Security news that informs and inspires
scrambled headshot of Dennis Fisher

Dennis Fisher

Editor in Chief

Dennis Fisher is an award-winning journalist who has been covering information security and privacy since 2000.

He is one of the co-founders of Threatpost and previously wrote for TechTarget and eWeek, when magazines were still a thing that existed. Dennis enjoys finding the stories behind the headlines and digging into the motivations and thinking of both defenders and attackers. His work has appeared in The Boston Globe, The Improper Bostonian, Harvard Business School’s Working Knowledge, and most of his kids’ English papers.

Featured Articles

1130 articles by Dennis Fisher

Java Crypto Bug Allows Forging of Signatures, Certificates

A critical bug in Java's implementation of ECDSA (CVE-2022-21449) can allow an attacker to forge a signature or certificate to deliver virtually any payload.

Java, Oracle

CISA: Lazarus APT Targeting Blockchain Orgs With TraderTraitor Malware

The Lazarus APT group is targeting cryptocurrency and blockchain organizations with malware called TraderTraitor, warns the U.S. government.

Lazarus

Attackers Used Stolen OAuth Tokens to Download Private GitHub Repositories

A threat actor used stole OAuth tokens for third-party integrators Heroku and Travis-CI to access and download private GitHub repositories belonging to dozens of companies.

Github

Decipher Podcast: Martin Roesch

Martin Roesch, CEO of Netography and creator of Snort and former CEO of Sourcefire, joins Dennis Fisher to talk about why he decided to come out of retirement and what the big challenges are for security right now.

Podcast

Meta Disrupts Two Iranian Threat Groups

Meta has disrupted the operations of two Iranian threat actors, including UNC788 and a previously unidentified group, that were using the company's platforms to target a wide range of victims.

Iran, Facebook