Infosec

PogoWasRight,

Here’s a great way to destroy any trust your patients might have in you. Madeleine Damo reports:

"Staff at a western Sydney radiologist – recently hit with a cyber attack – were told to tell concerned patients the breach was “an operational IT issue”, while also fielding harassing phone calls from hackers themselves."

Read nore at https://www.dailytelegraph.com.au/newslocal/penrith-press/quantum-radiology-cyber-attack-former-and-current-employees-data-targeted/news-story/8490ad5b6964be7c3ad67f7f98d82a1d?amp

In other words: don’t tell patients that there was a ransomware attack in which their data was encrypted and their personal and protected health information acquired by the criminals?

This is yet another example of why we need firm laws requiring more honest and full disclosures and prohibiting deception or minimization in disclosures.

InfoSecSherpa,

InfoSecSherpa's and News Roundup for Thursday, January 11, 2024

Features the Dorset Echo article, "Cosmetics firm LUSH investigating cyber security attack."

https://infosecsherpa.medium.com/infosecsherpas-news-roundup-for-thursday-january-11-2024-828027e57f3d

adminkirsty,


“TeamViewer is a legitimate remote access tool used extensively in the enterprise world, valued for its simplicity and capabilities.

Unfortunately, the tool is also cherished by scammers and even ransomware actors, who use it to gain access to remote desktops, dropping and executing malicious files unhindered.“
https://www.bleepingcomputer.com/news/security/teamviewer-abused-to-breach-networks-in-new-ransomware-attacks/
@infosec

0xor0ne,
0x58,
campuscodi,
@campuscodi@mastodon.social avatar

US lawmakers are considering legislation to make the DHS' Cyber Safety Review Board (CSRB) a permanent fixture

https://www.hassan.senate.gov/news/press-releases/senator-hassan-questions-cybersecurity-experts-about-the-cyber-safety-review-board

0xor0ne,

For anyone interested in learning Windows binary reverse engineering, these are excellent resources by Alexandre Borges

Article 01: https://exploitreversing.files.wordpress.com/2023/04/exploit_reversing_01-1.pdf

Article 02: https://exploitreversing.files.wordpress.com/2024/01/exploit_reversing_02.pdf

image/png
image/png

avolha, Polish

W jaki sposób Meta wprowadza szyfrowanie e2e do facebookowego Messengera, co to jest Labyrinth i czy możemy czuć się w pełni bezpieczni, korzystając dziś z tego komunikatora - wyjaśnia @mateuszchrobok

https://yt.elonego.com/watch?v=_GxNLWBHxvI

weddige,
@weddige@gruene.social avatar

What could possibly go wrong with this nightmare team?

simplenomad,
@simplenomad@rigor-mortis.nmrc.org avatar

Busy day today, which is good for getting through the tedium. However as a result I meant to post this much earlier today and have only gotten around to it now. More tales from yesteryear involving a bit of corporate spying. Tame but entertaining.

https://www.markloveless.net/blog/2024/1/9/tales-from-the-past-i-spy

chiefgyk3d,
@chiefgyk3d@social.chiefgyk3d.com avatar

I've been testing this for a few weeks and it's finally getting pushed to production tomorrow. I have an enhancement to send metrics to Datadog and pipe the IOC to Crowdstrike to block any typosquat domains. I'll have those enhancement in by end of the month

https://github.com/ChiefGyk3D/Domain-Assassin

avolha, Polish

Wczorajsza w trochę nietypowym składzie, gdyby ktoś miał ochotę posłuchać

https://yt.elonego.com/watch?v=FCFJzYZziaQ

happygeek,

New @Forbes: Add the Matrix, Lucky Seven and AI to the Galaxy S24 Ultra and Samsung just might be onto a winner here.

https://www.forbes.com/sites/daveywinder/2024/01/18/new-galaxy-s24-samsung-confirms-massive-security-bombshell/

BishopFox,

SonicWall next-gen firewall (NGFW) series 6 and 7 devices are affected by 2 DoS #vulnerabilities that can lead to remote code execution (RCE): #CVE-2022-22274 and CVE-2023-0656. Bishop Fox research revealed that these issues are fundamentally the same, but exploitable at different HTTP URI paths. Read more & download our test script at our blog.

https://bfx.social/47Hcdzj

#SonicWall #infosec #exploitdevelopment

video/mp4

ljrk, (edited )
@ljrk@todon.eu avatar

1. 's Law:
When a measure becomes a target, it ceases to be a good measure

1.1 Lemma (application on ):
Any security measure won't improve security if it's only done to get a certification.

jomo,
@jomo@mstdn.io avatar

PSA: Update your GitLab instances to version 16.7.2, 16.6.4, or 16.5.6!

