Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Vulnerabilities / Threats

Dark Reading, Black Hat Partner To Produce Daily Conference Newsletter

Dark Reading newsletter subscribers, conference attendees will receive three days of Black Hat show coverage

From today through Thursday, subscribers to Dark Reading's daily and weekly email newsletters and all Black Hat attendees will receive a bonus newsletter: The Black Hat Daily News, powered by Dark Reading.

Click here for more of Dark Reading's Black Hat articles.

This is the first-ever daily show newsletter to be published jointly by Dark Reading and Black Hat, which are partner organizations under the same parent company, UBM Technology. For three days, Dark Reading and Black Hat will offer the best of news, information, and event coverage from Black Hat USA 2012, which takes place in Las Vegas this week.

The newsletter will offer a cross-section of coverage from this year's Black Hat conference, one of the security industry's premier events and the site of a broad range of vulnerability disclosures and proofs of concept that demonstrate potential cybersecurity threats.

This year's conference features presentations on many new areas of vulnerability, including air-traffic control systems and the smart meters used by local utilities. For a full list of Dark Reading's coverage of the show so far, check out our Black Hat coverage page.

The joint newsletter will deliver our latest coverage of the show -- including new vulnerability and threat data -- directly to the email boxes of Dark Reading newsletter subscribers and Black Hat attendees. If you'd like to receive Dark Reading daily or weekly newsletters, subscribe now.

We hope you'll enjoy the bonus Black Hat Daily News. As always, if you'd prefer not to receive it, you can also choose to opt out.

Welcome to Black Hat week! Whether you're at the show or monitoring it from your office, we'll bring you the latest news and information as it happens. Check our site frequently this week -- there'll be new articles posted all day and all week long.

Tim Wilson is Editor in Chief and co-founder of Dark Reading.com, UBM Tech's online community for information security professionals. He is responsible for managing the site, assigning and editing content, and writing breaking news stories. Wilson has been recognized as one ... View Full Bio

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment: Our Endpoint Protection system is a little outdated... 
Current Issue
The Year in Security: 2019
This Tech Digest provides a wrap up and overview of the year's top cybersecurity news stories. It was a year of new twists on old threats, with fears of another WannaCry-type worm and of a possible botnet army of Wi-Fi routers. But 2019 also underscored the risk of firmware and trusted security tools harboring dangerous holes that cybercriminals and nation-state hackers could readily abuse. Read more.
Flash Poll
Rethinking Enterprise Data Defense
Rethinking Enterprise Data Defense
Frustrated with recurring intrusions and breaches, cybersecurity professionals are questioning some of the industrys conventional wisdom. Heres a look at what theyre thinking about.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2019-16246
PUBLISHED: 2019-12-12
Intesync Solismed 3.3sp1 allows Local File Inclusion (LFI), a different vulnerability than CVE-2019-15931. This leads to unauthenticated code execution.
CVE-2019-17358
PUBLISHED: 2019-12-12
Cacti through 1.2.7 is affected by multiple instances of lib/functions.php unsafe deserialization of user-controlled data to populate arrays. An authenticated attacker could use this to influence object data values and control actions taken by Cacti or potentially cause memory corruption in the PHP ...
CVE-2019-17428
PUBLISHED: 2019-12-12
An issue was discovered in Intesync Solismed 3.3sp1. An flaw in the encryption implementation exists, allowing for all encrypted data stored within the database to be decrypted.
CVE-2019-18345
PUBLISHED: 2019-12-12
A reflected XSS issue was discovered in DAViCal through 1.1.8. It echoes the action parameter without encoding. If a user visits an attacker-supplied link, the attacker can view all data the attacked user can view, as well as perform all actions in the name of the user. If the user is an administrat...
CVE-2019-19198
PUBLISHED: 2019-12-12
The Scoutnet Kalender plugin 1.1.0 for WordPress allows XSS.