Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Comments
Pragmatic Security: 20 Signs You Are 'Boiling the Ocean'
Newest First  |  Oldest First  |  Threaded View
Page 1 / 2   >   >>
josh@idrra.com
50%
50%
[email protected],
User Rank: Apprentice
3/14/2018 | 3:21:44 PM
Re: Content stagnation
Thank you Daniel - glad the piece resonated with you.
DonT183
50%
50%
DonT183,
User Rank: Black Belt
3/14/2018 | 2:58:53 PM
Resolving the impasse might be less fun
I would be glad to help you collect solutions to the impasse, but documenting the problem might be more fun.
DonT183
50%
50%
DonT183,
User Rank: Black Belt
3/14/2018 | 2:57:11 PM
Solving the impasse
I would be very glad to help you collect solutions to the impasse.  True, feeling hopeless and complaining is more fun that solving it.

 

Don
cybersecurity07
50%
50%
cybersecurity07,
User Rank: Apprentice
3/12/2018 | 7:27:46 AM
Is This Beginning of War in Cyber Space ?


Indian Cyber Army In Talk With News Line on Cyber Space War One click of a hacker can easily undo years of handwork of any organisation, without the need to cross the border. Stealing confidential information, intellectual property and financial data is extremely harmful and paralyses the country's economy. The point to ponder upon is: What if the Indian government supports these patriotic cyber security personnel to provide Information security awareness to contribute to protect the national cyber infrastructure without any monetary benefit?

READ NEWS 
josh@idrra.com
50%
50%
[email protected],
User Rank: Apprentice
3/11/2018 | 6:47:07 AM
Re: Great Article
Thank you Menny.
josh@idrra.com
50%
50%
[email protected],
User Rank: Apprentice
3/11/2018 | 6:46:22 AM
Re: Great article
Best of luck with the situation.
josh@idrra.com
50%
50%
[email protected],
User Rank: Apprentice
3/11/2018 | 6:44:36 AM
Re: Clear and consise
Thank you - very much appreciate your comment.
daniel.smallwood
50%
50%
daniel.smallwood,
User Rank: Author
3/9/2018 | 5:14:31 PM
Content stagnation
Great article, many of these 'signs' resonated with me.  In paticular: Stagnant on content development

In my prior SOC roles I like to think of creating 'Security Context' type content.  This would be content that didn't report to be an alert, but instead help support an investigation.  (Low severity events)

Great stuff!  Thanks Josh!
smith2128
50%
50%
smith2128,
User Rank: Author
3/8/2018 | 10:44:42 PM
Clear and consise
What a great summary.  The facts are clear and consise and hopefully many will take note and action!
KennethD292
50%
50%
KennethD292,
User Rank: Strategist
3/8/2018 | 1:47:19 PM
Great article
Thatnks for describing perfectly the situation I am stepping in to.
Page 1 / 2   >   >>


Edge-DRsplash-10-edge-articles
I Smell a RAT! New Cybersecurity Threats for the Crypto Industry
David Trepp, Partner, IT Assurance with accounting and advisory firm BPM LLP,  7/9/2021
News
Attacks on Kaseya Servers Led to Ransomware in Less Than 2 Hours
Robert Lemos, Contributing Writer,  7/7/2021
Commentary
It's in the Game (but It Shouldn't Be)
Tal Memran, Cybersecurity Expert, CYE,  7/9/2021
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
Enterprise Cybersecurity Plans in a Post-Pandemic World
Download the Enterprise Cybersecurity Plans in a Post-Pandemic World report to understand how security leaders are maintaining pace with pandemic-related challenges, and where there is room for improvement.
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2021-41393
PUBLISHED: 2021-09-18
Teleport before 4.4.11, 5.x before 5.2.4, 6.x before 6.2.12, and 7.x before 7.1.1 allows forgery of SSH host certificates in some situations.
CVE-2021-41394
PUBLISHED: 2021-09-18
Teleport before 4.4.11, 5.x before 5.2.4, 6.x before 6.2.12, and 7.x before 7.1.1 allows alteration of build artifacts in some situations.
CVE-2021-41395
PUBLISHED: 2021-09-18
Teleport before 6.2.12 and 7.x before 7.1.1 allows attackers to control a database connection string, in some situations, via a crafted database name or username.
CVE-2021-3806
PUBLISHED: 2021-09-18
A path traversal vulnerability on Pardus Software Center's "extractArchive" function could allow anyone on the same network to do a man-in-the-middle and write files on the system.
CVE-2021-41392
PUBLISHED: 2021-09-17
static/main-preload.js in Boost Note through 0.22.0 allows remote command execution. A remote attacker may send a crafted IPC message to the exposed vulnerable ipcRenderer IPC interface, which invokes the dangerous openExternal Electron API.