Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Dark Reading Article Boards

Message Boards posted in January 2015
Page 1 / 2   >   >>
NFL Mobile Vulnerable Super Bowl-Sized Vulns
Last Message: 1/31/2015
 |  Comments: 10
Why Iran Hacks
Last Message: 1/30/2015
 |  Comments: 7
ZeroAccess Click-Fraud Botnet Back In Action Again
Last Message: 1/30/2015
 |  Comments: 1
Securing the Internet of Things
Last Message: 1/30/2015
 |  Comments: 2
'Ghost' Not So Scary After All
Last Message: 1/30/2015
 |  Comments: 5
New Patent Eliminates Passwords
Last Message: 1/29/2015
 |  Comments: 3
Anatomy Of A 'Cyber-Physical' Attack
Last Message: 1/29/2015
 |  Comments: 4
What Government Can (And Cant) Do About Cybersecurity
Last Message: 1/29/2015
 |  Comments: 18
Building A Cybersecurity Program: 3 Tips
Last Message: 1/28/2015
 |  Comments: 6
Half Of Enterprises Worldwide Hit By DDoS Attacks, Report Says
Last Message: 1/28/2015
 |  Comments: 2
Security Skills Shortage? Dont Panic!
Last Message: 1/28/2015
 |  Comments: 5
Poll: The Perimeter Has Shattered!
Last Message: 1/27/2015
 |  Comments: 9
Adobe Fixes Second Flash Flaw Exploited By Angler
Last Message: 1/27/2015
 |  Comments: 1
Could The Sony Attacks Happen Again? Join The Conversation
Last Message: 1/26/2015
 |  Comments: 13
Diverse White Hat Community Leads To Diverse Vuln Disclosures
Last Message: 1/26/2015
 |  Comments: 6
Nation-State Cyberthreats: Why They Hack
Last Message: 1/26/2015
 |  Comments: 10
Security MIA In Car Insurance Dongle
Last Message: 1/26/2015
 |  Comments: 11
NSA Report: How To Defend Against Destructive Malware
Last Message: 1/24/2015
 |  Comments: 3
Facebook Messenger: Classically Bad AppSec
Last Message: 1/23/2015
 |  Comments: 2
Recruit, Reward & Retain Cybersecurity Experts
Last Message: 1/22/2015
 |  Comments: 5
Adobe Investigating New Flash Zero-Day Spotted In Crimeware Kit
Last Message: 1/22/2015
 |  Comments: 2
Security Budgets Going Up, Thanks To Mega-Breaches
Last Message: 1/22/2015
 |  Comments: 5
The Truth About Malvertising
Last Message: 1/21/2015
 |  Comments: 7
Black Hat & DEF CON: 3 Lessons From A Newbie
Last Message: 1/21/2015
 |  Comments: 8
The Sony Hack: A Security Community Discussion
Last Message: 1/21/2015
 |  Comments: 103
Ransomware Leads Surge In 2014 Mobile Malware Onslaught
Last Message: 1/21/2015
 |  Comments: 3
'123456' & 'Password' Are The 2 Most Common Passwords, Again
Last Message: 1/21/2015
 |  Comments: 3
A Lot of Security Purchases Remain Shelfware
Last Message: 1/21/2015
 |  Comments: 9
Franchising The Chinese APT
Last Message: 1/21/2015
 |  Comments: 8
Walk & Stalk: A New Twist In Cyberstalking
Last Message: 1/21/2015
 |  Comments: 5
In Wake Of Violence, France Reports Spike In Cyberattacks
Last Message: 1/19/2015
 |  Comments: 8
Why North Korea Hacks
Last Message: 1/19/2015
 |  Comments: 10
Bank Fraud Toolkit Circumvents 2FA & Device Identification
Last Message: 1/16/2015
 |  Comments: 5
4 Mega-Vulnerabilities Hiding in Plain Sight
Last Message: 1/16/2015
 |  Comments: 1
Insider Threats in the Cloud: 6 Harrowing Tales
Last Message: 1/16/2015
 |  Comments: 5
2015: The Year Of The Security Startup – Or Letdown
Last Message: 1/15/2015
 |  Comments: 5
How PCI DSS 3.0 Can Help Stop Data Breaches
Last Message: 1/15/2015
 |  Comments: 9
Threat Intelligence: Sink or Swim?
Last Message: 1/14/2015
 |  Comments: 7
20 Startups To Watch In 2015
Last Message: 1/14/2015
 |  Comments: 6
New Data Illustrates Reality Of Widespread Cyberattacks
Last Message: 1/14/2015
 |  Comments: 2
US CENTCOM Twitter Hijack 'Purely' Vandalism
Last Message: 1/14/2015
 |  Comments: 4
Cloud Services Adoption: Rates, Reasons & Security Fears
Last Message: 1/13/2015
 |  Comments: 3
Insider Threat, Shadow IT Concerns Spur Cloud Security
Last Message: 1/12/2015
 |  Comments: 3
Medical Device Security: A Work In Progress
Last Message: 1/12/2015
 |  Comments: 2
Shadow IT: Not The Risk You Think
Last Message: 1/11/2015
 |  Comments: 1
Page 1 / 2   >   >>


Edge-DRsplash-10-edge-articles
I Smell a RAT! New Cybersecurity Threats for the Crypto Industry
David Trepp, Partner, IT Assurance with accounting and advisory firm BPM LLP,  7/9/2021
News
Attacks on Kaseya Servers Led to Ransomware in Less Than 2 Hours
Robert Lemos, Contributing Writer,  7/7/2021
Commentary
It's in the Game (but It Shouldn't Be)
Tal Memran, Cybersecurity Expert, CYE,  7/9/2021
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
Enterprise Cybersecurity Plans in a Post-Pandemic World
Download the Enterprise Cybersecurity Plans in a Post-Pandemic World report to understand how security leaders are maintaining pace with pandemic-related challenges, and where there is room for improvement.
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2021-21742
PUBLISHED: 2021-09-25
There is an information leak vulnerability in the message service app of a ZTE mobile phone. Due to improper parameter settings, attackers could use this vulnerability to obtain some sensitive information of users by accessing specific pages.
CVE-2020-20508
PUBLISHED: 2021-09-24
Shopkit v2.7 contains a reflective cross-site scripting (XSS) vulnerability in the /account/register component, which allows attackers to hijack user credentials via a crafted payload in the E-Mail text field.
CVE-2020-20514
PUBLISHED: 2021-09-24
A Cross-Site Request Forgery (CSRF) in Maccms v10 via admin.php/admin/admin/del/ids/<id>.html allows authenticated attackers to delete all users.
CVE-2016-6555
PUBLISHED: 2021-09-24
OpenNMS version 18.0.1 and prior are vulnerable to a stored XSS issue due to insufficient filtering of SNMP trap supplied data. By creating a malicious SNMP trap, an attacker can store an XSS payload which will trigger when a user of the web UI views the events list page. This issue was fixed in ver...
CVE-2016-6556
PUBLISHED: 2021-09-24
OpenNMS version 18.0.1 and prior are vulnerable to a stored XSS issue due to insufficient filtering of SNMP agent supplied data. By creating a malicious SNMP 'sysName' or 'sysContact' response, an attacker can store an XSS payload which will trigger when a user of the web UI views the data. This iss...