darkreading
GitLab Warns of Max Severity Authentication Bypass Bug
6 months 4 weeks ago
Company urges organizations using self-hosting GitLab instances to apply updates for CVE-2024-45409 as soon as possible.
Jai Vijayan, Contributing Writer
c/side Lands $6M to Combat Rising Browser Supply Chain Attacks
6 months 4 weeks ago
Vice Society Pivots to Inc Ransomware in Healthcare Attack
6 months 4 weeks ago
Inc ransomware — one of the most popular among cybercriminals today — meets healthcare, the industry sector most targeted by RaaS.
Nate Nelson, Contributing Writer
Concerns Over Supply Chain Attacks on US Seaports Grow
6 months 4 weeks ago
US ports rely on cranes manufactured by a Chinese state-owned company, many with unmonitored cellular connections, causing cybersecurity concerns.
Robert Lemos, Contributing Writer
1 PoC Exploit for Critical RCE Flaw, but 2 Patches From Veeam
6 months 4 weeks ago
The first patch lets threat actors with low-level credentials still exploit the vulnerability, while the second fully resolves the flaw.
Dark Reading Staff
FBI Leads Takedown of Chinese Botnet Impacting 200K Devices
6 months 4 weeks ago
Once a user's device is infected as part of an ongoing Flax Typhoon APT campaign, the malware connects it to a botnet called Raptor Train, initiating malicious activity.
Dark Reading Staff
An AI-Driven Approach to Risk-Scoring Systems in Cybersecurity
6 months 4 weeks ago
By enhancing threat detection, enabling real-time risk assessment, and providing predictive insights, AI is empowering organizations to build more robust defenses against cyber threats.
Venkat Gopalakrishnan
Coalition for Secure AI Promotes Safe, Ethical AI Development
6 months 4 weeks ago
The Coalition for Secure AI (CoSAI) has expanded its roster of members with the addition of threat intelligence management, collaboration, and response orchestration vendor Cyware.
Jennifer Lawinski, Contributing Writer
Security Firm's North Korean Hacker Hire Not an Isolated Incident
6 months 4 weeks ago
What happened to KnowBe4 also has happened to many other organizations, and it's still a risk for companies of all sizes due to a sophisticated network of government-sponsored fake employees.
Elizabeth Montalbano, Contributing Writer
Phishing Espionage Attack Targets US-Taiwan Defense Conference
6 months 4 weeks ago
Hackers sent a convincing lure document, but after 20 years of similar attacks, the target organization was well prepared.
Nate Nelson, Contributing Writer
Contractor Software Targeted via Microsoft SQL Server Loophole
6 months 4 weeks ago
By accessing the MSSQL, threat actors gain admin-level access to the application, allowing them to automate their attacks.
Dark Reading Staff
Packed With Features, 'SambaSpy' RAT Delivers Hefty Punch
6 months 4 weeks ago
Thought to be Brazilian in origin, the remote access Trojan is the "perfect tool for a 21st-century James Bond."
Jai Vijayan, Contributing Writer
QR Phishing Scams Gain Motorized Momentum in UK
6 months 4 weeks ago
Criminal actors are finding their niche in utilizing QR phishing codes, otherwise known as "quishing," to victimize unsuspecting tourists in Europe and beyond.
Kristina Beek, Associate Editor, Dark Reading
Ready to Rumble: US Women's Cyber Team Preps for Global CTF Contest
6 months 4 weeks ago
The 12-member group will compete at the first all-women's capture-the-flag competition this November at the Kunoichi Cyber Games in Tokyo.
Jennifer Lawinski, Contributing Writer
FCC: AT&T Didn't Adequately Protect Customers' Cloud Data
6 months 4 weeks ago
Regulators fine AT&T $13 million for failing to protect customer information held by a third-party vendor, and extend consumer data protections to the cloud.
Dark Reading Staff
Thousands of ServiceNow KB Instances Expose Sensitive Corporate Data
6 months 4 weeks ago
Despite security updates to protect data, 45% of total enterprise instances of the cloud-based IT management platform leaked PII, internal system details, and active credentials over the past year.
Elizabeth Montalbano, Contributing Writer
How Shifts in Cyber Insurance Are Affecting the Security Landscape
6 months 4 weeks ago
Ultimately, the goal of businesses and cyber insurers alike is to build more resilient IT environments to avoid cyberattacks and the ransom, downtime, and reputation hit that come along with them.
David Bennett
Infostealers: An Early Warning for Ransomware Attacks
6 months 4 weeks ago
Can cyber defenders use the presence of infostealers as a canary in the coal mine to preempt ransomware attacks?
Nate Nelson, Contributing Writer
As Geopolitical Tensions Mount, Iran's Cyber Operations Grow
6 months 4 weeks ago
Increasing attacks by the OilRig/APT34 group linked to Iran's Ministry of Intelligence and Security show that the nation's capabilities are growing, and targeting regional allies and enemies alike.
Robert Lemos, Contributing Writer
Checked
3 hours 16 minutes ago
Public RSS feed
darkreading feed