darkreading
Keeping LLMs on the Rails Poses Design, Engineering Challenges
13 hours 9 minutes ago
Despite adding alignment training, guardrails, and filters, large language models continue to jump their imposed rails and give up secrets, make unfiltered statements, and provide dangerous information.
Robert Lemos, Contributing Writer
Experts Chart Path to Creating Safer Online Spaces for Women
13 hours 40 minutes ago
Gaps in laws, technology, and corporate accountability continue to put women's safety and privacy online at risk.
Joan Goodchild
GitLab's AI Assistant Opened Devs to Code Theft
16 hours 4 minutes ago
Even after a fix was issued, lingering prompt injection risks in GitLab's AI assistant might allow attackers to indirectly deliver developers malware, dirty links, and more.
Nate Nelson, Contributing Writer
Lumma Stealer Takedown Reveals Sprawling Operation
1 day 4 hours ago
The FBI and partners have disrupted "the world's most popular malware," a sleek enterprise with thousands of moving parts, responsible for millions of cyberattacks in every part of the world.
Tara Seals
Ivanti EPMM Exploitation Tied to Previous Zero-Day Attacks
1 day 4 hours ago
Wiz researchers found an opportunistic threat actor has been targeting vulnerable edge devices, including Ivanti VPNs and Palo Alto firewalls.
Rob Wright
Marks & Spencer Projects Cyberattack Costs of $400M
1 day 5 hours ago
The company expects it will continue to struggle with online disruptions until at least July, due to the attack.
Kristina Beek, Associate Editor, Dark Reading
Pandas Galore: Chinese Hackers Boost Attacks in Latin America
1 day 5 hours ago
Vixen Panda, Aquatic Panda — both Beijing-sponsored APTs and financially motivated criminal groups continued to pose the biggest threat to organizations in Central and South America last year, says CrowdStrike.
Jai Vijayan, Contributing Writer
Unimicron, Presto Attacks Mark Industrial Ransomware Surge
1 day 6 hours ago
A number of major industrial organizations suffered ransomware attacks last quarter, such as PCB manufacturer Unimicron, appliance maker Presto, and more — a harbinger of a rapidly developing and diversifying threat landscape.
Alexander Culafi, Senior News Writer, Dark Reading
Coinbase Breach Compromises Nearly 70K Customers' Information
1 day 9 hours ago
Coinbase asserts that this number is only a small fraction of the number of its verified users, though it's still offering a $20 million reward to catch the criminals.
Kristina Beek, Associate Editor, Dark Reading
Unpatched Windows Server Flaw Threatens Active Directory Users
1 day 10 hours ago
Attackers can exploit a vulnerability present in the delegated Managed Service Account (dMSA) feature that fumbles permission handling and is present by default.
Elizabeth Montalbano, Contributing Writer
NIST's 'LEV' Equation to Determine Likelihood a Bug Was Exploited
1 day 10 hours ago
The new equation, introduced by the National Institute of Standards and Technology (NIST), aims to offer a mathematical likelihood index that could be a game-changer for SecOps teams and vulnerability patch prioritization.
Alexander Culafi, Senior News Writer, Dark Reading
Dark Reading Confidential: The Day I Found an APT Group in the Most Unlikely Place
1 day 12 hours ago
Dark Reading Confidential Episode 6: Threat hunters Ismael Valenzuela and Vitor Ventura share stories about the tricks they used to track down advanced persistent threat groups, and the surprises they discovered along the way.
Dark Reading Staff
The Hidden Cybersecurity Risks of M&A
1 day 12 hours ago
Merger and acquisition due diligence typically focuses on financials, legal risks, and operational efficiencies. Cybersecurity is often an afterthought — and that's a problem.
Denny LeCompte
Asia Produces More APT Actors, as Focus Expands Globally
2 days 1 hour ago
China- and North Korea-aligned groups account for more than half of global attacks, and an increasing number of countries look to cyber to balance power in the region.
Robert Lemos, Contributing Writer
Fake Kling AI Malvertisements Lure Victims With False Promises
2 days 4 hours ago
Researchers noted that they found several similar websites, two of which are still operating and require the same kind of behavior on behalf of the victim.
Kristina Beek, Associate Editor, Dark Reading
Virgin Media 02 Vuln Exposes Call Recipient Location
2 days 7 hours ago
A hacker exploiting the security flaw in the mobile provider's network could have potentially located a call recipient with accuracy of up to 100 square meters.
Kristina Beek, Associate Editor, Dark Reading
Tenable Adds Third-Party Connectors to Exposure Management Platform
2 days 8 hours ago
Tenable One now pulls in data from AWS, Microsoft, and competitors to provide a holistic security view of an organization's attack surface.
Jeffrey Schwartz
Regeneron Pledges Privacy Protection in $256M Bid for 23andMe
2 days 9 hours ago
Regeneron's planned acquisition of 23andMe raises significant privacy concerns as experts warn about the lack of comprehensive federal regulations governing the transfer of genetic information.
Arielle Waldman
Bumblebee Malware Takes Flight via Trojanized VMware Utility
2 days 9 hours ago
An employee inadvertently downloaded a malicious version of the legitimate RVTools utility, which launched an investigation into an attempted supply chain attack aimed at delivering the recently revived initial-access loader.
Elizabeth Montalbano, Contributing Writer
Checked
8 hours 3 minutes ago
Public RSS feed
darkreading feed