Dark Reading Article Boards

Message Boards posted in October 2016
Page 1 / 2   >   >>
9 Sources For Tracking New Vulnerabilities
Last Message: 10/31/2016
 |  Comments: 3
How To Stay Safe On The Black Hat Network: Dont Connect To It
Last Message: 10/30/2016
 |  Comments: 14
US Charges Several In India Call Center Scam
Last Message: 10/30/2016
 |  Comments: 1
Blockchain & The Battle To Secure Digital Identities
Last Message: 10/30/2016
 |  Comments: 9
5 Tips For Preventing IoT Hacks
Last Message: 10/29/2016
 |  Comments: 16
Jose Santana Pleads Guilty In Cell Phone Fraud Scheme
Last Message: 10/29/2016
 |  Comments: 1
UEFA Euro Fans At High Risk Of Online Threats, Study Shows
Last Message: 10/28/2016
 |  Comments: 1
Florida Man To Plead Guilty in JPMorgan, Bitcoin Hack Case
Last Message: 10/28/2016
 |  Comments: 1
DDos On Dyn Used Malicious TCP, UDP Traffic
Last Message: 10/27/2016
 |  Comments: 1
New DDoS Attacks Could Reach Tens Of Terabits-Per-Second
Last Message: 10/27/2016
 |  Comments: 2
Researchers Show How To Steal Payment Card Data From PIN Pads
Last Message: 10/27/2016
 |  Comments: 1
Identity Theft Hits Low- To Moderate-Income Victims Hardest
Last Message: 10/26/2016
 |  Comments: 9
Deleting Emails Original Sin: An Historical Perspective
Last Message: 10/26/2016
 |  Comments: 2
Using Hard-Drive Imaging In Forensics
Last Message: 10/26/2016
 |  Comments: 1
A Proactive Approach To Vulnerability Management: 3 Steps
Last Message: 10/25/2016
 |  Comments: 1
Millennials A Growing Target Of IT Support Scams
Last Message: 10/24/2016
 |  Comments: 2
How To Become A Cybersecurity Entrepreneur In A Crowded Market
Last Message: 10/23/2016
 |  Comments: 1
CIO-CISO Relationship Continues To Evolve
Last Message: 10/22/2016
 |  Comments: 1
New Free Tool Stops Petya Ransomware & Rootkits
Last Message: 10/22/2016
 |  Comments: 1
75% Of Orgs Lack Skilled Cybersecurity Experts
Last Message: 10/21/2016
 |  Comments: 1
Hacking Voting Systems: A Reality Check
Last Message: 10/21/2016
 |  Comments: 2
7 Regional Hotbeds For Cybersecurity Innovation
Last Message: 10/20/2016
 |  Comments: 1
'Backoff' Malware: Time To Step Up Remote Access Security
Last Message: 10/20/2016
 |  Comments: 10
The Cyber Skills Shortage
Last Message: 10/19/2016
 |  Comments: 50
Researcher Roots Out Security Flaws In Insulin Pumps
Last Message: 10/18/2016
 |  Comments: 1
5 Tips For Keeping Small Businesses Secure
Last Message: 10/18/2016
 |  Comments: 2
Why Hackers Are Getting 'All Political' This Election Year
Last Message: 10/17/2016
 |  Comments: 2
"7 Tips To Toughen Passwords"
Last Message: 10/17/2016
 |  Comments: 13
Database Breaches: An Alarming Lack Of Preparedness
Last Message: 10/16/2016
 |  Comments: 3
Thousands Of Secure Websites Dubbed Insecure Due To Cert Error
Last Message: 10/16/2016
 |  Comments: 2
Cartoon: Hacking Lunch
Last Message: 10/15/2016
 |  Comments: 11
Yahoo Breach May Trigger 'Material Adverse Change' Clause
Last Message: 10/15/2016
 |  Comments: 2
7 Ways Electronic Voting Systems Can Be Attacked
Last Message: 10/15/2016
 |  Comments: 1
25 Emerging Security Vendors To Watch
Last Message: 10/15/2016
 |  Comments: 5
Vera Bradley Stores Report Payment Card Breach
Last Message: 10/14/2016
 |  Comments: 1
Information Security Spending Will Top $101 Billion By 2020
Last Message: 10/14/2016
 |  Comments: 1
Crimeware-as-a-Service Hack Turns Potential Hackers Into Victims
Last Message: 10/14/2016
 |  Comments: 3
Ransomware Raises The Bar Again
Last Message: 10/13/2016
 |  Comments: 2
Page 1 / 2   >   >>


Election Websites, Back-End Systems Most at Risk of Cyberattack in Midterms
Kelly Jackson Higgins, Executive Editor at Dark Reading,  8/14/2018
Intel Reveals New Spectre-Like Vulnerability
Curtis Franklin Jr., Senior Editor at Dark Reading,  8/15/2018
Data Privacy Careers Are Helping to Close the IT Gender Gap
Dana Simberkoff, Chief Compliance and Risk Management Officer, AvePoint, Inc,  8/20/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2018-15601
PUBLISHED: 2018-08-21
apps/filemanager/handlers/upload/drop.php in Elefant CMS 2.0.3 performs a urldecode step too late in the "Cannot upload executable files" protection mechanism.
CVE-2018-15603
PUBLISHED: 2018-08-21
An issue was discovered in Victor CMS through 2018-05-10. There is XSS via the Author field of the "Leave a Comment" screen.
CVE-2018-15598
PUBLISHED: 2018-08-21
Containous Traefik 1.6.x before 1.6.6, when --api is used, exposes the configuration and secret if authentication is missing and the API's port is publicly reachable.
CVE-2018-15599
PUBLISHED: 2018-08-21
The recv_msg_userauth_request function in svr-auth.c in Dropbear through 2018.76 is prone to a user enumeration vulnerability because username validity affects how fields in SSH_MSG_USERAUTH messages are handled, a similar issue to CVE-2018-15473 in an unrelated codebase.
CVE-2018-0501
PUBLISHED: 2018-08-21
The mirror:// method implementation in Advanced Package Tool (APT) 1.6.x before 1.6.4 and 1.7.x before 1.7.0~alpha3 mishandles gpg signature verification for the InRelease file of a fallback mirror, aka mirrorfail.