Long-awaited security fixes for ProxyNotShell and Mark of the Web bypasses are part of a glut of actively exploited zero-day vulnerabilities and other critical flaws that admins need to prioritize in the coming hours.
Follow Dark Reading:
 November 09, 2022
LATEST SECURITY NEWS & COMMENTARY
Microsoft Quashes Bevy of Actively Exploited Zero-Days for November Patch Tuesday
Long-awaited security fixes for ProxyNotShell and Mark of the Web bypasses are part of a glut of actively exploited zero-day vulnerabilities and other critical flaws that admins need to prioritize in the coming hours.
Retail Sector Prepares for Annual Holiday Cybercrime Onslaught
Retailers and hospitality companies expect to battle credential harvesting, phishing, bots, and various malware variants.
Instagram Star Gets 11 Years for Cybercrimes Used to Fund His Lavish Lifestyle
Prolific online scammer and social media influencer sentenced for bank cyber heists, BEC campaigns, money laundering, and more.
Cyber.org Range Offers Cybersecurity Job Paths for K-12 Students
The classroom-based curriculum addresses the cybersecurity workforce gap with free training labs and virtual cyberattack environments to hone the skills of the next generation of talent.
The Shifting Role of the CISO
My year as a venture capital CISO-in-residence.
It's Time to See Cybersecurity Regulation as a Friend, Not a Foe
There's real value in having a better perspective around future regulation and compliance requirements.
MORE NEWS / MORE COMMENTARY
HOT TOPICS
Microsoft Warns on Zero-Day Spike as Nation-State Groups Shift Tactics
The software giant also recorded an increase in attacks on IT services companies as state-backed threat actors have adapted to better enterprise defenses and cast a wider net, Microsoft says.

Beyond the Pen Test: How to Protect Against Sophisticated Cybercriminals
Why are we still doing perfunctory penetration testing when we can be emulating realistic threats and stress-testing the systems most at risk?

7 Hidden Social Media Cyber-Risks for Enterprises
Leaning on social media to amplify your company's brand? Here's a look at the emerging cybersecurity risks that can arise from TikTok, LinkedIn, Twitter, and other platforms.

MORE
EDITORS' CHOICE
SolarWinds Faces Potential SEC Enforcement Act Over Orion Breach
In the nearly two years since the company discovered the cyber intrusion, SolarWinds has fundamentally rearchitected its development environment to make it much harder to compromise, CISO Tim Brown tells Dark Reading.
LATEST FROM THE EDGE

How Does DNS Telemetry Help Detect and Stop Threats?
Administrators and security teams who have lost visibility into their own networks can use DNS telemetry to home in on anomalous traffic.
LATEST FROM DR TECHNOLOGY

Confidence in Data Recovery Tools Low
IT practitioners are developing ransomware response plans, but many of them are not confident in their data resiliency tools.
WEBINARS
  • Analyzing and Correlating Security Operations Data

    Most security operations centers aren't failing because they don't have enough data - they are failing because they have too much data. In this webinar, experts recommend tools and best practices for correlating information from multiple security systems so that ...

  • Understanding Cyber Attackers & Their Methods

    Every day, your enterprise is at risk of being hacked. But just who are the cyber attackers, and what are their motivations? What methods might they use to crack enterprise data, and how do they stage their attacks? Do you ...

View More Dark Reading Webinars >>
WHITE PAPERS
FEATURED REPORTS
View More Dark Reading Reports >>
PRODUCTS & RELEASES
CURRENT ISSUE
DOWNLOAD THIS ISSUE
VIEW BACK ISSUES
Dark Reading Daily
-- Published By Dark Reading
Informa Tech Holdings LLC | Registered in the United States
with number 7418737 | 605 Third Ave., 22nd Floor, New York, New York 10158, USA
To opt-out of any future Dark Reading Daily Newsletter emails, please respond here.
Thoughts about this newsletter? Give us feedback.
Keep This Newsletter Out Of Your SPAM Folder
Don't let future editions go missing. Take a moment to add the newsletter's address to your anti-spam white list:
If you're not sure how to do that, ask your administrator or ISP. Or check your anti-spam utility's documentation.
We take your privacy very seriously. Please review our Privacy Statement.