Dark Reading Radio

Endpoint Security Transformed
Date / Time: Wednesday, October 21, 2015, 1:00 p.m. New York/10:00 a.m. San Francisco
Click here to register
Sponsored by
Overview:

Antivirus is officially dead as the main security defense for the endpoint: a wave of startups and veteran security firms are moving away from signature-based protection to more proactive and adaptive detection and mitigation that better match the rapidly evolving and AV-evading threats of today. With the endpoint as typically the weakest link that attackers target, modern endpoint security technology is all about focusing on the client as both patient 0 and as a treasure trove of attack forensics intelligence.

Join us for an in-depth discussion of why and how endpoint security is changing dramatically -- on the next episode of Dark Reading Radio, "Endpoint Security Transformed," Wednesday, October 21, 2015, 1:00 p.m. New York (10:00 a.m. San Francisco), hosted by Dark Reading Executive Editor Kelly Jackson Higgins. Our guests include Intel Security/McAfees Edward Metcalf, director of product and solutions, and Ryan Kazanciyan, chief security architect at Tanium. Register now and join us Wednesday, October 21, 2015, 1:00 p.m. ET.



Sponsors: Ciscos Threat-Centric Security provides one of the industrys most comprehensive advanced threat protection portfolios of products and solutions. Ciscos threat-centric and operational approach to security reduces complexity, while providing superior visibility, continuous control, and advanced threat protection across the extended network and the entire attack continuum.
Veterans Find New Roles in Enterprise Cybersecurity
Kelly Sheridan, Staff Editor, Dark Reading,  11/12/2018
Understanding Evil Twin AP Attacks and How to Prevent Them
Ryan Orsi, Director of Product Management for Wi-Fi at WatchGuard Technologies,  11/14/2018
7 Free (or Cheap) Ways to Increase Your Cybersecurity Knowledge
Curtis Franklin Jr., Senior Editor at Dark Reading,  11/15/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
Flash Poll
Online Malware and Threats: A Profile of Today's Security Posture
Online Malware and Threats: A Profile of Today's Security Posture
This report offers insight on how security professionals plan to invest in cybersecurity, and how they are prioritizing their resources. Find out what your peers have planned today!
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2018-19326
PUBLISHED: 2018-11-17
Zyxel VMG1312-B10D devices before 5.13(AAXA.8)C0 allow ../ Directory Traversal, as demonstrated by reading /etc/passwd.
CVE-2018-19274
PUBLISHED: 2018-11-17
Passing an absolute path to a file_exists check in phpBB before 3.2.4 allows Remote Code Execution through Object Injection by employing Phar deserialization when an attacker has access to the Admin Control Panel with founder permissions.
CVE-2018-19324
PUBLISHED: 2018-11-17
kimsQ Rb 2.3.0 allows XSS via the second input field to the /?r=home&mod=mypage&page=info URI.
CVE-2018-15769
PUBLISHED: 2018-11-16
RSA BSAFE Micro Edition Suite versions prior to 4.0.11 (in 4.0.x series) and versions prior to 4.1.6.2 (in 4.1.x series) contain a key management error issue. A malicious TLS server could potentially cause a Denial Of Service (DoS) on TLS clients during the handshake when a very large prime value is...
CVE-2018-18955
PUBLISHED: 2018-11-16
In the Linux kernel 4.15.x through 4.19.x before 4.19.2, map_write() in kernel/user_namespace.c allows privilege escalation because it mishandles nested user namespaces with more than 5 UID or GID ranges. A user who has CAP_SYS_ADMIN in an affected user namespace can bypass access controls on resour...