In cybersecurity, user error is the symptom, not the disease. A healthy culture acknowledges and addresses the underlying causes of lapses.
Follow Dark Reading:
 April 14, 2022
LATEST SECURITY NEWS & COMMENTARY
Creating a Security Culture Where People Can Admit Mistakes
In cybersecurity, user error is the symptom, not the disease. A healthy culture acknowledges and addresses the underlying causes of lapses.
Microsoft Leads Operation to Disrupt Zloader Botnet
The banking Trojan-turned-ransomware-distribution tool has been a potent threat since late 2019.
In Appreciation: Mike Murray
Security industry expert who spearheaded healthcare cybersecurity efforts passes away at age 46.
Russian Group Sandworm Foiled in Attempt to Disrupt Ukraine Power Grid
The attack involved use of a new version of Industroyer tool for manipulating industrial control systems.
Mandiant to Use CrowdStrike Technology in Its Incident Response Services
Collaboration between the two firms will help organizations better identify and protect against complexity cyberthreats, chief executives from both companies said.
BlackCat Purveyor Shows Ransomware Operators Have 9 Lives
Members of BlackMatter, and possibly REvil, have likely resurfaced in the new ransomware-as-a-service group ALPHV, whose primary tool is the BlackCat malware.
Scan This: There's Danger in QR Codes
Trendy restaurant tables now feature QR codes that lead to menus, payment apps, and CISO nightmares.
Security Nihilism Is Putting Your Company — and Its Employees — at Risk
Some enterprise security tactics can backfire, pitting IT and security teams against the employees they’re trying to protect.
Identifying a Vulnerability in the SAP Software Supply Chain
Make sure you're using the patch to block this supply chain attack.
Going Passwordless? Here Are 6 Steps to Get Started
High costs and user reluctance have stood in the way of passwordless adoption, but conversion can be simplified if you take it in more gradual steps.
The Blurring Line, and Growing Risk, Between Physical and Digital Supply Chains
Risk increases as the lines between physical and digital supply chains blur and the computing footprint expands.
Microsoft Patches Windows Flaw Under Attack and Reported by NSA
"Go patch your systems before" the exploit spreads more widely, ZDI warns.
MORE NEWS / MORE COMMENTARY
HOT TOPICS
80% of Software Codebases Contain at Least One Vulnerability
Open source code continues its steady takeover of codebases, and organizations have made slight gains in eliminating out-of-date and vulnerable components.

Building a Cybersecurity Mesh Architecture in the Real World
Like zero trust, the cybersecurity mesh re-envisions the perimeter at the identity layer and centers upon unifying disparate security tools into a single, interoperable ecosystem.

MORE
EDITORS' CHOICE

Google Removes Dangerous Banking Malware From Play Store
SharkBot was hidden in apps masquerading as antivirus tools.
LATEST FROM THE EDGE

ByteChek Founder AJ Yawn Brings Discipline to Everything He Does
Security Pro File: The former Army captain, whose security startup is on an upward trajectory, works hard to "make compliance suck less."
LATEST FROM DR TECHNOLOGY

Microsoft Plans Windows Auto-Update Service for Enterprises
Starting in July, the Windows Autopatch service will automatically patch all software bugs, including security updates, for Windows 10/11 Enterprise E3 customers, Microsoft says.
Tech Resources
ACCESS TECH LIBRARY NOW

  • Protecting Industrial Control Systems from Modern Threats

    A 2021 attack on an industrial control system (ICS) at a water treatment plant in a small town in Florida raised eyebrows and surfaced new fears about the risks these kind of systems face. Unfortunately, many ICS systems are working on ...

  • Network Security Approaches for a Multi-Cloud, Hybrid IT World

    Today's enterprise operates across multiple public cloud service provider networks and their corporate, private data centers. How do you enforce security controls consistently when your organization's sensitive information and accounts are scattered across different clouds and on-premise environments? How do ...

MORE WEBINARS
FEATURED REPORTS
  • Rethinking Endpoint Security in a Pandemic and Beyond

    IT security teams are expending the concept of "endpoint security" as companies adjust to a distributed workforce. How much responsibility will enterprise IT take for the security of personal devices such as printers. How will they manage identities across multiple ...

  • How Enterprises Are Securing the Application Environment

    Download this report from Dark Reading to learn more about the measures enterprises have adopted to ensure the security of their internally developed applications and third-party packaged applications.

MORE REPORTS
CURRENT ISSUE
DOWNLOAD THIS ISSUE SUBSCRIBE NOW
BACK ISSUES | MUST READS | TECH DIGEST
PRODUCTS & RELEASES
Dark Reading Weekly
-- Published By Dark Reading
Informa Tech Holdings LLC | Registered in the United States
with number 7418737 | 605 Third Ave., 22nd Floor, New York, New York 10158, USA
To update your profile, change your e-mail address, or unsubscribe, click here.
To opt-out of any future Dark Reading Weekly Newsletter emails, please respond here.
Thoughts about this newsletter? Give us feedback.
Keep This Newsletter Out Of Your SPAM Folder
Don't let future editions go missing. Take a moment to add the newsletter's address to your anti-spam white list:
If you're not sure how to do that, ask your administrator or ISP. Or check your anti-spam utility's documentation.
We take your privacy very seriously. Please review our Privacy Statement.