InfoSec News 20190719

  • Publicado: Sex, 19/07/2019 - 12:42

Top News


  • Researchers Claim They Bypassed Cylance's AI-Based Antivirus

"Researchers at Australia-based cybersecurity firm Skylight claim to have found a way to trick Cylance’s AI-based antivirus engine into classifying malicious files as benign."

Link

TLP1 : Green

  • Targeted ransomware attacks surging

" A growing number of cybercriminals are adopting attack techniques involving targeted ransomware, with the number of organisations falling victim to the attacks having surged over the past two years according to Symantec."

Link

TLP1 : Green

  • Indian Army launches massive crackdown on personnel violating its cyber security norms

" The exercise involves sensitising Army personnel about cyber security, which will be followed by surprise checks to punish those violating the norms."

Link

TLP1 : Green

Cybersecurity State: Surveillance, Cyberwarfare, Cybercriminality and Hacktivism


  • 1268115: Russia, Iran, North Korea Launch Hundreds of Cyberattacks on U.S. Political Groups, Microsoft Says

"Suspected nation-state hackers from Russia, Iran and elsewhere have launched nearly 800 cyberattacks against political organizations over the past year that have been detected by Microsoft Corp"

Link

TLP1 : Green

  • Ransomware attack on Cloud Service Provider Insynq

"The malware attack is said to have led to the disruption of cloud services for many accounting firms including those offering QuickBooks accounting services. "

Link

TLP1 : Green

  • Hackers Attack Financial Institutions & Government Organizations With “Proyecto RAT”

"Security researchers observed a new campaign targeting financial institutions and governmental organizations with a customized version of a remote access tool called “Proyecto RAT”

Link

TLP1 : Green

Breaches: Data Breaches and Hacks


  • Slack data breach

"Slack has suffered a data breach in which thousands of users have been affected"

Link

TLP1 : Green

Vulnerabilities: Vulnerability Advisories, Zero-Days,Patches and Exploits


  • Over 800K Systems Remain Vulnerable to Bluekeep

"Over 805,000 computers around the world are still vulnerable to the critical Bluekeep vulnerability, which experts have warned could create a worm-like threat worse than WannaCry "

Link

TLP1 : Green

  • OpenSUSE: 2019:1718-1: moderate: libqb

" An update that fixes one vulnerability is now available"

Link

TLP1 : Green

Incident Response: Infrastructure, Training, SIEM and Incident Handling


  • OPEN INFORMATION SECURITY FOUNDATION SURICATA BIS 4.1.2 HTTP DETECTION NETWORK PACKET DENIAL OF SERVICE

"A vulnerability was found in Open Information Security Foundation Suricata up to 4.1.2. It has been classified as problematic."

Link

TLP1 : Green

Technical Articles: Forensics, Reverse Engineering, Malware, Phishing, Pentesting, Software Security and Cryptography


  • Detect It Easy - Program For Determining Types Of Files For Windows, Linux And MacOS

"Detect It Easy, or abbreviated "DIE" is a program for determining types of files."DIE" is a cross-platform application, apart from Windows version there are also available versions for Linux and Mac OS. "

Link

TLP1 : Green

 

 

1Traffic Light Protocol (TLP) [1] for information sharing:

 

 

  • Red:Not for disclosure, restricted to participants only.
  • Amber: Limited disclosure, restricted to participants organizations.
  • Green: Limited disclosure, restricted to the community.

 


[1]https://www.first.org/tlp