Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Careers & People

News & Commentary
Dark Reading to Upgrade Site Design, Performance
Tim Wilson, Editor in Chief, Dark Reading, Commentary
Improvements will make site content easier to navigate, faster, and more functional.
By Tim Wilson, Editor in Chief, Dark Reading , 4/13/2021
Comment0 comments  |  Read  |  Post a Comment
Biden Nominates Former NSA Officials for Top Cybersecurity Roles
Kelly Sheridan, Staff Editor, Dark ReadingNews
President Biden has nominated Jen Easterly as the new director of CISA and is expected to nominate Chris Inglis as the first national cyber director.
By Kelly Sheridan Staff Editor, Dark Reading, 4/12/2021
Comment0 comments  |  Read  |  Post a Comment
Women Are Facing an Economic Crisis & the Cybersecurity Industry Can Help
Sabrina Castiglione, Chief Financial Officer & Acting Head of TalentCommentary
Investing in women's cybersecurity careers can bring enormous benefits and help undo some of the significant economic damage wrought by the pandemic.
By Sabrina Castiglione Chief Financial Officer & Acting Head of Talent, 4/9/2021
Comment0 comments  |  Read  |  Post a Comment
Handcuffs Over AI: Solving Security Challenges With Law Enforcement
Charles Herring, CTO and Co-Founder, WitFooCommentary
We've tried everything else ... now it's time to make the prospect of getting caught -- and punished -- a real deterrent to cybercrime.
By Charles Herring CTO and Co-Founder, WitFoo, 4/8/2021
Comment4 comments  |  Read  |  Post a Comment
Cartoon Caption Winner: Something Seems Afoul
John Klossner, CartoonistCommentary
And the winner of Dark Readings's March cartoon caption contest is ...
By John Klossner Cartoonist, 4/7/2021
Comment0 comments  |  Read  |  Post a Comment
US Tech Dominance Rides on Securing Intellectual Property
Joe Payne, President and CEO at Code42Commentary
A recent, mostly overlooked pardon points to a big problem in the US tech industry: Intellectual property offers a lucrative golden ticket for insiders.
By Joe Payne President and CEO at Code42, 4/2/2021
Comment0 comments  |  Read  |  Post a Comment
Solving the Leadership Buy-In Impasse With Data
Richard Amburgey, Chief Security Officer (CSO), Bureau of Labor StatisticsCommentary
Justify your requirements with real numbers to get support for security investments.
By Richard Amburgey Chief Security Officer (CSO), Bureau of Labor Statistics, 4/1/2021
Comment0 comments  |  Read  |  Post a Comment
Advice From Security Experts: How to Approach Security in the New Normal
Dan Dinnar, CEO, Source DefenseCommentary
Here are the biggest lessons they've learned after a year of work from home, and how they advise their counterparts at organizations to proceed as a result of those lessons.
By Dan Dinnar CEO, Source Defense, 3/31/2021
Comment0 comments  |  Read  |  Post a Comment
Data Bias in Machine Learning: Implications for Social Justice
Christelle Kamaliza & Suzannah Hicks, Market Research Specialist / Data Scientist & Strategist, IAPPCommentary
Take historically biased data, then add AI and ML to compound and exacerbate the problem.
By Christelle Kamaliza & Suzannah Hicks Market Research Specialist / Data Scientist & Strategist, IAPP, 3/26/2021
Comment0 comments  |  Read  |  Post a Comment
Security Operations in the World We Live in Now
Amos Stern, CEO & Co-Founder, SiemplifyCommentary
Despite the challenges of remote work, security operations teams can position themselves well for the future.
By Amos Stern CEO & Co-Founder, Siemplify, 3/25/2021
Comment0 comments  |  Read  |  Post a Comment
The CIO's Shifting Role: Improving Security With Shared Responsibility
Keith Neilson, Technical Evangelist for CloudSphereCommentary
CIOs must create a culture centered around cybersecurity that is easily visible and manageable.
By Keith Neilson Technical Evangelist for CloudSphere, 3/25/2021
Comment0 comments  |  Read  |  Post a Comment
CSA & ISACA Team Up on Cloud Auditing Certificate
Kelly Sheridan, Staff Editor, Dark ReadingNews
The Certificate of Cloud Auditing Knowledge aims to fill a gap in the market for cloud IT auditing as more organizations work in cloud environments.
By Kelly Sheridan Staff Editor, Dark Reading, 3/22/2021
Comment0 comments  |  Read  |  Post a Comment
Qualys CEO Courtot Departs for Health Reasons
Dark Reading Staff, Quick Hits
The well-known security industry entrepreneur initially took a leave of absence in February.
By Dark Reading Staff , 3/22/2021
Comment0 comments  |  Read  |  Post a Comment
Women's History Month: Making Mentorship Meaningful
Sherry Lowe, CMO at ExabeamCommentary
This month is a perfect opportunity for us to take a step back and think about what role we want to play as women in the technology sector.
