Infosec News 20200304

  • Publicado: Qua, 04/03/2020 - 12:52

Top News


  • Brave comes out on top in browser privacy study

"By contrast, two web browsers share identifiers that are tied to the device hardware and so persist even across fresh installs "

Link

TLP1 : Green

  • Tesco blocks 620,000 Clubcard accounts after security scare

"Over 600,000 Tesco Clubcard owners are being sent new cards after the supermarket giant determined hackers had attempted to access accounts."

Link

TLP1 : Green

  • Why ‘free’ Wi-Fi isn’t really free

"How much would you ‘pay’ for ‘free’ Wi-Fi? Would you give away your birthday? Your travel details? Your home address? Your phone number?"

Link

TLP1 : Green

Cybersecurity State: Surveillance, Cyberwarfare, Cybercriminality and Hacktivism


  • Schools Are Pushing the Boundaries of Surveillance Technologies

"A school district in New York recently adopted facial recognition technology to monitor students, and it is now one of a growing number of schools across the country conducting mass privacy violations of kids in the name of “safety.”.;

Link

TLP1 : Green

  • We’ll have the first global cyber warfare this year’: Nouriel Roubini

"An economist who predicted the 2008 housing crisis and recession is now predicting that 2020 will be the year the world sees its first full-fledged cyber war."

Link

TLP1 : Green

Breaches: Data Breaches and Hacks


  • Hackers Steal Customer Data from UK FinTech Loqbox

"A UK-based fintech was hit by a “sophisticated” cyber-attack last month, compromising the payment information and personal details of its customers. "

Link

TLP1 : Green

  • Hackers are using Word documents to drop NetSupport Manager RAT

"Before dropping NetSupport Manager RAT, attackers trick users into opening a malicious MS Word document by entering a password."

Link

TLP1 : Green

Vulnerabilities: Vulnerability Advisories, Zero-Days,Patches and Exploits


  • Huge flaw found in how facial features are measured from images>

"There is a serious flaw with facial recognition systems that use what’s called anthropometry: the measurement of facial features from images. "

Link

TLP1 : Green

Incident Response: Infrastructure, Training, SIEM and Incident Handling


  • How to Jumpstart Your NIST Cybersecurity Framework Maturity: Detect Function

"Continuing our blog series on how to jumpstart your NIST Cybersecurity Framework (CSF) maturity, we’ll now dive into some of the industry-leading use cases we’re seeing for the Detect Function."

Link

TLP1 : Green

  • 5 reasons to consider a career in cybersecurity

"From competitive salaries to ever-evolving job descriptions, there are myriad reasons why a cybersecurity career could be right for you"

Link

TLP1 : Green

Technical Articles: Forensics, Reverse Engineering, Malware, Phishing, Pentesting, Software Security and Cryptography


  • WiFi Passview v2.0 - An Open Source Batch Script Based WiFi Passview For Windows!

"WiFi Passview is an open source batch script based program that can recover your WiFi Password easily in seconds. "

Link

TLP1 : Green

  • dnsFookup - DNS Rebinding Toolkit

"It lets you create dns bins like a burp collaborator but it adds a bit more features... (at least it tries to) ."

Link

TLP1 : Green

 

1Traffic Light Protocol (TLP) [1] for information sharing:

 

  • Red:Not for disclosure, restricted to participants only.
  • Amber: Limited disclosure, restricted to participants organizations.
  • Green: Limited disclosure, restricted to the community.

 


[1]https://www.first.org/tlp