Avatar
Dark Reading
f9e52ebe8a51b90fdaacc735e822d6ee358d91dad406768f80af646b7c85d797
Dark Reading: Connecting the Information and Security Community

Gulf Region Accelerates Adoption of Zero Trust

United Arab Emirates will likely be one of the first in the region to implement zero-trust security due to its heavy adoption of cloud technologies.

https://www.darkreading.com/cloud-security/gulf-region-accelerates-adoption-of-zero-trust

The Next Gen of Cybersecurity Could Be Hiding in Big Tech

Public-private partnerships, increasing cybersecurity budgets for public organizations, and retraining existing tech talent to make the jump to cyber will help ease the staffing crunch.

https://www.darkreading.com/cybersecurity-operations/next-gen-of-cybersecurity-could-be-hiding-in-big-tech

Redesigning the Network to Fend Off Living-Off-the-Land Tactics

The growing threat of living-off-the-land tactics requires a rethink of network traffic visibility to prevent these types of attacks

https://www.darkreading.com/identity-access-management-security/redesigning-the-network-to-fend-off-living-off-the-land-tactics

Apple Beefs Up iMessage With Quantum-Resistant Encryption

The revamped iMessage app uses Apple's new PQ3 post-quantum cryptographic protocol, which its engineers say will make it the most secure messaging app — but Signal's president begs to differ.

https://www.darkreading.com/endpoint-security/apple-beefs-up-imessage-with-quantum-resistant-encryption

Lovers' Spat? North Korea Backdoors Russian Foreign Affairs Ministry

First Brad and Jennifer, now Kim and Putin? Romance truly is dead, as North Korea is caught spying (again) on its partner to the north with the Konni malware.

https://www.darkreading.com/cyberattacks-data-breaches/north-korea-backdoors-russian-foreign-affairs-ministry

Orgs Face Major SEC Penalties for Failing to Disclose Breaches

In what could be an enforcement nightmare, potentially millions of dollars in fines, reputational damage, shareholder lawsuits, and other penalties await companies that fail to comply with the SEC's n...

https://www.darkreading.com/cyber-risk/orgs-face-major-sec-penalties-failing-disclose-breaches

Avast to Pay $16.5M Fine For Selling Consumer Browsing Data

The FTC found that Avast collected reams of personal data through its antivirus product, then sold it to more than 100 third parties without disclosing its practices.

https://www.darkreading.com/cyber-risk/ftc-orders-avast-to-pay-16-5m-for-selling-consumer-browsing-data

Privacy Beats Ransomware as Top Insurance Concern

Despite ransomware losses remaining high, privacy violations have quickly risen to second in a list of expected cyber insurance claims costs.

https://www.darkreading.com/data-privacy/privacy-ransomware-top-2024-cyber-insurance

Malawi Immigration Dept. Halts Passport Services Amid Cyberattack

President of Malawi vows not to pay ransom to "appease criminals."

https://www.darkreading.com/cyberattacks-data-breaches/malawi-immigration-department-halts-services-amid-cyberattack

Alarm Over GenAI Risk Fuels Security Spending in Middle East & Africa

Organizations boost cybersecurity budgets to tackle data-privacy and cloud-security threats amid speedy adoption of generative AI.

https://www.darkreading.com/cybersecurity-operations/alarm-over-generative-ai-fuels-security-spending-in-middle-east-africa

ConnectWise ScreenConnect Mass Exploitation Delivers Ransomware

Hundreds of initial access brokers and cybercrime gangs are jumping on the max-critical CVE-2024-1709 authentication bypass, threatening orgs and downstream customers.

https://www.darkreading.com/remote-workforce/connectwise-screenconnect-mass-exploitation-delivers-ransomware

Fostering Collaboration for Standardized Threat Investigation & Response

Working together can bring much-needed trust to the industry and help safeguard people, organizations, and government — now and in the future.

https://www.darkreading.com/cybersecurity-operations/fostering-collaboration-standardized-threat-investigation-response

Pharmacy Delays Across US Blamed on Nation-State Hackers

Healthcare tech provider Change Healthcare says a suspected nation-state threat actor breached its systems, causing pharmacy transaction delays nationwide.

https://www.darkreading.com/cyberattacks-data-breaches/pharmacy-delays-across-us-blamed-on-nation-state-hackers

Hubris May Have Contributed to Downfall of Ransomware Kingpin LockBit

The most prolific ransomware group in recent years was on the decline at the time of its takedown, security researchers say.

https://www.darkreading.com/cyberattacks-data-breaches/hubris-may-have-caused-lockbit-s-downfall

Insurers Use Claims Data to Recommend Cybersecurity Technologies

Policy holders using certain technologies — such as managed detection and response (MDR) services, Google Workspace, and email security gateways — gain premium discounts from cyber insurers.

https://www.darkreading.com/cyber-risk/insurers-claims-data-recommend-cybersecurity-technologies

iSoon's Secret APT Status Exposes China's Foreign Hacking Machinations

Chinese government agencies are paying an APT, masked as a legitimate company, to spy on foreign and domestic targets of political interest.

https://www.darkreading.com/threat-intelligence/-isoon-contractor-helps-the-prc-hack-foreign-governments-companies

NSA Cybersecurity Director Rob Joyce to Retire

His retirement will go into effect on March 31, concluding 34 years of service to the National Security Agency.

https://www.darkreading.com/cybersecurity-operations/nsa-cybersecurity-director-rob-joyce-to-retire

Zero-Click Apple Shortcuts Vulnerability Allows Silent Data Theft

Vulnerability CVE-2024-23204, affecting Apple's popular Shortcuts app, suggests a critical need for ongoing security awareness in the macOS and iOS ecosystem.

https://www.darkreading.com/application-security/zero-click-apple-shortcuts-vulnerability-allows-silent-data-theft