What's new arround internet

Last one

Src Date (GMT) Titre Description Tags Stories Notes
Cybereason.webp 2021-02-12 19:59:42 CISO Stories Podcast: Telling Scary Stories to the Board? Stop. Here\'s Why… (lien direct) CISO Stories Podcast: Telling Scary Stories to the Board? Stop. Here's Why… CISOs today have varied tenures at organizations depending upon their ability to master learning the business of the organization. Enjoy this podcast with special guest Mischel Kwon to learn how to translate information security technical issues into a business-focused language and determine the right amount of technical language to share with executives…
Cybereason.webp 2021-02-12 14:43:04 Malicious Life Podcast: Should Law Enforcement Use Facial Recognition? Pt. 1 (lien direct) Malicious Life Podcast: Should Law Enforcement Use Facial Recognition? Pt. 1 There are plenty of reasons why law enforcement should use AI for facial recognition - after all, humans are notoriously bad eye witnesses. However, placing AI in the hands of law enforcement does have its dangers due to the limitations of the technology itself and the biases of the officers who use it.
Cybereason.webp 2021-02-10 14:00:00 The Cybereason Malop: Achieving Operation-Centric Security (lien direct) The Cybereason Malop: Achieving Operation-Centric Security Targeted attacks are increasingly taking aim at multiple users and devices simultaneously as well as leveraging a wider range of tactics, techniques and procedures. 
Cybereason.webp 2021-02-09 16:21:37 Attacker Tries to Poison Florida City\'s Water Supply (lien direct) Attacker Tries to Poison Florida City's Water Supply A cyberattacker attempted to poison a Florida municipality's water supply by breaking into the city's water treatment plant systems. On February 5, an operator at the water treatment plant for the City of Oldsmar in Pinellas County noticed someone controlling his mouse. The operator didn't think much of the activity at first, reported WTSP-TV.
Cybereason.webp 2021-02-08 18:47:37 Extortionists Publish Data Stolen from Two Healthcare Service Providers (lien direct) Extortionists Publish Data Stolen from Two Healthcare Service Providers An attacker group published information stolen from two healthcare service providers in a reported attempt to extort them for money. On February 5, NBC News reported that a well-known ransomware group had published tens of thousands of files to a data leaks website on the dark web. Among those files were scanned diagnostic results, letters to health insurers and a folder containing background checks on employees. Ransomware
Cybereason.webp 2021-02-04 14:00:00 The Security Value of Exploit Protection (lien direct) The Security Value of Exploit Protection An exploit attack occurs when a malicious actor takes advantage of a software vulnerability to penetrate and then damage or steal information from a computer system. One feature that Cybereason provides to protect users from exploit attacks is our Exploit Protection. The following is a quick rundown of some of the key terms for understanding exploit attacks. Vulnerability
Cybereason.webp 2021-02-04 13:05:00 Cybereason XDR Dubbed Hottest New Cybersecurity Product by CRN (lien direct) Cybereason XDR Dubbed Hottest New Cybersecurity Product by CRN Cybereason is pleased to announce that Cybereason XDR was named one of the hottest new cybersecurity products of 2020 by CRN. With Cybereason XDR, defenders can pinpoint, understand and end any Malop™ (malicious operation) across the entire IT stack whether on-premises, mobile or in the cloud. 
Cybereason.webp 2021-02-03 16:08:52 Malicious Life Podcast: Inside Clearview AI Facial Recognition (lien direct) Malicious Life Podcast: Inside Clearview AI Facial Recognition Clearview AI scrapes billions of images off social media and the open web, applies facial recognition algorithms on them, and sells that data to law enforcement agencies all over the world. But who are the people behind this secretive company, and what did a breach into its databases reveal?
Cybereason.webp 2021-02-03 14:42:59 Nearly One-Third of Attack Targets Weren\'t Running SolarWinds (lien direct) Nearly One-Third of Attack Targets Weren't Running SolarWinds Approximately one-third of organizations affected by the SolarWinds supply chain attacks weren't actually running the IT management company's affected software.
Cybereason.webp 2021-02-02 21:07:01 Krebs, Curry and Cyber Security (lien direct) Krebs, Curry and Cyber Security The daily drumbeat of data spills, breaches, and thefts can foster breach fatigue, apathy, and cynicism among even the hardiest security professionals. What sets in is a suspicion that all our efforts are for naught, and that we are perpetually a step behind the bad guys. 
