daniel, to Cybersecurity
@daniel@danielnorton.com avatar

Tell your Mastodon admins to apply this update ASAP!

If your server has the very latest version of Mastodon, it should be at v4.2.5, now, but the patch is available for earlier releases.

  • Fix insufficient origin validation (CVE-2024-23832, GHSA-3fjr-858r-92rw)

https://github.com/mastodon/mastodon/security/advisories/GHSA-3fjr-858r-92rw

sophos, to MSP

Human behavior can both fortify organizations’ defenses and, in some cases, inadvertently open the doors to .

In Forbes, Rob Harrison, vice president, product management, at Sophos, explains how regular technology updates, partnership, and a collaborative approach to cybersecurity adds layers of protection. Learn more: https://bit.ly/3RT5Nr6

Freemind, to Cybersecurity
@Freemind@mastodon.online avatar

A recent report from the security threat monitoring platform Shadowserver reveals that almost 11 million SSH servers on the public web, identified by unique IP addresses, are vulnerable to Terrapin attacks.

https://cybersec84.wordpress.com/2024/01/04/11-million-ssh-servers-at-risk-terrapin-attack-threatens-secure-communications/

Freemind, to Cybersecurity
@Freemind@mastodon.online avatar

Despite varied initial infection methods, the core of the attack remains consistent: reliance on PowerShell and the establishment of a scheduled task executing a VBS file.

https://cybersec84.wordpress.com/2023/12/25/winrar-exploited-by-lonepage-unveiling-a-new-data-stealing-backdoor/

Freemind, to Cybersecurity
@Freemind@mastodon.online avatar

According to the agencies, Scatter Spider has become adept at social engineering, employing tactics such as phishing, push bombing, and SIM swapping.

https://cybersec84.wordpress.com/2023/11/22/the-fbis-pursuit-of-the-scattered-spider-hackers/

sophos, to random

We've unveiled significant and XDR updates, including:

  • Sophos Firewall ZTNA gateway access
  • Sophos support for numerous third-party products

Altogether, the updates “advance the mission for us to get better and faster at detecting and responding to threats,” says Raja Patel, chief product officer at Sophos.

As the landscape evolves, our team continues to push the envelope and develop new products and upgrades that simplify processes for partners and deliver superior cybersecurity outcomes for customers.

Kyle Alspach covers the updates in CRN: https://bit.ly/49t5pHM

sophos, to random

The landscape evolves, many organizations struggle with high alert volumes and false positives, resulting in a perpetual game of catch-up that taxes resources and diminishes security efficacy.

Solutions infused with automated moving target defense (AMTD), an emerging concept developed and championed by Gartner, put the pressure back on adversaries by rendering large swaths of malicious TTPs useless. Learn how: https://bit.ly/3QMjLvO

sophos, to Cybersecurity

It’s crucial for boards of directors to understand the full breadth of unique risks that their organization faces. Where, when, and how adversaries carry out a could result in a variety of outcomes.

For example, ransomware attacks vary in severity. If it impacts an organization’s operational technology, it could disrupt the delivery of critical products and services. But in some cases, attacks solely on IT systems cause fewer issues.

A general understanding of the landscape and what’s at stake can help business leaders plan for potential breaches. Here’s how to provide insight:

image/png
image/png
image/png

0x58, to Cybersecurity

📨 Latest issue of my curated and list of resources for week /2023 is out! It includes the following and much more:

