Cloud Misconceptions Are Pervasive Across Enterprises
Paul Martini, The CEO, co-founder and chief architect of ibossCommentary
Shadow IT is rampant at many organizations that rely upon cloud-delivered tools and services to enable remote work, according to a new study. Here's what security teams need to do about it.
By Paul Martini The CEO, co-founder and chief architect of iboss, 4/25/2018
Comment0 comments  |  Read  |  Post a Comment
How to Leverage Artificial Intelligence for Cybersecurity
Joe Cosmano, Senior Vice President of Engineering Services, ibossCommentary
AI and predictive analytics should be used to augment a companys security team, not replace it. Here's why.
By Joe Cosmano Senior Vice President of Engineering Services, iboss, 4/18/2018
Comment0 comments  |  Read  |  Post a Comment
Avoiding the Ransomware Mistakes that Crippled Atlanta
Chris Park, Chris Park, CIO, ibossCommentary
What made Atlanta an easy target was its outdated use of technology: old computers running on non-supported platforms, which are also a characteristic of many municipalities and most major cities.
By Chris Park Chris Park, CIO, iboss, 4/11/2018
Comment8 comments  |  Read  |  Post a Comment
Securing Retail Networks for an Omnichannel Future
Peter Martini, President and Co-FounderCommentary
Retailers who haphazardly move to digital from a brick-and-mortar environment can leave their businesses open to significant cybersecurity vulnerabilities. Here's how to avoid the pitfalls.
By Peter Martini President and Co-Founder, 4/4/2018
Comment0 comments  |  Read  |  Post a Comment
Getting Ahead of Internet of Things Security in the Enterprise
Simon Eappariello, Senior VP Product & Engineering, EMEIA, ibossCommentary
In anticipation of an IoT-centric future, CISOs must be rigorous in shoring up defenses that provide real-time insights across all network access points.
By Simon Eappariello Senior VP Product & Engineering, EMEIA, iboss, 3/28/2018
Comment0 comments  |  Read  |  Post a Comment
Cybersecurity Spring Cleaning: 3 Must-Dos for 2018
Paul Martini, The CEO, co-founder and chief architect of ibossCommentary
Why 'Spectre' and 'Meltdown,' GDPR, and the Internet of Things are three areas security teams should declutter and prioritize in the coming months.
By Paul Martini The CEO, co-founder and chief architect of iboss, 3/21/2018
Comment0 comments  |  Read  |  Post a Comment
How to Interpret the SECs Latest Guidance on Data Breach Disclosure
Peter Martini, President and Co-FounderCommentary
Forward-looking organizations should view this as an opportunity to reevaluate their cybersecurity posture and install best practices that should have already been in place.
By Peter Martini President and Co-Founder, 3/14/2018
Comment0 comments  |  Read  |  Post a Comment
Virtual Private Networks: Why Their Days Are Numbered
Chris Park, Chris Park, CIO, ibossCommentary
As companies move to the cloud and depend less on physical servers and network connections, their reliance on VPNs for security will eventually evolve, if not disappear altogether.
By Chris Park Chris Park, CIO, iboss, 2/28/2018
Comment0 comments  |  Read  |  Post a Comment
Getting Started with IoT Security in Healthcare
Chris Park, Chris Park, CIO, ibossCommentary
Theres a hazard that comes with introducing any new element into patient care whether it's a new drug or a connected device. These four steps will help keep patients safe.
By Chris Park Chris Park, CIO, iboss, 2/21/2018
Comment0 comments  |  Read  |  Post a Comment
The GDPR Clock Is Running Out. Now What?
Simon Eappariello, Senior VP Product & Engineering, EMEIA, ibossCommentary
Many organizations impacted by new European Union data privacy rules that go into effect May 25 are still blind to some of the basics.
By Simon Eappariello Senior VP Product & Engineering, EMEIA, iboss, 2/14/2018
Comment0 comments  |  Read  |  Post a Comment
Top Cloud Security Misconceptions Plaguing Enterprises
Paul Martini, The CEO, co-founder and chief architect of ibossCommentary
Contrary to popular opinion, there is no one single cloud. There are a wealth of cloud-based providers that own dedicated server space across the globe. Heres how to find the best fit for your company.
