Summary

Total Articles Found: 89

Top sources:

Top Keywords:

Top Authors

Top Articles:

  • Exposed Travis CI API Leaves All Free-Tier Users Open to Attack
  • Patch Now: Cisco AnyConnect Bug Exploit Released in the Wild
  • WordPress Plug-in Ninja Forms Issues Update for Critical Bug
  • Adobe Issues Patch for Acrobat Zero-Day
  • Nissan Source Code Leaked via Misconfigured Git Server
  • SolarWinds Attackers Gear Up for Typosquatting Attacks
  • Google Discovers New Rowhammer Attack Technique
  • 218M Words with Friends Players Compromised in Data Breach
  • NSA Issues Advisory for 'BlueKeep' Vulnerability
  • REvil Ransomware Hits Jack Daniel's Manufacturer

TeamViewer Credits Network Segmentation for Rebuffing APT29 Attack

Published: 2024-06-28 21:22:05

Popularity: 38

Author: Dark Reading Staff

LLM Says: "Network shields up"

Despite warnings from Health-ISAC and the NCC Group, the remote access software maker says defense-in-depth kept customers' data safe from Midnight Blizzard.

...more

Hijacking Scheme Takes Over High-Profile TikTok Accounts

Published: 2024-06-05 19:01:42

Popularity: 7

Author: Dark Reading Staff

LLM Says: "Hacked!"

Hijacking malware gets spread through TikTok's direct messaging and doesn't require the victim to click links or download anything.

...more

Army Vet Spills National Secrets to Fake Ukrainian Girlfriend

Published: 2024-03-05 21:55:11

Popularity: 5

Author: Dark Reading Staff

The retired US Army lieutenant colonel faces up to 10 years in prison if convicted of sharing secret information about the Russia-Ukraine war with a scammer posing as romantic connection.

...more

'VoltSchemer' Hack Allows Wireless Charger Takeovers

Published: 2024-02-21 21:46:12

Popularity: 183

Author: Dark Reading Staff

Researchers tested their theory on nine chargers, each different and available to consumers, and found them all vulnerable to their attacks.

...more

Joomla XSS Bugs Open Millions of Websites to RCE

Published: 2024-02-20 21:38:03

Popularity: 21

Author: Dark Reading Staff

Improper content filtering in a core function allows multiple paths to exploitation for CVE-2024-21726.

...more

'Commando Cat' Is Second Campaign of the Year Targeting Docker

Published: 2024-02-01 22:20:00

Popularity: 8

Author: Dark Reading Staff

The threat actor behind the campaign is still unknown, but it shares some similarities with other cyptojacking groups.

...more

Patch Now: Massive RCE Campaign Wrangles Routers Into Botnet

Published: 2023-10-09 19:15:30

Popularity: 38

Author: Dark Reading Staff, Dark Reading

Thousands of devices, including D-Link and Zyxel gear, remain vulnerable to takeover despite the availability of patches for the several bugs being exploited by IZ1H9 campaign.

...more

Adobe Acrobat Reader Vuln Now Under Attack

Published: 2023-10-11 18:15:00

Popularity: 32

Author: Dark Reading Staff, Dark Reading

CISA flags use-after-free bug now being exploited in the wild.

...more

SIM Card Ownership Slashed in Burkina Faso

Published: 2023-10-20 18:05:00

Popularity: 17

Author: Dark Reading Staff, Dark Reading

Users could hold up to five SIM cards previously, but now they can only have two; it's a move that the government says is intended to cut down mobile spam levels.

...more

Yubico Goes Public

Published: 2023-09-20 22:00:00

Popularity: 2

Author: Dark Reading Staff, Dark Reading

The Swedish maker of Yubikeys has merged with special purpose acquisition company ACQ Bure.

...more

Patch Now: Cisco AnyConnect Bug Exploit Released in the Wild

Published: 2023-06-22 15:53:52

Popularity: 4887

Author: Dark Reading Staff, Dark Reading

A ready-made, low-complexity path to pwning the popular enterprise VPN clients for remote workers is now circulating in the wild.

...more

Billy Corgan Paid Off Hacker Who Threatened to Leak New Smashing Pumpkins Songs

Published: 2023-05-11 19:00:00

Popularity: 37

Author: Dark Reading Staff, Dark Reading

Corgan got FBI involved to track down the cybercriminal, who had stolen from other artists as well, he said.

