Jan 7,2014
Dark Reading December 2013 Must Reads
Publish Date: Dec 11,2013
Dark Reading December 2013 Issue
Publish Date: Dec 9,2013
Dark Reading December 2013 Must Reads
Publish Date: Dec 3,2013
Dark Reading November 2013 Special Issue
Publish Date: Oct 28,2013
Dark Reading October 2013 Issue
Publish Date: Oct 14,2013
Dark Reading October 2013 IT Trends
Publish Date: Oct 9,2013
Dark Reading October 2013 Must Reads - Risk Management
Publish Date: Oct 2,2013
Dark Reading October 2013 Must Reads
Publish Date: Sep 26,2013
Dark Reading September 2013 Special Issue
Publish Date: Sep 16,2013
Dark Reading August 2013 Issue
Publish Date: Aug 19,2013
Dark Reading August 2013 Special Issue
Publish Date: Aug 7,2013
Dark Reading July 2013 IT Trends
Publish Date: Jul 17,2013
Dark Reading July 2013 Must Reads
Publish Date: Jul 11,2013
Dark Reading June 2013 Digital Issue
Publish Date: Jun 3,2013
Dark Reading May 2013 Digital Supplement
Publish Date: May 20,2013
Dark Reading April 2013 Digital Issue
Publish Date: Apr 15,2013
DarkReading March 2013 Special Issue
Publish Date: Mar 11,2013
Dark Reading March 2013 Digital Supplement
Publish Date: Mar 4,2013
Dark Reading February 2013 Digital Issue
Publish Date: Feb 4,2013
Dark Reading November 2012 Special Issue
Publish Date: Nov 12,2012
Dark Reading November Special Issue
Publish Date: Oct 29,2012
Dark Reading October 2012 Issue
Publish Date: Oct 15,2012
Dark Reading September 17, 2012 Digital Supplement
Publish Date: Sep 17,2012
Dark Reading Special September 2012 Issue
Publish Date: Aug 27,2012
Dark Reading Special September 2012 Issue
Publish Date: Aug 22,2012
Dark Reading August 2012 Digital Supplement
Publish Date: Aug 15,2012
Dark Reading July 2012 Digital Issue
Publish Date: Jul 7,2012
Dark Reading May 2012 Digital Supplement
Publish Date: May 15,2012
Dark Reading April 2012 Digital Issue
Publish Date: Apr 15,2012
Dark Reading March 2012 Digital Supplement
Publish Date: Feb 27,2012
Dark Reading January 2012 Digital Supplement
Publish Date: Jan 26,2012
Dark Reading January 2012 Digital Issue
Publish Date: Jan 1,2012
Dark Reading December 2011 Digital Issue
Publish Date: Dec 15,2011
Dark Reading December 2011 Digital Issue
Publish Date: Dec 1,2011
Dark Reading October 2011 Digital Issue
Publish Date: Oct 4,2011
Dark Reading August 2011 Digital Issue
Publish Date: Aug 16,2011
Dark Reading July 2011 Digital Issue
Publish Date: Jul 1,2011
Dark Reading June 2011 Digital Issue
Publish Date: Jun 1,2011
Dark Reading April 2011 Digital Issue
Publish Date: Apr 1,2011
Dark Reading March 2011 Digital Issue
Publish Date: Mar 1,2011
Dark Reading January 2011 Digital Issue
Publish Date: Jan 1,2011
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Dark Reading December Tech Digest
Experts weigh in on the pros and cons of end-user security training.
Flash Poll
10 Recommendations for Outsourcing Security
10 Recommendations for Outsourcing Security
Enterprises today have a wide range of third-party options to help improve their defenses, including MSSPs, auditing and penetration testing, and DDoS protection. But are there situations in which a service provider might actually increase risk?
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2014-2382
Published: 2014-11-20
The DfDiskLo.sys driver in Faronics Deep Freeze Standard and Enterprise 8.10 and earlier allows local administrators to cause a denial of service (crash) and execute arbitrary code via a crafted IOCTL request that writes to arbitrary memory locations, related to the IofCallDriver function.

CVE-2014-3625
Published: 2014-11-20
Directory traversal vulnerability in Pivitol Spring Framework 3.0.4 through 3.2.x before 3.2.12, 4.0.x before 4.0.8, and 4.1.x before 4.1.2 allows remote attackers to read arbitrary files via unspecified vectors, related to static resource handling.

CVE-2014-7194
Published: 2014-11-20
TIBCO Managed File Transfer Internet Server before 7.2.4, Managed File Transfer Command Center before 7.2.4, Slingshot before 1.9.3, and Vault before 1.1.1 allow remote attackers to obtain sensitive information or modify data by leveraging agent access.

CVE-2014-7195
Published: 2014-11-20
Spotfire Web Player Engine in TIBCO Spotfire Web Player 6.0.x before 6.0.2 and 6.5.x before 6.5.2, Spotfire Deployment Kit 6.0.x before 6.0.2 and 6.5.x before 6.5.2, and Silver Fabric Enabler for Spotfire Web Player before 1.6.1 allows remote authenticated users to obtain sensitive information via u...

CVE-2014-8000
Published: 2014-11-20
Cisco Unified Communications Manager IM and Presence Service 9.1(1) produces different returned messages for URL requests depending on whether a username exists, which allows remote attackers to enumerate user accounts via a series of requests, aka Bug ID CSCur63497.

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
Now that the holiday season is about to begin both online and in stores, will this be yet another season of nonstop gifting to cybercriminals?