darkreading
Trump's DoJ Targets Krebs, Revokes SentinelOne Security Clearance
1 month 1 week ago
An executive order is targeting former Trump appointees, including former CISA director Chris Krebs and his current coworkers, in the latest in a series of directives against those who dissented against the president and his associates.
Kristina Beek, Associate Editor, Dark Reading
What Should the US Do About Salt Typhoon?
1 month 1 week ago
Security experts weigh in on the problem Salt Typhoon and its hacking of telecoms poses against the United States, including what the US should do and how defenders can protect themselves.
Alexander Culafi, Senior News Writer, Dark Reading
Open Source Poisoned Patches Infect Local Software
1 month 1 week ago
Malicious packages lurking on open source repositories like npm have become less effective, so cyberattackers are using a new strategy: offering "patches" for locally installed programs.
Nate Nelson, Contributing Writer
Why Data Privacy Isn't the Same as Data Security
1 month 1 week ago
Failing to distinguish between data privacy and data security leaves businesses vulnerable to regulatory scrutiny and the kinds of breaches that erode consumer trust overnight.
Chris Borkenhagen
Threat Actors Use 'Spam Bombing' Technique to Hide Malicious Motives
1 month 1 week ago
Darktrace researchers detailed "spam bombing," a technique in which threat actors bombard targets with spam emails as a pretense for activity like social engineering campaigns.
Alexander Culafi, Senior News Writer, Dark Reading
Google Merges Security Offerings Into a Cohesive Suite
1 month 1 week ago
Google Unified Security brings together threat detection, AI-powered security, secure browser features, and Mandiant services, the company said at its Cloud Next conference.
Agam Shah
Advanced Preparation Was Key to a Secure Paris Olympics
1 month 1 week ago
The security teams associated with the 2024 Olympic Games in Paris focused on in-depth penetration testing, crisis management exercises, and collaboration to defend against potential cyberattacks.
Richard Thurston
US Comptroller Cyber 'Incident' Compromises Org's Emails
1 month 1 week ago
A review of the emails involved in the breach is still ongoing, but what has been discovered is enough for the Treasury Department to label it a "major cyber incident."
Kristina Beek, Associate Editor, Dark Reading
CrushFTP Exploitation Continues Amid Disclosure Dispute
1 month 1 week ago
Attacks on a critical authentication bypass flaw in CrushFTP's file transfer product continue this week after duplicate CVEs sparked confusion.
Rob Wright, Senior News Director, Dark Reading
Tariffs May Prompt Increase in Global Cyberattacks
1 month 1 week ago
Cybersecurity and policy experts worry that if tariffs give way to a global recession, organizations will reduce their spending on cybersecurity.
Robert Lemos, Contributing Writer
Oracle Appears to Admit Breach of 2 'Obsolete' Servers
1 month 1 week ago
The database company said its Oracle Cloud Infrastructure (OCI) was not involved in the breach. And at least one law firm seeking damages is already on the case.
Jai Vijayan, Contributing Writer
China-Linked Hackers Continue Harassing Ethnic Groups With Spyware
1 month 1 week ago
Threat actors are trolling online forums and spreading malicious apps to target Uyghurs, Taiwanese, Tibetans, and other individuals aligned with interests that China sees as a threat to its authority.
Elizabeth Montalbano, Contributing Writer
Using Post-Quantum Planning to Improve Security Hygiene
1 month 1 week ago
With careful planning, the transition to post-quantum cryptography can significantly improve security and risk management for the present and future.
Murali Palanisamy
Microsoft Drops Another Massive Patch Update
1 month 1 week ago
A threat actor has already exploited one of the flaws in a ransomware campaign with victims in the US and other countries.
Jai Vijayan, Contributing Writer
Industry Asks for Clarity on Proposed HIPAA Cybersecurity Rules
1 month 1 week ago
Healthcare and IT security practitioners worry that some of the proposed amendments are not practical for a sector that lacks resources and often uses legacy equipment.
Arielle Waldman
Aurascape Brings Visibility, Security Controls to Manage AI Applications
1 month 1 week ago
The cybersecurity startup has emerged from stealth with an AI-native security platform to automate security policies for AI applications.
Arielle Waldman
UK Orgs Pull Back Digital Projects With Looming Threat of Cyberwarfare
1 month 1 week ago
Artificial intelligence poses a significant concern when it comes to nation-state cyberthreats and AI's ability to supercharge attacks.
Kristina Beek, Associate Editor, Dark Reading
2 Android Zero-Day Bugs Under Active Exploit
1 month 1 week ago
Neither security issue requires user interaction, and one of the vulnerabilities was used to unlock a student activist's device in an attempt to install spyware.
Kristina Beek, Associate Editor, Dark Reading
Dangerous, Windows-Hijacking Neptune RAT Scurries Into Telegram, YouTube
1 month 1 week ago
The malware's creators insist a new open source version of Neptune is for educational use by pen testers, but a raft of sophisticated backdoor and evasion capabilities says otherwise.
Elizabeth Montalbano, Contributing Writer
Checked
9 hours 19 minutes ago
Public RSS feed
darkreading feed