Avatar
Dark Reading
f9e52ebe8a51b90fdaacc735e822d6ee358d91dad406768f80af646b7c85d797
Dark Reading: Connecting the Information and Security Community

Rackspace Faces Massive Cleanup Costs After Ransomware Attack

Eight months after the cyberattack, the cloud hosting services company's remediation costs top $10 million as it tries to repair the damage caused by the Play ransomware gang.

https://www.darkreading.com/remote-workforce/rackspace-massive-cleanup-costs-ransomware-attack

Addressing Cybersecurity's Talent Shortage & Its Impact on CISOs

CISOs need to educate all arms of the business on security best practices so it becomes part of the business culture, thus expanding who's keeping watch. Automating routine tasks will help scale secur...

https://www.darkreading.com/endpoint/addressing-cybersecurity-talent-shortage-its-impact-on-cisos

Kroll's Crypto Breach Highlights SIM-Swapping Risk

Information was exposed on hundreds of crypto-related bankruptcy claimants in proceedings involving FTX, Genesis, and BlockFI.

https://www.darkreading.com/remote-workforce/kroll-cryoto-breach-sim-swapping-risk

Here's What Your Breach Response Plan Might Be Missing

The best way to withstand a data breach is to be prepared. Here are four elements that are easily overlooked in breach response plans.

https://www.darkreading.com/attacks-breaches/what-your-breach-response-plan-might-be-missing

Overcoming Open Source Vulnerabilities in the Software Supply Chain

By securing access to code and running scans against all code changes, developers can better prevent — and detect — potential risks and vulnerabilities.

https://www.darkreading.com/microsoft/overcoming-open-source-vulnerabilities-in-the-software-supply-chain-

Considerations for Reducing Risk When Migrating to the Cloud

Proper planning is an essential part of reducing security and compliance risks before, during, and after a migration to a new cloud environment.

https://www.darkreading.com/google-cloud-security/considerations-for-reducing-risk-when-migrating-to-the-cloud

Motherboard Mishaps Undermine Trust, Security

MSI and Microsoft warn about new Windows Preview blue screens on some motherboards, the latest mishap to raise questions over the reliability of hardware and firmware.

https://www.darkreading.com/vulnerabilities-threats/motherboard-mishaps-undermine-trust-security

Cybercriminals Harness Leaked LockBit Builder in Wave of New Attacks

Enterprising, or simply lazy, cybercriminals are using Lockbit v3 to cut corners on ransomware.

https://www.darkreading.com/remote-workforce/cybercriminals-harness-leaked-lockbit-builder-new-attacks

Financial Firms Breached in MOVEit Cyberattacks Now Face Lawsuits

TD Ameritrade, Charles Schwab named in new class action data breach lawsuit, following last week's filing against Prudential.

https://www.darkreading.com/attacks-breaches/financial-firms-breached-in-moveit-cyberattacks-now-face-lawsuits

London Police Warned to Stay Vigilant Amid Major Data Breach

Hackers hit a third-party contractor's IT systems, but they didn't steal any addresses or financial details, officials say.

https://www.darkreading.com/attacks-breaches/london-police-warned-to-stay-vigilant-amid-major-data-breach

5 Ways to Prepare for Google's 90-Day TLS Certificate Expiration

With bad guys frequently upping their game, security can't leave these protections to a once-a-year upgrade.

https://www.darkreading.com/attacks-breaches/5-ways-to-prepare-google-90-day-tls-certificate-expiration

Authentication Outage Underscores Why 'Fail Safe' Is Key

Duo's service outage last week, impacting schools and businesses, highlights how companies should build in resiliency and business continuity into their authentication schemes.

https://www.darkreading.com/dr-tech/authentication-outage-highlights-why-fail-safe-is-key

Legal Liability for Insecure Software Might Work, but It's Dangerous

Imposing government-regulated security requirements on software companies may go too far and create unintended consequences.

https://www.darkreading.com/vulnerabilities-threats/legal-liability-for-insecure-software-might-work-but-it-s-dangerous

Malware Unleashed: Public Sector Hit in Sudden Surge, Reveals New Research

Report unmasks recent cybersecurity challenges for governments, healthcare, financial services, and vital infrastructure.

https://www.darkreading.com/threat-intelligence/malware-unleashed-public-sector-hit-in-sudden-surge-reveals-new-research

Better SaaS Security Goes Beyond Procurement

The impulse to achieve strong SaaS security adherence through strict gatekeeping during procurement fails to reduce the risk that matters most.

https://www.darkreading.com/risk/better-saas-security-goes-beyond-procurement

Vendors Training AI With Customer Data is an Enterprise Risk

While Zoom has scrapped plans to harvest customer content for use in its AI and ML models, the incident should raise concerns for enterprises and consumers a like.

https://www.darkreading.com/edge/vendors-training-ai-customer-data-enterprise-risk

China Unleashes Flax Typhoon APT to Live Off the Land, Microsoft Warns

The cyber espionage group has created a stealthy, hard-to-mitigate network of persistent access across a range of organizations, but the endgame is unclear.

https://www.darkreading.com/threat-intelligence/china-unleashes-flax-typhoon-apt-live-off-land-microsoft-warns

Luna Grabber Malware Targets Roblox Gaming Devs

Roblox gaming developers are lured in by a package that claims to create useful scripts to interact with the Roblox website, for example by “promot(ing) users, shout events, and so on, or to create Di...

https://www.darkreading.com/vulnerabilities-threats/luna-grabber-malware-targets-roblox-gaming-devs