...more

Meta Hit With $1.3B Record-Breaking Fine for GDPR Violations

Published: 2023-05-22 19:29:00

Popularity: 32

Author: Dark Reading Staff, Dark Reading

The technology conglomerate has until later this year to end its transfer of European user's data across the Atlantic.

...more

Tesla Whistleblower Leaks 100GB of Data, Revealing Safety Complaints

Published: 2023-05-26 17:32:00

Popularity: 28

Author: Dark Reading Staff, Dark Reading

Informants have released data that includes thousands of safety complaints the company has received about its self-driving capability, as well as sensitive information regarding current and past employees.

...more

Yet Another Toyota Cloud Data Breach Jeopardizes Thousands of Customers

Published: 2023-05-31 21:08:00

Popularity: 192

Author: Dark Reading Staff, Dark Reading

The newly found misconfigured cloud services are discovered just two weeks after an initial data breach affecting millions came to light.

...more

Human-Assisted CAPTCHA-Cracking Services Supercharge Shopper Bots

Published: 2023-05-30 21:39:00

Popularity: 48

Author: Dark Reading Staff, Dark Reading

On-demand human solvers are now augmenting automated website cyberattacks, offering a better way around tougher anti-bot puzzles.

...more

Twitter 'Shadow Ban' Bug Gets Official CVE

Published: 2023-04-06 19:20:29

Popularity: 94

Author: Dark Reading Staff, Dark Reading

A flaw in Twitter code allows bot abuse to trick the algorithm into suppressing certain accounts.

...more

GitHub's Private RSA SSH Key Mistakenly Exposed in Public Repository

Published: 2023-03-24 20:05:00

Popularity: 106

Author: Dark Reading Staff, Dark Reading

GitHub hastens to replace its RSA SSH host key after an exposure mishap threatens users with man-in-the-middle attacks and organization impersonation.

...more

Facebook Bug Allows 2FA Bypass Via Instagram

Published: 2023-01-30 19:00:00

Popularity: 67

Author: Dark Reading Staff, Dark Reading

The Instagram rate-limiting bug, found by a rookie hunter, could be exploited to bypass Facebook 2FA in vulnerable apps, researcher reports.

...more

Google Fi Users Caught Up in T-Mobile Breach

Published: 2023-02-01 14:18:08

Popularity: 24

Author: Dark Reading Staff, Dark Reading

Google Fi mobile customers have been alerted that their SIM card serial numbers, phone numbers, and other data were exposed in T-Mobile hack.

...more

Jailbreak Trick Breaks ChatGPT Content Safeguards

Published: 2023-02-08 22:05:00

Popularity: 66

Author: Dark Reading Staff, Dark Reading

Jailbreak command creates ChatGPT alter ego DAN, willing to create content outside of its own content restriction controls.

...more

$275M Fine for Meta After Facebook Data Scrape

Published: 2022-11-28 18:11:09

Popularity: 59

Author: Dark Reading Staff, Dark Reading

Meta has been found in violation of Europe's GDPR rules requiring the social media giant to protect user data by "design and default."

...more

Intel Processor UEFI Source Code Leaked

Published: 2022-10-11 17:49:46

Popularity: 66

Author: Dark Reading Staff, Dark Reading

Exposed code included private key for Intel Boot Guard, meaning it can no longer be trusted, according to a researcher.

...more

Signal to Ditch SMS/MMS Messaging on Android

Published: 2022-10-17 17:54:37

Popularity: 18

Author: Dark Reading Staff, Dark Reading

Main driver for the change: "Plaintext SMS messages are inherently insecure."

...more

Ikea Smart Light System Flaw Lets Attackers Turn Bulbs on Full Blast

Published: 2022-10-05 20:00:00

Popularity: 59

Author: Dark Reading Staff, Dark Reading

With just one malformed Zigbee frame, attackers could take over certain Ikea smart lightbulbs, leaving users unable to turn the lights down.

...more

Whack-a-Mole: More Malicious PyPI Packages Spring Up Targeting Discord, Roblox

Published: 2022-08-16 18:51:56

Popularity: 19

Author: Dark Reading Staff, Dark Reading

Just as one crop of malware-laced software packages is taken down from the popular Python code repository, a new host arrives, looking to steal a raft of data.

