[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (54 articles)

|

// AI-powered summary generated at 12:00

> Cyber-Attack Hits US Nuclear Missile Sub-Contractor
Confidential documents stolen in cyber-attack on US nuclear missile sub-contractor Westech
> Aussie Fined for Tweeting Apple Employees' Data
Australian fined $5k for extracting employee data from Apple’s servers and tweeting it
> Points de contrôle Active Directory (02 juin 2020)
L'annuaire Active Directory, centre névralgique de la sécurité des systèmes d'information Microsoft, est un élément critique permettant la gestion centralisée de comptes, de ressources et de permissions. L'obtention de privilèges élevés sur cet annuaire entraîne une prise de contrôle instantanée...
> Employee Work from Home Habits a Security Risk to Businesses
Employee WFH cyber-habits threatening business security
> #Infosec20: Impact of #COVID19 is 2020's Leading Security Trend
The third annual Infosecurity State of Cybersecurity Report determines the impact of COVID-19 to be the biggest driver for 2020
> Detecting Bad OpenSSL Usage
OpenSSL is one of the most popular cryptographic libraries out there; even if you aren’t using C/C++, chances are your programming language’s biggest libraries use OpenSSL bindings as well. It’s also notoriously easy to mess up due to the design of its low-level API. Yet many of these mistakes fall...
> #Infosec20: Positive Reinforcement Key to Managing Human Element of Risk
Use more ‘carrot’ and less ‘stick’ says Dr Jessica Barker
> #Infosec20: Defining the Human Element of Risk
Panel of security experts define and quantify the human element of risk
> Verifying Windows binaries, without Windows
TL;DR: We’ve open-sourced a new library, μthenticode, for verifying Authenticode signatures on Windows PE binaries without a Windows machine. We’ve also integrated it into recent builds of Winchecksec, so that you can use it today to verify signatures on your Windows executables! As a library, μthen...
> REvil Ransomware Group Auctions Stolen Data
Victims have another reason to worry about compromise
> Half of US CISOs Have Suffered 10+ Cloud Breaches
Ermetic report claims misconfiguration is number one challenge
> Malicious macros are still causing problems!
Andrew A explains the updated guidance for Microsoft Office macros
> Dark Web Demand Surges for YouTube Accounts
Cyber-criminals keen to compromise high-profile channels
> European Cybersecurity Blogger Awards Winners Announced
Winners of the 2020 European Cybersecurity Blogger awards announced
> Le code malveillant Dridex (25 mai 2020)
Les marqueurs techniques suivants sont associés en source ouverte au code malveillant Dridex (voir la publication CERTFR-2020-CTI-005). Ils peuvent être utilisés à des fins de recherche de compromission dans des journaux historiques ou de détection. Toute communication depuis ou vers cette...
> #Infosec20: Resilience Required to Survive #COVID19 Pandemic, Says UBER CIO
Resilience and willingness to adapt are vital to Uber's survival at this time
> NYC Cybersecurity Bootcamp Offers Free Training Nationwide
Bootcamp to help unemployed Americans take first step toward a career in cybersecurity
> Phishing metrics - what to track?
The results of phishing campaigns are often not comparable with each other over time. Various security vendors and red teams use different tooling and techniques - which is totally fine. However, I recommend requiring tracking a minimum set of metrics to be able to compare results over time. Funny s...
> WatchGuard Completes Panda Acquisition
WatchGuard adds an advanced endpoint security platform with the acquisition of Panda Security
> Exostar to Be Acquired by Thoma Bravo
Virginia software company agrees to be acquired by private equity firm Thoma Bravo