Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Products and Releases

Content posted in November 2020
Abnormal Security Raises $50M in Series B Funding
Products and Releases  |  11/23/2020  | 
Funding, led by Menlo Ventures, will be used to accelerate enterprise adoption of AI-driven email security platform.
Digital Shadows Launches Sensitive Document Alerts With Added Context
Products and Releases  |  11/23/2020  | 
New capabilities within SearchLight to detect exposed sensitive but not protectively-marked technical and commercial documents, including product designs and payroll data
Claroty Partners with CrowdStrike to Protect Industrial Control System Environments
Products and Releases  |  11/20/2020  | 
Integration provides full-spectrum IT/OT visibility and threat detection coverage.
Rubrik's Pioneering Cloud Data Management Platform Gets Major Update
Products and Releases  |  11/19/2020  | 
With the Andes 5.3 release, Rubrik delivers up to 10X faster SQL Server backups for large enterprises and reduced cloud archiving costs by up to 95%
Arctic Wolf Expands Operations to Toronto and San Antonio
Products and Releases  |  11/19/2020  | 
Company to open centers of excellence focused on R&D and security operations.
Unbound Tech Raises $20M in Series B Funding to Support Global Growth
Products and Releases  |  11/19/2020  | 
Cryptographic security software provider will strengthen its global positioning following significant funding from Evolution Equity Partners.
Open Raven Launches Cloud-Native Data Protection Platform to Automate Security and Privacy Operations
Products and Releases  |  11/18/2020  | 
Platform secures data lakes built on Amazon Web Services and S3.
Kaspersky Opens New Transparency Center in North America & Completes Data-Processing Relocation to Switzerland
Products and Releases  |  11/18/2020  | 
The opening marks the realization of major measures initially announced within the Global Transparency Initiative.
Bugcrowd's Crowdsourced Cybersecurity Platform Helps Pay Over $2M to Researchers for Samsung Mobile Rewards Program
Products and Releases  |  11/18/2020  | 
Company fortifies researcher partnerships by delivering timely and secure payments.
Farsight Security Integrates with Palo Alto Networks Cortex XSOAR to Provide Automated, DNS Intelligence For Cyber Investigations
Products and Releases  |  11/17/2020  | 
Integration combines Farsight Security DNSDB with Cortex XSOAR to automate contextualization and correlation of DNS-related artifacts used in cybercrimes.
Concentric Resolves Unaddressed Data Security Threats with AI-based Data Access Governance Solution
Products and Releases  |  11/17/2020  | 
Companys Risk Distance deep learning functionality autonomously identifies access and activity risks in unstructured data.
Telos Corporation Announces Launch of IPO
Products and Releases  |  11/11/2020  | 
New Tool Detects Unsafe Security Practices in Android Apps
Products and Releases  |  11/9/2020  | 
Open source CRYLOGGER detects cryptographic misuses by running the Android app instead of analyzing its code.
HackNotice Releases Risk Explorer
Products and Releases  |  11/6/2020  | 
HackNotice Risk Explorer reveals cyberthreats with easy-to-understand visuals.
Vulcan Cyber Adds Remediation Analytics to Provide Full Visibility Into Remediation Efficacy
Products and Releases  |  11/4/2020  | 
New Vulcan remediation analytics provides security and IT executives with unfettered visibility into the state of remediation campaigns.
Vulcan Cyber Launches Remedy Cloud, Providing Free Access to Thousands of Vulnerability Fixes
Products and Releases  |  11/4/2020  | 
Providing remediation solutions on demand, Vulcan Remedy Cloud helps security and IT teams collaboratively "get fix done."
Survey: Biggest Concerns About Securing Digital Infrastructure Include COVID, Unsanctioned Apps, Collaboration Platforms, Marketing Technology
Products and Releases  |  11/3/2020  | 
New SafeGuard Cyber Poll Suggests Enterprises Should Harden Systems Against Unconventional Attack Vectors
Ping Identity Unveils Advanced Passwordless Features
Products and Releases  |  11/3/2020  | 
PingZero provides frictionless login experiences with passwordless authentication, including support for the FIDO2 open standard.
ForAllSecure Announces First Fintech Customer
Products and Releases  |  11/3/2020  | 
Marqeta selects ForAllSecure's fuzz testing security solution to proactively secure API code base.


COVID-19: Latest Security News & Commentary
Dark Reading Staff 11/19/2020
New Proposed DNS Security Features Released
Kelly Jackson Higgins, Executive Editor at Dark Reading,  11/19/2020
How to Identify Cobalt Strike on Your Network
Zohar Buber, Security Analyst,  11/18/2020
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win an Amazon Gift Card! Click Here
Latest Comment: This comment is waiting for review by our moderators.
Current Issue
2021 Top Enterprise IT Trends
We've identified the key trends that are poised to impact the IT landscape in 2021. Find out why they're important and how they will affect you today!
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2020-25159
PUBLISHED: 2020-11-24
499ES EtherNet/IP (ENIP) Adaptor Source Code is vulnerable to a stack-based buffer overflow, which may allow an attacker to send a specially crafted packet that may result in a denial-of-service condition or code execution.
CVE-2020-25654
PUBLISHED: 2020-11-24
An ACL bypass flaw was found in pacemaker before 1.1.24-rc1 and 2.0.5-rc2. An attacker having a local account on the cluster and in the haclient group could use IPC communication with various daemons directly to perform certain tasks that they would be prevented by ACLs from doing if they went throu...
CVE-2020-28329
PUBLISHED: 2020-11-24
Barco wePresent WiPG-1600W firmware includes a hardcoded API account and password that is discoverable by inspecting the firmware image. A malicious actor could use this password to access authenticated, administrative functions in the API. Affected Version(s): 2.5.1.8, 2.5.0.25, 2.5.0.24, 2.4.1.19.
CVE-2020-29053
PUBLISHED: 2020-11-24
HRSALE 2.0.0 allows XSS via the admin/project/projects_calendar set_date parameter.
CVE-2020-25640
PUBLISHED: 2020-11-24
A flaw was discovered in WildFly before 21.0.0.Final where, Resource adapter logs plain text JMS password at warning level on connection error, inserting sensitive information in the log file.