...more

Malicious Chrome Extensions Plague 1.4M Users

Published: 2022-08-30 20:00:00

Popularity: 19

Author: Dark Reading Staff, Dark Reading

Analysts find five cookie-stuffing extensions, including one that's Netflix-themed, that track victim browsing and insert rogue IDs into e-commerce sites to rack up fake affiliate payments.

...more

WordPress Page Builder Plug-in Under Attack, Can't Be Patched

Published: 2022-07-18 17:55:01

Popularity: 29

Author: Dark Reading Staff, Dark Reading

An ongoing campaign is actively targeting the vulnerability in the Kaswara Modern WPBakery Page Builder Addon, which is still installed on up to 8,000 sites, security analysts warn.

...more

PyPI Mandates 2FA, Plans Google Titan Key Giveaway

Published: 2022-07-12 22:42:37

Popularity: 23

Author: Dark Reading Staff, Dark Reading

Python's most popular package manager is intent on securing the supply chain by requiring developers to enable two-factor authentication.

...more

WordPress Plug-in Ninja Forms Issues Update for Critical Bug

Published: 2022-06-17 18:53:38

Popularity: 4200

Author: Dark Reading Staff, Dark Reading

The code injection vulnerability is being actively exploited in the wild, researchers say.

...more

Exposed Travis CI API Leaves All Free-Tier Users Open to Attack

Published: 2022-06-13 19:43:16

Popularity: 9178

Author: Dark Reading Staff, Dark Reading

Public Travis CI logs loaded with GitHub, AWS, Docker Hub account tokens, and other sensitive data could be leveraged for lateral cloud attacks.

...more

SolarWinds Attackers Gear Up for Typosquatting Attacks

Published: 2022-05-03 20:35:19

Popularity: 451

Author: Dark Reading Staff, Dark Reading

The same infrastructure traced back to Russian-speaking threat group Nobelium is being used to set up misspelled domain names, presaging impersonation attacks bent on credential harvesting, analysts say.

...more

Details Released on SonicWall Flaws in SMA-100 Devices

Published: 2022-01-11 19:05:00

Popularity: 20

Author: Dark Reading Staff, Dark Reading

The most serious of the five vulnerabilities disclosed today can lead to unauthenticated remote code execution on affected devices.

...more

NSO Group Spyware Used On Journalists & Activists Worldwide

Published: 2021-07-19 18:53:00

Popularity: 28

Author: Dark Reading Staff

An investigation finds Pegasus spyware, intended for use on criminals and terrorists, has been used in targeted campaigns against others around the world.

...more

Sophos Acquires Capsule8 for Linux Server & Container Security

Published: 2021-07-07 18:54:00

Popularity: 16

Author: Dark Reading Staff

The deal was announced the same day ZeroFox bought Dark Web intelligence firm Vigilante as a wave of security M&A continues.

...more

NSA Funds Development & Release of D3FEND Framework

Published: 2021-06-22 17:26:00

Popularity: 18

Author: Dark Reading Staff

The framework, now available through MITRE, provides countermeasures to attacks.

...more

High-Level FIN7 Member Sentenced to 7 Years in Prison

Published: 2021-06-25 15:00:00

Popularity: 27

Author: Dark Reading Staff

Andrii Kolpakov, who served as a high-level pentester for the criminal group, was also ordered to pay $2.5 million in restitution.

...more

Google Launches SLSA, a New Framework for Supply Chain Integrity

Published: 2021-06-17 20:50:00

Popularity: 5

Author: Dark Reading Staff

The "Supply chain Levels for Software Artifacts" aims to ensure the integrity of components throughout the software supply chain.

...more

Critical Zero-Day Discovered in Fancy Product Designer WordPress Plug-in

Published: 2021-06-02 17:42:00

Popularity: 20

Author: Dark Reading Staff

The plug-in under active attack has been installed on more than 17,000 websites, say researchers.

...more

Russian Sentenced to 30 Months for Running Criminal Website

Published: 2021-05-25 18:32:00

Popularity: 21

Author: Dark Reading Staff

FBI says sales from illicit online shop deer.io exceeded $17 million

...more

Google Discovers New Rowhammer Attack Technique

Published: 2021-05-26 20:32:00

Popularity: 424

Author: Dark Reading Staff

Researchers publish the details of a new Rowhammer vulnerability called "Half-Double" that exploits increasingly smaller DRAM chips.

