Infosec News 20201008
Top News
-
Hackers exploit Trump's COVID-19 diagnosis to spread a different kind of virus
"Opportunistic hackers have seized on President Donald Trump’s illness from COVID-19 to fool email recipients into clicking on malware"
-
'Bahamut' Threat Group Targets Government & Industry in Middle East
"Researchers say the cyber espionage group was involved in several attacks against government officials and businesses in the Middle East and South Asia"
TLP1 : Green
-
Feds Sound Alarm Over Emotet Attacks on State, Local Govs
"CISA warned already-strained public-sector entities about disturbing spikes in Emotet phishing attacks aimed at municipalities"
TLP1 : Green
Cybersecurity State: Surveillance, Cyberwarfare, Cybercriminality and Hacktivism
-
Open Source Threat Intelligence Searches for Sustainable Communities
"As long as a community is strong, so will be the intelligence it shares on open source feeds. But if that community breaks down..."
TLP1 : Green
-
New 'HEH' Botnet Targets Exposed Telnet Services
"Latest threat is one in a growing list of malware developed in the Go programming language"
TLP1 : Green
-
37% of remote employees have no security restrictions on corporate devices
"ManageEngine unveiled findings from a report that analyzes behaviors related to personal and professional online usage patterns"
TLP1 : Green
-
Swiss-Swedish Diplomatic Row Over Crypto AG
" It was a CIA-owned Cold War operation for decades. Today it is called Crypto International, still based in Switzerland but owned by a Swedish company."
TLP1 : Green
Breaches: Data Breaches and Hacks
-
Breach at food delivery service Chowbus reportedly affects hundreds of thousands of customers
"Two months after securing a $33 million funding round from investors, food delivery startup Chowbus is grappling with a breach that observers say exposed personal data on hundreds of thousands of customers"
TLP1 : Green
Vulnerabilities: Vulnerability Advisories, Zero-Days,Patches and Exploits
-
Insecure DLL loading in Cisco Webex Teams Client for Windows
"The vulnerability allows a local user to compromise vulnerable system.The vulnerability exists due to incorrect handling of directory paths at run time in the loading mechanism of specific DLLs. A local user can place a specially crafted .dll file and execute arbitrary code with the privileges of another user’s account."
TLP1 : Green
-
Vulnerability Spotlight: DoS vulnerability in ATIKMDAG.SYS AMD graphics driver
"Cisco Talos recently discovered a denial-of-service vulnerability in the ATIKMDAG.SYS driver for some AMD graphics cards"
-
Denial of service in Wireshark
"This security advisory describes one medium risk vulnerability."
TLP1 : Green
-
Researcher Finds Vulnerabilities in Products of 10 Cybersecurity Vendors
"CyberArk researcher Eran Shimony reported this week that he identified flaws in products from Kaspersky (advisory), McAfee, Symantec, Fortinet, Checkpoint, Trend Micro, Avira, Microsoft, Avast and F-Secure. He reported his findings to impacted vendors and they have all released patches."
TLP1 : Green
-
Researchers Turn Comcast TV Remote Into Spying Device
"Researchers from segmentation solutions provider Guardicore have identified a series of vulnerabilities that could have been exploited by a hacker to turn a TV remote into a spying device."
TLP1 : Green
Incident Response: Infrastructure, Training, SIEM and Incident Handling
-
Building an Information Security Program Post-Breach
"An important question to answer at this point is, how did Rekt Casino get here?"
TLP1 : Green
Technical Articles: Forensics, Reverse Engineering, Malware, Phishing, Pentesting, Software Security and Cryptography
-
CSRFER - Tool To Generate CSRF Payloads Based On Vulnerable Requests
"CSRFER is a tool to generate csrf payloads, based on vulnerable requests."
TLP1 : Green
-
The New War Room: Cybersecurity in the Modern Era
"The introduction of the virtual war room is a new but necessary shift. To ensure its success, security teams must implement new systems and a new approach to cybersecurity."
TLP1 : Green
1Traffic Light Protocol (TLP) [1] for information sharing:
- Red:Not for disclosure, restricted to participants only.
- Amber: Limited disclosure, restricted to participants organizations.
- Green: Limited disclosure, restricted to the community.