Avatar
Dark Reading
f9e52ebe8a51b90fdaacc735e822d6ee358d91dad406768f80af646b7c85d797
Dark Reading: Connecting the Information and Security Community

4 Legal Surprises You May Encounter After a Cybersecurity Incident

Many organizations are not prepared to respond to all the constituencies that come knocking after a breach or ransomware incident.

https://www.darkreading.com/attacks-breaches/4-legal-surprises-you-may-encounter-after-cybersecurity-incident

A Preview of Windows 11’s Passkeys Support

The latest update to Windows 11 introduces support for passkeys, which provide phishing-resistant passwordless authentication.

https://www.darkreading.com/dr-tech/a-preview-of-windows-11-passkeys-support

CAPTCHAs Easy for Humans, Hard for Bots

Proton is aiming for the sweet spot between security, privacy, and accessibility with its CAPTCHA.

https://www.darkreading.com/dr-tech/captchas-easy-for-humans-hard-for-bots

Fortinet Announces Formation of Veterans Program Advisory Council to Narrow the Cybersecurity Skills Gap With Military Veteran Talent

https://www.darkreading.com/operations/fortinet-announces-formation-of-veterans-program-advisory-council-to-narrow-the-cybersecurity-skills-gap-with-military-veteran-talent

Researchers Release Details of New RCE Exploit Chain for SharePoint

One of the already-patched flaws enables elevation of privilege, while the other enables remote code execution.

https://www.darkreading.com/vulnerabilities-threats/reseachers-release-details-of-new-rce-exploit-chain-for-sharepoint

China APT Cracks Cisco Firmware in Attacks Against the US and Japan

Sophisticated hackers are rewriting router firmware in real time and hiding their footprints, leaving defenders with hardly a fighting chance.

https://www.darkreading.com/threat-intelligence/china-apt-cracks-cisco-firmware-attacks-against-us-japan

Microsoft Adds Passkeys to Windows 11

It's the latest step in the gradual shift away from traditional passwords.

https://www.darkreading.com/application-security/microsoft-adds-passkeys-to-windows-11

Threat Data Feeds and Threat Intelligence Are Not the Same Thing

It's important to know the difference between the two terms. Here's why.

https://www.darkreading.com/threat-intelligence/threat-data-feeds-and-threat-intelligence-are-not-same-thing

Hackers Trick Outlook into Showing Fake AV Scans

Researchers spot attackers using an existing phishing obfuscation tactic in order to better ensure recipients fall for their scam.

https://www.darkreading.com/endpoint/hackers-abuse-zerofont-phishing-tactic-to-trick-outlook-into-showing-fake-av-scans

Kenyan Financial Firm Fined for Mishandling Data

Kenyan data protection regulator issues monetary penalties to multiple firms for improper handling of personal data.

https://www.darkreading.com/dr-global/kenyan-financial-firm-fined-for-mishandling-data

How the Okta Cross-Tenant Impersonation Attacks Succeeded

Sophisticated attacks on MGM and Caesars underscore the reality that even robust identity and access management may not be enough to protect you.

https://www.darkreading.com/attacks-breaches/how-the-okta-cross-tenant-impersonation-attacks-succeeded

Will Government Secure Open Source or Muck It Up?

The US government aims to support open source projects, while the European Union seeks to make open source projects liable for their software. Which approach will lead to more security?

https://www.darkreading.com/edge/will-government-secure-open-source-or-muck-it-up

Researchers Uncover RaaS Affiliate Distributing Multiple Ransomware Strains

Ransomware-as-a-service affiliate ShadowSyndicate is unusual for the size of its malicious infrastructure and the fact that it's distributing seven different ransomware strains.

https://www.darkreading.com/attacks-breaches/researchers-uncover-raas-affiliate-distributing-multiple-ransomware-strains

Suspicious New Ransomware Group Claims Sony Hack

A deceitful threat actor claims its biggest haul yet. But what, if any, Sony data does it actually have?

https://www.darkreading.com/attacks-breaches/suspicious-new-ransomware-group-claims-sony-hack

HD Moore's Discovery Journey

Metasploit creator's shift into enterprise asset discovery and passive scanning with startup runZero is a natural evolution of his exploratory cyber career.

https://www.darkreading.com/dr-tech/hd-moore-discovery-journey