...more

Adobe Issues Patch for Acrobat Zero-Day

Published: 2021-05-11 21:02:00

Popularity: 3023

Author: Dark Reading Staff

The vulnerability is being exploited in limited attacks against Adobe Reader users on Windows.

...more

Apple Issues Patches for Webkit Security Flaws

Published: 2021-05-04 21:21:00

Popularity: 34

Author: Dark Reading Staff

API Hole on Experian Partner Site Exposes Credit Scores

Published: 2021-04-29 19:49:00

Popularity: 78

Author: Dark Reading Staff

Student researcher is concerned security gap may exist on many other sites.

...more

Nissan Source Code Leaked via Misconfigured Git Server

Published: 2021-01-06 22:00:00

Popularity: 583

Author: Dark Reading Staff

Leaked information includes source code of Nissan mobile apps, diagnostics tool, and market research tools and data, among other assets.

...more

T-Mobile Hacked -- Again

Published: 2021-01-04 19:10:00

Popularity: 151

Author: Dark Reading Staff

The wireless carrier has suffered a data breach for the fourth time since 2018.

...more

Law Enforcement Disrupts VPN Services Enabling Cybercrime

Published: 2020-12-22 16:35:00

Popularity: 83

Author: Dark Reading Staff

The United States and international partners shut down three bulletproof hosting services used to facilitate criminal activity.

...more

Cisco, Intel, Deloitte Among Victims of SolarWinds Breach: Report

Published: 2020-12-21 22:25:00

Popularity: 135

Author: Dark Reading Staff

The Wall Street Journal identified 24 businesses so far that have downloaded the SolarWinds software infected with malicious code.

...more

WordPress Plug-in Has Critical Zero-Day

Published: 2020-09-08 19:00:00

Popularity: 95

Author: Dark Reading Staff

The vulnerability in WordPress File Manager could allow a malicious actor to take over the victim's website.

...more

REvil Ransomware Hits Jack Daniel's Manufacturer

Published: 2020-08-17 18:00:00

Popularity: 268

Author: Dark Reading Staff

Attackers who targeted US spirits manufacturer Brown-Forman reportedly stole a terabyte of confidential data.

...more

70,000+ WordPress Sites Affected by Critical Plug-in Flaw

Published: 2020-07-29 19:10:00

Popularity: 110

Author: Dark Reading Staff

A vulnerability in the wpDiscuz plug-in could let attackers remotely execute code on the servers of affected websites.

...more

CouchSurfing Investigates Potential Data Breach

Published: 2020-07-23 17:15:00

Popularity: 23

Author: Dark Reading Staff

The service has reportedly hired a security firm after 17 million user records were found on a public hacking forum.

...more

Adobe Releases PDF Protected Mode for Acrobat DC

Published: 2020-06-16 20:45:00

Popularity: 12

Author: Dark Reading Staff

The preview, open to Windows users, opens PDF files in a sandbox to protect users who open malicious Acrobat documents.

...more

Zoom Changes Course on End-to-End Encryption

Published: 2020-06-17 21:40:00

Popularity: 101

Author: Dark Reading Staff

The videoconferencing company now says it will offer end-to-end encryption to all users beginning in July.

...more

Adobe Releases PDF Protected Mode for Document Cloud

Published: 2020-06-16 20:45:00

Popularity: 69

Author: Dark Reading Staff

The preview, open to Windows users, opens PDF files in a sandbox to protect users who open malicious Acrobat documents.

...more

Fake COVID-19 Contact-Tracing Apps Infect Android Phones

Published: 2020-06-10 17:45:00

Popularity: 183

Author: Dark Reading Staff

Researchers find 12 Android applications disguised as official COVID-19 contact tracing apps installing malware onto devices.

...more

NSA Warns Russia's 'Sandworm' Group Is Targeting Email Servers

Published: 2020-05-28 18:15:00

Popularity: 114

Author: Dark Reading Staff

The Russian military group has been exploiting a flaw in the Exim mail transfer agent since last August, the NSA reports.

