Follow Dark Reading:
 April 01, 2021
LATEST SECURITY NEWS & COMMENTARY
What We Know (and Don't Know) So Far About the 'Supernova' SolarWinds Attack
A look at the second elusive attack targeting SolarWinds software that researchers at Secureworks recently cited as the handiwork of Chinese nation-state hackers.
83% of Businesses Hit With a Firmware Attack in Past Two Years
A new Microsoft-commissioned report finds less than 30% of organizations allocate security budget toward preventing firmware attacks.
Manufacturing Firms Learn Cybersecurity the Hard Way
Although 61% of smart factories have experienced a cybersecurity incident, IT groups and operational technology groups still don't collaborate enough on security.
SolarWinds Experimenting With New Software Build System in Wake of Breach
CISO of SolarWinds now has complete autonomy to stop product releases if security concerns exist, CEO says.
Nearly Half of Popular Android Apps Built With High-Risk Components
Information leakage and applications asking for too many permissions were also major issues, according to a survey of more than 3,300 popular mobile applications.
Security Operations in the World We Live in Now
Despite the challenges of remote work, security operations teams can position themselves well for the future.
Apple Patches iOS Zero-Day
Apple today released iOS 14.4.2 to address a security vulnerability that may have been actively exploited.
40% of Apps Leaking Information
Apps in manufacturing most at risk, according to WhiteHat Security.
Data Bias in Machine Learning: Implications for Social Justice
Take historically biased data, then add AI and ML to compound and exacerbate the problem.
MORE NEWS & COMMENTARY
HOT TOPICS
How Personally Identifiable Information Can Put Your Company at Risk
By being more mindful of how and where they share PII, employees will deprive cybercriminals of their most useful tool.

Moving from DevOps to CloudOps: The Four-Box Problem
With SOC teams running services on multiple cloud platforms, their big concern is how to roll up configuration of 200+ servers in a comprehensive way.

What You Need to Know -- or Remember -- About Web Shells
What's old is new again as Web shell malware becomes the latest attack vector in widespread Exchange exploits. Here's a primer on what Web shells are and what they do.

MORE
EDITORS' CHOICE

4 Open Source Tools to Add to Your Security Arsenal
Open source solutions can offer an accessible and powerful way to enhance your security-testing capabilities.
6 Tips for Limiting Damage From Third-Party Attacks
The ability to protect your organization from third-party attacks will become increasingly critical as attackers try to maximize the effectiveness of their malicious campaigns.
LATEST FROM THE EDGE

In Secure Silicon We Trust
Building upon a hardware root of trust is becoming a more achievable goal for the masses and the roots are digging deeper. Here's what you need to know.
Tech Resources
FEATURED REPORTS
MORE REPORTS
CURRENT ISSUE
DOWNLOAD THIS ISSUE SUBSCRIBE NOW
BACK ISSUES | MUST READS | TECH DIGEST
PRODUCTS & RELEASES
Dark Reading Weekly
-- Published By Dark Reading
Informa Tech
303 Second St., Suite 900 South Tower, San Francisco, CA 94107
To update your profile, change your e-mail address, or unsubscribe, click here.
To opt-out of any future Dark Reading Weekly Newsletter emails, please respond here.
Thoughts about this newsletter? Give us feedback.
Keep This Newsletter Out Of Your SPAM Folder
Don't let future editions go missing. Take a moment to add the newsletter's address to your anti-spam white list:
If you're not sure how to do that, ask your administrator or ISP. Or check your anti-spam utility's documentation.
We take your privacy very seriously. Please review our Privacy Statement.