Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Dark Reading Article Boards

Message Boards posted in June 2021
Cartoon Caption Winner: In Tow
Last Message: 6/30/2021
 |  Comments: 1
NordVPN Lists 5 Measures to Supercharge Its Security
Last Message: 6/28/2021
 |  Comments: 1
Name That Toon: Sight Unseen
Last Message: 6/28/2021
 |  Comments: 13
Name That Toon: Sight Unseen
Last Message: 6/28/2021
 |  Comments: 11
Researchers Unearth 167 Fake iOS & Android Trading Apps
Last Message: 6/25/2021
 |  Comments: 1
Attackers Find New Way to Exploit Google Docs for Phishing
Last Message: 6/24/2021
 |  Comments: 1
What the FedEx Logo Taught Me About Cybersecurity
Last Message: 6/21/2021
 |  Comments: 1
How President Biden Can Better Defend the US From Russian Hacks
Last Message: 6/21/2021
 |  Comments: 2
Cybercrime May Be the World's Third-Largest Economy by 2021
Last Message: 6/19/2021
 |  Comments: 2
Ransomware Is Not the Problem
Last Message: 6/10/2021
 |  Comments: 1
Name That Edge Toon: In Tow
Last Message: 6/7/2021
 |  Comments: 7
How Can I Help Remote Workers Secure Their Home Routers?
Last Message: 6/7/2021
 |  Comments: 3
The Makings of a Better Cybersecurity Hire
Last Message: 6/7/2021
 |  Comments: 1
The Colonial Pipeline Attack Is Your Boardroom Wake-Up Call
Last Message: 6/4/2021
 |  Comments: 1
Name That Toon: Road Trip
Last Message: 6/2/2021
 |  Comments: 18
Name That Toon: Road Trip
Last Message: 6/1/2021
 |  Comments: 4


Edge-DRsplash-10-edge-articles
I Smell a RAT! New Cybersecurity Threats for the Crypto Industry
David Trepp, Partner, IT Assurance with accounting and advisory firm BPM LLP,  7/9/2021
News
Attacks on Kaseya Servers Led to Ransomware in Less Than 2 Hours
Robert Lemos, Contributing Writer,  7/7/2021
Commentary
It's in the Game (but It Shouldn't Be)
Tal Memran, Cybersecurity Expert, CYE,  7/9/2021
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
The State of Cybersecurity Incident Response
In this report learn how enterprises are building their incident response teams and processes, how they research potential compromises, how they respond to new breaches, and what tools and processes they use to remediate problems and improve their cyber defenses for the future.
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2021-32790
PUBLISHED: 2021-07-26
Woocommerce is an open source eCommerce plugin for WordPress. An SQL injection vulnerability impacts all WooCommerce sites running the WooCommerce plugin between version 3.3.0 and 3.3.6. Malicious actors (already) having admin access, or API keys to the WooCommerce site can exploit vulnerable endpoi...
CVE-2021-32791
PUBLISHED: 2021-07-26
mod_auth_openidc is an authentication/authorization module for the Apache 2.x HTTP server that functions as an OpenID Connect Relying Party, authenticating users against an OpenID Connect Provider. In mod_auth_openidc before version 2.4.9, the AES GCM encryption in mod_auth_openidc uses a static IV ...
CVE-2021-32792
PUBLISHED: 2021-07-26
mod_auth_openidc is an authentication/authorization module for the Apache 2.x HTTP server that functions as an OpenID Connect Relying Party, authenticating users against an OpenID Connect Provider. In mod_auth_openidc before version 2.4.9, there is an XSS vulnerability in when using `OIDCPreservePos...
CVE-2021-25801
PUBLISHED: 2021-07-26
A buffer overflow vulnerability in the __Parse_indx component of VideoLAN VLC Media Player 3.0.11 allows attackers to cause an out-of-bounds read via a crafted .avi file.
CVE-2021-25802
PUBLISHED: 2021-07-26
A buffer overflow vulnerability in the AVI_ExtractSubtitle component of VideoLAN VLC Media Player 3.0.11 allows attackers to cause an out-of-bounds read via a crafted .avi file.