Meet 5 Women Shaping Microsoft's Security Strategy
12 Free, Ready-to-Use Security Tools
12 AppSec Activities Enterprises Can't Afford to Skip
7 Steps to Start Your Risk Assessment
7 Most Prevalent Phishing Subject Lines
News & Commentary
Former HS Teacher Admits to 'Celebgate' Hack
Dark Reading Staff, Quick Hits
Christopher Brannan accessed full iCloud backups, photos, and other personal data belonging to more than 200 victims.
By Dark Reading Staff , 10/23/2018
Comment0 comments  |  Read  |  Post a Comment
IoT Bot Landscape Expands, Attacks Vary by Country
Steve Zurier, Freelance WriterNews
New report finds 1,005 new user names and passwords beyond Mirais original default list two years ago.
By Steve Zurier Freelance Writer, 10/23/2018
Comment0 comments  |  Read  |  Post a Comment
Good Times in Security Come When You Least Expect Them
Joshua Goldfarb, Co-founder & Chief Product Officer, IDRRA Commentary
Not every cybersecurity endeavor can have a huge impact. But a small percentage of your efforts can still produce results that blow you away.
By Joshua Goldfarb Co-founder & Chief Product Officer, IDRRA , 10/23/2018
Comment1 Comment  |  Read  |  Post a Comment
Facebook Rumored to Be Hunting for Major Cybersecurity Acquisition
Jai Vijayan, Freelance writerNews
Goal appears both a bid to bolster its own security and its tattered reputation for privacy, according to reporting by The Information.
By Jai Vijayan Freelance writer, 10/22/2018
Comment0 comments  |  Read  |  Post a Comment
US Tops Global Malware C2 Distribution
Kelly Sheridan, Staff Editor, Dark ReadingNews
The United States hosts 35% of the world's command-and-control infrastructure, driving the frequency of host compromises.
By Kelly Sheridan Staff Editor, Dark Reading, 10/22/2018
Comment0 comments  |  Read  |  Post a Comment
UK, US to Sign Accord on AI, Cybersecurity Cooperation
Dark Reading Staff, Quick Hits
Royal Navy, US Navy, and tech industry leaders ready to commit to 'a framework for dialogue and cooperation' at inaugural meeting of the Atlantic Future Forum.
By Dark Reading Staff , 10/22/2018
Comment0 comments  |  Read  |  Post a Comment
2018 State of Cyber Workforce
Ericka Chickowski, Contributing Writer, Dark Reading
Let's start with this eye-opener: The cybersecurity profession is facing a shortfall of 3 million workers worldwide.
By Ericka Chickowski Contributing Writer, Dark Reading, 10/22/2018
Comment0 comments  |  Read  |  Post a Comment
Healthcare.gov FFE Breach Compromises 75K Users' Data
Dark Reading Staff, Quick Hits
Attackers broke into a sign-up system used by healthcare insurance agents and brokers to help consumers apply for coverage.
By Dark Reading Staff , 10/22/2018
Comment0 comments  |  Read  |  Post a Comment
Understanding SOCs' 4 Top Deficiencies
Heather Hixon,  Senior Solutions Architect, DFLabsCommentary
In most cases, the areas that rankle SANS survey respondents the most about security operations centers can be addressed with the right mix of planning, policies, and procedures.
By Heather Hixon Senior Solutions Architect, DFLabs, 10/22/2018
Comment0 comments  |  Read  |  Post a Comment
Gartner Experts Highlight Tech Trends And Their Security Risks
Curtis Franklin Jr., Senior Editor at Dark ReadingNews
Security must be built into systems and applications from the beginning of the design process, they agreed.
By Curtis Franklin Jr. Senior Editor at Dark Reading, 10/22/2018
Comment0 comments  |  Read  |  Post a Comment
Google Patch to Block Spectre Slowdown in Windows 10
Dark Reading Staff, Quick Hits
Microsoft will incorporate Google's Retpoline patch to prevent Spectre Variant 2 from slowing down its operating system.
By Dark Reading Staff , 10/19/2018
Comment0 comments  |  Read  |  Post a Comment
EU Takes Step Toward Cyberattack Sanctions
Dark Reading Staff, Quick Hits
European leaders complete first step toward establishing a sanctions regime.
By Dark Reading Staff , 10/19/2018
Comment0 comments  |  Read  |  Post a Comment
WSJ Report: Facebook Breach the Work of Spammers, Not Nation-State Actors
Curtis Franklin Jr., Senior Editor at Dark ReadingNews
A report by the Wall Street Journal points finger at group that is known to Facebook Security.
By Curtis Franklin Jr. Senior Editor at Dark Reading, 10/19/2018
Comment2 comments  |  Read  |  Post a Comment
Risky Business: Dark Reading Caption Contest Winners
Marilyn Cohodas, Managing Editor, Dark ReadingCommentary
Phishing, anti-shoulder surfing, Russia and other hysterical identity management puns and comments. And the winners are ...
By Marilyn Cohodas Managing Editor, Dark Reading, 10/19/2018
Comment1 Comment  |  Read  |  Post a Comment
Cyber Espionage Campaign Reuses Code from China's APT1
Jai Vijayan, Freelance writerNews
US, Canadian organizations in crosshairs of group with apparent links to a Chinese military hacking unit that wreaked havoc several years ago.