Critical (CVSS 10/10) vulnerability allows account takeover without user interaction via password reset. CVE-2023-7028

There are some other critical/high vulns as well:

https://about.gitlab.com/releases/2024/01/11/critical-security-release-gitlab-16-7-2-released/#account-takeover-via-password-reset-without-user-interactions

0x58,
leanpub,
@leanpub@mastodon.social avatar

Leanpub has been instrumental in assisting professionals in publishing highly successful books in the field of data science. Now, we are extending our support to cybersecurity experts who aspire to achieve the same level of success. If you are interested, feel free to get in touch with us via DM or by emailing hello@leanpub.com. Simply mention "Special Cybersecurity Author Onboarding Offer" in the subject line for more details. Join us in the world of information security and books!

chiefgyk3d,
@chiefgyk3d@social.chiefgyk3d.com avatar

Got the official thumbs up from my bosses internally about the Domain Assassin tool I forked from @cybersheepdog Domain Hunter tool. It's working in dev right now on the multiple domains we have as an AWS lambda and piping tickets to Jira in our sandbox. Next step is working with Ops to add the Crowdstrike IoC integration.

I plan to hopefully open source both the local and terraform versions after sanitizing it end of month. I even have a shell script to switch tfenv files

happygeek,

By me at Forbes: As the Gmail/Photos purge continues, here’s how to protect your account in 2024.

https://www.forbes.com/sites/daveywinder/2024/01/12/google-says-it-will-delete-gmail-messages-and-photos-in-2024-purge/

SecureOwl,

🔐 Get ready to join penetration tester Laura Knight on an electrifying journey through the world of cybersecurity in "Pen Test Diaries"! 🔍💻

💥 Dive into her thrilling experiences, based on real-world scenarios, unraveling the technical and non-technical aspects of fortifying an organization's security measures.

🛡️ Follow Laura's gripping adventures and discoveries as she uncovers vulnerabilities, all in a riveting, fictionalized narrative. 📖✨

Perfect for tech aficionados or those intrigued by the dynamic world of penetration testing.

Find out more: https://www.infosecdiaries.com/

InfoSecSherpa,

InfoSecSherpa's and News Roundup for Friday, January 12, 2024

Features the Channel Futures article, "Zen and the Art of Cyber Defense Maintenance."

https://infosecsherpa.medium.com/infosecsherpas-news-roundup-for-friday-january-12-2024-d9c69f4898bc

0x58,
jtk, (edited )

Must watch retelling of a mid 90's incident response by the future Internet IR hall-of-famer @romig while at Ohio State: https://www.youtube.com/watch?v=0rtR511Fzqg

Tip: there is a fun anecdote about Quake that is part of the story you don't want to miss.

init_6_,

has just released the $50 Cloud+ CV1–004 beta exam. Register at PearsonVUE, pass the exam and be one of the first recipients of the new Cloud+ certification

  • All
  • Subscribed
  • Moderated
  • Favorites
  • infosec
  • GTA5RPClips
  • magazineikmin
  • InstantRegret
  • everett
  • Durango
  • Youngstown
  • mdbf
  • slotface
  • rosin
  • kavyap
  • ethstaker
  • ngwrru68w68
  • thenastyranch
  • DreamBathrooms
  • anitta
  • khanakhh
  • osvaldo12
  • cisconetworking
  • modclub
  • normalnudes
  • tacticalgear
  • cubers
  • megavids
  • provamag3
  • Leos
  • tester
  • JUstTest
  • lostlight
  • All magazines