Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Dark Reading Article Boards

Message Boards posted in November 2019
Target Confirms Hackers Stole 40 Million Credit Cards
Last Message: 11/29/2019
 |  Comments: 27
Google Creates Online Phishing Quiz
Last Message: 11/27/2019
 |  Comments: 5
Why Multifactor Authentication Is Now a Hacker Target
Last Message: 11/26/2019
 |  Comments: 1
Human Nature vs. AI: A False Dichotomy?
Last Message: 11/26/2019
 |  Comments: 1
5 Tips for Protecting SOHO Routers Against the VPNFilter Malware
Last Message: 11/23/2019
 |  Comments: 5
DevSecOps: The Answer to the Cloud Security Skills Gap
Last Message: 11/22/2019
 |  Comments: 3
Researchers Find New Approach to Attacking Cloud Infrastructure
Last Message: 11/22/2019
 |  Comments: 1
The Myths of Multifactor Authentication
Last Message: 11/21/2019
 |  Comments: 1
Building a Cybersecurity Culture: What's Love Got to Do With It?
Last Message: 11/21/2019
 |  Comments: 3
TPM-Fail: What It Means & What to Do About It
Last Message: 11/19/2019
 |  Comments: 1
Black Hat Q&A: Hacking a '90s Sports Car
Last Message: 11/13/2019
 |  Comments: 3
Unreasonable Security Best Practices vs. Good Risk Management
Last Message: 11/13/2019
 |  Comments: 1
Getting Up to Speed with "Always-On SSL"
Last Message: 11/12/2019
 |  Comments: 2
The Cold Truth about Cyber Insurance
Last Message: 11/12/2019
 |  Comments: 3
The Mainframe Is Seeing a Resurgence. Is Security Keeping Pace?
Last Message: 11/11/2019
 |  Comments: 3
6 Small-Business Password Managers
Last Message: 11/10/2019
 |  Comments: 1
The Edge Cartoon Contest: Need a Lift?
Last Message: 11/8/2019
 |  Comments: 9
The State of Email Security and Protection
Last Message: 11/7/2019
 |  Comments: 1
Quantifying Security Results to Justify Costs
Last Message: 11/7/2019
 |  Comments: 2
8 Microsegmentation Pitfalls to Avoid
Last Message: 11/7/2019
 |  Comments: 1
NordVPN Breached Via Data Center Provider's Error
Last Message: 11/5/2019
 |  Comments: 2
8 Holiday Security Tips for Retailers
Last Message: 11/5/2019
 |  Comments: 1
State of SMB Insecurity by the Numbers
Last Message: 11/4/2019
 |  Comments: 3
Five Ways To (Physically) Hack A Data Center
Last Message: 11/2/2019
 |  Comments: 4


Commentary
Ransomware Is Not the Problem
Adam Shostack, Consultant, Entrepreneur, Technologist, Game Designer,  6/9/2021
Edge-DRsplash-11-edge-ask-the-experts
How Can I Test the Security of My Home-Office Employees' Routers?
John Bock, Senior Research Scientist,  6/7/2021
News
New Ransomware Group Claiming Connection to REvil Gang Surfaces
Jai Vijayan, Contributing Writer,  6/10/2021
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win an Amazon Gift Card! Click Here
Latest Comment: Google's new See No Evil policy......
Current Issue
The State of Cybersecurity Incident Response
In this report learn how enterprises are building their incident response teams and processes, how they research potential compromises, how they respond to new breaches, and what tools and processes they use to remediate problems and improve their cyber defenses for the future.
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2020-18442
PUBLISHED: 2021-06-18
Infinite Loop in zziplib v0.13.69 allows remote attackers to cause a denial of service via the return value "zzip_file_read" in the function "unzzip_cat_file".
CVE-2021-3604
PUBLISHED: 2021-06-18
Secure 8 (Evalos) does not validate user input data correctly, allowing a remote attacker to perform a Blind SQL Injection. An attacker could exploit this vulnerability in order to extract information of users and administrator accounts stored in the database.
CVE-2005-2795
PUBLISHED: 2021-06-18
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Notes: none.
CVE-2021-32954
PUBLISHED: 2021-06-18
Advantech WebAccess/SCADA Versions 9.0.1 and prior is vulnerable to a directory traversal, which may allow an attacker to remotely read arbitrary files on the file system.
CVE-2021-32956
PUBLISHED: 2021-06-18
Advantech WebAccess/SCADA Versions 9.0.1 and prior is vulnerable to redirection, which may allow an attacker to send a maliciously crafted URL that could result in redirecting a user to a malicious webpage.