Dark Reading Article Boards

Message Boards posted in December 2015
Tor Project To Launch Bug Bounty Program
Last Message: 12/31/2015
 |  Comments: 1
5 Tips For Getting The Most Out Of Your Firewall
Last Message: 12/30/2015
 |  Comments: 1
Open Source Encryption Must Get Smarter
Last Message: 12/29/2015
 |  Comments: 3
Survey: When Leaving Company, Most Insiders Take Data They Created
Last Message: 12/29/2015
 |  Comments: 15
10 Funny Twitter Feeds For Security Geeks
Last Message: 12/29/2015
 |  Comments: 5
Giant Mystery Database Of US Voters Leaked
Last Message: 12/28/2015
 |  Comments: 1
Congress Clears Path for Information Sharing But Will It Help?
Last Message: 12/25/2015
 |  Comments: 3
A Hidden Insider Threat: Visual Hackers
Last Message: 12/24/2015
 |  Comments: 1
Security Tech: Its Not What You Buy, Its How You Deploy
Last Message: 12/24/2015
 |  Comments: 2
Torrenting Still A Thorn In Enterprise Networks
Last Message: 12/23/2015
 |  Comments: 1
The Employee Password Habits That Could Hurt Enterprises
Last Message: 12/22/2015
 |  Comments: 6
The Cybersecurity Year In Review
Last Message: 12/21/2015
 |  Comments: 36
The End Of Passwords?
Last Message: 12/21/2015
 |  Comments: 4
How Digital Forensic Readiness Reduces Business Risk
Last Message: 12/15/2015
 |  Comments: 3
Perimeter Inversion: Turning Digital Security Inside Out
Last Message: 12/15/2015
 |  Comments: 2
Twitter Says Nation-State Hackers Targeted Some Accounts
Last Message: 12/15/2015
 |  Comments: 1
Re-innovating Static Analysis: 4 Steps
Last Message: 12/15/2015
 |  Comments: 4
Internet Of Things Christmas Security Survival Guide
Last Message: 12/14/2015
 |  Comments: 1
Latentbot: A Ghost in the Internet
Last Message: 12/14/2015
 |  Comments: 2
Making Security Everyones Job, One Carrot At A Time
Last Message: 12/14/2015
 |  Comments: 1
IPv6 And The Growing DDoS Danger
Last Message: 12/13/2015
 |  Comments: 1
Machine Learning Is Cybersecuritys Latest Pipe Dream
Last Message: 12/11/2015
 |  Comments: 4
Cyber Extortion, DDoS-For-Bitcoin Campaigns Rise
Last Message: 12/11/2015
 |  Comments: 1
McAfee Labs 2016-2020 Threat Predictions, Part 1
Last Message: 12/8/2015
 |  Comments: 2
Exploit Kit Explosion Will Keep Victims Off Kilter
Last Message: 12/8/2015
 |  Comments: 2
We Need A New Word For Cyber
Last Message: 12/6/2015
 |  Comments: 6
Security Geek Gift Guide
Last Message: 12/4/2015
 |  Comments: 2
The Grinch Who Exposed Your Kids' Identities
Last Message: 12/3/2015
 |  Comments: 1
Cybersecurity Seen As Top Priority For Financial Risk Managers
Last Message: 12/3/2015
 |  Comments: 1
How CISOs Can Change The Game of Cybersecurity
Last Message: 12/2/2015
 |  Comments: 1
RSA Warns Of Zero Detection Trojan
Last Message: 12/2/2015
 |  Comments: 4
Xen Patches 'Worst'-Ever Virtual Machine Escape Vulnerability
Last Message: 12/1/2015
 |  Comments: 2
Cyber Monday: What Retailers & Shoppers Should Watch For
Last Message: 12/1/2015
 |  Comments: 12


Want Your Daughter to Succeed in Cyber? Call Her John
John De Santis, CEO, HyTrust,  5/16/2018
Don't Roll the Dice When Prioritizing Vulnerability Fixes
Ericka Chickowski, Contributing Writer, Dark Reading,  5/15/2018
New Mexico Man Sentenced on DDoS, Gun Charges
Dark Reading Staff 5/18/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment: "Security through obscurity"
Current Issue
Flash Poll
[Strategic Security Report] Navigating the Threat Intelligence Maze
[Strategic Security Report] Navigating the Threat Intelligence Maze
Most enterprises are using threat intel services, but many are still figuring out how to use the data they're collecting. In this Dark Reading survey we give you a look at what they're doing today - and where they hope to go.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2018-1067
PUBLISHED: 2018-05-21
In Undertow before versions 7.1.2.CR1, 7.1.2.GA it was found that the fix for CVE-2016-4993 was incomplete and Undertow web server is vulnerable to the injection of arbitrary HTTP headers, and also response splitting, due to insufficient sanitization and validation of user input before the input is ...
CVE-2018-7268
PUBLISHED: 2018-05-21
MagniComp SysInfo before 10-H81, as shipped with BMC BladeLogic Automation and other products, contains an information exposure vulnerability in which a local unprivileged user is able to read any root (uid 0) owned file on the system, regardless of the file permissions. Confidential information suc...
CVE-2018-11092
PUBLISHED: 2018-05-21
An issue was discovered in the Admin Notes plugin 1.1 for MyBB. CSRF allows an attacker to remotely delete all admin notes via an admin/index.php?empty=table (aka Clear Table) action.
CVE-2018-11096
PUBLISHED: 2018-05-21
Horse Market Sell & Rent Portal Script 1.5.7 has a CSRF vulnerability through which an attacker can change all of the target's account information remotely.
CVE-2018-11320
PUBLISHED: 2018-05-21
In Octopus Deploy 2018.4.4 through 2018.5.1, Octopus variables that are sourced from the target do not have sensitive values obfuscated in the deployment logs.