Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Comments
Women in InfoSec: Building Bonds & New Solutions
Threaded  |  Newest First  |  Oldest First
Marilyn Cohodas
100%
0%
Marilyn Cohodas,
User Rank: Strategist
6/9/2014 | 12:32:57 PM
Great to hear some the pluses of a career in IT secrity
Lysa, Thanks so much for sharing  your personal and positive experiences as a woman in InfoSec. It is refreshing to hear what a cool and supportive community you belong to. I can't wait to hear more during the Dark Reading Radio broadcast this Wednesday at 1 p.m. ET. Here's the link to the show for those of you who want to bookmark it.

And in case you were wondering, men in security IT -- managers and staffers -- are encouraged and welcome to attend. We're eager to hear your thoughts too. 
LysaMyers
50%
50%
LysaMyers,
User Rank: Author
6/10/2014 | 8:28:43 AM
Re: Great to hear some the pluses of a career in IT secrity
Thank you! I'm really looking forward to the show, it promises to be a lot of fun!
Kelly Jackson Higgins
50%
50%
Kelly Jackson Higgins,
User Rank: Strategist
6/10/2014 | 5:43:09 PM
Re: Great to hear some the pluses of a career in IT secrity
This topic is so important. I am eager to tune in tomorrow to hear and join the discussion. 
Marilyn Cohodas
50%
50%
Marilyn Cohodas,
User Rank: Strategist
6/11/2014 | 7:00:41 AM
Re: Great to hear some the pluses of a career in IT secrity
Kelly, our panel (self-included) will be very interested to hear your views as an InfoSec journalist who has covered this industry for many years. Glad to hear that you will be taking part in the live chat following the broadcast.
RetiredUser
50%
50%
RetiredUser,
User Rank: Ninja
6/9/2014 | 6:23:32 PM
Awesome Women, Awesome Future
Lysa, I definitely have a great deal of respect for your work and what you do.  As I raise my daughters, I ignore completely any baggage I might have gathered growing up and encourage them to do everything, from playing with Barbies to hacking on GNU/Linux.  If it makes them happy (within reason of safety and the law, of course), I help them get there.  It's not just about equality, but as any hacker know, it's about new vision and different ways of thinking.  InfoSec gets more and more interesting every year the more diversity appears, from gender to age to race – though, hackers have always been pretty divers, but I think the community as it sits now has never been more vibrant.  Awesome women in the industry – any industry for that matter – equals and awesome future.
LysaMyers
50%
50%
LysaMyers,
User Rank: Author
6/10/2014 | 8:32:18 AM
Re: Awesome Women, Awesome Future
That's great to hear! It's so cool to see more and more folks encouraging women and other tech-minorities to enjoy science and tech from such an early age. I suspect that will be the key to dealing with the shortage of security people. It will be great to see what the future of this industry brings!
Kelly Jackson Higgins
50%
50%
Kelly Jackson Higgins,
User Rank: Strategist
6/11/2014 | 6:08:34 PM
Re: Awesome Women, Awesome Future
@Lysa, it was great to hear your comments and insight today on Dark Reading Radio. 


44% of Security Threats Start in the Cloud
Kelly Sheridan, Staff Editor, Dark Reading,  2/19/2020
Zero-Factor Authentication: Owning Our Data
Nick Selby, Chief Security Officer at Paxos Trust Company,  2/19/2020
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
6 Emerging Cyber Threats That Enterprises Face in 2020
This Tech Digest gives an in-depth look at six emerging cyber threats that enterprises could face in 2020. Download your copy today!
Flash Poll
How Enterprises Are Developing and Maintaining Secure Applications
How Enterprises Are Developing and Maintaining Secure Applications
The concept of application security is well known, but application security testing and remediation processes remain unbalanced. Most organizations are confident in their approach to AppSec, although others seem to have no approach at all. Read this report to find out more.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2020-8818
PUBLISHED: 2020-02-25
An issue was discovered in the CardGate Payments plugin through 2.0.30 for Magento 2. Lack of origin authentication in the IPN callback processing function in Controller/Payment/Callback.php allows an attacker to remotely replace critical plugin settings (merchant ID, secret key, etc.) and therefore...
CVE-2020-8819
PUBLISHED: 2020-02-25
An issue was discovered in the CardGate Payments plugin through 3.1.15 for WooCommerce. Lack of origin authentication in the IPN callback processing function in cardgate/cardgate.php allows an attacker to remotely replace critical plugin settings (merchant ID, secret key, etc.) and therefore bypass ...
CVE-2020-9385
PUBLISHED: 2020-02-25
A NULL Pointer Dereference exists in libzint in Zint 2.7.1 because multiple + characters are mishandled in add_on in upcean.c, when called from eanx in upcean.c during EAN barcode generation.
CVE-2020-9382
PUBLISHED: 2020-02-24
An issue was discovered in the Widgets extension through 1.4.0 for MediaWiki. Improper title sanitization allowed for the execution of any wiki page as a widget (as defined by this extension) via MediaWiki's } parser function.
CVE-2020-1938
PUBLISHED: 2020-02-24
When using the Apache JServ Protocol (AJP), care must be taken when trusting incoming connections to Apache Tomcat. Tomcat treats AJP connections as having higher trust than, for example, a similar HTTP connection. If such connections are available to an attacker, they can be exploited in ways that ...