Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Products and Releases

Content posted in August 2017
Hackers Cybersquat on Hundreds of Luxury Fashion Brand Domains
Products and Releases  |  8/31/2017  | 
DomainTools identifies over 500 websites tricking web users into thinking theyre clicking on to luxury fashion websites.
Nearly 25% of Companies Havent Hired a Data Protection Officer: Imperva
Products and Releases  |  8/29/2017  | 
Enterprises say they may look to AI or machine learning to ease the burden of GDPR compliance.
HyTrust Launches DataControl for VMware Cloud on AWS
Products and Releases  |  8/28/2017  | 
Aims to provide customers with an efficient, flexible way to secure critical business applications and data with encryption and key management
NIST, DHS Join Forces to Create Cybersecure Communities Around the Globe
Products and Releases  |  8/28/2017  | 
The groups jointly sponsor the 2018 Global City Teams Challenge (GCTC).
Rohde & Schwarz Cybersecurity Launches DNS Tunneling Detection
Products and Releases  |  8/28/2017  | 
Company launches enhanced traffic analysis capabilities to detect Domain Name Server (DNS) tunneling.
Respond Software Powers Self-Driving SOC
Products and Releases  |  8/25/2017  | 
Company receives $12 Million in Series A Funding from CRV and Foundation Capital.
Calyptix Releases Threat Intelligence Report
Products and Releases  |  8/25/2017  | 
The findings examine cybersecurity threats for small businesses in North America.
Druva Announces $80 Million in Growth Equity Funding
Products and Releases  |  8/23/2017  | 
Funding aims to redefine and accelerate Druva's position in the cloud data protection and management market.
Information Security Forum Updates Information Risk Assessment Methodology
Products and Releases  |  8/23/2017  | 
Methodology Helps Businesses Identify, Analyze and Treat Information Risk throughout the Organization.
Black Duck Streamlines DevSecOps with New Hub Detect Capability
Products and Releases  |  8/23/2017  | 
Multi-factor open source discovery solution provides universal package manager and CI tool support, in a move to improve detection accuracy.
One Identity Launches SaaS ID-Risk Solution
Products and Releases  |  8/23/2017  | 
One Identity Starling Identity Analytics & Risk Intelligence is designed to prevent data breaches from improper user entitlements.
Versive Raises $12.7 Million in Funding for AI-Powered Security Solutions
Products and Releases  |  8/23/2017  | 
Existing investors Goldman Sachs, Madrona Venture Group, Formation 8, and Vulcan Capital contributed to funding.
Bugcrowd Launches Bug Bounty Program for Wi-Fi Device Maker eero
Products and Releases  |  8/23/2017  | 
eeros bug bounty program will allow researchers to submit bugs in a visible, predictable and scalable system.
Nigerian Man Sentenced to Prison for Hacking and Fraud Scheme
Products and Releases  |  8/18/2017  | 
Operated Business Email Compromise Scam from Nigeria
Rackspace Deploys RiskIQ PassiveTotal
Products and Releases  |  8/17/2017  | 
Sqrrls Latest Software Release Adds Self-Service Analytics for Threat Hunters
Products and Releases  |  8/17/2017  | 
Version 2.8 of Sqrrls Threat Hunting Platform Streamlines Creation of Risk-Focused Threat Hunting Analytics
Wells Fargo Brings CEO Mobile Token to Business Customers
Products and Releases  |  8/17/2017  | 
New feature enhances banking user experience anytime, anywhere
ISACA Releases New CISM and CRISC Online Review Courses
Products and Releases  |  8/16/2017  | 
Exploit Leaks Led to Over Five Million Attacks in Q2 2017
Products and Releases  |  8/16/2017  | 
Exploit packages in-the-wild became the game changer of the cyber threat landscape in Q2 2017.
IBM Offers Women Scholarships to Hacker Halted Security Conference
Products and Releases  |  8/16/2017  | 
IBM will cover 100% of the entry fees for women to attend EC-Councils largest annual cyber security conference Hacker Halted.
Alert Logic Releases 2017 Cloud Security Report
Products and Releases  |  8/15/2017  | 
On-Premises Workloads Experience 51% Higher Rate of Security Incidents than Applications Running on Public Cloud Platforms
Darktrace Releases Version 3 of its AI Cyber Defense Solution
Products and Releases  |  8/9/2017  | 
Productivity boost for novice and expert analysts, and executives.
Hackers: Privileged Accounts Provide Fastest Access to Sensitive, Critical Data
Products and Releases  |  8/9/2017  | 
Nearly 75 percent state traditional perimeter security firewalls and antivirus are now irrelevant or obsolete.
