InfoSec News 20190729

  • Publicado: Seg, 29/07/2019 - 11:08

Top News


"According to the study, no environment is immune to cyber-attacks as cybercriminals continue to develop new toolsets and techniques."

Link

TLP1 : Green

  • Common cyber attacks businesses face

"Cyber criminals employ bots, malware, SQL injection and other methods of cyber attacks to exploit vulnerabilities in business networks."

Link

TLP1 : Green

"FaceApp has been found collecting the list of your Facebook friends for no reason"

Link

TLP1 : Green

Cybersecurity State: Surveillance, Cyberwarfare, Cybercriminality and Hacktivism


  • Ransomware attack leaves Johannesburg residents without electricity

"A ransomware attack aimed at City POwer, the electricity provider for Johannesburg, South Africa, has resulted in some residents temporarily without power"

Link

TLP1 : Green

  • Complete Personal Fraud Kits Sell for Less Than $40 on Dark Web

"The low cost of records reflects the huge supply of PII after many breaches at hospitals, government agencies, and credit bureaus"

Link

TLP1 : Green

  • US cyber security firm Comodo caught unawares as hacker accessed and kept its files in public repository

"An anonymous hacker got access to internal files of US-based cybersecurity company Comodo, headquartered in Clifton, New Jersey"

Link

TLP1 : Green

Breaches: Data Breaches and Hacks


  • UK Abused Access to EU Database For Years: Report

"The UK has been slammed for illegally copying and sharing a database of EU citizens."

Link

TLP1 : Green

Vulnerabilities: Vulnerability Advisories, Zero-Days,Patches and Exploits


"An attacker can trigger a fatal error of libtasn1, in order to trigger a denial of service."

Link

TLP1 : Green

  • Vulnerability CVE-2019-2276

"Possible out of bound read occurs while processing beacoming request due to lack of check on action frames received from user controlled space in Snadragon Auto,Snadragon Consumer Electronics."

Link

TLP1 : Green

Incident Response: Infrastructure, Training, SIEM and Incident Handling


  • Avast Secure Browser enhanced with built-in memory and battery-saving controls

" Avast, a global leader in digital security products, has introduced built-in performance and battery-saving enhancements in the latest release of Avast Secure Browser, code-named ‘Zermatt’."

Link

TLP1 : Green

Technical Articles: Forensics, Reverse Engineering, Malware, Phishing, Pentesting, Software Security and Cryptography


  • Uncompyle6 - A Cross-Version Python Bytecode Decompiler

"A native Python cross-version decompiler and fragment decompiler"

Link

TLP1 : Green

 

 

1Traffic Light Protocol (TLP) [1] for information sharing:

 

 

  • Red:Not for disclosure, restricted to participants only.
  • Amber: Limited disclosure, restricted to participants organizations.
  • Green: Limited disclosure, restricted to the community.

 


[1]https://www.first.org/tlp