The state-sponsored advanced persistent threat (APT) is going after high-value communications service provider networks in the US, potentially with a dual set of goals.
| LATEST SECURITY NEWS & COMMENTARY | China's 'Salt Typhoon' Cooks Up Cyberattacks on US ISPs The state-sponsored advanced persistent threat (APT) is going after high-value communications service provider networks in the US, potentially with a dual set of goals. CrowdStrike Offers Mea Culpa to House Committee The company said the rogue update that caused disruptions on a global scale resulted from a "perfect storm" of issues. Third Ivanti Bug Comes Under Active Exploit, CISA Warns Though the critical vulnerability was patched in August, Ivanti is reminding customers to update as soon as possible as attacks from unauthenticated threat actors start circulating. Sophisticated RAT Hides Behind P. Diddy Scandal Lures The advanced Python-based PysSilon malware can steal data, record keystrokes, and execute remote commands. The attackers behind it are promising to leak details of deleted X posts related to accused rapper and music producer Sean Combs. How Russia, China & Iran Are Targeting US Elections While these threats remain a valid concern, US government agencies have doubled down on their assurances to the American public that election infrastructure is secure. Pwn2Own Auto Offers $500K for Tesla Hacks There will be four major categories in the 2025 retread of the hacking competition, with prizes ranging for each challenge, from $20,000 to half a million. US May Be Losing the Race for Global AI Leadership To maintain AI leadership, Congress and regulatory agencies must recognize that our foreign competitors are working to surpass us. (Sponsored Article) Real-Time Runtime Insights Underpin Cloud Security Real-time runtime insights meet the urgency of cloud environments where security attacks happen faster than ever. MORE NEWS / MORE COMMENTARY | | | | HOT TOPICS | Dark Reading Confidential: Pen-Test Arrests, 5 Years Later Episode 3: On Sept. 11, 2019, two cybersecurity pros, Gary De Mercurio and Justin Wynn, were arrested in Dallas County, Iowa, and forced to spend the night in jail — just for doing their jobs. Despite the charges against them being dropped, that night five years ago continues to haunt De Mercurio and Wynn. In this episode, the pair and Coalfire CEO Tom McAndrew share how the fallout has shaped their lives and careers as well as how it has transformed physical penetration tests. Kansas Water Plant Pivots to Analog After Cyber Event A water treatment facility in a small city took serious precautions to prevent any bad outcomes from a hazy cyber incident. Managing Cyber-Risk Is No Different Than Managing Any Business Risk A sound cyber-risk management strategy analyzes all the business impacts that may stem from an attack and estimates the related costs of mitigation versus the costs of not taking action. MORE |
| | PRODUCTS & RELEASES | CrowdStrike Expands Cybersecurity Startup Accelerator With AWS and NVIDIA Abstract Security Expands Multi-Cloud Security Operations c/side Lands $6M to Combat Rising Browser Supply Chain Attacks MORE PRODUCTS & RELEASES |
|
Dark Reading Daily -- Published By Dark Reading Informa Tech Holdings LLC | Registered in the United States with number 7418737 | 605 Third Ave., 22nd Floor, New York, New York 10158, USA
| To opt-out of any future Dark Reading Daily Newsletter emails, please respond here. | Thoughts about this newsletter? Give us feedback. |
Keep This Newsletter Out Of Your SPAM Folder Don't let future editions go missing. Take a moment to add the newsletter's address to your anti-spam white list: | If you're not sure how to do that, ask your administrator or ISP. Or check your anti-spam utility's documentation. | We take your privacy very seriously. Please review our Privacy Statement. |
|
|