Cybereason.webp 2021-02-01 14:00:00 NHS Warns of New COVID-19 Vaccine-Related Phishing Campaigns (lien direct) NHS Warns of New COVID-19 Vaccine-Related Phishing Campaigns The United Kingdom's National Health Service (NHS) warned that scammers are in the process of sending out fake COVID-19 vaccine invitations. On January 25th, Urology Cancer Research & Education (UCARE) Oxford reached out to the NHS on Twitter and shared an image of one such fake invitation that it had received.
Cybereason.webp 2021-01-28 17:55:04 Emotet Botnet Infrastructure Disrupted in International Takedown (lien direct) Emotet Botnet Infrastructure Disrupted in International Takedown Law enforcement entities and judicial authorities located around the world succeeded in disrupting the Emotet botnet's infrastructure through a coordinated takedown effort.
Cybereason.webp 2021-01-28 14:00:00 Sam Curry on the \'Real Privacy Mandate\' (lien direct) Sam Curry on the 'Real Privacy Mandate' National Privacy Day is a time to look at the current state of privacy and to set the direction and tone for the future. On January 28, 2021, let's stop and think not just about the minimum requirements of privacy legislation but rather about the world we're building and handing to our children. 
Cybereason.webp 2021-01-28 13:05:00 Cybereason Partners with Ensign to Provide Managed Detection and Response Services in APAC (lien direct) Cybereason Partners with Ensign to Provide Managed Detection and Response Services in APAC Cybereason, the leader in future ready attack protection, is pleased to announce a partnership with Ensign InfoSecurity , one of the Asia Pacific's largest pure-play cybersecurity firms, to expand the suite of cybersecurity solutions and services that Ensign offers to protect its Asia Pacific customers from the evolving cyber threats.  Guideline ★★★★★
Cybereason.webp 2021-01-27 14:30:00 SolarWinds Attacks Highlight Advantage of Indicators of Behavior for Early Detection (lien direct) SolarWinds Attacks Highlight Advantage of Indicators of Behavior for Early Detection I've talked about the SolarWinds Supply Chain Attacks recently more than you'd care to know over the past month or so (just ask anyone who knows me), with key points from a few of the discussions making their way into the public sphere here and here.
Cybereason.webp 2021-01-26 14:00:00 (Déjà vu) Cybereason vs. RansomEXX Ransomware (lien direct) Cybereason vs. RansomEXX Ransomware Research by: Daniel Frank Ransomware
Cybereason.webp 2021-01-25 14:44:34 Wipro\'s State of Cybersecurity Report Reveals Valuable Insights (lien direct) Wipro's State of Cybersecurity Report Reveals Valuable Insights It is true in general that technology is always changing, and the threat landscape is constantly evolving, but 2020 has amplified the cybersecurity challenge. Organizations of all sizes and across all industries already struggled to effectively manage risk and cyber resilience, but the global pandemic of COVID-19 has introduced a sudden and dramatic shift that tips the playing field in favor of attackers and exacerbates the task.  Threat
Cybereason.webp 2021-01-22 14:00:00 Last Hurrah: Executive Order to Protect IaaS Platforms from Malicious Actors (lien direct) Last Hurrah: Executive Order to Protect IaaS Platforms from Malicious Actors President Donald Trump signed an executive order to prevent foreign malicious cyber actors from misusing United States Infrastructure as a Service (IaaS) products. In the executive order, dated January 19, President Trump explained that foreign malicious cyber actors were using IaaS products made in the United States to aid their efforts in stealing sensitive information as well as targeting U.S. critical infrastructure:
Cybereason.webp 2021-01-21 14:08:16 SolarWinds Attacks Highlight Importance of Operation-Centric Approach (lien direct) SolarWinds Attacks Highlight Importance of Operation-Centric Approach We're still learning the full extent of the SolarWinds supply chain attacks. On January 11, for instance, researchers published a technical breakdown of a malicious tool detected as SUNSPOT that was employed as part of the infection chain involving the IT management software provider's Orion platform.  Tool Solardwinds Solardwinds
Cybereason.webp 2021-01-13 14:00:00 Cybereason and SYNNEX Corporation Partner to End Cyber Attacks (lien direct) Cybereason and SYNNEX Corporation Partner to End Cyber Attacks Cybereason and SYNNEX Corporation are pleased to announce a strategic agreement that enables SMBs and Enterprises to detect and end cyber attacks on endpoints anywhere on their networks.
