Infosec News 20200424

  • Publicado: Sex, 24/04/2020 - 09:21

Top News


  • Chinese Agents Helped Spread Messages That Sowed Virus Panic in U.S., Officials Say

"American officials were alarmed by fake text messages and social media posts that said President Trump was locking down the country. Experts see a convergence with Russian tactics"

Link

TLP1 : Green

  • State-sponsored hackers are using COVID-19 lures, Google warns

"Google warns that nation-backed hackers are exploiting the COVID-19 pandemic to organizations involved in the fight against the pandemic"

Link

TLP1 : Green

  • PSA: A viral text string with an Italian flag and Sindhi characters will crash your iPhone [U]

"Every so often, a bug in iOS emerges where a certain string of text will cause your iPhone or iPad to crash. This week, another such string of text is going viral, and a fix from Apple is not yet publicly available"

Link

TLP1 : Green

Cybersecurity State: Surveillance, Cyberwarfare, Cybercriminality and Hacktivism


  • WHO reports fivefold increase in cyber attacks

"The World Health Organization (WHO) on Thursday warned that the number of cyber attacks against it is now more than five times of that directed at the organization in the same period last year"

Link

TLP1 : Green

  • Connecticut town reverses course on 'pandemic drones' amid privacy concerns

"he Westport Police Department has chosen to opt out of a program that would use drones to detect person with a fever or cough from afar"

Link

TLP1 : Green

  • Skype Phishing Attack Targets Remote Workers’ Passwords

"Attackers are sending convincing emails that ultimately steal victims’ Skype credentials"

Link

TLP1 : Green

  • Free online 'threat blocker' launched in Canada as successful COVID-19 scams multiply

"Canadian Internet Registration Authority teamed up with spy agency on service to thwart malicious websites"

Link

TLP1 : Green

Breaches: Data Breaches and Hacks


  • SBA reveals potential data breach impacting 8,000 emergency business loan applicants

"A US Senator says that the White House has “got to get it together.”"

Link

TLP1 : Green

Vulnerabilities: Vulnerability Advisories, Zero-Days,Patches and Exploits


  • Moobot Botnet Hacks Various Fiber Routers Using 0-day Vulnerability

"Qihoo 360’s Netlab Researchers observed Moobot botnet has successfully spread in fiber routers for remote code execution using0-day vulnerability"

Link

TLP1 : Green

  • Linux Kernel Multiple Vulnerabilities

"Multiple vulnerabilities were identified in Linux Kernel, a remote attacker could exploit some of these vulnerabilities to trigger denial of service condition and remote code execution on the targeted system"

Link

TLP1 : Green

Incident Response: Infrastructure, Training, SIEM and Incident Handling


  • Global Cyber Security As A Service Market Size, Share and Forecast by 2024- Industry Research Report

"The Global Cyber Security As A Service Market report is aimed at highlighting a firsthand documentation of all the best practices in the Cyber Security As A Service industry that subsequently set the growth course active"

Link

TLP1 : Green

  • Innovations in Health IT Modernization Give Rise to Cybersecurity Challenges

"Federal health agencies have adopted innovation as their roadmap to the future — embracing emerging technologies such as Internet of Things-enabled medical devices and interoperable electronic health records"

Link

TLP1 : Green

Technical Articles: Forensics, Reverse Engineering, Malware, Phishing, Pentesting, Software Security and Cryptography


  • Lulzbuster - A Very Fast And Smart Web Directory And File Enumeration Tool Written In C

"Lulzbuster is a very fast and smart web directory and file enumeration tool written in C"

Link

TLP1 : Green

  • IPFire Linux Firewall Distro Improves Its Intrusion Prevention System

"Michael Tremer announced today the general availability of Core Update 143 of the IPFire 2.25 open-source Linux firewall distribution"

Link

TLP1 : Green

 

 

1Traffic Light Protocol (TLP) [1] for information sharing:

 

 

  • Red:Not for disclosure, restricted to participants only.
  • Amber: Limited disclosure, restricted to participants organizations.
  • Green: Limited disclosure, restricted to the community.

 


[1]https://www.first.org/tlp