Products and Releases

Content posted in August 2017
Hackers Cybersquat on Hundreds of Luxury Fashion Brand Domains
Products and Releases  |  8/31/2017  | 
DomainTools identifies over 500 websites tricking web users into thinking theyre clicking on to luxury fashion websites.
Nearly 25% of Companies Havent Hired a Data Protection Officer: Imperva
Products and Releases  |  8/29/2017  | 
Enterprises say they may look to AI or machine learning to ease the burden of GDPR compliance.
HyTrust Launches DataControl for VMware Cloud on AWS
Products and Releases  |  8/28/2017  | 
Aims to provide customers with an efficient, flexible way to secure critical business applications and data with encryption and key management
NIST, DHS Join Forces to Create Cybersecure Communities Around the Globe
Products and Releases  |  8/28/2017  | 
The groups jointly sponsor the 2018 Global City Teams Challenge (GCTC).
Rohde & Schwarz Cybersecurity Launches DNS Tunneling Detection
Products and Releases  |  8/28/2017  | 
Company launches enhanced traffic analysis capabilities to detect Domain Name Server (DNS) tunneling.
Respond Software Powers Self-Driving SOC
Products and Releases  |  8/25/2017  | 
Company receives $12 Million in Series A Funding from CRV and Foundation Capital.
Calyptix Releases Threat Intelligence Report
Products and Releases  |  8/25/2017  | 
The findings examine cybersecurity threats for small businesses in North America.
Druva Announces $80 Million in Growth Equity Funding
Products and Releases  |  8/23/2017  | 
Funding aims to redefine and accelerate Druva's position in the cloud data protection and management market.
Information Security Forum Updates Information Risk Assessment Methodology
Products and Releases  |  8/23/2017  | 
Methodology Helps Businesses Identify, Analyze and Treat Information Risk throughout the Organization.
Black Duck Streamlines DevSecOps with New Hub Detect Capability
Products and Releases  |  8/23/2017  | 
Multi-factor open source discovery solution provides universal package manager and CI tool support, in a move to improve detection accuracy.
One Identity Launches SaaS ID-Risk Solution
Products and Releases  |  8/23/2017  | 
One Identity Starling Identity Analytics & Risk Intelligence is designed to prevent data breaches from improper user entitlements.
Versive Raises $12.7 Million in Funding for AI-Powered Security Solutions
Products and Releases  |  8/23/2017  | 
Existing investors Goldman Sachs, Madrona Venture Group, Formation 8, and Vulcan Capital contributed to funding.
Bugcrowd Launches Bug Bounty Program for Wi-Fi Device Maker eero
Products and Releases  |  8/23/2017  | 
eeros bug bounty program will allow researchers to submit bugs in a visible, predictable and scalable system.
Nigerian Man Sentenced to Prison for Hacking and Fraud Scheme
Products and Releases  |  8/18/2017  | 
Operated Business Email Compromise Scam from Nigeria
Rackspace Deploys RiskIQ PassiveTotal
Products and Releases  |  8/17/2017  | 
Sqrrls Latest Software Release Adds Self-Service Analytics for Threat Hunters
Products and Releases  |  8/17/2017  | 
Version 2.8 of Sqrrls Threat Hunting Platform Streamlines Creation of Risk-Focused Threat Hunting Analytics
Wells Fargo Brings CEO Mobile Token to Business Customers
Products and Releases  |  8/17/2017  | 
New feature enhances banking user experience anytime, anywhere
ISACA Releases New CISM and CRISC Online Review Courses
Products and Releases  |  8/16/2017  | 
Exploit Leaks Led to Over Five Million Attacks in Q2 2017
Products and Releases  |  8/16/2017  | 
Exploit packages in-the-wild became the game changer of the cyber threat landscape in Q2 2017.
IBM Offers Women Scholarships to Hacker Halted Security Conference
Products and Releases  |  8/16/2017  | 
IBM will cover 100% of the entry fees for women to attend EC-Councils largest annual cyber security conference Hacker Halted.
Alert Logic Releases 2017 Cloud Security Report
Products and Releases  |  8/15/2017  | 
On-Premises Workloads Experience 51% Higher Rate of Security Incidents than Applications Running on Public Cloud Platforms
Darktrace Releases Version 3 of its AI Cyber Defense Solution
Products and Releases  |  8/9/2017  | 
Productivity boost for novice and expert analysts, and executives.
