Source
DARKReading
A Q&A with NCC Group's Viktor Gazdag ahead of a Black Hat USA session on CI/CD pipeline risks reveals a scary, and expanding, campaign vector for software supply chain attacks and RCE.
The computing giant issued a massive Patch Tuesday update, including a pair of remote execution flaws in the Microsoft Support Diagnostic Tool (MSDT) after attackers used one of the vulnerabilities in a zero-day exploit.
The latest startup to enter the space also has a free scanning service to audit the contents of any website.
New SOC Analyst Assessment delivers threat-informed training in a live lab environment to help cybersecurity professionals defend their organizations against the latest adversarial tactics and techniques.
The finding exposes the danger of older, unpatched bugs, which plague at least 4.5 million devices.
Upcoming Black Hat USA presentation will examine the implications of Kerberos weaknesses for security on the local machine.
The success of Domino's Flex IoT project can be attributed in large part to the security best practices it followed.
Initial attacks used damaging wiper malware and targeted infrastructure, but the most enduring impacts will likely be from disinformation, researchers say. At Black Hat USA, SentinelOne's Juan Andres Guerrero-Saade and Tom Hegel will discuss.
Study offers a cyber "state of the industry" analysis from a hacker's perspective to help companies anticipate attacks.
Extends all aspects of the Arbor Sightline solution with unique, real-time multidimensional DDoS and traffic analytics capabilities.