Dark Reading Article Boards

Message Boards posted in November 2014
Page 1 / 2   >   >>
New Citadel Attack Targets Password Managers
Last Message: 11/30/2014
 |  Comments: 4
Apple, Security, And Disturbing Questions
Last Message: 11/30/2014
 |  Comments: 1
Cloud Security By The Numbers
Last Message: 11/27/2014
 |  Comments: 8
Don't Discount XSS Vulnerabilities
Last Message: 11/26/2014
 |  Comments: 4
Data Management Vs. Data Loss Prevention: Vive La Diffrence!
Last Message: 11/26/2014
 |  Comments: 4
New Attack Method Can Hit 95% Of iOS Devices
Last Message: 11/26/2014
 |  Comments: 8
Russian Cyber Espionage Under The Microscope
Last Message: 11/24/2014
 |  Comments: 8
Dairy Queen Breach Shines Light On Impact Of 3rd-Party Breaches
Last Message: 11/24/2014
 |  Comments: 7
Internet Architecture Board Calls For Net Encryption By Default
Last Message: 11/24/2014
 |  Comments: 10
New Certification Authority To Offer Free Certs For HTTPS
Last Message: 11/24/2014
 |  Comments: 5
The Week When Attackers Started Winning The War On Trust
Last Message: 11/24/2014
 |  Comments: 1
The Year Of The Retailer Data Breach
Last Message: 11/22/2014
 |  Comments: 4
ID Theft Monitoring Services: What You Need To Know
Last Message: 11/22/2014
 |  Comments: 3
FreedomPop Debuts Encrypted Snowden Phone
Last Message: 11/21/2014
 |  Comments: 5
How Enterprises Can Get The Most From Threat Intelligence
Last Message: 11/21/2014
 |  Comments: 2
Surveillance Cameras Next On The Insecure IoT List
Last Message: 11/21/2014
 |  Comments: 2
Retail Hacking: What To Expect This Holiday Season
Last Message: 11/21/2014
 |  Comments: 4
Killing Passwords: Dont Get A-Twitter Over Digits
Last Message: 11/21/2014
 |  Comments: 5
Enter The Digital Risk Officer
Last Message: 11/21/2014
 |  Comments: 1
The World's Most Hackable Cars
Last Message: 11/21/2014
 |  Comments: 25
Rethinking Security With A System Of 'Checks & Balances'
Last Message: 11/20/2014
 |  Comments: 7
Time To Turn The Tables On Attackers
Last Message: 11/20/2014
 |  Comments: 5
Microsoft Issues Emergency Patch Amid Targeted Attacks
Last Message: 11/19/2014
 |  Comments: 2
'Misdial Trap' Phone Scam Hits Financial Services
Last Message: 11/19/2014
 |  Comments: 2
Retail Hacking: What To Expect This Holiday Season
Last Message: 11/19/2014
 |  Comments: 95
Is Rogue IT Really A Problem?
Last Message: 11/18/2014
 |  Comments: 1
POS Malware Continues To Evolve
Last Message: 11/17/2014
 |  Comments: 7
'Bashlite' Malware Leverages ShellShock In BusyBox Attack
Last Message: 11/17/2014
 |  Comments: 4
NOAA Blames China In Hack, Breaks Disclosure Rules
Last Message: 11/17/2014
 |  Comments: 2
Smart Meter Hack Shuts Off The Lights
Last Message: 11/16/2014
 |  Comments: 5
Financial Breaches Show Trust Model Is Broken
Last Message: 11/15/2014
 |  Comments: 7
How I Became A CISO: Jennings Aske, Nuance Communications
Last Message: 11/15/2014
 |  Comments: 9
Stuxnet 'Patient Zero' Attack Targets Revealed
Last Message: 11/13/2014
 |  Comments: 5
How I Became A CISO: Quinn Shamblin, Boston University
Last Message: 11/13/2014
 |  Comments: 3
iOS 8 Vs. Android: How Secure Is Your Data?
Last Message: 11/13/2014
 |  Comments: 4
3 IT Practices That Add Risk To Cloud
Last Message: 11/13/2014
 |  Comments: 2
The Staggering Complexity of Application Security
Last Message: 11/12/2014
 |  Comments: 6
Drag Your Adolescent Incident-Response Program Into Adulthood
Last Message: 11/12/2014
 |  Comments: 2
Protecting the Customer-Facing Website
Last Message: 11/12/2014
 |  Comments: 28
Page 1 / 2   >   >>


Election Websites, Back-End Systems Most at Risk of Cyberattack in Midterms
Kelly Jackson Higgins, Executive Editor at Dark Reading,  8/14/2018
Intel Reveals New Spectre-Like Vulnerability
Curtis Franklin Jr., Senior Editor at Dark Reading,  8/15/2018
Australian Teen Hacked Apple Network
Dark Reading Staff 8/17/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2018-15504
PUBLISHED: 2018-08-18
An issue was discovered in Embedthis GoAhead before 4.0.1 and Appweb before 7.0.2. The server mishandles some HTTP request fields associated with time, which results in a NULL pointer dereference, as demonstrated by If-Modified-Since or If-Unmodified-Since with a month greater than 11.
CVE-2018-15505
PUBLISHED: 2018-08-18
An issue was discovered in Embedthis GoAhead before 4.0.1 and Appweb before 7.0.2. An HTTP POST request with a specially crafted "Host" header field may cause a NULL pointer dereference and thus cause a denial of service, as demonstrated by the lack of a trailing ']' character in an IPv6 a...
CVE-2018-15492
PUBLISHED: 2018-08-18
A vulnerability in the lservnt.exe component of Sentinel License Manager version 8.5.3.35 (fixed in 8.5.3.2403) causes UDP amplification.
CVE-2018-15494
PUBLISHED: 2018-08-18
In Dojo Toolkit before 1.14, there is unescaped string injection in dojox/Grid/DataGrid.
CVE-2018-15495
PUBLISHED: 2018-08-18
/filemanager/upload.php in Responsive FileManager before 9.13.3 allows Directory Traversal and SSRF because the url parameter is used directly in a curl_exec call, as demonstrated by a file:///etc/passwd value.