By Sherry Lowe CMO at Exabeam, 3/18/2021
Comment0 comments  |  Read  |  Post a Comment
Software Development Security Firm Argon Announces Launch
Dark Reading Staff, Quick Hits
Check Point founder Shlomo Kramer is one of the firm's investors.
By Dark Reading Staff , 3/16/2021
Comment0 comments  |  Read  |  Post a Comment
Actionable Tips for Engaging the Board on Cybersecurity
Virginia Gambale, Board Member of JetBlue and Nutanix, founding member of AttackIQ Informed Defenders CouncilCommentary
Up your game with your company's board of directors to help them understand your cybersecurity priorities.
By Virginia Gambale Board Member of JetBlue and Nutanix, founding member of AttackIQ Informed Defenders Council, 3/11/2021
Comment0 comments  |  Read  |  Post a Comment
KnowBe4 Buys Competitor MediaPRO
Dark Reading Staff, Quick Hits
Known for its phishing simulation platform, KnowBe4 says deal will help it expand in privacy and compliance training market.
By Dark Reading Staff , 3/8/2021
Comment0 comments  |  Read  |  Post a Comment
John McAfee Charged in 'Pump & Dump' Cryptocurrency Scheme
Dark Reading Staff, Quick Hits
Justice officials claim antivirus founder and associate fraudulently promoted altcoins via Twitter.
By Dark Reading Staff , 3/4/2021
Comment0 comments  |  Read  |  Post a Comment
Design, Security, Tech Is the New Stack You Should Be Building
Sathish Muthukrishnan, Chief Information, Data and Digital Officer, AllyCommentary
Instead of different departments managing information systems, Ally Financial has combined data, digitization, security, and design into a single "stack" of human resources.
By Sathish Muthukrishnan Chief Information, Data and Digital Officer, Ally, 3/3/2021
Comment0 comments  |  Read  |  Post a Comment
Building a Next-Generation SOC Starts With Holistic Operations
Moti Gindi, Corporate Vice President, Microsoft Defender Advanced Threat ProtectionCommentary
The proper template for a modernized SOC team is one that operates seamlessly across domains with a singular, end-to-end view.
By Moti Gindi Corporate Vice President, Microsoft Defender Advanced Threat Protection, 3/1/2021
Comment0 comments  |  Read  |  Post a Comment
More Stories
Current Conversations
More Conversations
News
Inside the Ransomware Campaigns Targeting Exchange Servers
Kelly Sheridan, Staff Editor, Dark Reading,  4/2/2021
Commentary
Beyond MITRE ATT&CK: The Case for a New Cyber Kill Chain
Rik Turner, Principal Analyst, Infrastructure Solutions, Omdia,  3/30/2021
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
2021 Top Enterprise IT Trends
We've identified the key trends that are poised to impact the IT landscape in 2021. Find out why they're important and how they will affect you today!
Flash Poll
How Enterprises are Developing Secure Applications
How Enterprises are Developing Secure Applications
Recent breaches of third-party apps are driving many organizations to think harder about the security of their off-the-shelf software as they continue to move left in secure software development practices.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2020-7270
PUBLISHED: 2021-04-15
Exposure of Sensitive Information in the web interface in McAfee Advanced Threat Defense (ATD) prior to 4.12.2 allows remote authenticated users to view sensitive unencrypted information via a carefully crafted HTTP request parameter. The risk is partially mitigated if your ATD instances are deploye...
CVE-2020-7308
PUBLISHED: 2021-04-15
Cleartext Transmission of Sensitive Information between McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2021 Update and McAfee Global Threat Intelligence (GTI) servers using DNS allows a remote attacker to view the requests from ENS and responses from GTI over DNS. By gaining con...
CVE-2021-23884
PUBLISHED: 2021-04-15
Cleartext Transmission of Sensitive Information vulnerability in the ePO Extension of McAfee Content Security Reporter (CSR) prior to 2.8.0 allows an ePO administrator to view the unencrypted password of the McAfee Web Gateway (MWG) or the password of the McAfee Web Gateway Cloud Server (MWGCS) read...
CVE-2021-23886
PUBLISHED: 2021-04-15
Denial of Service vulnerability in McAfee Data Loss Prevention (DLP) Endpoint for Windows prior to 11.6.100 allows a local, low privileged, attacker to cause a BSoD through suspending a process, modifying the processes memory and restarting it. This is triggered by the hdlphook driver reading invali...
CVE-2021-23887
PUBLISHED: 2021-04-15
Privilege Escalation vulnerability in McAfee Data Loss Prevention (DLP) Endpoint for Windows prior to 11.6.100 allows a local, low privileged, attacker to write to arbitrary controlled kernel addresses. This is achieved by launching applications, suspending them, modifying the memory and restarting ...