A widespread campaign uses more than 24 malicious NPM packages loaded with JavaScript obfuscators to steal form data from multiple sites and apps, analysts report.
Read moreAs a result of browser market consolidation, adversaries can focus on uncovering vulnerabilities in just two main browser engines.
Read moreThe heap buffer-overflow issue in Chrome for Android could be used for DoS, code execution, and more.
Read moreCompanies need to consider the cost to disengage from the cloud along with proactive risk management that looks at governance issues resulting from heavy use of low- and no-code...
Read moreName That Edge Toon: On Guard
July 5 2022Come up with a clever caption, and our panel of experts will reward the winner with a $25 Amazon gift card.
Read moreDark Reading's digest of the other don't-miss stories of the week, including YouTube account takeovers and a sad commentary on cyber-pro hopelessness.
Read moreOpenSea NFT Marketplace Faces Insider Hack
July 1 2022OpenSea warns users that they are likely to be targeted in phishing attacks after a vendor employee accessed and downloaded its email list.
Read moreEven as more attacks target humans, lack of dedicated staff, relevant skills, and time are making it harder to develop a security-aware and engaged workforce, SANS says.
Read moreThe latest evolution in social engineering could put fraudsters in a position to commit insider threats.
Read more
Recent Comments