darkreading
Privacy Anxiety Pushes Microsoft Recall AI Release Again
1 year 1 month ago
The Recall AI tool will be available to Copilot+ PC subscribers in December, and can be used to record images of every interaction on the device for review later. Critics say this introduces major privacy and security concerns along with useful functionality.
Becky Bracken, Senior Editor, Dark Reading
OWASP Releases AI Security Guidance
1 year 1 month ago
OWASP has released guidance materials addressing how to respond to deepfakes, AI security best practices, and how to secure open source and commercial generative AI applications.
Jennifer Lawinski, Contributing Writer
Chinese APTs Cash In on Years of Edge Device Attacks
1 year 1 month ago
The sophisticated Chinese cyberattacks of today rest on important groundwork laid during the pandemic and before.
Nate Nelson, Contributing Writer
4 Main API Security Risks Organizations Need to Address
1 year 1 month ago
Misconfigurations, weak authentication, and logic flaws are among the main drivers of API security risks at many organizations.
Jai Vijayan, Contributing Writer
Critical Auth Bugs Expose Smart Factory Gear to Cyberattack
1 year 1 month ago
Factory automation software from Mitsubishi Electric and Rockwell Automation could be subject to remote code execution (RCE), denial-of-service (DoS), and more.
Tara Seals, Managing Editor, News, Dark Reading
IT Security Centralization Makes the Use of Industrial Spies More Profitable
1 year 1 month ago
As organizations centralize IT security, the risk of espionage is silently becoming a more profitable threat.
Aybars Tuncdogan, Fulya Acikgoz
Developer Velocity & Security: Can You Get Out of the Way in Time?
1 year 1 month ago
When a CISO can articulate risk in context to the business as a whole, development teams can better prioritize their activities.
Matt Middleton-Leal
The Overlooked Importance of Identifying Riskiest Users
1 year 1 month ago
"See one, teach one, do one" takes a page out of the healthcare playbook to reduce human vulnerabilities where they matter most in cybersecurity.
Garrett Hamilton
Taiwanese Facebook Biz Pages Fall to Infostealer Phishing Campaign
1 year 1 month ago
The threat actors deceive their victims by impersonating the legal teams of companies, well-known Web stores, and manufacturers.
Dark Reading Staff
Cybersecurity Job Market Stagnates, Dissatisfaction Abounds
1 year 1 month ago
The 2024 ISC2 Cybersecurity Workforce Study found that amid a tightening job market and dynamic cyber-threat environment, ongoing staffing and skills shortages are putting organizations at serious risk. Can AI move the needle in defenders' favor?
Tara Seals, Managing Editor, News, Dark Reading
Canada Grapples With 'Second-to-None' PRC-Backed Threat Actors
1 year 1 month ago
Chinese APTs lurked in Canadian government networks for five years — and that's just one among a whole host of threats from Chinese bad actors.
Dark Reading Staff
North Korea's Andariel Pivots to 'Play' Ransomware Games
1 year 1 month ago
The prominent state-sponsored advanced persistent threat (APT), aka Jumpy Pisces, appears to be moving away from its primary cyber-espionage motives and toward wreaking widespread disruption and damage.
Elizabeth Montalbano, Contributing Writer
Noma Launches With Plans to Secure Data, AI Life Cycle
1 year 1 month ago
Application security teams from Fortune 500 companies are already using Noma's life cycle platform, which offers organizations data and AI supply chain security, AI security posture management, and AI threat detection and response.
Dark Reading Staff
The Case Against Abandoning CrowdStrike Post-Outage
1 year 1 month ago
Knee-jerk reactions to major vendor outages could do more harm than good.
Vishaal "V8" Hariprasad
China Says Seabed Sentinels Are Spying, After Trump Taps
1 year 1 month ago
On the heels of a Chinese APT eavesdropping on phone calls made by Trump and Harris campaign staffers, Beijing says foreign nations have mounted an extensive seafaring espionage effort.
Tara Seals, Managing Editor, News, Dark Reading
Regulators Combat Deepfakes With Anti-Fraud Rules
1 year 1 month ago
Despite the absence of laws specifically covering AI-based attacks, regulators can use existing rules around fraud and deceptive business practices.
Stephen Lawton, Contributing Writer
MIND Launches 'Intelligent' DLP Platform
1 year 1 month ago
The company's data loss prevention platform helps customers identify and classify data across SaaS and GenAI applications, endpoints, and email.
Dark Reading Staff
White House Outlines AI's Role in National Security
1 year 1 month ago
A national security memorandum on artificial intelligence tasks various federal agencies with securing the AI supply chain from potential cyberattacks and disseminating timely threat information about them.
Jennifer Lawinski, Contributing Writer
'Midnight Blizzard' Targets Networks With Signed RDP Files
1 year 1 month ago
The Russian-backed group is using a novel access vector to harvest victim data and compromise devices in a large-scale intelligence-gathering operation.
Jai Vijayan, Contributing Writer
Checked
1 hour 33 minutes ago
Public RSS feed
darkreading feed