By Paul Martini The CEO, co-founder and chief architect of iboss, 2/7/2018
Comment0 comments  |  Read  |  Post a Comment
Data Encryption: 4 Common Pitfalls
Joe Cosmano, Senior Vice President of Engineering Services, ibossCommentary
To maximize encryption effectiveness you must minimize adverse effects in network performance and complexity. Here's how.
By Joe Cosmano Senior Vice President of Engineering Services, iboss, 1/31/2018
Comment0 comments  |  Read  |  Post a Comment
Selling Cloud-Based Cybersecurity to a Skeptic
Paul Martini, The CEO, co-founder and chief architect of ibossCommentary
When it comes to security, organizations dont need to look at cloud as an either/or proposition. But there are misconceptions that need to be addressed.
By Paul Martini The CEO, co-founder and chief architect of iboss, 1/26/2018
Comment0 comments  |  Read  |  Post a Comment
Applying Defense-in-Depth to the Digital Battlefield
Chris Park, Chris Park, CIO, ibossCommentary
How a layered security strategy can minimize the threat and impact of a data breach.
By Chris Park Chris Park, CIO, iboss, 1/18/2018
Comment0 comments  |  Read  |  Post a Comment
Top 3 Pitfalls of Securing the Decentralized Enterprise
Paul Martini, The CEO, co-founder and chief architect of ibossCommentary
Doubling down on outdated security practices while the number of users leveraging your enterprise network grows is a race to the bottom for businesses moving to distributed workflows.
By Paul Martini The CEO, co-founder and chief architect of iboss, 1/16/2018
Comment0 comments  |  Read  |  Post a Comment
WebAuthn, FIDO2 Infuse Browsers, Platforms with Strong Authentication
John Fontana, Standards & Identity Analyst, Yubico,  9/19/2018
NSS Labs Files Antitrust Suit Against Symantec, CrowdStrike, ESET, AMTSO
Kelly Jackson Higgins, Executive Editor at Dark Reading,  9/19/2018
Turn the NIST Cybersecurity Framework into Reality: 5 Steps
Mukul Kumar & Anupam Sahai, CISO & VP of Cyber Practice and VP Product Management, Cavirin Systems,  9/20/2018
Register for Dark Reading Newsletters
Partner Perspectives
What's This?
iboss has created the first and only web gateway as a service specifically designed to solve the challenge of securing distributed organizations. Built for the cloud, the iboss Distributed Gateway Platform leverages an elastic, cloud-based node architecture that provides advanced security for todays decentralized organizations with more financial predictability. Backed by more than 110 patents and patents pending, and protecting over 4,000 organizations worldwide, iboss is one of the fastest growing cybersecurity companies in the world. To learn more, visit www.iboss.com.
Featured Writers
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment: Are you sure this is how we get our data into the cloud?
Current Issue
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2015-8298
PUBLISHED: 2018-09-24
Multiple SQL injection vulnerabilities in the login page in RXTEC RXAdmin UPDATE 06 / 2012 allow remote attackers to execute arbitrary SQL commands via the (1) loginpassword, (2) loginusername, (3) zusatzlicher, or (4) groupid parameter to index.htm, or the (5) rxtec cookie to index.htm.
CVE-2018-14825
PUBLISHED: 2018-09-24
A skilled attacker with advanced knowledge of the target system could exploit this vulnerability by creating an application that would successfully bind to the service and gain elevated system privileges. This could enable the attacker to obtain access to keystrokes, passwords, personal identifiable...
CVE-2018-17437
PUBLISHED: 2018-09-24
Memory leak in the H5O_dtype_decode_helper() function in H5Odtype.c in the HDF HDF5 through 1.10.3 library allows attackers to cause a denial of service (memory consumption) via a crafted HDF5 file.
CVE-2018-17438
PUBLISHED: 2018-09-24
A SIGFPE signal is raised in the function H5D__select_io() of H5Dselect.c in the HDF HDF5 through 1.10.3 library during an attempted parse of a crafted HDF file, because of incorrect protection against division by zero. It could allow a remote denial of service attack.
CVE-2018-17439
PUBLISHED: 2018-09-24
An issue was discovered in the HDF HDF5 1.10.3 library. There is a stack-based buffer overflow in the function H5S_extent_get_dims() in H5S.c. Specifically, this issue occurs while converting an HDF5 file to a GIF file.