...more

Zoom Acquires Keybase, Plans for End-to-End Encrypted Chats

Published: 2020-05-07 16:15:00

Popularity: 73

Author: Dark Reading Staff

The company's first acquisition to date is part of a 90-day plan to improve security in its video communications platform.

...more

Mozilla Patches Two Critical Zero-Days in Firefox

Published: 2020-04-06 15:45:00

Popularity: 103

Author: Dark Reading Staff

The latest release of Firefox brings fixes for two Critical vulnerabilities already seen exploited in the wild.

...more

Proof of Concept Released for kr00k Wi-Fi Vulnerability

Published: 2020-03-20 16:45:00

Popularity: 90

Author: Dark Reading Staff

The code demonstrates a relatively simple method to exploit a vulnerability in more than a billion devices.

...more

Tesla, SpaceX Parts Manufacturer Suffers Data Breach

Published: 2020-03-02 17:45:00

Popularity: 265

Author: Dark Reading Staff

Visser Precision has confirmed a security incident likely caused by the data-stealing DoppelPaymer ransomware.

...more

Clearview AI Customers Exposed in Data Breach

Published: 2020-02-28 01:00:00

Popularity: 170

Author: Dark Reading Staff

Customers for the controversial facial recognition company were detailed in a log file leaked to news organizations.

...more

United Nations Data Breach Started with Microsoft SharePoint Bug

Published: 2020-01-30 18:10:00

Popularity: 138

Author: Dark Reading Staff

A remote code execution flaw enabled a breach of UN offices in Geneva and Vienna, as well as the Office of the High Commissioner for Human Rights.

...more

NFL, Multiple NFL Teams' Twitter Accounts Hacked and Hijacked

Published: 2020-01-29 00:30:00

Popularity: 134

Author: Dark Reading Staff

Hackers claiming to be from the hacktivist group OurMine temporarily took over Twitter accounts of the NFL and several teams in the league.

...more

'CardPlanet' Operator Pleads Guilty in Federal Court

Published: 2020-01-24 21:30:00

Popularity: 128

Author: Dark Reading Staff

Russian national faced multiple charges in connection with operating the marketplace for stolen credit-card credentials, and a forum for VIP criminals to offer their services.

...more

Las Vegas Suffers Cyberattack on First Day of CES

Published: 2020-01-09 01:45:00

Popularity: 205

Author: Dark Reading Staff

The attack, still under investigation, hit early in the morning of Jan. 7.

...more

Siemens Contractor Sentenced for Writing 'Logic Bombs'

Published: 2019-12-17 16:40:00

Popularity: 92

Author: Dark Reading Staff

David Tinley, 62, rigged software he wrote for the company starting in 2014 and into 2016, causing the programs to fail.

...more

Blink Cameras Found with Multiple Vulnerabilities

Published: 2019-12-10 20:50:00

Popularity: 70

Author: Dark Reading Staff

Researchers found three broad types of vulnerabilities, one of which should be particularly concerning to consumers.

...more

NSA Issues Advisory on VPN Vulnerability Trio

Published: 2019-10-08 20:55:00

Popularity: 219

Author: Dark Reading Staff

Vulnerabilities with Pulse Secure, Fortinet, and Palo Alto Networks VPNs are called out in the advisory.

...more

218M Words with Friends Players Compromised in Data Breach

Published: 2019-09-30 15:00:00

Popularity: 285

Author: Dark Reading Staff

The same attacker was reportedly behind the Collection #1 and Collection #2 data dumps earlier this year.

...more

DoorDash Breach Affects 4.9M Merchants, Customers, Workers

Published: 2019-09-27 14:30:00

Popularity: 145

Author: Dark Reading Staff

The May 4 incident exposed data belonging to users on the platform on or before April 5, 2018.

...more

Court Rules In Favor of Firm 'Scraping' Public Data

Published: 2019-09-16 18:00:00

Popularity: 76

Author: Dark Reading Staff

US appeals court said a company can legally use publicly available LinkedIn account information.

...more

VMware to Buy Carbon Black for $2.1B

Published: 2019-08-23 15:30:00

Popularity: 70

Author: Dark Reading Staff

Virtual machine giant's big cloud move includes plans to shell out $2.7 billion in stock transactions for Pivotal Software.

