Applying Threat Intelligence to Iranian Cyberattack Risk

Credit to Author: J.J. Thompson| Date: Wed, 15 Jan 2020 13:01:37 +0000

As geopolitical interest increases, discussions of threat intelligence increase which increases pressure on security operations teams to provide answers to customers and to senior leadership.<img src=”http://feeds.feedburner.com/~r/sophos/dgdY/~4/pQqkg_WT2eU” height=”1″ width=”1″ alt=””/>

Read more

Microsoft fixes critical bugs in CryptoAPI, RD Gateway and .NET

Credit to Author: Danny Bradbury| Date: Wed, 15 Jan 2020 12:10:33 +0000

Here are the most serious bugs from Microsoft’s Patch Tuesday – Including CryptoAPI and RCE flaws in Windows Remote Desktop Gateway.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/_JcrLmlUQmc” height=”1″ width=”1″ alt=””/>

Read more

Malicious npm package taken down after Microsoft warning

Credit to Author: John E Dunn| Date: Wed, 15 Jan 2020 11:32:56 +0000

Criminals have been caught trying to sneak a malicious package on to the popular Node.js platform npm (Node Package Manager).<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/X4lFsmpAVr8″ height=”1″ width=”1″ alt=””/>

Read more

Peekaboo Moments baby-recording app has a bad database booboo

Credit to Author: Lisa Vaas| Date: Wed, 15 Jan 2020 11:05:46 +0000

No need to wait until you’ve gurgled out of your mother’s womb to experience the joys of having your privacy breached.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/s_aas9nhhmI” height=”1″ width=”1″ alt=””/>

Read more

Compiling Open Source Threat Intelligence for Threat Hunts

Credit to Author: Mat Gangwer| Date: Wed, 15 Jan 2020 10:02:05 +0000

In addition to normal tradecraft adaptations, any time a change in the geopolitical landscape takes place, cyberattack campaigns and adversary behaviors typically shift as well. The recent events with Iran and the United States offer a relevant use case for organizations and have highlighted the benefit of having a threat intelligence driven hunting process. The [&#8230;]<img src=”http://feeds.feedburner.com/~r/sophos/dgdY/~4/SIgRbmduM5E” height=”1″ width=”1″ alt=””/>

Read more

High-profile events are opportunities to determine security readiness

Credit to Author: Chester Wisniewski| Date: Wed, 15 Jan 2020 10:00:38 +0000

While the likelihood you might be targeted by a nation-state is low, preparing for such a circumstance might still be a useful strategy<img src=”http://feeds.feedburner.com/~r/sophos/dgdY/~4/mlgSNlflJNI” height=”1″ width=”1″ alt=””/>

Read more

Apple says no to unlocking shooter’s phone; AG and Trump lash back

Credit to Author: Lisa Vaas| Date: Wed, 15 Jan 2020 10:52:19 +0000

Attorney General Barr and President Trump are demanding Apple unlock the mass shooter’s iPhone. Apple replies: You can’t break just 1 phone.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/ZRh0_aJQATA” height=”1″ width=”1″ alt=””/>

Read more

El talón de Aquiles de la próxima generación de firewalls

Credit to Author: Sophos Iberia| Date: Tue, 14 Jan 2020 09:13:32 +0000

Para comprender mejor las realidades de la seguridad de la red en la actualidad, Sophos encargó a Vanson Bourne, especialista en investigación, que realizara una encuesta independiente entre 3.100 responsables de TI en 12 países y seis continentes. Los resultados arrojan nueva luz sobre la realidad en la práctica de la seguridad de red actual [&#8230;]<img src=”http://feeds.feedburner.com/~r/sophos/dgdY/~4/AVGzhBDTRCU” height=”1″ width=”1″ alt=””/>

Read more

January 2020 Patch Tuesday delivers fixes for 50 bugs

Credit to Author: SophosLabs Offensive Security| Date: Tue, 14 Jan 2020 18:15:18 +0000

This month’s big security news from Microsoft is the end of support for Windows 7, and a patch of a cryptographic library<img src=”http://feeds.feedburner.com/~r/sophos/dgdY/~4/wiyw9sHJyLE” height=”1″ width=”1″ alt=””/>

Read more