Security Summit Alert: Tax Pros Warned of New Scam to Steal Their Passwords
Products and Releases  |  8/4/2017  | 
A new phishing email scam impersonates tax software providers, seeking to steal usernames and passwords.
Perimeterx Raises $23 million to Expand AI Behavioral Threat Platform
Products and Releases  |  8/4/2017  | 
The funding will be used to further improve its bot detection technology and expand into automated attack prevention.
Dash Employs Bugcrowd to Hack Its Blockchain
Products and Releases  |  8/4/2017  | 
Bugcrowds professional white-hat hackers and cyber security experts join forces to detect Dash vulnerabilities.
Nyotron Raises $21 Million Funding Round
Products and Releases  |  8/4/2017  | 
Appoints Former McAfee Executive Peter Stewart to Chief Executive Officer
Oracle, SafeLogic and OpenSSL Partner on Next Generation FIPS Module
Products and Releases  |  8/3/2017  | 
Oracle dedicates seed funding towards developing FIPS module for OpenSSL 1.1 and calls on corporate sponsors in the FOSS ecosystem to join the effort
GuardiCore Extends Series B Funding Round to $35 Million
Products and Releases  |  8/3/2017  | 
Funding to accelerate growth in large enterprise accounts and expand further into global markets San Francisco and Israel
HITRUST, Trend Micro Partner to Tackle Cyber Threat Management
Products and Releases  |  8/3/2017  | 
The partnership aims to drive cyber threat research and education to improve organizational cyber threat management.
CrowdStrike Launches Cybersecurity Search Engine
Products and Releases  |  8/3/2017  | 
New CrowdStrike Falcon Search Engine empowers next-gen Security Operation Centers to search in real-time on the worlds fastest and most comprehensive security platform.
Digital Guardian Launches Cloud-Based Data Loss Prevention Service
Products and Releases  |  8/3/2017  | 
Digital Guardian Analytics & Reporting Cloud is released, with aim to deliver data protection as a subscription-based cloud service
Accenture Security Report Identifies Top Cyber Threats of 2017
Products and Releases  |  8/3/2017  | 
Destructive ransomware, alternative crypto-currencies and increased use of deception tactics among threats driving even more lucrative criminal marketplace.


Virginia a Hot Spot For Cybersecurity Jobs
Jai Vijayan, Contributing Writer,  10/9/2019
How to Think Like a Hacker
Dr. Giovanni Vigna, Chief Technology Officer at Lastline,  10/10/2019
7 SMB Security Tips That Will Keep Your Company Safe
Steve Zurier, Contributing Writer,  10/11/2019
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Current Issue
7 Threats & Disruptive Forces Changing the Face of Cybersecurity
This Dark Reading Tech Digest gives an in-depth look at the biggest emerging threats and disruptive forces that are changing the face of cybersecurity today.
Flash Poll
2019 Online Malware and Threats
2019 Online Malware and Threats
As cyberattacks become more frequent and more sophisticated, enterprise security teams are under unprecedented pressure to respond. Is your organization ready?
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2019-17660
PUBLISHED: 2019-10-16
A cross-site scripting (XSS) vulnerability in admin/translate/translateheader_view.php in LimeSurvey 3.19.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the tolang parameter, as demonstrated by the index.php/admin/translate/sa/index/surveyid/336819/lang/ PATH_INFO.
CVE-2019-11281
PUBLISHED: 2019-10-16
Pivotal RabbitMQ, versions prior to v3.7.18, and RabbitMQ for PCF, versions 1.15.x prior to 1.15.13, versions 1.16.x prior to 1.16.6, and versions 1.17.x prior to 1.17.3, contain two components, the virtual host limits page, and the federation management UI, which do not properly sanitize user input...
CVE-2019-16521
PUBLISHED: 2019-10-16
The broken-link-checker plugin through 1.11.8 for WordPress (aka Broken Link Checker) is susceptible to Reflected XSS due to improper encoding and insertion of an HTTP GET parameter into HTML. The filter function on the page listing all detected broken links can be exploited by providing an XSS payl...
CVE-2019-16522
PUBLISHED: 2019-10-16
The eu-cookie-law plugin through 3.0.6 for WordPress (aka EU Cookie Law (GDPR)) is susceptible to Stored XSS due to improper encoding of several configuration options in the admin area and the displayed cookie consent message. This affects Font Color, Background Color, and the Disable Cookie text. A...
CVE-2019-16523
PUBLISHED: 2019-10-16
The events-manager plugin through 5.9.5 for WordPress (aka Events Manager) is susceptible to Stored XSS due to improper encoding and insertion of data provided to the attribute map_style of shortcodes (locations_map and events_map) provided by the plugin.