Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

News

6/7/2019
10:00 AM
John Klossner
John Klossner
Cartoon Contest

Cartoon: Password Generation Gap

Comment  | 
Print  | 
Comments
Newest First  |  Oldest First  |  Threaded View
Page 1 / 2   >   >>
GWAIN
100%
0%
GWAIN,
User Rank: Strategist
7/3/2019 | 9:49:37 AM
Maybe the rest of us, too.
What the board hears when the CISO dumps the latest Information Security marketing buzzwords.
acampbell448
100%
0%
acampbell448,
User Rank: Strategist
6/26/2019 | 9:36:38 AM
Yet another version of Agile
Oh no not another version of Agile with yet another language of it's own to learn!
DavidRandolph
50%
50%
DavidRandolph,
User Rank: Strategist
6/18/2019 | 2:45:27 PM
caption
IDK.  Must be TLS 1.3.
willgetin
50%
50%
willgetin,
User Rank: Guru
6/18/2019 | 2:43:20 PM
Complex passwords?
In a few years, she'e going to phase out complex passwords and start using pass phrases
Ratteau
50%
50%
Ratteau,
User Rank: Strategist
6/18/2019 | 10:49:02 AM
Question
OK, who invited marketing to a dev meeting?
rfarnl
50%
50%
rfarnl,
User Rank: Strategist
6/14/2019 | 10:58:36 AM
re:new cartoon
It's really difficult understanding these new startups 
Ace2010
100%
0%
Ace2010,
User Rank: Strategist
6/12/2019 | 2:27:57 PM
Re: New Cartoon!
We just need her to generate gibberish in 16 characters or more!
vol_sec
100%
0%
vol_sec,
User Rank: Strategist
6/11/2019 | 4:34:37 PM
WannaCry
When WannaCry disrupts business inituitives.
REISEN1955
100%
0%
REISEN1955,
User Rank: Ninja
6/11/2019 | 1:56:26 PM
Re: New Cartoon!
Oh don't mind her - cobol programmer. 
Tempest2004
50%
50%
Tempest2004,
User Rank: Ninja
6/10/2019 | 12:03:22 PM
baby talk
It is never to early to start harvesting customer data
Page 1 / 2   >   >>
Data Leak Week: Billions of Sensitive Files Exposed Online
Kelly Jackson Higgins, Executive Editor at Dark Reading,  12/10/2019
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment: Our Endpoint Protection system is a little outdated... 
Current Issue
The Year in Security: 2019
This Tech Digest provides a wrap up and overview of the year's top cybersecurity news stories. It was a year of new twists on old threats, with fears of another WannaCry-type worm and of a possible botnet army of Wi-Fi routers. But 2019 also underscored the risk of firmware and trusted security tools harboring dangerous holes that cybercriminals and nation-state hackers could readily abuse. Read more.
Flash Poll
Rethinking Enterprise Data Defense
Rethinking Enterprise Data Defense
Frustrated with recurring intrusions and breaches, cybersecurity professionals are questioning some of the industrys conventional wisdom. Heres a look at what theyre thinking about.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2019-5061
PUBLISHED: 2019-12-12
An exploitable denial-of-service vulnerability exists in the hostapd 2.6, where an attacker could trigger AP to send IAPP location updates for stations, before the required authentication process has completed. This could lead to different denial of service scenarios, either by causing CAM table att...
CVE-2019-5062
PUBLISHED: 2019-12-12
An exploitable denial-of-service vulnerability exists in the 802.11w security state handling for hostapd 2.6 connected clients with valid 802.11w sessions. By simulating an incomplete new association, an attacker can trigger a deauthentication against stations using 802.11w, resulting in a denial of...
CVE-2019-5144
PUBLISHED: 2019-12-12
A freed memory access vulnerability exists in the SVG Marker Element feature of Apple Safari's WebKit version 13.0.2. A specially crafted HTML web page can cause a use after free, resulting in memory corruption and possibly arbitrary code execution. To trigger this vulnerability, a specifically craf...
CVE-2019-3951
PUBLISHED: 2019-12-12
Advantech WebAccess before 8.4.3 allows unauthenticated remote attackers to execute arbitrary code or cause a denial of service (memory corruption) due to a stack-based buffer overflow when handling IOCTL 70533 RPC messages.
CVE-2019-19767
PUBLISHED: 2019-12-12
The Linux kernel before 5.4.2 mishandles ext4_expand_extra_isize, as demonstrated by use-after-free errors in __ext4_expand_extra_isize and ext4_xattr_set_entry, related to fs/ext4/inode.c and fs/ext4/super.c, aka CID-4ea99936a163.