Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Content by Mathew

Mathew
Member Since: March 27, 2014
Apprentice
Posts: 6

Most Recently Posted

100 items
Comment: Re: AIM? - Mathew - 5/1/2014
Comment: Re: Who knew? - Mathew - 3/18/2014
Comment: Re: Zero Trust - Mathew - 3/12/2014
Comment: Re: Numbers - Mathew - 3/12/2014
Comment: Re: Rotten in Denmark - Mathew - 3/6/2014
Comment: Re: Why Bell Sports? - Mathew - 1/24/2014
Comment: Re: Why DIT - Mathew - 1/24/2014
Comment: Re: Burned - Mathew - 1/23/2014
Comment: Re: What OS? - Mathew - 1/23/2014
Comment: Re: Credit monitoring - Mathew - 1/23/2014
Comment: Re: PIN numbers - Mathew - 1/23/2014
Comment: Re: Another reason... - Mathew - 1/15/2014
Comment: Re: Chips ahoy - Mathew - 1/14/2014
Comment: Re: Misinformed - Mathew - 12/19/2013
Comment: Re: Guilty? - Mathew - 12/17/2013
Comment: Re: Good news/bad news - Mathew - 12/6/2013
Comment: Re: website logins - Mathew - 12/6/2013
Comment: Re: even when disable - Mathew - 12/2/2013
Comment: Re: MISCONCEPTION - Mathew - 12/2/2013
Comment: Re: Rare glimpse - Mathew - 11/27/2013
Comment: Re: Security backfires - Mathew - 11/22/2013
Comment: Re: Nowhere to Hide - Mathew - 11/20/2013
Comment: Re: Nowhere to Hide - Mathew - 11/20/2013
Comment: Re: How was he caught? - Mathew - 11/19/2013
Comment: re: Forget Captcha, Try Inkblots - 10/22/2013
Comment: re: 10 Top Password Managers - 8/9/2013


Edge-DRsplash-10-edge-articles
I Smell a RAT! New Cybersecurity Threats for the Crypto Industry
David Trepp, Partner, IT Assurance with accounting and advisory firm BPM LLP,  7/9/2021
News
Attacks on Kaseya Servers Led to Ransomware in Less Than 2 Hours
Robert Lemos, Contributing Writer,  7/7/2021
Commentary
It's in the Game (but It Shouldn't Be)
Tal Memran, Cybersecurity Expert, CYE,  7/9/2021
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
Enterprise Cybersecurity Plans in a Post-Pandemic World
Download the Enterprise Cybersecurity Plans in a Post-Pandemic World report to understand how security leaders are maintaining pace with pandemic-related challenges, and where there is room for improvement.
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2021-3830
PUBLISHED: 2021-09-26
btcpayserver is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-21742
PUBLISHED: 2021-09-25
There is an information leak vulnerability in the message service app of a ZTE mobile phone. Due to improper parameter settings, attackers could use this vulnerability to obtain some sensitive information of users by accessing specific pages.
CVE-2020-20508
PUBLISHED: 2021-09-24
Shopkit v2.7 contains a reflective cross-site scripting (XSS) vulnerability in the /account/register component, which allows attackers to hijack user credentials via a crafted payload in the E-Mail text field.
CVE-2020-20514
PUBLISHED: 2021-09-24
A Cross-Site Request Forgery (CSRF) in Maccms v10 via admin.php/admin/admin/del/ids/<id>.html allows authenticated attackers to delete all users.
CVE-2016-6555
PUBLISHED: 2021-09-24
OpenNMS version 18.0.1 and prior are vulnerable to a stored XSS issue due to insufficient filtering of SNMP trap supplied data. By creating a malicious SNMP trap, an attacker can store an XSS payload which will trigger when a user of the web UI views the events list page. This issue was fixed in ver...