Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Dark Reading Article Boards

Message Boards posted in October 2016
Page 1 / 2   >   >>
How To Stay Safe On The Black Hat Network: Dont Connect To It
Last Message: 10/30/2016
 |  Comments: 13
US Charges Several In India Call Center Scam
Last Message: 10/30/2016
 |  Comments: 1
Blockchain & The Battle To Secure Digital Identities
Last Message: 10/30/2016
 |  Comments: 9
Jose Santana Pleads Guilty In Cell Phone Fraud Scheme
Last Message: 10/29/2016
 |  Comments: 1
UEFA Euro Fans At High Risk Of Online Threats, Study Shows
Last Message: 10/28/2016
 |  Comments: 1
Florida Man To Plead Guilty in JPMorgan, Bitcoin Hack Case
Last Message: 10/28/2016
 |  Comments: 1
DDos On Dyn Used Malicious TCP, UDP Traffic
Last Message: 10/27/2016
 |  Comments: 1
New DDoS Attacks Could Reach Tens Of Terabits-Per-Second
Last Message: 10/27/2016
 |  Comments: 2
Researchers Show How To Steal Payment Card Data From PIN Pads
Last Message: 10/27/2016
 |  Comments: 1
Identity Theft Hits Low- To Moderate-Income Victims Hardest
Last Message: 10/26/2016
 |  Comments: 9
Deleting Emails Original Sin: An Historical Perspective
Last Message: 10/26/2016
 |  Comments: 2
Using Hard-Drive Imaging In Forensics
Last Message: 10/26/2016
 |  Comments: 1
A Proactive Approach To Vulnerability Management: 3 Steps
Last Message: 10/25/2016
 |  Comments: 1
Millennials A Growing Target Of IT Support Scams
Last Message: 10/24/2016
 |  Comments: 2
CIO-CISO Relationship Continues To Evolve
Last Message: 10/22/2016
 |  Comments: 1
New Free Tool Stops Petya Ransomware & Rootkits
Last Message: 10/22/2016
 |  Comments: 1
75% Of Orgs Lack Skilled Cybersecurity Experts
Last Message: 10/21/2016
 |  Comments: 1
Hacking Voting Systems: A Reality Check
Last Message: 10/21/2016
 |  Comments: 1
7 Regional Hotbeds For Cybersecurity Innovation
Last Message: 10/20/2016
 |  Comments: 1
'Backoff' Malware: Time To Step Up Remote Access Security
Last Message: 10/20/2016
 |  Comments: 10
Researcher Roots Out Security Flaws In Insulin Pumps
Last Message: 10/18/2016
 |  Comments: 1
5 Tips For Keeping Small Businesses Secure
Last Message: 10/18/2016
 |  Comments: 1
Why Hackers Are Getting 'All Political' This Election Year
Last Message: 10/17/2016
 |  Comments: 2
"7 Tips To Toughen Passwords"
Last Message: 10/17/2016
 |  Comments: 13
Database Breaches: An Alarming Lack Of Preparedness
Last Message: 10/16/2016
 |  Comments: 3
Thousands Of Secure Websites Dubbed Insecure Due To Cert Error
Last Message: 10/16/2016
 |  Comments: 2
Cartoon: Hacking Lunch
Last Message: 10/15/2016
 |  Comments: 11
Yahoo Breach May Trigger 'Material Adverse Change' Clause
Last Message: 10/15/2016
 |  Comments: 2
7 Ways Electronic Voting Systems Can Be Attacked
Last Message: 10/15/2016
 |  Comments: 1
25 Emerging Security Vendors To Watch
Last Message: 10/15/2016
 |  Comments: 4
Vera Bradley Stores Report Payment Card Breach
Last Message: 10/14/2016
 |  Comments: 1
Information Security Spending Will Top $101 Billion By 2020
Last Message: 10/14/2016
 |  Comments: 1
Crimeware-as-a-Service Hack Turns Potential Hackers Into Victims
Last Message: 10/14/2016
 |  Comments: 3
Ransomware Raises The Bar Again
Last Message: 10/13/2016
 |  Comments: 2
Political Positions On Cybersecurity Matter To Millennials
Last Message: 10/13/2016
 |  Comments: 1
Decrypting The Dark Web: Patterns Inside Hacker Forum Activity
Last Message: 10/13/2016
 |  Comments: 1
Why Cyber Security Starts At Home
Last Message: 10/12/2016
 |  Comments: 14
Cryptographic Key Reuse Remains Widespread In Embedded Products
Last Message: 10/10/2016
 |  Comments: 1
Page 1 / 2   >   >>


Edge-DRsplash-10-edge-articles
I Smell a RAT! New Cybersecurity Threats for the Crypto Industry
David Trepp, Partner, IT Assurance with accounting and advisory firm BPM LLP,  7/9/2021
News
Attacks on Kaseya Servers Led to Ransomware in Less Than 2 Hours
Robert Lemos, Contributing Writer,  7/7/2021
Commentary
It's in the Game (but It Shouldn't Be)
Tal Memran, Cybersecurity Expert, CYE,  7/9/2021
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
How Machine Learning, AI & Deep Learning Improve Cybersecurity
Machine intelligence is influencing all aspects of cybersecurity. Organizations are implementing AI-based security to analyze event data using ML models that identify attack patterns and increase automation. Before security teams can take advantage of AI and ML tools, they need to know what is possible. This report covers: -How to assess the vendor's AI/ML claims -Defining success criteria for AI/ML implementations -Challenges when implementing AI
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2022-42002
PUBLISHED: 2022-10-01
SonicJS through 0.6.0 allows file overwrite. It has the following mutations that are used for updating files: fileCreate and fileUpdate. Both of these mutations can be called without any authentication to overwrite any files on a SonicJS application, leading to Arbitrary File Write and Delete.
CVE-2022-39268
PUBLISHED: 2022-09-30
### Impact In a CSRF attack, an innocent end user is tricked by an attacker into submitting a web request that they did not intend. This may cause actions to be performed on the website that can include inadvertent client or server data leakage, change of session state, or manipulation of an end use...
CVE-2022-34428
PUBLISHED: 2022-09-30
Dell Hybrid Client prior to version 1.8 contains a Regular Expression Denial of Service Vulnerability in the UI. An adversary with WMS group admin access could potentially exploit this vulnerability, leading to temporary denial-of-service.
CVE-2022-34429
PUBLISHED: 2022-09-30
Dell Hybrid Client below 1.8 version contains a Zip Slip Vulnerability in UI. A guest privilege attacker could potentially exploit this vulnerability, leading to system files modification.
CVE-2022-40923
PUBLISHED: 2022-09-30
A vulnerability in the LIEF::MachO::SegmentCommand::virtual_address function of LIEF v0.12.1 allows attackers to cause a denial of service (DOS) through a segmentation fault via a crafted MachO file.