Hackers: Privileged Accounts Provide Fastest Access to Sensitive, Critical Data
Products and Releases  |  8/9/2017  | 
Nearly 75 percent state traditional perimeter security firewalls and antivirus are now irrelevant or obsolete.
Security Summit Alert: Tax Pros Warned of New Scam to Steal Their Passwords
Products and Releases  |  8/4/2017  | 
A new phishing email scam impersonates tax software providers, seeking to steal usernames and passwords.
Perimeterx Raises $23 million to Expand AI Behavioral Threat Platform
Products and Releases  |  8/4/2017  | 
The funding will be used to further improve its bot detection technology and expand into automated attack prevention.
Dash Employs Bugcrowd to Hack Its Blockchain
Products and Releases  |  8/4/2017  | 
Bugcrowds professional white-hat hackers and cyber security experts join forces to detect Dash vulnerabilities.
Nyotron Raises $21 Million Funding Round
Products and Releases  |  8/4/2017  | 
Appoints Former McAfee Executive Peter Stewart to Chief Executive Officer
Oracle, SafeLogic and OpenSSL Partner on Next Generation FIPS Module
Products and Releases  |  8/3/2017  | 
Oracle dedicates seed funding towards developing FIPS module for OpenSSL 1.1 and calls on corporate sponsors in the FOSS ecosystem to join the effort
GuardiCore Extends Series B Funding Round to $35 Million
Products and Releases  |  8/3/2017  | 
Funding to accelerate growth in large enterprise accounts and expand further into global markets San Francisco and Israel
HITRUST, Trend Micro Partner to Tackle Cyber Threat Management
Products and Releases  |  8/3/2017  | 
The partnership aims to drive cyber threat research and education to improve organizational cyber threat management.
CrowdStrike Launches Cybersecurity Search Engine
Products and Releases  |  8/3/2017  | 
New CrowdStrike Falcon Search Engine empowers next-gen Security Operation Centers to search in real-time on the worlds fastest and most comprehensive security platform.
Digital Guardian Launches Cloud-Based Data Loss Prevention Service
Products and Releases  |  8/3/2017  | 
Digital Guardian Analytics & Reporting Cloud is released, with aim to deliver data protection as a subscription-based cloud service
Accenture Security Report Identifies Top Cyber Threats of 2017
Products and Releases  |  8/3/2017  | 
Destructive ransomware, alternative crypto-currencies and increased use of deception tactics among threats driving even more lucrative criminal marketplace.


Is Threat Intelligence Garbage?
Chris McDaniels, Chief Information Security Officer of Mosaic451,  5/23/2018
New Mexico Man Sentenced on DDoS, Gun Charges
Dark Reading Staff 5/18/2018
What Israel's Elite Defense Force Unit 8200 Can Teach Security about Diversity
Lital Asher-Dotan, Senior Director, Security Research and Content, Cybereason,  5/21/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment: Shhh!  They're watching... And you have a laptop?  
Current Issue
Flash Poll
[Strategic Security Report] Navigating the Threat Intelligence Maze
[Strategic Security Report] Navigating the Threat Intelligence Maze
Most enterprises are using threat intel services, but many are still figuring out how to use the data they're collecting. In this Dark Reading survey we give you a look at what they're doing today - and where they hope to go.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2013-3018
PUBLISHED: 2018-05-24
The AXIS webapp in deploy-tomcat/axis in IBM Tivoli Application Dependency Discovery Manager (TADDM) 7.1.2 and 7.2.0 through 7.2.1.4 allows remote attackers to obtain sensitive configuration information via a direct request, as demonstrated by happyaxis.jsp. IBM X-Force ID: 84354.
CVE-2013-3023
PUBLISHED: 2018-05-24
IBM Tivoli Application Dependency Discovery Manager (TADDM) 7.1.2 and 7.2.0 through 7.2.1.4 might allow remote attackers to obtain sensitive information about Tomcat credentials by sniffing the network for a session in which HTTP is used. IBM X-Force ID: 84361.
CVE-2013-3024
PUBLISHED: 2018-05-24
IBM WebSphere Application Server (WAS) 8.5 through 8.5.0.2 on UNIX allows local users to gain privileges by leveraging improper process initialization. IBM X-Force ID: 84362.
CVE-2018-5674
PUBLISHED: 2018-05-24
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader before 9.1 and PhantomPDF before 9.1. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw...
CVE-2018-5675
PUBLISHED: 2018-05-24
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader before 9.1 and PhantomPDF before 9.1. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw...