Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Products and Releases

Content posted in November 2020
CompTIA PenTest+ Approved by U.S. Department of Defense
Products and Releases  |  11/30/2020  | 
Certification meets requirements for military personnel and defense contractors who work with sensitive information.
Abnormal Security Raises $50M in Series B Funding
Products and Releases  |  11/23/2020  | 
Funding, led by Menlo Ventures, will be used to accelerate enterprise adoption of AI-driven email security platform.
Digital Shadows Launches Sensitive Document Alerts With Added Context
Products and Releases  |  11/23/2020  | 
New capabilities within SearchLight to detect exposed sensitive but not protectively-marked technical and commercial documents, including product designs and payroll data
Claroty Partners with CrowdStrike to Protect Industrial Control System Environments
Products and Releases  |  11/20/2020  | 
Integration provides full-spectrum IT/OT visibility and threat detection coverage.
Rubrik's Pioneering Cloud Data Management Platform Gets Major Update
Products and Releases  |  11/19/2020  | 
With the Andes 5.3 release, Rubrik delivers up to 10X faster SQL Server backups for large enterprises and reduced cloud archiving costs by up to 95%
Arctic Wolf Expands Operations to Toronto and San Antonio
Products and Releases  |  11/19/2020  | 
Company to open centers of excellence focused on R&D and security operations.
Unbound Tech Raises $20M in Series B Funding to Support Global Growth
Products and Releases  |  11/19/2020  | 
Cryptographic security software provider will strengthen its global positioning following significant funding from Evolution Equity Partners.
Open Raven Launches Cloud-Native Data Protection Platform to Automate Security and Privacy Operations
Products and Releases  |  11/18/2020  | 
Platform secures data lakes built on Amazon Web Services and S3.
Kaspersky Opens New Transparency Center in North America & Completes Data-Processing Relocation to Switzerland
Products and Releases  |  11/18/2020  | 
The opening marks the realization of major measures initially announced within the Global Transparency Initiative.
Bugcrowd's Crowdsourced Cybersecurity Platform Helps Pay Over $2M to Researchers for Samsung Mobile Rewards Program
Products and Releases  |  11/18/2020  | 
Company fortifies researcher partnerships by delivering timely and secure payments.
Farsight Security Integrates with Palo Alto Networks Cortex XSOAR to Provide Automated, DNS Intelligence For Cyber Investigations
Products and Releases  |  11/17/2020  | 
Integration combines Farsight Security DNSDB with Cortex XSOAR to automate contextualization and correlation of DNS-related artifacts used in cybercrimes.
Concentric Resolves Unaddressed Data Security Threats with AI-based Data Access Governance Solution
Products and Releases  |  11/17/2020  | 
Companys Risk Distance deep learning functionality autonomously identifies access and activity risks in unstructured data.
Telos Corporation Announces Launch of IPO
Products and Releases  |  11/11/2020  | 
New Tool Detects Unsafe Security Practices in Android Apps
Products and Releases  |  11/9/2020  | 
Open source CRYLOGGER detects cryptographic misuses by running the Android app instead of analyzing its code.
HackNotice Releases Risk Explorer
Products and Releases  |  11/6/2020  | 
HackNotice Risk Explorer reveals cyberthreats with easy-to-understand visuals.
Vulcan Cyber Adds Remediation Analytics to Provide Full Visibility Into Remediation Efficacy
Products and Releases  |  11/4/2020  | 
New Vulcan remediation analytics provides security and IT executives with unfettered visibility into the state of remediation campaigns.
Vulcan Cyber Launches Remedy Cloud, Providing Free Access to Thousands of Vulnerability Fixes
Products and Releases  |  11/4/2020  | 
Providing remediation solutions on demand, Vulcan Remedy Cloud helps security and IT teams collaboratively "get fix done."
Survey: Biggest Concerns About Securing Digital Infrastructure Include COVID, Unsanctioned Apps, Collaboration Platforms, Marketing Technology
Products and Releases  |  11/3/2020  | 
New SafeGuard Cyber Poll Suggests Enterprises Should Harden Systems Against Unconventional Attack Vectors
Ping Identity Unveils Advanced Passwordless Features
Products and Releases  |  11/3/2020  | 
PingZero provides frictionless login experiences with passwordless authentication, including support for the FIDO2 open standard.
ForAllSecure Announces First Fintech Customer
Products and Releases  |  11/3/2020  | 
Marqeta selects ForAllSecure's fuzz testing security solution to proactively secure API code base.


Edge-DRsplash-10-edge-articles
I Smell a RAT! New Cybersecurity Threats for the Crypto Industry
David Trepp, Partner, IT Assurance with accounting and advisory firm BPM LLP,  7/9/2021
News
Attacks on Kaseya Servers Led to Ransomware in Less Than 2 Hours
Robert Lemos, Contributing Writer,  7/7/2021
Commentary
It's in the Game (but It Shouldn't Be)
Tal Memran, Cybersecurity Expert, CYE,  7/9/2021
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
Practical Network Security Approaches for a Multicloud, Hybrid IT World
The report covers areas enterprises should focus on for their multicloud/hybrid cloud security strategy: -increase visibility over the environment -learning cloud-specific skills -relying on established security frameworks -re-architecting the network
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2022-30333
PUBLISHED: 2022-05-09
RARLAB UnRAR before 6.12 on Linux and UNIX allows directory traversal to write to files during an extract (aka unpack) operation, as demonstrated by creating a ~/.ssh/authorized_keys file. NOTE: WinRAR and Android RAR are unaffected.
CVE-2022-23066
PUBLISHED: 2022-05-09
In Solana rBPF versions 0.2.26 and 0.2.27 are affected by Incorrect Calculation which is caused by improper implementation of sdiv instruction. This can lead to the wrong execution path, resulting in huge loss in specific cases. For example, the result of a sdiv instruction may decide whether to tra...
CVE-2022-28463
PUBLISHED: 2022-05-08
ImageMagick 7.1.0-27 is vulnerable to Buffer Overflow.
CVE-2022-28470
PUBLISHED: 2022-05-08
marcador package in PyPI 0.1 through 0.13 included a code-execution backdoor.
CVE-2022-1620
PUBLISHED: 2022-05-08
NULL Pointer Dereference in function vim_regexec_string at regexp.c:2729 in GitHub repository vim/vim prior to 8.2.4901. NULL Pointer Dereference in function vim_regexec_string at regexp.c:2729 allows attackers to cause a denial of service (application crash) via a crafted input.