Cybereason.webp 2021-01-12 14:03:32 (Déjà vu) Cybereason vs. Conti Ransomware (lien direct) Cybereason vs. Conti Ransomware Research by: Lior Rochberger Ransomware
Cybereason.webp 2021-01-11 21:35:00 Cybereason and Intel Introduce Hardware-Enabled Ransomware Protections for Businesses (lien direct) Cybereason and Intel Introduce Hardware-Enabled Ransomware Protections for Businesses Ransomware can literally put organizations and lives at risk, as witnessed in 2020 with the continuous onslaught of attacks against the healthcare industry, research organizations working on COVID-19 vaccines, telecommunication centers, financial institutions, the public sector and companies across every industry vertical. Ransomware
Cybereason.webp 2021-01-05 19:42:44 Contextualizing Microsoft\'s Source Code Exposure in the SolarWinds Attacks (lien direct) Contextualizing Microsoft's Source Code Exposure in the SolarWinds Attacks In the middle of December, IT management software provider SolarWinds revealed in a security advisory that it had fallen victim to a sophisticated supply chain attack. The offensive involved the placement of a backdoor known as SUNBURST into versions 2019.4 HF 5, 2020.2 with no hotfix installed and 2020.2 HF 1 of the company's Orion Platform software. If executed, SUNBURST allowed an attacker to compromise the server running the Orion build. Solardwinds Solardwinds
Cybereason.webp 2021-01-04 13:30:00 Ever Evolving: Israel Barak on Running Remote SOC Ops (lien direct) Ever Evolving: Israel Barak on Running Remote SOC Ops We spent some time with Israel Barak, Chief Information Security Officer at Cybereason, who discussed some of the challenges of running a world-wide SOC remotely during the pandemic - check it out...
Cybereason.webp 2020-12-24 13:00:00 Amazon Gift Card Offer Serves Up Dridex Banking Trojan (lien direct) Amazon Gift Card Offer Serves Up Dridex Banking Trojan Research by: Daniel Frank ★★★★
Cybereason.webp 2020-12-23 14:00:00 Cybereason vs. Clop Ransomware (lien direct) Cybereason vs. Clop Ransomware Research by: Daniel Frank Ransomware
Cybereason.webp 2020-12-22 21:14:06 Cybereason vs. SolarWinds Supply Chain Attack (lien direct) Cybereason vs. SolarWinds Supply Chain Attack On December 13, 2020, IT infrastructure management provider SolarWinds issued a Security Advisory regarding their SolarWinds Orion Platform after experiencing a “highly sophisticated” supply chain attack. The activity is reported to have begun as early as Spring 2020, as reported by researchers from security firm FireEye. Solardwinds
Cybereason.webp 2020-12-22 14:00:00 2021 Security Crystal Ball: Trends and Predictions for the Year Ahead (lien direct) 2021 Security Crystal Ball: Trends and Predictions for the Year Ahead 2020 kicked off with a bang, literally, as General Soleimani was killed less than a week into the year. This had immediate repercussions with simple website defacements by minor actors ideologically aligned with Iran and concerns of cyber escalations.
Cybereason.webp 2020-12-21 04:08:43 Cybereason and Oracle Team Up for Security at Scale from the Endpoint to the Cloud (lien direct) Cybereason and Oracle Team Up for Security at Scale from the Endpoint to the Cloud The sudden transition to remote work brought on by the pandemic resulted in many companies ensuring employees had the necessary tools to work remotely. However, that left little focus on the rising security risks that come with home networks and endpoints.
Cybereason.webp 2020-12-18 18:16:30 Impact of XDR on the Modern SOC: New ESG Report (lien direct) Impact of XDR on the Modern SOC: New ESG Report As we hurtle towards the end of 2020, the only constant we can come to expect is change itself. We're pressed on two sides: our corporate IT environments continue to change, and attackers are more persistent and explosive than ever. While it is possible to secure a modern, distributed, multi-cloud environment, it feels out of reach for most security teams. Between data lake management, detection and rules tuning, and repetitive response actions, it's challenging to architect, build, and maintain -- and of course prove that it's making the business safer.
