Products and Releases

Content posted in August 2017
Hackers Cybersquat on Hundreds of Luxury Fashion Brand Domains
Products and Releases  |  8/31/2017  | 
DomainTools identifies over 500 websites tricking web users into thinking theyre clicking on to luxury fashion websites.
Nearly 25% of Companies Havent Hired a Data Protection Officer: Imperva
Products and Releases  |  8/29/2017  | 
Enterprises say they may look to AI or machine learning to ease the burden of GDPR compliance.
HyTrust Launches DataControl for VMware Cloud on AWS
Products and Releases  |  8/28/2017  | 
Aims to provide customers with an efficient, flexible way to secure critical business applications and data with encryption and key management
NIST, DHS Join Forces to Create Cybersecure Communities Around the Globe
Products and Releases  |  8/28/2017  | 
The groups jointly sponsor the 2018 Global City Teams Challenge (GCTC).
Rohde & Schwarz Cybersecurity Launches DNS Tunneling Detection
Products and Releases  |  8/28/2017  | 
Company launches enhanced traffic analysis capabilities to detect Domain Name Server (DNS) tunneling.
Respond Software Powers Self-Driving SOC
Products and Releases  |  8/25/2017  | 
Company receives $12 Million in Series A Funding from CRV and Foundation Capital.
Calyptix Releases Threat Intelligence Report
Products and Releases  |  8/25/2017  | 
The findings examine cybersecurity threats for small businesses in North America.
Druva Announces $80 Million in Growth Equity Funding
Products and Releases  |  8/23/2017  | 
Funding aims to redefine and accelerate Druva's position in the cloud data protection and management market.
Information Security Forum Updates Information Risk Assessment Methodology
Products and Releases  |  8/23/2017  | 
Methodology Helps Businesses Identify, Analyze and Treat Information Risk throughout the Organization.
Black Duck Streamlines DevSecOps with New Hub Detect Capability
Products and Releases  |  8/23/2017  | 
Multi-factor open source discovery solution provides universal package manager and CI tool support, in a move to improve detection accuracy.
One Identity Launches SaaS ID-Risk Solution
Products and Releases  |  8/23/2017  | 
One Identity Starling Identity Analytics & Risk Intelligence is designed to prevent data breaches from improper user entitlements.
Versive Raises $12.7 Million in Funding for AI-Powered Security Solutions
Products and Releases  |  8/23/2017  | 
Existing investors Goldman Sachs, Madrona Venture Group, Formation 8, and Vulcan Capital contributed to funding.
Bugcrowd Launches Bug Bounty Program for Wi-Fi Device Maker eero
Products and Releases  |  8/23/2017  | 
eeros bug bounty program will allow researchers to submit bugs in a visible, predictable and scalable system.
Nigerian Man Sentenced to Prison for Hacking and Fraud Scheme
Products and Releases  |  8/18/2017  | 
Operated Business Email Compromise Scam from Nigeria
Rackspace Deploys RiskIQ PassiveTotal
Products and Releases  |  8/17/2017  | 
Sqrrls Latest Software Release Adds Self-Service Analytics for Threat Hunters
Products and Releases  |  8/17/2017  | 
Version 2.8 of Sqrrls Threat Hunting Platform Streamlines Creation of Risk-Focused Threat Hunting Analytics
Wells Fargo Brings CEO Mobile Token to Business Customers
Products and Releases  |  8/17/2017  | 
New feature enhances banking user experience anytime, anywhere
ISACA Releases New CISM and CRISC Online Review Courses
Products and Releases  |  8/16/2017  | 
Exploit Leaks Led to Over Five Million Attacks in Q2 2017
Products and Releases  |  8/16/2017  | 
Exploit packages in-the-wild became the game changer of the cyber threat landscape in Q2 2017.
IBM Offers Women Scholarships to Hacker Halted Security Conference
Products and Releases  |  8/16/2017  | 
IBM will cover 100% of the entry fees for women to attend EC-Councils largest annual cyber security conference Hacker Halted.
Alert Logic Releases 2017 Cloud Security Report
Products and Releases  |  8/15/2017  | 
On-Premises Workloads Experience 51% Higher Rate of Security Incidents than Applications Running on Public Cloud Platforms
Darktrace Releases Version 3 of its AI Cyber Defense Solution
Products and Releases  |  8/9/2017  | 
Productivity boost for novice and expert analysts, and executives.
