Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Dark Reading Article Boards

Message Boards posted in February 2018
Page 1 / 2   >   >>
Zero-Day Attacks Major Concern in Hybrid Cloud
Last Message: 2/28/2018
 |  Comments: 1
SAML Flaw Lets Hackers Assume Users' Identities
Last Message: 2/28/2018
 |  Comments: 1
Security Starts with the User Experience
Last Message: 2/28/2018
 |  Comments: 2
Mac Malware Reaches New Highs
Last Message: 2/28/2018
 |  Comments: 1
7 Cryptominers & Cryptomining Botnets You Can't Ignore
Last Message: 2/27/2018
 |  Comments: 1
Threats from Mobile Ransomware & Banking Malware Are Growing
Last Message: 2/27/2018
 |  Comments: 5
93% of Cloud Applications Aren't Enterprise-Ready
Last Message: 2/26/2018
 |  Comments: 10
Visa: EMV Cards Drove 70% Decline in Fraud
Last Message: 2/26/2018
 |  Comments: 6
Takeaways from the Russia-Linked US Senate Phishing Attacks
Last Message: 2/25/2018
 |  Comments: 7
6 Steps for Sharing Threat Intelligence
Last Message: 2/22/2018
 |  Comments: 2
Cybersecurity's 'Broken' Hiring Process
Last Message: 2/21/2018
 |  Comments: 14
Thinking about a Career Move in Cybersecurity?
Last Message: 2/21/2018
 |  Comments: 6
Facebook Aims to Make Security More Social
Last Message: 2/21/2018
 |  Comments: 2
13 Russians Indicted for Massive Operation to Sway US Election
Last Message: 2/20/2018
 |  Comments: 6
Ransomware Will Target Backups: 4 Ways to Protect Your Data
Last Message: 2/19/2018
 |  Comments: 1
FedEx Customer Data Exposed on Unsecured S3 Server
Last Message: 2/18/2018
 |  Comments: 1
Hacked Robots Present a New Insider Threat
Last Message: 2/17/2018
 |  Comments: 22
3 Steps to Reduce Risk in Your Supply Chain
Last Message: 2/17/2018
 |  Comments: 1
Sacramento Bee Databases Hit with Ransomware Attack
Last Message: 2/17/2018
 |  Comments: 3
Windows 10 Critical Vulnerability Reports Grew 64% in 2017
Last Message: 2/16/2018
 |  Comments: 1
Air Force Awards $12,500 for One Bug
Last Message: 2/16/2018
 |  Comments: 1
DoubleLocker Delivers Unique Two-Punch Hit to Android
Last Message: 2/16/2018
 |  Comments: 1
7 Ways to Maximize Your Security Dollars
Last Message: 2/15/2018
 |  Comments: 1
Hackers' Typo Foils Their $1 Billion Wire Transfer Heist
Last Message: 2/15/2018
 |  Comments: 6
AutoSploit: Mass Exploitation Just Got a Lot Easier
Last Message: 2/15/2018
 |  Comments: 5
Security Worries? Let Policies Automate the Right Thing
Last Message: 2/14/2018
 |  Comments: 7
As Primaries Loom, Election Security Efforts Behind Schedule
Last Message: 2/14/2018
 |  Comments: 1
Security vs. Speed: The Risk of Rushing to the Cloud
Last Message: 2/14/2018
 |  Comments: 6
One in Three SOC Analysts Now Job-Hunting
Last Message: 2/13/2018
 |  Comments: 1
The Problem with Data
Last Message: 2/11/2018
 |  Comments: 1
Businesses Fear Brand Damage More Than Security Breaches
Last Message: 2/11/2018
 |  Comments: 6
Tennessee Hospital Hit With Cryptocurrency Mining Malware
Last Message: 2/8/2018
 |  Comments: 2
One Identity Acquires Balabit
Last Message: 2/7/2018
 |  Comments: 1
Meet Chronicle: Alphabet's New Cybersecurity Business
Last Message: 2/7/2018
 |  Comments: 1
APIs Pose 'Mushrooming' Security Risk
Last Message: 2/7/2018
 |  Comments: 1
DHS Discovers Privacy Incident Involving Former Employee
Last Message: 2/7/2018
 |  Comments: 2
A CISO's View of Mobile Security Strategy, With Stacey Halota
Last Message: 2/7/2018
 |  Comments: 1
Page 1 / 2   >   >>


COVID-19: Latest Security News & Commentary
Dark Reading Staff 7/2/2020
Ripple20 Threatens Increasingly Connected Medical Devices
Kelly Sheridan, Staff Editor, Dark Reading,  6/30/2020
DDoS Attacks Jump 542% from Q4 2019 to Q1 2020
Dark Reading Staff 6/30/2020
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
How Cybersecurity Incident Response Programs Work (and Why Some Don't)
This Tech Digest takes a look at the vital role cybersecurity incident response (IR) plays in managing cyber-risk within organizations. Download the Tech Digest today to find out how well-planned IR programs can detect intrusions, contain breaches, and help an organization restore normal operations.
Flash Poll
The Threat from the Internetand What Your Organization Can Do About It
The Threat from the Internetand What Your Organization Can Do About It
This report describes some of the latest attacks and threats emanating from the Internet, as well as advice and tips on how your organization can mitigate those threats before they affect your business. Download it today!
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2020-9498
PUBLISHED: 2020-07-02
Apache Guacamole 1.1.0 and older may mishandle pointers involved inprocessing data received via RDP static virtual channels. If a userconnects to a malicious or compromised RDP server, a series ofspecially-crafted PDUs could result in memory corruption, possiblyallowing arbitrary code to be executed...
CVE-2020-3282
PUBLISHED: 2020-07-02
A vulnerability in the web-based management interface of Cisco Unified Communications Manager, Cisco Unified Communications Manager Session Management Edition, Cisco Unified Communications Manager IM & Presence Service, and Cisco Unity Connection could allow an unauthenticated, remote attack...
CVE-2020-5909
PUBLISHED: 2020-07-02
In versions 3.0.0-3.5.0, 2.0.0-2.9.0, and 1.0.1, when users run the command displayed in NGINX Controller user interface (UI) to fetch the agent installer, the server TLS certificate is not verified.
CVE-2020-5910
PUBLISHED: 2020-07-02
In versions 3.0.0-3.5.0, 2.0.0-2.9.0, and 1.0.1, the Neural Autonomic Transport System (NATS) messaging services in use by the NGINX Controller do not require any form of authentication, so any successful connection would be authorized.
CVE-2020-5911
PUBLISHED: 2020-07-02
In versions 3.0.0-3.5.0, 2.0.0-2.9.0, and 1.0.1, the NGINX Controller installer starts the download of Kubernetes packages from an HTTP URL On Debian/Ubuntu system.