Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

News & Commentary

Content tagged with Careers & People posted in December 2016
10 Things InfoSec Pros Can Celebrate About 2016
News  |  12/29/2016  | 
There were a few items that passed for good news this year.
Macau Resident Held For Hacking, Insider Trading Charges In US
Quick Hits  |  12/28/2016  | 
Iat Hong and two others allegedly breached computers of major US law firms and stole confidential exchange on M&A transactions.
How Artificial Intelligence Will Solve The Security Skills Shortage
Commentary  |  12/28/2016  | 
Unlike industries that fear the intrusion of AI, the infosec world is embracing this revolutionary technology, and the seismic changes it will bring to threat detection and mitigation.
Greatest Hits Of 2016: Readers' Picks For The Years' Best Commentary
Commentary  |  12/27/2016  | 
Heres what topped the Dark Reading page-view charts from the security industrys brightest minds, coolest rock stars, and up-and-coming leaders.
Application Security Still Slows Developer Work
News  |  12/20/2016  | 
Cooperation among DevOps teams might be growing, but security testing still seen as a road block to continuous delivery.
How To Find, Hire The Next-Gen CISO
How To Find, Hire The Next-Gen CISO
Dark Reading Videos  |  12/16/2016  | 
Joyce Brocaglia of Alta Associates and the Executive Women's Forum talks about how to identify the perfect leader for your cybersecurity team, even if "security" isn't on their resume.
Nigerian Charged With BEC Scam Involving $3.1 Billion
Quick Hits  |  12/16/2016  | 
David Adindu and accomplices targeted thousands of businesses globally with fake emails asking for money transfer.
Romanian Gets 57-Months Jail For ATM Skimming Scheme
Quick Hits  |  12/16/2016  | 
Robert Mate and 15 others copied bank account details of thousands of ATM users and stole $5 million.
Amit Yoran Leaves Dell RSA To Join Tenable As New CEO
News  |  12/15/2016  | 
Yoran says recent Dell acquisition of RSA parent company EMC did 'not really' impact his decision to leave.
American Hacker Arrested For 2014 JP Morgan Chase Breach
Quick Hits  |  12/15/2016  | 
Joshua Aaron and his two accomplices are charged with massive hacking of US financial organizations, securities fraud and money laundering.
Are Unconscious Biases Weakening Your Security Posture?
Partner Perspectives  |  12/15/2016  | 
Proactively addressing your biases can help you build a resilient and adaptable security foundation.
8 Most Hackable Holiday Gifts, 2016 Edition
Slideshows  |  12/14/2016  | 
You better watch out! Otherwise, you may be giving the gift of malware or unauthorized access to networks and devices.
California Grad Student Arrested In International DDoS Crackdown
Quick Hits  |  12/14/2016  | 
Sean Sharma is charged with carrying out distributed denial-of-service attacks against a San Francisco chat website.
How Retailers Can Fight Holiday Season Hackers
Slideshows  |  12/8/2016  | 
Experts offer tips for locking down retailers point-of-sale systems for the busy holiday shopping season.
Hacker Of Celeb Emails Goes To Jail For Five Years
Quick Hits  |  12/7/2016  | 
Bahamian Alonzo Knowles was sentenced for illegal access of 130 celebrity email accounts and selling their personal information.
Dark Web Vendor Gets 50 Months Jail For ID Theft
Quick Hits  |  12/2/2016  | 
Minnesota resident Aaron Glende aka IcyEagle caught selling stolen bank details on AlphaBay market.
Gaming Company Sues Ex-Employees Over Data Theft
Quick Hits  |  12/1/2016  | 
San Francisco-based Zynga alleges former workers took sensitive information with them when they joined rival company.


Edge-DRsplash-10-edge-articles
I Smell a RAT! New Cybersecurity Threats for the Crypto Industry
David Trepp, Partner, IT Assurance with accounting and advisory firm BPM LLP,  7/9/2021
News
Attacks on Kaseya Servers Led to Ransomware in Less Than 2 Hours
Robert Lemos, Contributing Writer,  7/7/2021
Commentary
It's in the Game (but It Shouldn't Be)
Tal Memran, Cybersecurity Expert, CYE,  7/9/2021
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
Enterprise Cybersecurity Plans in a Post-Pandemic World
Download the Enterprise Cybersecurity Plans in a Post-Pandemic World report to understand how security leaders are maintaining pace with pandemic-related challenges, and where there is room for improvement.
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2021-23445
PUBLISHED: 2021-09-27
This affects the package datatables.net before 1.11.3. If an array is passed to the HTML escape entities function it would not have its contents escaped.
CVE-2021-36134
PUBLISHED: 2021-09-27
Out of bounds write vulnerability in the JPEG parsing code of Netop Vision Pro up to and including 9.7.2 allows an adjacent unauthenticated attacker to write to arbitrary memory potentially leading to a Denial of Service (DoS).
CVE-2021-37761
PUBLISHED: 2021-09-27
Zoho ManageEngine ADManager Plus version 7110 and prior is vulnerable to unrestricted file upload, leading to remote code execution.
CVE-2021-40329
PUBLISHED: 2021-09-27
The Authentication API in Ping Identity PingFederate before 10.3 mishandles certain aspects of external password management.
CVE-2021-41558
PUBLISHED: 2021-09-27
The set_user extension module before 3.0.0 for PostgreSQL allows ProcessUtility_hook bypass via set_config.