Hackers: Privileged Accounts Provide Fastest Access to Sensitive, Critical Data
Products and Releases  |  8/9/2017  | 
Nearly 75 percent state traditional perimeter security firewalls and antivirus are now irrelevant or obsolete.
Security Summit Alert: Tax Pros Warned of New Scam to Steal Their Passwords
Products and Releases  |  8/4/2017  | 
A new phishing email scam impersonates tax software providers, seeking to steal usernames and passwords.
Perimeterx Raises $23 million to Expand AI Behavioral Threat Platform
Products and Releases  |  8/4/2017  | 
The funding will be used to further improve its bot detection technology and expand into automated attack prevention.
Dash Employs Bugcrowd to Hack Its Blockchain
Products and Releases  |  8/4/2017  | 
Bugcrowds professional white-hat hackers and cyber security experts join forces to detect Dash vulnerabilities.
Nyotron Raises $21 Million Funding Round
Products and Releases  |  8/4/2017  | 
Appoints Former McAfee Executive Peter Stewart to Chief Executive Officer
Oracle, SafeLogic and OpenSSL Partner on Next Generation FIPS Module
Products and Releases  |  8/3/2017  | 
Oracle dedicates seed funding towards developing FIPS module for OpenSSL 1.1 and calls on corporate sponsors in the FOSS ecosystem to join the effort
GuardiCore Extends Series B Funding Round to $35 Million
Products and Releases  |  8/3/2017  | 
Funding to accelerate growth in large enterprise accounts and expand further into global markets San Francisco and Israel
HITRUST, Trend Micro Partner to Tackle Cyber Threat Management
Products and Releases  |  8/3/2017  | 
The partnership aims to drive cyber threat research and education to improve organizational cyber threat management.
CrowdStrike Launches Cybersecurity Search Engine
Products and Releases  |  8/3/2017  | 
New CrowdStrike Falcon Search Engine empowers next-gen Security Operation Centers to search in real-time on the worlds fastest and most comprehensive security platform.
Digital Guardian Launches Cloud-Based Data Loss Prevention Service
Products and Releases  |  8/3/2017  | 
Digital Guardian Analytics & Reporting Cloud is released, with aim to deliver data protection as a subscription-based cloud service
Accenture Security Report Identifies Top Cyber Threats of 2017
Products and Releases  |  8/3/2017  | 
Destructive ransomware, alternative crypto-currencies and increased use of deception tactics among threats driving even more lucrative criminal marketplace.


Microsoft President: Governments Must Cooperate on Cybersecurity
Kelly Sheridan, Staff Editor, Dark Reading,  11/8/2018
Why the CISSP Remains Relevant to Cybersecurity After 28 Years
Steven Paul Romero, SANS Instructor and Sr. SCADA Network Engineer, Chevron,  11/6/2018
5 Reasons Why Threat Intelligence Doesn't Work
Jonathan Zhang, CEO/Founder of WhoisXML API and TIP,  11/7/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
Flash Poll
Online Malware and Threats: A Profile of Today's Security Posture
Online Malware and Threats: A Profile of Today's Security Posture
This report offers insight on how security professionals plan to invest in cybersecurity, and how they are prioritizing their resources. Find out what your peers have planned today!
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2018-19220
PUBLISHED: 2018-11-12
An issue was discovered in LAOBANCMS 2.0. It allows remote attackers to execute arbitrary PHP code via the host parameter to the install/ URI.
CVE-2018-19221
PUBLISHED: 2018-11-12
An issue was discovered in LAOBANCMS 2.0. It allows SQL Injection via the admin/login.php guanliyuan parameter.
CVE-2018-19222
PUBLISHED: 2018-11-12
An issue was discovered in LAOBANCMS 2.0. It allows a /install/mysql_hy.php?riqi=0&i=0 attack to reset the admin password, even if install.txt exists.
CVE-2018-19223
PUBLISHED: 2018-11-12
An issue was discovered in LAOBANCMS 2.0. It allows XSS via the first input field to the admin/type.php?id=1 URI.
CVE-2018-19224
PUBLISHED: 2018-11-12
An issue was discovered in LAOBANCMS 2.0. /admin/login.php allows spoofing of the id and guanliyuan cookies.