Security
Headlines
HeadlinesLatestCVEs

Source

DARKReading

Human Detection and Response: A New Approach to Building a Strong Security Culture

Jelle Wieringa analyzes the differences between HDR and security awareness training and how HDR addresses the security layer of human risk management.

DARKReading
#auth
Okta Post-Exploitation Method Exposes User Passwords

Accidentally typing a password in the username field of the platform saves them to audit logs, to which threat actors can gain access and use to compromise enterprise services.

Just 1% of Nonprofit Domains Have Basic DMARC Email Security Protections

DMARC blocks spam and phishing emails sent from spoofed domains, and it's vastly underutilized, a new report says.

Are You Talking to a Carbon, Silicon, or Artificial Identity?

In the triumvirate of identity types, protecting the identity, privacy, and data of carbon-based forms — humans — is key. Safeguards must be in place as AI becomes more interactive.

IoT Startup OP[4] Launches With Firmware Security Platform

Op[4]'s firmware security platform detects, prioritizes, and remediates exploitable vulnerabilities in Internet of Things and embedded systems.

CISA Warns on Unpatched ICS Vulnerabilities Lurking in Critical Infrastructure

The advisory comes the same week as a warning from the EU's ENISA about potential for ransomware attacks on OT systems in the transportation sector.

10 Vulnerability Types to Focus On This Year

A new Tech Insight report examines how the enterprise attack surface is expanding and how organizations must deal with vulnerabilities in emerging technologies.