Upcoming Webinars
Webinar Archives
How to Revolutionize Analytics with Next-Generation In-Memory Computing
Date: Sep 25, 2014
View webinar
Register for this webinar to learn how you can gain a sustainable competitive advantage and take your organization to a new level with IBM?s next generation in-memory computing.

Linking Enterprise and Small Business Security to Shore up Cyber Risks in the Supply Chain
Date: Sep 23, 2014
View webinar
Join SurfWatch Labs Chief Architect and former US Government Intelligence Analyst Jason Polancich, and Carrie Kerskie, a data privacy investigator and expert, for a webcast where they will examine the insecurity of small businesses in the supply chain and provide practical tips to close backdoors into the enterprise.

Data Privacy: 2014 Forrester Survey Results
Date: Sep 17, 2014
View webinar
Register for this webinar to learn about Forrester's survey findings on data security and privacy.

How to Best Manage Customer Service Data Complexity
Date: Sep 17, 2014
View webinar
Register for this webinar to learn how to develop customer portals that deliver on the promise of increased access to policy data around the clock.

Who's Afraid of the Big (Data) Bad Wolf? Are You?
Date: Nov 09, 2014
View webinar
Attend this webinar to learn about client experiences with Big Data projects, as well as learning about the 5 best practices for big data integration, so that you can tame the big (data) bad wolf.

Staying Agile with Big Data - A Roadmap to Long Term Success
Date: Oct 09, 2014
View webinar
Agility is the key for benefiting from the use of Big Data for operational excellence and improved profitability.No matter where you are in the Big Data adoption lifecycle, you will learn about proven methods to open the possibilities of your data.

Is Your Database a Hero or a Zero?
Date: Apr 09, 2014
View webinar
Attend the webcast to learn which database works for you vs. against you. See how the right database architecture can help you achieve your SLAs and give application developers the freedom and flexibility to focus on their code, not the underlying infrastructure.

3 Top Storage Trends for 2015 Revealed
Date: Mar 09, 2014
View webinar
Register for this webinar to learn how forward thinking IT organizations can embrace these trends and deliver even better storage, data protection and disaster recovery services to their users.

From Zero-Day Attacks to exploit kits: How to Contain Advanced Threats
Date: Mar 09, 2014
View webinar
Register for this webinar to learn the key questions you must address to strengthen your defenses against advanced attacks.

Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Flash Poll
Threat Intel Today
Threat Intel Today
The 397 respondents to our new survey buy into using intel to stay ahead of attackers: 85% say threat intelligence plays some role in their IT security strategies, and many of them subscribe to two or more third-party feeds; 10% leverage five or more.
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2013-2595
Published: 2014-08-31
The device-initialization functionality in the MSM camera driver for the Linux kernel 2.6.x and 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, enables MSM_CAM_IOCTL_SET_MEM_MAP_INFO ioctl calls for an unrestricted mmap interface, which all...

CVE-2013-2597
Published: 2014-08-31
Stack-based buffer overflow in the acdb_ioctl function in audio_acdb.c in the acdb audio driver for the Linux kernel 2.6.x and 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allows attackers to gain privileges via an application that lever...

CVE-2013-2598
Published: 2014-08-31
app/aboot/aboot.c in the Little Kernel (LK) bootloader, as distributed with Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allows attackers to overwrite signature-verification code via crafted boot-image load-destination header values that specify memory ...

CVE-2013-2599
Published: 2014-08-31
A certain Qualcomm Innovation Center (QuIC) patch to the NativeDaemonConnector class in services/java/com/android/server/NativeDaemonConnector.java in Code Aurora Forum (CAF) releases of Android 4.1.x through 4.3.x enables debug logging, which allows attackers to obtain sensitive disk-encryption pas...

CVE-2013-6124
Published: 2014-08-31
The Qualcomm Innovation Center (QuIC) init scripts in Code Aurora Forum (CAF) releases of Android 4.1.x through 4.4.x allow local users to modify file metadata via a symlink attack on a file accessed by a (1) chown or (2) chmod command, as demonstrated by changing the permissions of an arbitrary fil...

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
This episode of Dark Reading Radio looks at infosec security from the big enterprise POV with interviews featuring Ron Plesco, Cyber Investigations, Intelligence & Analytics at KPMG; and Chris Inglis & Chris Bell of Securonix.