Cybereason.webp 2020-12-15 18:11:05 Molerats APT: New Malware and Techniques in Middle East Espionage Campaign (lien direct) Molerats APT: New Malware and Techniques in Middle East Espionage Campaign Security researchers observed a politically motivated APT called “Molerats” using three new malware variants to conduct espionage in the Middle East. Malware
Cybereason.webp 2020-12-14 21:47:12 The SolarWinds Supply Chain Attack and the Limits of Cyber Hygiene (lien direct) The SolarWinds Supply Chain Attack and the Limits of Cyber Hygiene By now, you've probably heard: On December 13, Reuters reported that malicious actors had gone after both the U.S. Department of Treasury and the U.S. Department of Commerce. The National Security Council met at the White House on December 12 to talk things over. A day later, U.S. officials indicated that they had asked CISA and the FBI to look into what had happened.
Cybereason.webp 2020-12-14 14:30:00 Ever Evolving: Jake Williams on Running an Infosec Consultancy Remotely (lien direct) Ever Evolving: Jake Williams on Running an Infosec Consultancy Remotely We spent some time with Jake Williams - founder and President at Rendition Infosec and SANS Instructor - discusses some of the challenges in remotely running a successful infosec consultancy - check it out...
Cybereason.webp 2020-12-10 16:00:31 Cybereason vs. Ryuk Ransomware (lien direct) Cybereason vs. Ryuk Ransomware Ryuk ransomware has been infecting victims since around 2018, and is believed to be based on the source code of Hermes ransomware, which was sold on an internet hacking forum back in 2017. Since its inception, Ryuk has been used to target large organizations to great effect, having accumulated as much as $61.26 million (as of Feb 2020) in ransom payments according to federal investigations.  Ransomware
Cybereason.webp 2020-12-09 02:00:00 New Malware Arsenal Abusing Cloud Platforms in Middle East Espionage Campaign (lien direct) New Malware Arsenal Abusing Cloud Platforms in Middle East Espionage Campaign The Cybereason Nocturnus Team has identified an active espionage campaign employing three previously unidentified malware variants that use Facebook, Dropbox, Google Docs and Simplenote for command & control and the exfiltration of data from targets across the Middle East. The full report can be downloaded here (ungated). Malware
Cybereason.webp 2020-12-07 20:46:46 Ever Evolving: Katie Nickels on Incident Response in a Remote World (lien direct) Ever Evolving: Katie Nickels on Incident Response in a Remote World We spent some time with Katie Nickels - current Director of Intelligence at Red Canary and formerly MITRE ATT&CK Threat Intelligence Lead - to discuss applied threat intelligence, prioritizing threats for impact, and working incident response in remote environments - check it out... Threat Guideline APT 15
Cybereason.webp 2020-12-04 18:23:59 Is XDR the Next Silver Bullet? (lien direct) Is XDR the Next Silver Bullet? Join us for an hour-long panel on the intricacies of XDR and how it will affect the security industry. Learn what XDR is, specific use cases, and how security practitioners can easily integrate this new technology into their security stack.
Cybereason.webp 2020-12-04 10:00:00 Meet the League of Defenders (lien direct) Meet the League of Defenders When I chose a career in B2B marketing I'm not sure I ever imagined I'd be a part of a team that spent weeks architecting intricate owl wings and razor-sharp talons, but here we are. While 2020 has been filled with many challenging surprises, this was a great one for me. And because we are driven by the mission of defending together, today we released a video of what it took to bring our new league of animated owls to life. But first, some history of the owl + Cybereason.
Cybereason.webp 2020-12-02 14:30:00 Ensuring Digital Safety and Security This Holiday Season (lien direct) Ensuring Digital Safety and Security This Holiday Season In mid-2020, the Cybereason Research Team detected an active campaign that targeted Brazilian customers of MercadoLivre, one of the largest e-commerce platforms in Latin America.
Cybereason.webp 2020-11-30 14:30:00 Ever Evolving: Rachel Tobac Talks Social Engineering (lien direct) Ever Evolving: Rachel Tobac Talks Social Engineering We spent some time with Rachel Tobac discussing techniques, awareness and training for organizations seeking to limit the risk from one of the most difficult security threats to counter - social engineering attacks - check it out...
Cybereason.webp 2020-11-26 01:51:59 Cybereason vs. Egregor Ransomware (lien direct) Cybereason vs. Egregor Ransomware Research by: Lior Rochberger Ransomware
Cybereason.webp 2020-11-23 19:15:34 The Boston Globe Recognizes Cybereason as a Top Place to Work in 2020 (lien direct) The Boston Globe Recognizes Cybereason as a Top Place to Work in 2020 Cybereason is pleased to announce we were named one of the Top Places to Work in 2020 by The Boston Globe, which recognizes the most admired workplaces in the state voted on by the people who know them best-their employees. The survey measures employee opinions about their company's direction, execution, connection, management, work, pay and benefits, and engagement.
Cybereason.webp 2020-11-23 17:57:58 Ever Evolving: Cybereason CSO Sam Curry on Security and Leadership (lien direct) Ever Evolving: Cybereason CSO Sam Curry on Security and Leadership Cybereason CSO Sam Curry shares insights on tackling tough security challenges from a strategic perspective as well as from the point of view of a leader of security operations teams working tirelessly to reverse the adversary advantage and return the high ground to the defenders. Guideline
Cybereason.webp 2020-11-19 16:19:51 Cybereason vs. MedusaLocker Ransomware (lien direct) Cybereason vs. MedusaLocker Ransomware Research by: Tom Fakterman and Assaf Dahan Ransomware
Cybereason.webp 2020-11-18 19:59:10 Buyer Beware: Tips for Secure Online Shopping During the Holidays (lien direct) Buyer Beware: Tips for Secure Online Shopping During the Holidays If 2020 has taught us anything, it is to expect the unexpected. The global pandemic has shown that people have heart and are very resilient in the face of adversity. For cyber criminals, 2020 year has been one of the most profitable in history, as we have seen a massive uptick in cyber-related criminal activity, scams and fraud. 
Cybereason.webp 2020-11-18 04:15:00 Novel Chaes Malware Underscores Heightened E-Commerce Risk This Holiday Season (lien direct) Novel Chaes Malware Underscores Heightened E-Commerce Risk This Holiday Season The Cybereason Nocturnus Team has identified an active campaign targeting customers of a larger e-commerce platform with newly identified multi-stage malware that evades antivirus tools dubbed Chaes.  Malware
Cybereason.webp 2020-11-16 13:30:00 Ever Evolving: Stephanie Ihezukwu on Managing Security Remotely (lien direct) Ever Evolving: Stephanie Ihezukwu on Managing Security Remotely Not long ago we were fortunate to grab some time with Steph Ihezukwu who shared her insights and observation on everything from diversity in tech to how to collaborate with teams in the age of remote work and heightened security concerns - check it out...
Cybereason.webp 2020-11-11 04:30:00 Cybereason XDR: Delivering Future-Ready Attack Protection Beyond the Endpoint (lien direct) Cybereason XDR: Delivering Future-Ready Attack Protection Beyond the Endpoint Today's targeted attacks increasingly take aim at multiple devices and users simultaneously while employing a range of tactics, techniques and procedures (TTPs). Defenders are forced to work in silos, employing disparate tools on each type of asset -- one solution for endpoint, another for cloud, a third for mobile and fourth to look at cloud identities.
Cybereason.webp 2020-11-09 18:19:07 Ever Evolving: Yonatan Striem-Amit on Handling Breaches While Remote (lien direct) Ever Evolving: Yonatan Striem-Amit on Handling Breaches While Remote Cybereason was established with an offensive mindset as the foundation of the company's approach to developing future-ready defensive products and solutions because it takes a deeper understanding of the attacker's perspective to create game changing technologies that work to reverse the adversary advantage and return the high ground to the defenders.
Cybereason.webp 2020-11-02 14:00:00 Ever Evolving: Tanya Janca on Application Security Challenges (lien direct) Ever Evolving: Tanya Janca on Application Security Challenges A few months ago, we were lucky enough to grab some time with Tanya Janca to discuss some key issues around security in times of crisis. Tanya has more than twenty years of experience in the security industry, and we're so fortunate to have her join us for the series - check it out...
Last update at: 2024-05-12 14:07:59
See our sources.
My email:

To see everything: Our RSS (filtrered) Twitter