Dark Reading Article Boards

Message Boards posted in February 2014
Apple SSL Vulnerability: 6 Facts
Last Message: 2/28/2014
 |  Comments: 1
IBM Software Vulnerabilities Spiked In 2013
Last Message: 2/28/2014
 |  Comments: 3
RSA: Juniper Security Chief Blasts Apathy
Last Message: 2/27/2014
 |  Comments: 5
Apple Patches Mavericks SSL Flaw: Update Now
Last Message: 2/26/2014
 |  Comments: 1
How I Secure My Personal Cloud
Last Message: 2/25/2014
 |  Comments: 6
"How To Protect Big Data Analytics"
Last Message: 2/23/2014
 |  Comments: 2
WebView Exploit Affects Most Android Phones
Last Message: 2/20/2014
 |  Comments: 4
Bye, Bitcoin: Criminals Seek Other Crypto Currency
Last Message: 2/20/2014
 |  Comments: 6
'Connect': A Modern Approach To Mobile, Cloud Identity
Last Message: 2/19/2014
 |  Comments: 1
Data Breach Notifications: Time For Tough Love
Last Message: 2/18/2014
 |  Comments: 12
Bitcoin Exchanges Buckle Under DDoS Attacks
Last Message: 2/18/2014
 |  Comments: 4
Snowman Attack Campaign Targets IE10 Zero-Day Bug
Last Message: 2/18/2014
 |  Comments: 2
4 Hurdles That Trip Security Analytics Efforts
Last Message: 2/18/2014
 |  Comments: 1
Crooks Hijack ATM Using USB Stick
Last Message: 2/15/2014
 |  Comments: 1
Data Security Dos & Donts From The Target Breach
Last Message: 2/14/2014
 |  Comments: 7
3 Web Security Takeaways From Wikipedia's Near Miss
Last Message: 2/14/2014
 |  Comments: 6
Florida Sting Nabs Alleged Bitcoin Money Launderers
Last Message: 2/14/2014
 |  Comments: 18
The Problem With Two-Factor Authentication
Last Message: 2/13/2014
 |  Comments: 32
Behavior Analysis: New Weapon To Fight Hackers
Last Message: 2/12/2014
 |  Comments: 1
Cartoon: Identity Thieves
Last Message: 2/12/2014
 |  Comments: 10
Target Malware Origin Details Emerge
Last Message: 2/12/2014
 |  Comments: 3
The 7 Deadly Sins of Application Security
Last Message: 2/12/2014
 |  Comments: 5
Infographic: Mobile Security Run Amok
Last Message: 2/10/2014
 |  Comments: 17
Google Study Finds Widespread Account Hijacking
Last Message: 2/8/2014
 |  Comments: 1
British Spies Hit Anonymous With DDoS Attacks
Last Message: 2/6/2014
 |  Comments: 6
"Dropbox Responds To Security Flap"
Last Message: 2/6/2014
 |  Comments: 5
Super Bowl Tech: A Supersized Role For Security
Last Message: 2/3/2014
 |  Comments: 6


Microsoft President: Governments Must Cooperate on Cybersecurity
Kelly Sheridan, Staff Editor, Dark Reading,  11/8/2018
Why the CISSP Remains Relevant to Cybersecurity After 28 Years
Steven Paul Romero, SANS Instructor and Sr. SCADA Network Engineer, Chevron,  11/6/2018
5 Reasons Why Threat Intelligence Doesn't Work
Jonathan Zhang, CEO/Founder of WhoisXML API and TIP,  11/7/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
Flash Poll
Online Malware and Threats: A Profile of Today's Security Posture
Online Malware and Threats: A Profile of Today's Security Posture
This report offers insight on how security professionals plan to invest in cybersecurity, and how they are prioritizing their resources. Find out what your peers have planned today!
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2018-19220
PUBLISHED: 2018-11-12
An issue was discovered in LAOBANCMS 2.0. It allows remote attackers to execute arbitrary PHP code via the host parameter to the install/ URI.
CVE-2018-19221
PUBLISHED: 2018-11-12
An issue was discovered in LAOBANCMS 2.0. It allows SQL Injection via the admin/login.php guanliyuan parameter.
CVE-2018-19222
PUBLISHED: 2018-11-12
An issue was discovered in LAOBANCMS 2.0. It allows a /install/mysql_hy.php?riqi=0&i=0 attack to reset the admin password, even if install.txt exists.
CVE-2018-19223
PUBLISHED: 2018-11-12
An issue was discovered in LAOBANCMS 2.0. It allows XSS via the first input field to the admin/type.php?id=1 URI.
CVE-2018-19224
PUBLISHED: 2018-11-12
An issue was discovered in LAOBANCMS 2.0. /admin/login.php allows spoofing of the id and guanliyuan cookies.