darkreading
Secure Your Spot at RSAC 2026 Conference
2 months hence
More Problems for Fortinet: Critical FortiSIEM Flaw Exploited
2 days 3 hours ago
CVE-2025-64155, a command injection vulnerability, was disclosed earlier this week and quickly came under attack from a variety of IP addresses.
Rob Wright
CISOs Rise to Prominence: Security Leaders Join the Executive Suite
2 days 9 hours ago
Security professionals are moving up the executive ranks as enterprises face rising regulatory and compliance standards.
Arielle Waldman
AI System Reduces Attack Reconstruction Time From Weeks to Hours
2 days 10 hours ago
Pacific Northwest National Labs' expert cybersecurity system, ALOHA, can recreate attacks and test them against organizations' infrastructure to bolster defense.
Robert Lemos, Contributing Writer
Predator Spyware Sample Indicates 'Vendor-Controlled' C2
3 days 3 hours ago
Researchers detailed how Intellexa, Predator's owner, uses failed deployments and thwarted infections to strengthen its commercial spyware and generate more effective attacks.
Rob Wright
Winter Olympics Could Share Podium With Cyberattackers
3 days 5 hours ago
The upcoming Winter Games in the Italian Alps are attracting both hacktivists looking to reach billions of people and state-sponsored cyber-spies targeting the attending glitterati.
Jai Vijayan, Contributing Writer
Vulnerabilities Surge, But Messy Reporting Blurs Picture
3 days 9 hours ago
MITRE loses its lead as the top reporter of vulnerabilities, while new organizations pump out CVEs and reported bugs in WordPress plug-ins surge.
Robert Lemos, Contributing Writer
Trio of Critical Bugs Spotted in Delta Industrial PLCs
3 days 13 hours ago
Experts disagree on whether the vulnerabilities in a programmable logic controller from Delta are a five-alarm fire or not much to worry over.
Nate Nelson, Contributing Writer
Retail, Services Industries Under Fire in Oceania
4 days 3 hours ago
Last year in Australia, New Zealand, and the South Pacific, Main Street businesses like retail and construction suffered more cyberattacks than their critical sector counterparts.
Nate Nelson, Contributing Writer
Microsoft Disrupts Cybercrime Service RedVDS
4 days 5 hours ago
RedVDS, a cybercrime-as-a-service operation that has stolen millions from victims, lost two domains to a law enforcement operation.
Alexander Culafi
'VoidLink' Malware Poses Advanced Threat to Linux Systems
4 days 8 hours ago
Researchers discovered a modular, "cloud-first" framework that is feature-rich and designed to maintain stealthy, long-term access to Linux environments.
Elizabeth Montalbano, Contributing Writer
Taiwan Endures Greater Cyber Pressure From China
4 days 22 hours ago
Chinese cyberattacks on Taiwan's critical infrastructure — including energy utilities and hospitals — rose 6% in 2025, averaging 2.63 million attacks a day.
Robert Lemos, Contributing Writer
CrowdStrike to Buy Seraphic Security in Bid to Boost Browser Security
5 days ago
The browser protection and detection technology will be integrated into CrowdStrike's Falcon platform to protect endpoints, browser sessions, and cloud applications.
Fahmida Y. Rashid
CISO Succession Crisis Highlights How Turnover Amplifies Security Risks
5 days ago
When cybersecurity leadership turns over too fast, risk does not reset. It compounds.
Joan Goodchild
'Most Severe AI Vulnerability to Date' Hits ServiceNow
5 days 2 hours ago
The ITSM giant tacked agentic AI onto a largely unguarded legacy chatbot, exposing customers' data and connected systems.
Nate Nelson, Contributing Writer
Microsoft Starts 2026 With a Bang: A Freshly Exploited Zero-Day
5 days 3 hours ago
The vendor's first Patch Tuesday of the year also contains fixes for 112 CVEs, nearly double the amount from last month.
Jai Vijayan, Contributing Writer
Shadow#Reactor Uses Text Files to Deliver Remcos RAT
5 days 6 hours ago
Attackers use a sophisticated delivery mechanism of text-only files for RAT deployment, showcasing a clever way to bypass defensive tools and rely on the target's own utilities.
Alexander Culafi
AsyncRAT Malware Infests Orgs via Python & Cloudflare
5 days 9 hours ago
The phishing campaign shows how attackers continue to weaponize legitimate cloud services and open source tools to evade detection and gain trust.
Elizabeth Montalbano, Contributing Writer
BreachForums Breached, Exposing 324K Cybercriminals
6 days 2 hours ago
A massive data dump reveals real identities and details of administrators and members of the notorious hacker forum.
Jai Vijayan, Contributing Writer
Checked
11 hours 32 minutes ago
Public RSS feed
darkreading feed