Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Comments
Congress Clears Path for Information Sharing But Will It Help?
Oldest First  |  Newest First  |  Threaded View
UmeshKTiwari
50%
50%
UmeshKTiwari,
User Rank: Strategist
12/8/2015 | 10:28:12 AM
Congress Clears Path for Information Sharing But Will It Help?
I happen to think this will certainly help and give credence to the organizations that have already been sharing information or understand the value of sharing, want to share, but had been held back for fear of potential liabilities. There are obviously the privacy hawks and those who still believe in keeping their stuff under wraps as a form of protection through obscurity that they can live with. Information sharing organizations (the ISACs) will become more mature, profitable business ventures rather than the largely volunteer service organizations that they are today.

This new legal framework will enable making information sharing a mainstream and acceptable thing over time.
jries921
50%
50%
jries921,
User Rank: Ninja
12/16/2015 | 9:45:51 AM
Re: Congress Clears Path for Information Sharing But Will It Help?
I haven't read the bill, but I think the bigger concern is that it will be used as a means of indemnifying companies who decide to hand over personnel and customer records to the FBI, ostensibly for use in cybersecurity investigations, but actually in criminal ones (so it doesn't have to go through the hassle of getting search warrants).
Joe Stanganelli
50%
50%
Joe Stanganelli,
User Rank: Ninja
12/25/2015 | 11:24:23 AM
Re: Congress Clears Path for Information Sharing But Will It Help?
...not to mention customer information!


Edge-DRsplash-10-edge-articles
I Smell a RAT! New Cybersecurity Threats for the Crypto Industry
David Trepp, Partner, IT Assurance with accounting and advisory firm BPM LLP,  7/9/2021
News
Attacks on Kaseya Servers Led to Ransomware in Less Than 2 Hours
Robert Lemos, Contributing Writer,  7/7/2021
Commentary
It's in the Game (but It Shouldn't Be)
Tal Memran, Cybersecurity Expert, CYE,  7/9/2021
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
Enterprise Cybersecurity Plans in a Post-Pandemic World
Download the Enterprise Cybersecurity Plans in a Post-Pandemic World report to understand how security leaders are maintaining pace with pandemic-related challenges, and where there is room for improvement.
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2021-29800
PUBLISHED: 2021-09-23
IBM Tivoli Netcool/OMNIbus_GUI and IBM Jazz for Service Management 1.1.3.10 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a t...
CVE-2021-36823
PUBLISHED: 2021-09-23
Authenticated Stored Cross-Site Scripting (XSS) vulnerability in WordPress Absolutely Glamorous Custom Admin plugin (versions <= 6.8). Stored XSS possible via unsanitized input fields of the plugin settings, some of the payloads could make the frontend and the backend inaccessible.
CVE-2021-36873
PUBLISHED: 2021-09-23
Authenticated Persistent Cross-Site Scripting (XSS) vulnerability in WordPress iQ Block Country plugin (versions <= 1.2.11). Vulnerable parameter: &blockcountry_blockmessage.
CVE-2021-38863
PUBLISHED: 2021-09-23
IBM Security Verify Bridge 1.0.5.0 stores user credentials in plain clear text which can be read by a locally authenticated user. IBM X-Force ID: 208154.
CVE-2021-38864
PUBLISHED: 2021-09-23
IBM Security Verify Bridge 1.0.5.0 could allow a user to obtain sensitive information due to improper certificate validation. IBM X-Force ID: 208155.