Upcoming Webinars
Webinar Archives
Make Your Storage Keep Up with Your Virtual Apps
Date: May 29, 2015
View webinar
Join us for an interactive webcast to learn how hyper-converged compute and storage systems can help get storage under control.

Has your Cyber Security Program Jumped the Shark?
Date: May 19, 2015
View webinar
Learn how to make your security program relevant in 2015 and beyond. Join technology trend-setter Stephen Newman, VP of Product Management at Damballa, for a live discussion about the use of advanced detection techniques to find unknown and hidden threats.

The DevOps Edge: Application Performance Management
Date: May 13, 2015
View webinar
In this webcast, we'll examine the latest trends and success stories in digital transformation, agile development and IT operations, and DevOps tools and techniques. We'll be joined by CA's Tony Davis who will explain the value of a vendor partnership in achieving the best end-user experience in terms of application quality and performance.

Traditional vs. Modern SIEM
Date: May 13, 2015
View webinar
This webinar will outline your options when investing in a SIEM, the data you will need to feed a SIEM and how to know whether it is cloud-ready.

SSDs: a Better Value than HDDs
Date: May 12, 2015
View webinar
Join our industry experts for this interactive webinar to learn how to stop spending money on 15k HDDs. Solid State Drives (SSDs) reduce power and cooling costs, save on racks, enclosures and cabling all while improving performance and reliability.

Streamline Communications, Boost Your Bottom Line
Date: May 07, 2015
View webinar
Join us for this interactive webinar to learn how unified communications and collaboration services can improve your employees' responsiveness and your business bottom line.

Why DDoS Attacks Are A More Serious Threat Than Ever
Date: May 05, 2015
View webinar
Neustar's annual DDoS Attacks Report presents the latest critical DDoS trending data from real companies across industries. Learn how companies are ramping up their DDoS protection tactics and why they are working.

Proactive Incident Management: An Eyes-Wide-Open Approach to Cyber-Security
Date: Apr 30, 2015
View webinar
Join us for this in-depth webcast to learn how the proactive measures of incident management benefit organizations more than reactive incident response alone.

Business Moves Fast, Software Moves Faster: Get Your Hardware Up To Speed
Date: Apr 30, 2015
View webinar
It's hard to find any part of today's enterprise infrastructure that's not becoming defined by software. The hardware that sits under all that software has new requirements, too: It must be more powerful, more manageable, and more flexible than ever before in order to enhance the effect of the new software. But how do you determine what's the right mix of hardware and software for your enterprise infrastructure?

Big Data & the Service Desk
Date: Apr 24, 2015
View webinar
See how you can improve customer satisfaction, reduce ticket volumes, increase IT staff efficiency, and enable process improvement. Register for this online event today!

Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Flash Poll
10 Recommendations for Outsourcing Security
10 Recommendations for Outsourcing Security
Enterprises today have a wide range of third-party options to help improve their defenses, including MSSPs, auditing and penetration testing, and DDoS protection. But are there situations in which a service provider might actually increase risk?
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2014-3586
Published: 2015-04-21
The default configuration for the Command Line Interface in Red Hat Enterprise Application Platform before 6.4.0 and WildFly (formerly JBoss Application Server) uses weak permissions for .jboss-cli-history, which allows local users to obtain sensitive information via unspecified vectors.

CVE-2014-5361
Published: 2015-04-21
Multiple cross-site request forgery (CSRF) vulnerabilities in Landesk Management Suite 9.6 and earlier allow remote attackers to hijack the authentication of administrators for requests that (1) start, (2) stop, or (3) restart services via a request to remote/serverServices.aspx.

CVE-2014-5370
Published: 2015-04-21
Directory traversal vulnerability in the CFChart servlet (com.naryx.tagfusion.cfm.cfchartServlet) in New Atlanta BlueDragon before 7.1.1.18527 allows remote attackers to read or possibly delete arbitrary files via a .. (dot dot) in the QUERY_STRING to cfchart.cfchart.

CVE-2014-8111
Published: 2015-04-21
Apache Tomcat Connectors (mod_jk) before 1.2.41 ignores JkUnmount rules for subtrees of previous JkMount rules, which allows remote attackers to access otherwise restricted artifacts via unspecified vectors.

CVE-2014-8125
Published: 2015-04-21
XML external entity (XXE) vulnerability in Drools and jBPM before 6.2.0 allows remote attackers to read arbitrary files or possibly have other unspecified impact via a crafted BPMN2 file.

Dark Reading Radio
Archived Dark Reading Radio
Join security and risk expert John Pironti and Dark Reading Editor-in-Chief Tim Wilson for a live online discussion of the sea-changing shift in security strategy and the many ways it is affecting IT and business.