Security
Headlines
HeadlinesLatestCVEs

Tag

#intel

Malware-Free Cyberattacks Are On the Rise; Here's How to Detect Them

Last year, 71% of enterprise breaches were pulled off quietly, with legitimate tools, research shows.

DARKReading
#sql#mac#cisco#git#intel#auth
Chinese Hackers Using MgBot Malware to Target International NGOs in Mainland China

The advanced persistent threat (APT) group referred to as Evasive Panda has been observed targeting an international non-governmental organization (NGO) in Mainland China with malware delivered via update channels of legitimate applications like Tencent QQ. The attack chains are designed to distribute a Windows installer for MgBot malware, ESET security researcher Facundo Muñoz said in a new

CVE-2023-2273: Insight Agent Release Notes

Rapid7 Insight Agent token handler versions 3.2.6 and below, suffer from a Directory Traversal vulnerability whereby unsanitized input from a CLI argument flows into io.ioutil.WriteFile, where it is used as a path. This can result in a Path Traversal vulnerability and allow an attacker to write arbitrary files. This issue is remediated in version 3.3.0 via safe guards that reject inputs that attempt to do path traversal.

CISOs Rethink Data Security With Info-Centric Framework

The Data Security Maturity Model ditches application, network, and device silos when it comes to architecting a data security strategy.

AI Experts: Account for AI/ML Resilience & Risk While There's Still Time

CISOs and cybersecurity teams will play a key role in hardening artificial intelligence and machine learning systems.

NetWitness Partners With Palo Alto Networks, Broadcom to Launch SASE Packet Integrations at RSA Conference 2023

Full packet capture and log monitoring directly on SASE nodes maintains enterprise-grade security, no matter where the data originates.

ReliaQuest Adds AI Capabilities to GreyMatter Intelligent Analysis

Integration of AI can lead to reduction of up to 90% in meantime to resolve security incidents.

'Good' AI Is the Only Path to True Zero-Trust Architecture

Ultimately, AI will protect the enterprise, but it's up to the cybersecurity community to protect "good" AI in order to get there, RSA's Rohit Ghai says.