➝ 🔓 👀 Tracking Unauthorized Access to 's Support System
➝ 🔓 🇯🇵 discloses impacting customers in 149 countries
➝ 🔓 🧬 Hacker leaks millions more user records on forum
➝ 🔓 🇨🇳 D-Link confirms data breach after employee attack
➝ 🔓 💰 Fined $13.5 Million Over 2017 Data Breach
➝ 🇺🇦 🧹 Ukrainian activists hack Trigona gang, wipe servers
➝ 🇺🇸 🇰🇵 FBI: Thousands of Remote IT Workers Sent Wages to to Help Fund Weapons Program
➝ 🇮🇳 ☁️ targets , tech support in nationwide crackdown
➝ 🇵🇸 🇮🇷 -linked app offers window into cyber infrastructure, possible links to Iran
➝ 👮🏻‍♂️ 🥷🏻 Police seize leak site
➝ 🇰🇵 North Korean Hackers Exploiting Recent Vulnerability
➝ 🇨🇳 🇷🇺 replaces as top
➝ 🇺🇦 📡 CERT-UA Reports: 11 Ukrainian Telecom Providers Hit by Cyberattacks
➝ 🇫🇷 🇪🇸 frees the two biggest Spanish hackers
➝ 🇺🇸 ⚓️ Ex-Navy IT head gets 5 years for selling people’s data on
➝ 🇨🇭 🗳️ ’s e-voting system has predictable implementation blunder
➝ 🔓 🏭 Critical Vulnerabilities Expose ​​ HMIs to Attacks
➝ 🔓 🏭 Industrial Router Possibly Exploited in Attacks
➝ 🦠 🇻🇳 Fake job offers on push malware
➝ 🦠 Google-hosted leads to fake site that looks genuine
➝ 🦠 💬 still a hotbed of activity — Now APTs join the fun
➝ 🦠 🕵🏻‍♂️ SpyNote: Beware of This Android that Records Audio and Phone Calls
➝ 🛍️ 🦠 will now scan sideloaded apps for malware at install time
➝ 💬 🔐 on the way, but as usual, for Android first
➝ 🇷🇺 🗂️ Pro-Russian Hackers Exploiting Recent Vulnerability in New Campaign
➝ 🗓️ ❌ Signal Pours Cold Water on Zero-Day Exploit Rumors
➝ 🔓 💥 warns of new XE actively exploited in attacks

📚 This week's recommended reading is: "RTFM: Red Team Field Manual v2" by Ben Clark and Nicholas Downer

Subscribe to the newsletter to have it piping hot in your inbox every week-end ⬇️

https://infosec-mashup.santolaria.net/p/infosec-mashup-week-422023

deltatux, to infosec
@deltatux@infosec.town avatar

In its "Baseline Cyber Threat Assessment: Cybercrime" guidance that was recently released, the Canadian Centre for Cyber Security (CCCS) included a chart showing the sectors that were impacted by ransomware in 2022 in Canada.

This baseline document is a wealth of information about the cyberthreat landscape & its impacts on Canadian organizations. Even if you're not from Canada, it can still be a valuable resource as much of the content applies no matter where you & your organization is from.

https://www.cyber.gc.ca/en/guidance/baseline-cyber-threat-assessment-cybercrime

To Battle New Threats, Spy Agencies to Share More Intelligence With Private Sector (www.msn.com)

U.S. spy agencies will share more intelligence with U.S. companies, nongovernmental organizations and academia under a new strategy released this week that acknowledges concerns over new threats, such as another pandemic and increasing cyberattacks.

edwardk, to infosec

Passwords of over 500,000 Belgians leaked in data breach.

Over 500,000 Belgians have had their passwords leaked due to a significant data breach. The breach occurred on RaidForums, an online platform commonly used by hackers to exchange stolen data. Although the FBI and Europol took down the platform last year, certain data has resurfaced and become publicly available. The data leak includes private and business email addresses from well-known companies and institutions such as KU Leuven, Ghent University, and VRT.

Experts believe the data may have originated from an older hack of a popular site like Dropbox. As per haveibeenpwned.com, the data appears to have been stolen in 2020, and it probably contains over a year old passwords.
In light of this incident, following some best practices for password management is important.

1️⃣ Enable two-step verification for an extra layer of security.
2️⃣ Regularly change passwords to limit the impact of a data leak.
3️⃣ Use different passwords for different sites. A password manager can help manage this.
4️⃣ Avoid personal information in passwords and opt for a complex mix of characters.
5️⃣ Never respond to emails asking for passwords or personal information.

https://www.brusselstimes.com/542378/passwords-of-over-500000-belgians-leaked-in-data-breach

sophos, to random

We had many important conversations at the
@RSAConference, including how ransomware remains a pervasive threat and why patching vulnerabilities is still overlooked. Our experts need to stay up to date on the landscape, and conferences like RSA make that possible.

image/jpeg
image/jpeg

sophos, to random

Our service has grown its customer base by 33% in the first six months with our newest capability — ingesting and analyzing telemetry from third-party vendors. Learn more about our expanded protections: https://fal.cn/3xOBk

  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • tacticalgear
  • DreamBathrooms
  • thenastyranch
  • magazineikmin
  • Durango
  • cubers
  • Youngstown
  • mdbf
  • slotface
  • rosin
  • ngwrru68w68
  • kavyap
  • GTA5RPClips
  • provamag3
  • ethstaker
  • InstantRegret
  • Leos
  • normalnudes
  • everett
  • khanakhh
  • osvaldo12
  • cisconetworking
  • modclub
  • anitta
  • tester
  • megavids
  • lostlight
  • All magazines