...more

Imperva Customer Database Exposed

Published: 2019-08-27 21:00:00

Popularity: 110

Author: Dark Reading Staff

A subset of customers for the company's Incapsula web application firewall had their email addresses, hashed/salted passwords, and more open to unauthorized access, Imperva announced.

...more

700K Guest Records Stolen in Choice Hotels Breach

Published: 2019-08-13 16:20:00

Popularity: 163

Author: Dark Reading Staff

Cybercriminals reportedly stole the information from an exposed MongoDB database on a third-party server.

...more

BioStar 2 Leak Exposes 23GB Data, 1M Fingerprints

Published: 2019-08-14 15:30:00

Popularity: 177

Author: Dark Reading Staff

Thousands of organizations, including banks, governments, and the UK Metropolitan Police, use the biometric security tool to authenticate users.

...more

Malware Researcher Hutchins Sentenced to Supervised Release

Published: 2019-07-26 19:10:00

Popularity: 141

Author: Dark Reading Staff

Marcus Hutchins, the researcher known for stopping WannaCry, avoids jail time over charges of creating and distributing Kronos malware.

...more

Vulnerability Found in GE Anesthesia Machines

Published: 2019-07-10 17:30:00

Popularity: 92

Author: Dark Reading Staff

GE Healthcare has released a statement claiming the bug is not in the machine itself and does not pose direct risk to patients.

...more

D-Link Agrees to Strengthen Device Security

Published: 2019-07-04 03:30:00

Popularity: 186

Author: Dark Reading Staff

A settlement with the FTC should mean comprehensive security upgrades for D-Link routers and IP camera.

...more

Cloud Provider PCM Suffers Data Breach

Published: 2019-06-28 15:40:00

Popularity: 218

Author: Dark Reading Staff

Attackers were reportedly able to compromise email and file-sharing systems for some of PCM's customers.

...more

NSA Issues Advisory for 'BlueKeep' Vulnerability

Published: 2019-06-05 16:15:00

Popularity: 279

Author: Dark Reading Staff

The National Security Agency joins Microsoft in urging Windows admins to patch wormable bug CVE-2019-0708.

...more

APT34 Toolset, Victim Data Leaked via Telegram

Published: 2019-04-19 16:00:00

Popularity: 73

Author: Dark Reading Staff

For the last month, an unknown individual or group has been sharing data and hacking tools belonging to Iranian hacker group APT34.

...more

GPS Spoof Hits Geneva Motor Show

Published: 2019-03-13 19:00:00

Popularity: 67

Author: Dark Reading Staff

Incident leaves GPS units showing a location in England and a date 17 years in the future.

...more

NTT Security Confirms WhiteHat Acquisition

Published: 2019-03-06 13:00:00

Popularity: 5

Author: Dark Reading Staff

WhiteHat Security will continue to operate as an independent subsidiary of NTT Security following the deal.

...more

Patch Now: Another Google Zero-Day Under Exploit in the Wild

Published: 2024-05-16 12:48:06

Popularity: 15

Author: Dark Reading Staff

Google has rolled an emergency patch for CVE-2024-4947, the third Chrome zero-day it's addressed in the past week.

...more

SEC Adds New Incident Response Rules for Financial Sector

Published: 2024-05-17 18:03:51

Popularity: 8

Author: Dark Reading Staff

Financial firms covered under new regulations will be required to establish a clear response and communications plan for customer data breaches.

...more

Google Opens $250K Bug Bounty Contest for VM Hypervisor

Published: 2024-07-01 20:35:22

Popularity: 12

Author: Dark Reading Staff

LLM Says: "Bug Bounty Party"

If security researchers can execute a guest-to-host attack using a zero-day vulnerability in the KVM open source hypervisor, Google will make it worth their while.

...more

US Data Breach Victim Numbers Increase by 1,000%, Literally

Published: 2024-07-18 21:04:59

Popularity: 14

Author: Dark Reading Staff

LLM Says: ""Data Alert!""

Though the number of victims has risen, the actual number of breaches has gone down, as fewer, bigger breaches affect more individuals.

...more

CrowdStrike Outage Losses Estimated at a Staggering $5.4B

Published: 2024-07-26 20:36:57

Popularity: 7

Author: Dark Reading Staff

LLM Says: "System down 💻"

Researchers track the healthcare sector as experiencing the biggest financial losses, with banking and transportation following close behind.

...more

end