Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Dark Reading Article Boards

Message Boards posted in April 2018
Page 1 / 2   >   >>
12 Trends Shaping Identity Management
Last Message: 4/30/2018
 |  Comments: 1
How Microsoft, Amazon, Alphabet Are Reshaping Security
Last Message: 4/30/2018
 |  Comments: 1
Slack Releases Open Source SDL Tool
Last Message: 4/30/2018
 |  Comments: 1
Old Worm, New Tricks: FacexWorm Targets Crypto Platforms
Last Message: 4/30/2018
 |  Comments: 2
'Zero Login:' The Rise of Invisible Identity
Last Message: 4/30/2018
 |  Comments: 1
More Than 1M Children Victims of Identity Fraud in 2017
Last Message: 4/30/2018
 |  Comments: 2
Routing Security Gets Boost with New Set of MANRS for IXPs
Last Message: 4/30/2018
 |  Comments: 1
Yahoo to Pay SEC Fine of $35 Million
Last Message: 4/30/2018
 |  Comments: 2
Why Information Integrity Attacks Pose New Security Challenges
Last Message: 4/28/2018
 |  Comments: 3
8 Ways Hackers Monetize Stolen Data
Last Message: 4/27/2018
 |  Comments: 4
Europe and Asia Take on More DDoS Attacks
Last Message: 4/27/2018
 |  Comments: 1
Threat Intel: Finding Balance in an Overcrowded Market
Last Message: 4/25/2018
 |  Comments: 2
Securing Social Media: National Safety, Privacy Concerns
Last Message: 4/24/2018
 |  Comments: 2
New Malware Adds RAT to a Persistent Loader
Last Message: 4/21/2018
 |  Comments: 1
Oracle CPU Contains Lowest Number Of Database Fixes Ever
Last Message: 4/21/2018
 |  Comments: 1
OSX.Bella: Mac Malware Strikes Again
Last Message: 4/21/2018
 |  Comments: 1
Microsoft CISO Talks Threat Intel, 'Data Inclusion'
Last Message: 4/20/2018
 |  Comments: 2
On-Premise Security Tools Struggle to Survive in the Cloud
Last Message: 4/19/2018
 |  Comments: 1
The Role of KPIs in Incident Response
Last Message: 4/19/2018
 |  Comments: 1
Optimizing the Security Awareness of Your End-Users
Last Message: 4/19/2018
 |  Comments: 1
7 Non-Financial Data Types to Secure
Last Message: 4/18/2018
 |  Comments: 1
Avoiding the Ransomware Mistakes that Crippled Atlanta
Last Message: 4/17/2018
 |  Comments: 8
Can Android for Work Redefine Enterprise Mobile Security?
Last Message: 4/15/2018
 |  Comments: 2
Microsegmentation: Strong Security in Small Packages
Last Message: 4/12/2018
 |  Comments: 1
Stripping the Attacker Naked
Last Message: 4/11/2018
 |  Comments: 5
89% of Android Users Didn't Consent to Facebook Data Collection
Last Message: 4/11/2018
 |  Comments: 4
One-Third of Internal User Accounts Are 'Ghost Users'
Last Message: 4/11/2018
 |  Comments: 4
Best Buy the Latest Victim of Third-Party Security Breach
Last Message: 4/10/2018
 |  Comments: 1
Mirai Variant Botnet Takes Aim at Financials
Last Message: 4/6/2018
 |  Comments: 1
Report: White House Email Domains Poorly Protected from Fraud
Last Message: 4/6/2018
 |  Comments: 2
How Gamers Could Save the Cybersecurity Skills Gap
Last Message: 4/5/2018
 |  Comments: 1
University Networks Become Fertile Ground for Cryptomining
Last Message: 4/5/2018
 |  Comments: 4
The Cybersecurity Mandates Keep On Coming
Last Message: 4/5/2018
 |  Comments: 3
FBI IC3: Tech Support Scam Losses Rose 86% in 2017
Last Message: 4/4/2018
 |  Comments: 2
7 Deadly Security Sins of Web Applications
Last Message: 4/4/2018
 |  Comments: 1
Destructive and False Flag Cyberattacks to Escalate
Last Message: 4/2/2018
 |  Comments: 10
Page 1 / 2   >   >>


Edge-DRsplash-10-edge-articles
I Smell a RAT! New Cybersecurity Threats for the Crypto Industry
David Trepp, Partner, IT Assurance with accounting and advisory firm BPM LLP,  7/9/2021
News
Attacks on Kaseya Servers Led to Ransomware in Less Than 2 Hours
Robert Lemos, Contributing Writer,  7/7/2021
Commentary
It's in the Game (but It Shouldn't Be)
Tal Memran, Cybersecurity Expert, CYE,  7/9/2021
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
Creating an Effective Incident Response Plan
Security teams are realizing their organizations will experience a cyber incident at some point. An effective incident response plan that takes into account their specific requirements and has been tested is critical. This issue of Tech Insights also includes: -a look at the newly signed cyber-incident law, -how organizations can apply behavioral psychology to incident response, -and an overview of the Open Cybersecurity Schema Framework.
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2022-43705
PUBLISHED: 2022-11-27
In Botan before 2.19.3, it is possible to forge OCSP responses due to a certificate verification error. This issue was introduced in Botan 1.11.34 (November 2016).
CVE-2022-45934
PUBLISHED: 2022-11-27
An issue was discovered in the Linux kernel through 6.0.10. l2cap_config_req in net/bluetooth/l2cap_core.c has an integer wraparound via L2CAP_CONF_REQ packets.
CVE-2022-45931
PUBLISHED: 2022-11-27
A SQL injection issue was discovered in AAA in OpenDaylight (ODL) before 0.16.5. The aaa-idm-store-h2/src/main/java/org/opendaylight/aaa/datastore/h2/UserStore.java deleteUser function is affected when the API interface /auth/v1/users/ is used.
CVE-2022-45932
PUBLISHED: 2022-11-27
A SQL injection issue was discovered in AAA in OpenDaylight (ODL) before 0.16.5. The aaa-idm-store-h2/src/main/java/org/opendaylight/aaa/datastore/h2/RoleStore.java deleteRole function is affected when the API interface /auth/v1/roles/ is used.
CVE-2022-45933
PUBLISHED: 2022-11-27
KubeView through 0.1.31 allows attackers to obtain control of a Kubernetes cluster because api/scrape/kube-system does not require authentication, and retrieves certificate files that can be used for authentication as kube-admin. NOTE: the vendor's position is that KubeView was a "fun side proj...