darkreading
PoC Exploit for Zero-Click Vulnerability Made Available to the Masses
4 months 1 week ago
The exploit can be accessed on GitHub and makes it easier for the flaw to be exploited by threat actors.
Dark Reading Staff
Microsoft's Sway Serves as Launchpad for 'Quishing' Campaign
4 months 1 week ago
The attack is a mashup of QR codes and phishing that gets users to click on links to malicious webpages.
Dark Reading Staff
China's Volt Typhoon Exploits Zero-Day in Versa's SD-WAN Director Servers
4 months 1 week ago
So far, the threat actor has compromised at least five organizations using CVE-2024-39717; CISA has added bug to its Known Exploited Vulnerability database.
Jai Vijayan, Contributing Writer
Why Every Business Should Prioritize Confidential Computing
4 months 1 week ago
Confidential computing safeguards data in use, making it a crucial component of cloud security.
Pankaj Mendki
Threat Group 'Bling Libra' Pivots to Extortion for Cloud Attacks
4 months 1 week ago
The ShinyHunters attackers are skipping selling stolen data on hacker forums in favor of using deadline-driven ransom notes for financial gain.
Elizabeth Montalbano, Contributing Writer
Hackers Use Rare Stealth Techniques to Down Asian Military, Gov't Orgs
4 months 1 week ago
A threat actor resembling APT41 performed "AppDomainManager Injection," which is like DLL sideloading, but arguably easier and stealthier.
Nate Nelson, Contributing Writer
Microsoft to Host Windows Security Summit in CrowdStrike Outage Aftermath
4 months 1 week ago
The tech giant seeks to work with endpoint security partners, including CrowdStrike, on how to prevent an outage event of such gravity from happening again.
Dark Reading Staff
Cybercriminals Tap Greasy Opal to Create 750M Fake Microsoft Accounts
4 months 1 week ago
Such cyberattack enablement services let attackers breach security measures, establish new fake accounts, and brute-force servers.
Nathan Eddy, Contributing Writer
Seattle-Tacoma Airport Suffers System Outages Due to Possible Cyberattack
4 months 1 week ago
As the entire Port of Seattle struggles to become fully operational once more, the airport recommends that those who are traveling take extra precautions.
Dark Reading Staff
Aggressively Monitoring for Changes Is a Key Aspect of Cybersecurity
4 months 1 week ago
Employees and management must fully support change detection and file integrity monitoring, allowing a proactive approach with definitive security controls to be implemented against threat actors.
Patrick B Barnett
News Desk 2024: Hacking Microsoft Copilot Is Scary Easy
4 months 1 week ago
As enterprises in the world embrace Microsoft's AI assistant, researcher Michael Bargury warns its security is lacking. Check out his News Desk interview during Black Hat USA.
Becky Bracken, Senior Editor, Dark Reading
India's Critical Infrastructure Suffers Spike in Cyberattacks
4 months 1 week ago
The financial and government sectors have come under increasing attacks in India, with the Reserve Bank of India (RBI) warning banks to double down on cybersecurity.
Robert Lemos, Contributing Writer
Constantly Evolving MoonPeak RAT Linked to North Korean Spying
4 months 2 weeks ago
The malware is a customized variant of the powerful open source XenoRAT information stealing malware often deployed by Kimsuky and other DPRK APTs.
Jai Vijayan, Contributing Writer
Pluralsight Releases Courses to Help Cyber Pros Defend Against Volt Typhoon Hacker Group
4 months 2 weeks ago
NIST Hands Off Post-Quantum Cryptography Work to Cyber Teams
4 months 2 weeks ago
The release of new NIST quantum-proof cryptography standards signals it's time for cybersecurity teams to get serious about preparing for the rise of quantum threats.
Becky Bracken, Senior Editor, Dark Reading
Patch Now: Second SolarWinds Critical Bug in Web Help Desk
4 months 2 weeks ago
The disclosure of CVE-2024-28987 means that, in two weeks, there have been two critical bugs and corresponding patches for SolarWinds' less-often-discussed IT help desk software.
Nate Nelson, Contributing Writer
Liverpool Fans Take English Premier League Title for Ticket Scams
4 months 2 weeks ago
Ticket scams are costing football fans close to £200 a season, on average, according to a report.
Dark Reading Staff
C-Suite Involvement in Cybersecurity Is Little More Than Lip Service
4 months 2 weeks ago
Collaboration with security teams, making cybersecurity a core principle of business strategy, and investing in defenses better position organizations to thwart threats and ensure business continuity.
Raja Mukerji
NFC Traffic Stealer Targets Android Users & Their Banking Info
4 months 2 weeks ago
The malware builds on a near-field communication tool in combination with phishing and social engineering to steal cash.
Jai Vijayan, Contributing Writer
Checked
3 hours 9 minutes ago
Public RSS feed
darkreading feed