Follow Dark Reading:
 August 24, 2018
LATEST SECURITY NEWS & COMMENTARY
New Apache Struts Vulnerability Leaves Major Websites Exposed
The vulnerability, found in Struts' core functionality, could be more critical than the one involved in last year's Equifax breach.
Lazarus Group Builds its First MacOS Malware
This isn't the first time Lazarus Group has infiltrated a cryptocurrency exchange as the hacking team has found new ways to achieve financial gain.
Turla Threat Group Uses Email PDF Attachments to Control Stealthy Backdoor
The Russian-speaking group's latest tactic is the only known case of malware that's completely controllable via email, researchers at ESET say.
DNC Incident Was a Phishing Exercise
False alarm sent Democratic National Committee into high alert this week amid concerns of a new cyberattack.
The GDPR Ripple Effect
Will we ever see a truly global data security and privacy mandate?
New Mirai Variants Leverage Open Source Project
Aboriginal Linux gives Mirai new cross-platform capabilities - including Android.
Embedding Security into the DevOps Toolchain
Security teams need to let go of the traditional security stack, stop fighting DevOps teams, and instead jump in right beside them.
Wickr Adds New Censorship Circumvention Feature to its Encrypted App
Secure Open Access addresses void created by Google, Amazon decision to disallow domain fronting, company says.
CA Man Arrested for Conspiracy to Launder BEC Earnings
Ochenetchouwe Adegor Ederaine Jr., was involved with an organization engaged with wire fraud and related criminal activity, the DoJ reports.
MORE NEWS & COMMENTARY
HOT TOPICS
Hackers Use Public Cloud Features to Breach, Persist In Business Networks
Attackers are abusing the characteristics of cloud services to launch and hide their activity as they traverse target networks.

It Takes an Average 38 Days to Patch a Vulnerability
Analysis of 316 million-plus security incidents uncovers most common types of real-world attacks taking place within in-production Web apps in the AWS and Azure cloud ecosystems.

7 Serious IoT Vulnerabilities
A growing number of employees have various IoT devices in their homes - where they're also connecting to an enterprise network to do their work. And that means significant threats loom.

MORE
EDITORS' CHOICE

6 Reasons Security Awareness Programs Go Wrong
While plenty of progress has been made on the training front, there's still some work ahead in getting the word out and doing so effectively.
Video from the DR News Desk at BHUSA

AI-Based POC, DeepLocker, Could Conceal Targeted Attacks
IBM research scientist discusses DeepLocker, a stealthy artificial intelligence-enhanced proof-of-concept that won't release any payload until the attacker reaches its ultimate target.
Tech Resources
ACCESS TECH LIBRARY NOW

  • Continuous Security Validation for Banking, Financial Services and Insurance

    View a live demonstration of a cloud-based customizable platform that provides real-time empirical data regarding the effectiveness of enterprise security controls and also reveals the operating systems and applications most often targeted by today's active threats.

  • Want Security in the Cloud? Look to Identity 1st

    All the benefits of the cloud disappear if you can't keep your data and users safe. In a perimeter-less world, it's identity that becomes the heart of security. Join us to discover why modern security starts with identity first and ...

MORE WEBINARS

Partner Perspectives

Get Smart About Network Segmentation & Traffic Routing
Through a combination of intelligent segmentation and traffic routing to tools, you can gain much better visibility into your network. Here's how.

Boosting Security Effectiveness with 'Adjuvants'
How integrating corporate resources like the IT help desk, system administration, quality assurance and HR can breathe new life into your security program.

FEATURED REPORTS
  • The State of IT and Cybersecurity

    IT and security are often viewed as different disciplines - and different departments. Find out what our survey data revealed, read the report today!

  • How Enterprises Are Attacking the IT Security Problem

    Enterprises are spending more of their IT budgets on cybersecurity technology. How do your organization's security plans and strategies compare to what others are doing? Here's an in-depth look.

MORE REPORTS
CURRENT ISSUE
DOWNLOAD THIS ISSUE SUBSCRIBE NOW
BACK ISSUES | MUST READS | TECH DIGEST
PRODUCTS & RELEASES
Dark Reading Daily
-- Published By InformationWeek
UBM Tech
2 Penn Plaza, 15th Floor, New York, NY 10121
To update your profile, change your e-mail address, or unsubscribe, cick here.
To opt-out of any future Dark Reading Daily Newsletter emails, please respond here.
Thoughts about this newsletter? Give us feedback.
Keep This Newsletter Out Of Your SPAM Folder
Don't let future editions go missing. Take a moment to add the newsletter's address to your anti-spam white list:
If you're not sure how to do that, ask your administrator or ISP. Or check your anti-spam utility's documentation.
We take your privacy very seriously. Please review our Privacy Statement.