Comments
Russia, Russia, Russia: What Clinton Or Trump Can Do About Nation-State Hacking Gone Wild
Oldest First  |  Newest First  |  Threaded View
Joe Stanganelli
50%
50%
Joe Stanganelli,
User Rank: Ninja
10/16/2016 | 8:14:28 PM
Leading survey?
I question the survey results reported in that last graf.  It is an automatically leading question merely by virtue of asking it.  It makes people feel like they *should* be concerned about cybersecurity when it comes to politics, even if they're not -- or it triggers in people the feeling that they, as rational human beings, OF COURSE factor cybersecurity into their voting decision-making, even when they do not.

I seriously doubt that cybersecurity is a significant factor for the vast majority of US voters. 
Kelly Jackson Higgins
50%
50%
Kelly Jackson Higgins,
User Rank: Strategist
10/17/2016 | 9:22:55 AM
Re: Leading survey?
Good point about "leading" questions in surveys. But I think it's also not surprising that millennials, who unlike their parents grew up with technology/Internet, are more concerned about cybersecurity. 
Joe Stanganelli
50%
50%
Joe Stanganelli,
User Rank: Ninja
10/17/2016 | 4:04:21 PM
Re: Leading survey?
@Kelly: Judging by the Millennials I have come to know, I think it's more a matter of wanting to appear as if they fit in and are doing the right thing.

If Millennials as a whole truly cared -- genuinely cared -- about information security and data privacy to the level being discussed here, they sure as shootin' wouldn't use so many apps or live on their mobile devices.

Now get off my lawn.
Kelly Jackson Higgins
50%
50%
Kelly Jackson Higgins,
User Rank: Strategist
10/17/2016 | 4:11:45 PM
Re: Leading survey?
I know some security-savvy millennials, but they have been well-coached by their mom. =)


More Than Half of Users Reuse Passwords
Curtis Franklin Jr., Senior Editor at Dark Reading,  5/24/2018
Is Threat Intelligence Garbage?
Chris McDaniels, Chief Information Security Officer of Mosaic451,  5/23/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment: This comment is waiting for review by our moderators.
Current Issue
Flash Poll
[Strategic Security Report] Navigating the Threat Intelligence Maze
[Strategic Security Report] Navigating the Threat Intelligence Maze
Most enterprises are using threat intel services, but many are still figuring out how to use the data they're collecting. In this Dark Reading survey we give you a look at what they're doing today - and where they hope to go.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2018-11505
PUBLISHED: 2018-05-26
The Werewolf Online application 0.8.8 for Android allows attackers to discover the Firebase token by reading logcat output.
CVE-2018-6409
PUBLISHED: 2018-05-26
An issue was discovered in Appnitro MachForm before 4.2.3. The module in charge of serving stored files gets the path from the database. Modifying the name of the file to serve on the corresponding ap_form table leads to a path traversal vulnerability via the download.php q parameter.
CVE-2018-6410
PUBLISHED: 2018-05-26
An issue was discovered in Appnitro MachForm before 4.2.3. There is a download.php SQL injection via the q parameter.
CVE-2018-6411
PUBLISHED: 2018-05-26
An issue was discovered in Appnitro MachForm before 4.2.3. When the form is set to filter a blacklist, it automatically adds dangerous extensions to the filters. If the filter is set to a whitelist, the dangerous extensions can be bypassed through ap_form_elements SQL Injection.
CVE-2018-11500
PUBLISHED: 2018-05-26
An issue was discovered in PublicCMS V4.0.20180210. There is a CSRF vulnerability in "admin/sysUser/save.do?callbackType=closeCurrent&navTabId=sysUser/list" that can add an admin account.