Security
Headlines
HeadlinesLatestCVEs

Source

DARKReading

CREST Defensible Penetration Test Released

CREST provides commercially defensible scoping, delivery, and sign-off recommendations for penetration tests.

DARKReading
#vulnerability#ios#git
DoJ: Foreign Adversaries Breach US Federal Court Records

A Justice Department official testifies to a House committee that the cyberattack is a "significant concern."

Ransomware Hit on European Pipeline & Energy Supplier Encevo Linked to BlackCat

Customers across several European countries are urged to update credentials in the wake of the attack that affected a gas-pipeline operator and power company.

Credential Canaries Create Minefield for Attackers

Canary tokens — also known as honey tokens — force attackers to second-guess their potential good fortune when they come across user and application secrets.

Chromium Browsers Allow Data Exfiltration via Bookmark Syncing

"Bruggling" emerges as a novel technique for pilfering data out from a compromised environment — or for sneaking in malicious code and attack tools.

Name That Edge Toon: Up a Tree

Come up with a clever caption, and our panel of experts will reward the winner with a $25 Amazon gift card.

For Big Tech, Neutrality Is Not an Option — and Never Really Was

Tech companies play a vital role in global communication, which has profound effects on how politics, policies, and human rights issues play out.

AWS Focuses on Identity Access Management at re:Inforce

Identity and access management was front and center at AWS re:inforce this week.

Attackers Have 'Favorite' Vulnerabilities to Exploit

While attackers continue to rely on older, unpatched vulnerabilities, many are jumping on new vulnerabilities as soon as they are disclosed.

ICYMI: Dark Web Happenings Edition With Evil Corp., MSP Targeting & More

Dark Reading's digest of other "don't-miss" stories of the week — including a Microsoft alert connecting disparate cybercrime activity together, and an explosion of Luca Stealer variants after an unusual Dark Web move.