Infosec News 20200617

  • Publicado: Qua, 17/06/2020 - 10:41

Top News


  • Israel And Greece Sign an Agreement on Cybersecurity Info-Sharing

"Israel and Greece have signed a cooperation agreement on cybersecurity info-sharing."

Link

TLP1 : Green

  • The number of cyber-attacks has increased by almost a quarter since the beginning of the year

"In the first quarter of 2020, 22.5% more cyber attacks were detected compared to the fourth quarter of 2019."

Link

TLP1 : Green

  • Atlantic Offshore protects against cyber threats - World Pipelines

"North Sea operator Atlantic Offshore has put its levels of cyber resilience substantially ahead of approaching International Maritime Organisation requirements for ship owner."

Link

TLP1 : Green

Cybersecurity State: Surveillance, Cyberwarfare, Cybercriminality and Hacktivism


  • CIA elite hacking unit was not able to protect its tools and cyber weapons

"A CIA elite hacking unit that developed cyber-weapons failed in protecting its operations, states an internal report on the Vault 7 data leak."

Link

TLP1 : Green

  • Cyber Crime Increases as Networks Grow More Vulnerable in the Wake of COVID-19

"Cyber criminals are capitalizing on the current pandemic and finding greater success in breaching an increasing number of business networks."

Link

TLP1 : Green

Breaches: Data Breaches and Hacks


  • Data Breach: Bundle of Dating Apps Leaking Sensitive Information Discovered

"Three misconfigured Amazon Web Services (AWS) S3 buckets leaking highly sensitive information from multiple dating apps and websites were discovered."

Link

TLP1 : Green

  • Foodora Data Breach Impacts Customers in 14 Countries

"Online food delivery service Delivery Hero has confirmed a data breach affecting its Foodora brand."

Link

TLP1 : Green

Vulnerabilities: Vulnerability Advisories, Zero-Days,Patches and Exploits


  • 'Ripple20' Bugs Plague Enterprise, Industrial & Medical IoT Devices

"Security researchers today disclosed 19 bugs affecting hundreds of millions of Internet of Things (IoT) devices."

Link

TLP1 : Green

  • Tenable Research Discloses Multiple Vulnerabilities in Plex Media Server

"Tenable Research discovered multiple vulnerabilities in Plex Media Server."

Link

TLP1 : Green

Incident Response: Infrastructure, Training, SIEM and Incident Handling


  • The MITRE ATT&CK Framework: What You Need to Know

     

"11 tactics and hundreds of techniques that attackers can leverage when compromising enterprises."

Link

TLP1 : Green

  • Offensive Security Advanced Web Attacks and Exploitations (AWAE): What You Need To Know

"What do you need to know before taking Advanced Web Attacks and Exploitation (AWAE)?"

Link

TLP1 : Green

Technical Articles: Forensics, Reverse Engineering, Malware, Phishing, Pentesting, Software Security and Cryptography


  • SecretFinder - A Python Script For Find Sensitive Data And Search Anything On Javascript Files

"SecretFinder is a python script based on LinkFinder, written to discover sensitive data like apikeys, accesstoken, authorizations, jwt,..etc in JavaScript files."

Link

TLP1 : Green

  • Fsociety - A Modular Penetration Testing Framework

"Fsociety is a Modular Penetration Testing Framework."

Link

TLP1 : Green

 

 

1Traffic Light Protocol (TLP) [1] for information sharing:

 

 

  • Red:Not for disclosure, restricted to participants only.
  • Amber: Limited disclosure, restricted to participants organizations.
  • Green: Limited disclosure, restricted to the community.

 


[1]https://www.first.org/tlp