avuko, to infosec

https://www.ncsc.nl/binaries/ncsc/documenten/publicaties/2024/februari/6/mivd-aivd-advisory-coathanger-tlp-clear/TLP-CLEAR+MIVD+AIVD+Advisory+COATHANGER.pdf

If you work in #infosec I suggest you read the above, even if just to get a feel for what we are collectively up against. No fluffy or whitepaper stuff, I promise.

Then, if you have any device running #FortiOS anywhere, especially if the Chinese government might be interested in anything you do, dump a diskimage of the device(s) (with a virtual device this would be easy, I haven't found info on how to do this from a device) and head over to https://github.com/JSCU-NL/COATHANGER to at least run the checks. There is also some live checking you could do; See the report.

Pass anything sufficiently suspicious by your DFIR team, and if the experts think it is "sus", report to your national CSIRT/CERT, or as per the request in the report to the NCSC of the Netherlands: https://english.ncsc.nl/contact.

#Coathanger #ImposeCost
#HappyHunting #cyberSecurity

  • All
  • Subscribed
  • Moderated
  • Favorites
  • anitta
  • kavyap
  • DreamBathrooms
  • cisconetworking
  • tester
  • ngwrru68w68
  • magazineikmin
  • osvaldo12
  • thenastyranch
  • rosin
  • Youngstown
  • slotface
  • everett
  • Durango
  • JUstTest
  • mdbf
  • GTA5RPClips
  • provamag3
  • khanakhh
  • ethstaker
  • InstantRegret
  • tacticalgear
  • modclub
  • cubers
  • megavids
  • normalnudes
  • Leos
  • lostlight
  • All magazines