Security
Headlines
HeadlinesLatestCVEs

Source

DARKReading

SquirrelWaffle Leverages Malspam to Deliver Qakbot, Cobalt Strike

Threat is spreading widely via spam campaigns, infecting systems with a new malware loader.

DARKReading
#vulnerability
SolarWinds Vulnerability Exploited in First Stage of Clop Ransomware Attacks

Russian cybercrime group known as T505 is targeting SolarWinds Server-U systems that haven't been patched for a remote code execution vulnerability fixed this summer.

Defining the Hierarchy of Value in Cyber Intelligence

One size won't fit all as we try to reconcile the need to demonstrate expertise and value with keeping clients and researchers safe.

CISA and State and Local Partners Test Emergency Response Plans at Chevron Salt Lake Refinery

The exercise included several objectives related to response procedures at the refinery, including evacuation and shelter-in-place decision-making; roles and responsibilities during investigations; communication with first responders; and public messaging before and following an incident.

4 Tips to Secure the OT Cybersecurity Budget You Require

OT security engineers and personnel should approach senior management with an emphasis on risk reduction benefits and with a concrete plan to secure budget and funding before it's too late.

Securing the Public: Who Should Take Charge?

International policy expert Marietke Schaake explores the intricacies of protecting the public as governments depend on private companies to build and secure digital infrastructure.

Researcher Details Vulnerabilities Found in AWS API Gateway

AWS fixed the security flaws that left the API service at risk of so-called HTTP header-smuggling attacks, says the researcher who discovered them.

Dark Reading Video News Desk Comes to Black Hat Europe

While attendees join Black Hat Europe 2021 virtually and live in London, we bring you prerecorded interviews from remote offices around the world.

Microsoft Fixes Exchange Server Zero-Day

November security update contains patches for 55 bugs — including six zero-days across various products.

Are You Planning for the Quantum, Transhumanist Threat?

Breaking encryption in a day and hacking without visible devices are two threats that could become a reality in the next decade and beyond, experts say.