Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Comments
Name That Toon: Sight Unseen
Newest First  |  Oldest First  |  Threaded View
Page 1 / 2   >   >>
Meleon42
100%
0%
Meleon42,
User Rank: Strategist
6/28/2021 | 8:16:05 AM
Sure, This'll work
I keep telling them "Security by obsecurity won't work"
Dr. Doog
100%
0%
Dr. Doog,
User Rank: Apprentice
6/21/2021 | 3:18:45 PM
Re: Zero Trust doesn't have to break your budget!
This one is the winner in my book! 
WillieH456
100%
0%
WillieH456,
User Rank: Apprentice
6/21/2021 | 11:12:28 AM
Return to work
Who woulda thought returning to work wearing masks is good for the "passwordless" policy too!
Elezaby
50%
50%
Elezaby,
User Rank: Strategist
6/21/2021 | 4:43:03 AM
Attack simulation
"Ransomeware attack simulation Friday" has proven effective, business continuity is now at its best.
acampbell448
0%
100%
acampbell448,
User Rank: Ninja
6/18/2021 | 10:02:17 AM
No Evil?
Google's new See No Evil policy......
dsenright
67%
33%
dsenright,
User Rank: Apprentice
6/16/2021 | 11:25:50 AM
Zero Trust doesn't have to break your budget!
Zero Trust doesn't have to break your budget!
hayursey
0%
100%
hayursey,
User Rank: Apprentice
6/15/2021 | 6:27:55 PM
Blind
This gives a new meaning to blind leading the blind.
acampbell448
0%
100%
acampbell448,
User Rank: Ninja
6/15/2021 | 4:04:30 PM
Rose Colored AR?
I've heard of Rose Colored glasses but this new AR system is incredible!
EotG
50%
50%
EotG,
User Rank: Apprentice
6/15/2021 | 1:06:34 PM
Cov PII
Who knew face masks could also prevent the PII from spreading
David_W_Y
50%
50%
David_W_Y,
User Rank: Strategist
6/15/2021 | 12:39:33 PM
Privacy Filters
I know the budget is tight, but these privacy filters just don't cut it!
Page 1 / 2   >   >>


Edge-DRsplash-10-edge-articles
I Smell a RAT! New Cybersecurity Threats for the Crypto Industry
David Trepp, Partner, IT Assurance with accounting and advisory firm BPM LLP,  7/9/2021
News
Attacks on Kaseya Servers Led to Ransomware in Less Than 2 Hours
Robert Lemos, Contributing Writer,  7/7/2021
Commentary
It's in the Game (but It Shouldn't Be)
Tal Memran, Cybersecurity Expert, CYE,  7/9/2021
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
Enterprise Cybersecurity Plans in a Post-Pandemic World
Download the Enterprise Cybersecurity Plans in a Post-Pandemic World report to understand how security leaders are maintaining pace with pandemic-related challenges, and where there is room for improvement.
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2021-21742
PUBLISHED: 2021-09-25
There is an information leak vulnerability in the message service app of a ZTE mobile phone. Due to improper parameter settings, attackers could use this vulnerability to obtain some sensitive information of users by accessing specific pages.
CVE-2020-20508
PUBLISHED: 2021-09-24
Shopkit v2.7 contains a reflective cross-site scripting (XSS) vulnerability in the /account/register component, which allows attackers to hijack user credentials via a crafted payload in the E-Mail text field.
CVE-2020-20514
PUBLISHED: 2021-09-24
A Cross-Site Request Forgery (CSRF) in Maccms v10 via admin.php/admin/admin/del/ids/<id>.html allows authenticated attackers to delete all users.
CVE-2016-6555
PUBLISHED: 2021-09-24
OpenNMS version 18.0.1 and prior are vulnerable to a stored XSS issue due to insufficient filtering of SNMP trap supplied data. By creating a malicious SNMP trap, an attacker can store an XSS payload which will trigger when a user of the web UI views the events list page. This issue was fixed in ver...
CVE-2016-6556
PUBLISHED: 2021-09-24
OpenNMS version 18.0.1 and prior are vulnerable to a stored XSS issue due to insufficient filtering of SNMP agent supplied data. By creating a malicious SNMP 'sysName' or 'sysContact' response, an attacker can store an XSS payload which will trigger when a user of the web UI views the data. This iss...