Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Endpoint

2/8/2019
11:15 AM
John Klossner
John Klossner
Cartoon Contest
100%
0%

Cartoon: Connected Car Security

John Klossner has been drawing technology cartoons for more than 15 years. His work regularly appears in Computerworld and Federal Computer Week. His illustrations and cartoons have also been published in The New Yorker, Barron's, and The Wall Street Journal. Web site: ... View Full Bio

Comment  | 
Print  | 
More Insights
Comments
Oldest First  |  Newest First  |  Threaded View
Page 1 / 2   >   >>
Marilyn Cohodas
0%
100%
Marilyn Cohodas,
User Rank: Strategist
2/8/2019 | 11:37:01 AM
New Cartoon! Check it out...
True and funny in a scary way!
PanamaVet
100%
0%
PanamaVet,
User Rank: Strategist
2/11/2019 | 8:39:17 AM
DarkReading
White Hat Job Interview
Ratteau
50%
50%
Ratteau,
User Rank: Strategist
2/13/2019 | 8:27:19 AM
Trust us
We won't blame you if we crash.  Trust us!
acampbell448
100%
0%
acampbell448,
User Rank: Strategist
2/13/2019 | 11:00:35 AM
Don't worry.....
Don't worry - we won't forget that you are back there, just don't create too much drag and slow us down!
Len Sebesta
100%
0%
Len Sebesta,
User Rank: Strategist
2/14/2019 | 12:09:32 PM
Lead, follow, or .....
If I can't lead, shouldn't I at least be in the car ?
Saraquin
100%
0%
Saraquin,
User Rank: Apprentice
2/14/2019 | 8:11:33 PM
Risk
This is not what I meant by Risk Assessment!
PanamaVet
50%
50%
PanamaVet,
User Rank: Strategist
2/15/2019 | 8:58:29 AM
Microsoft Team
NOOB clicked Check For Updates
TheVampireO
100%
0%
TheVampireO,
User Rank: Strategist
2/15/2019 | 3:02:30 PM
Forethought
I know I'm just the intern, but I don't think you put much forethought into security...
REISEN1955
0%
100%
REISEN1955,
User Rank: Ninja
2/20/2019 | 7:57:47 AM
Re: New Cartoon! Check it out...
Dang - he really wants to be serious about websurfing!
jrig1842
50%
50%
jrig1842,
User Rank: Strategist
2/20/2019 | 9:02:48 AM
Security Clearance
It's clear even Security is not sure what to do for self driving cars 
Page 1 / 2   >   >>
Microsoft Patches Wormable RCE Vulns in Remote Desktop Services
Kelly Sheridan, Staff Editor, Dark Reading,  8/13/2019
The Mainframe Is Seeing a Resurgence. Is Security Keeping Pace?
Ray Overby, Co-Founder & President at Key Resources, Inc.,  8/15/2019
GitHub Named in Capital One Breach Lawsuit
Dark Reading Staff 8/14/2019
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Current Issue
7 Threats & Disruptive Forces Changing the Face of Cybersecurity
This Dark Reading Tech Digest gives an in-depth look at the biggest emerging threats and disruptive forces that are changing the face of cybersecurity today.
Flash Poll
The State of IT Operations and Cybersecurity Operations
The State of IT Operations and Cybersecurity Operations
Your enterprise's cyber risk may depend upon the relationship between the IT team and the security team. Heres some insight on what's working and what isn't in the data center.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2019-15237
PUBLISHED: 2019-08-20
Roundcube Webmail through 1.3.9 mishandles Punycode xn-- domain names, leading to homograph attacks.
CVE-2019-15228
PUBLISHED: 2019-08-20
FUEL CMS 1.4.4 has XSS in the Create Blocks section of the Admin console. This could lead to cookie stealing and other malicious actions. This vulnerability can be exploited with an authenticated account but can also impact unauthenticated visitors.
CVE-2019-15229
PUBLISHED: 2019-08-20
FUEL CMS 1.4.4 has CSRF in the blocks/create/ Create Blocks section of the Admin console. This could lead to an attacker tricking the administrator into executing arbitrary code via a specially crafted HTML page.
CVE-2019-15231
PUBLISHED: 2019-08-20
Webmin 1.890, in a default installation, contains a backdoor that allows an unauthenticated attacker to remotely execute commands. This is different from CVE-2019-15107. NOTE: as of 2019-08-19, the vendor reports that "at some point" malicious code was inserted into their build infrastruct...
CVE-2019-15232
PUBLISHED: 2019-08-20
Live555 before 2019.08.16 has a Use-After-Free because GenericMediaServer::createNewClientSessionWithId can generate the same client session ID in succession, which is mishandled by the MPEG1or2 and Matroska file demultiplexors.