A variety of initiatives promise more secure applications, but sustained improvements will require that vendors do much better.
Follow Dark Reading:
 December 28, 2022
LATEST SECURITY NEWS & COMMENTARY
Internet AppSec Remains Abysmal & Requires Sustained Action in 2023
A variety of initiatives — such as memory-safe languages and software bills of materials — promise more secure applications, but sustained improvements will require that vendors do much better, researchers agree.
The Threat of Predictive Policing to Data Privacy and Personal Liberty
Inaccurate information from data brokers can damage careers and reputations. It's time for US privacy laws to change how law enforcement and legal agencies obtain and act on data.
Container Verification Bug Allows Malicious Images to Cloud Up Kubernetes
A complete bypass of the Kyverno security mechanism for container image imports allows cyberattackers to completely take over a Kubernetes pod to steal data and inject malware.
'Sextortion,' Business Disruption, and a Massive Attack: What Could Be in Store for 2023
Our growing interconnectedness poses almost as many challenges as it does benefits.
MORE NEWS / MORE COMMENTARY
HOT TOPICS
Security on a Shoestring? Cloud, Consolidation Best Bets for Businesses
With a recession potentially coming, some companies are cutting security teams. But moving more infrastructure to the cloud and reducing the number of vendors through consolidation may be the best ways to prepare.

Inside the Next-Level Fraud Ring Scamming Billions Off Holiday Retailers
"Largest attack of its kind": A potent Southeast Asian e-commerce fraud ring has declared war on US retailers, targeting billions in goods in just the past month and forcing mules into its scheme.

Biden Signs Post-Quantum Cybersecurity Guidelines Into Law
The new law holds the US Office of Budget and Management to a road map for transitioning federal systems to NIST-approved PQC.

MORE
EDITORS' CHOICE
Google: With Cloud Comes APIs & Security Headaches
APIs are key to cloud transformation, but two Google surveys find that cyberattacks targeting them are reaching a tipping point, even as general cloud security issues abound.
LATEST FROM THE EDGE

Why Attackers Target GitHub, and How You Can Secure It
The unfettered collaboration of the GitHub model creates a security headache. Follow these seven principles to help relieve the pain.
LATEST FROM DR TECHNOLOGY

How to Get the Most Out of UEBA
Security teams are considering how to get the most out of user entity behavioral analytics by taking advantage of its strengths and augmenting its limitations.
WEBINARS
View More Dark Reading Webinars >>
WHITE PAPERS
FEATURED REPORTS
View More Dark Reading Reports >>
PRODUCTS & RELEASES
CURRENT ISSUE
DOWNLOAD THIS ISSUE
VIEW BACK ISSUES
Dark Reading Daily
-- Published By Dark Reading
Informa Tech Holdings LLC | Registered in the United States
with number 7418737 | 605 Third Ave., 22nd Floor, New York, New York 10158, USA
To opt-out of any future Dark Reading Daily Newsletter emails, please respond here.
Thoughts about this newsletter? Give us feedback.
Keep This Newsletter Out Of Your SPAM Folder
Don't let future editions go missing. Take a moment to add the newsletter's address to your anti-spam white list:
If you're not sure how to do that, ask your administrator or ISP. Or check your anti-spam utility's documentation.
We take your privacy very seriously. Please review our Privacy Statement.