By Jai Vijayan Freelance writer, 10/18/2018
Comment0 comments  |  Read  |  Post a Comment
How to Get Consumers to Forgive You for a Breach
Dark Reading Staff, Quick Hits
It starts with already-established trust, a new survey shows.
By Dark Reading Staff , 10/18/2018
Comment0 comments  |  Read  |  Post a Comment
New Security Woes for Popular IoT Protocols
Kelly Jackson Higgins, Executive Editor at Dark ReadingNews
Researchers at Black Hat Europe will detail denial-of-service and other flaws in MQTT, CoAP machine-to-machine communications protocols that imperil industrial and other IoT networks online.
By Kelly Jackson Higgins Executive Editor at Dark Reading, 10/18/2018
Comment0 comments  |  Read  |  Post a Comment
Audits: The Missing Layer in Cybersecurity
Brennan P Baybeck, CISA, CISM, CRISC, CISSP, Vice Chair of ISACA Board of DirectorsCommentary
Involving the audit team ensures that technology solutions are not just sitting on the shelf or being underutilized to strategically address security risks.
By Brennan P Baybeck CISA, CISM, CRISC, CISSP, Vice Chair of ISACA Board of Directors, 10/18/2018
Comment0 comments  |  Read  |  Post a Comment
Former Equifax Manager Sentenced for Insider Trading
Dark Reading Staff, Quick Hits
Sudhakar Bonthu bought and sold Equifax stock options prior to the public disclosure of its 2017 data breach.
By Dark Reading Staff , 10/18/2018
Comment0 comments  |  Read  |  Post a Comment
7 Ways A Collaboration System Could Wreck Your IT Security
Curtis Franklin Jr., Senior Editor at Dark Reading
The same traits that make collaboration systems so useful for team communications can help hackers, too.
By Curtis Franklin Jr. Senior Editor at Dark Reading, 10/18/2018
Comment0 comments  |  Read  |  Post a Comment
More Stories
Current Conversations
Posted by jhon91
Current Conversations good article 
In reply to: Re: Employees
Post Your Own Reply
Posted by MelissaCombs
Current Conversations great
In reply to: Re: Pending Review
Post Your Own Reply
Posted by SaulMorris
Current Conversations i agree
In reply to: Re: Jamie Tomasello
Post Your Own Reply
More Conversations
PR Newswire
WSJ Report: Facebook Breach the Work of Spammers, Not Nation-State Actors
Curtis Franklin Jr., Senior Editor at Dark Reading,  10/19/2018
Good Times in Security Come When You Least Expect Them
Joshua Goldfarb, Co-founder & Chief Product Officer, IDRRA ,  10/23/2018
NC Water Utility Fights Post-Hurricane Ransomware
Kelly Sheridan, Staff Editor, Dark Reading,  10/16/2018
Register for Dark Reading Newsletters
Partner Perspectives
What's This?
Partner Perspectives
What's This?
Partner Perspectives
What's This?
Partner Perspectives
What's This?
Cloud Misconceptions Are Pervasive Across Enterprises
Shadow IT is rampant at many organizations that rely upon cloud-delivered tools and services to enable remote work, according to a new study. Here's what security teams need to do about it. Read >>
Partner Perspectives
What's This?
Partner Perspectives
What's This?
Partner Perspectives
What's This?
Boosting Security Effectiveness with 'Adjuvants'
How integrating corporate resources like the IT help desk, system administration, quality assurance and HR can breathe new life into your security program. Read >>
Partner Perspectives
What's This?
Partner Perspectives
What's This?
Partner Perspectives
What's This?
WanaCrypt0r Hits Worldwide
Consumers and businesses should be sure their Windows systems and software are updated with all current patches in order to stop the spread of this dangerous ransomware attack. Read >>
Partner Perspectives
What's This?
Endpoint Security: Putting The Focus On What Matters
Five tips to help sift through the noise and focus on actions that can dramatically impact your endpoint security program. Read >>
Cartoon
White Papers
Current Issue
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2018-10839
PUBLISHED: 2018-10-16
Qemu emulator <= 3.0.0 built with the NE2000 NIC emulation support is vulnerable to an integer overflow, which could lead to buffer overflow issue. It could occur when receiving packets over the network. A user inside guest could use this flaw to crash the Qemu process resulting in DoS.
CVE-2018-13399
PUBLISHED: 2018-10-16
The Microsoft Windows Installer for Atlassian Fisheye and Crucible before version 4.6.1 allows local attackers to escalate privileges because of weak permissions on the installation directory.
CVE-2018-18381
PUBLISHED: 2018-10-16
Z-BlogPHP 1.5.2.1935 (Zero) has a stored XSS Vulnerability in zb_system/function/c_system_admin.php via the Content-Type header during the uploading of image attachments.
CVE-2018-18382
PUBLISHED: 2018-10-16
Advanced HRM 1.6 allows Remote Code Execution via PHP code in a .php file to the user/update-user-avatar URI, which can be accessed through an "Update Profile" "Change Picture" (aka user/edit-profile) action.
CVE-2018-18374
PUBLISHED: 2018-10-16
XSS exists in the MetInfo 6.1.2 admin/index.php page via the anyid parameter.
The Risk Management Struggle
The Risk Management Struggle
The majority of organizations are struggling to implement a risk-based approach to security even though risk reduction has become the primary metric for measuring the effectiveness of enterprise security strategies. Read the report and get more details today!
Flash Poll
Video
Slideshows
Twitter Feed