Cybersecurity Essentials

Mitre ATT&CK

The cybersecurity market already top $100 billion per year and will reach $300 billion by 2024. With that kind of money at stake, this market is one of the hottest areas for IT innovation.

Top news of the week: 04.11.2021.

#STRT
#SURGe
#cybersecurity
#Hancitor
#CobaltStrike
#Biden
#executiveorder
#cloud
#security
#cyberdefense

Mitre Attack

@DarkReading shared
On Nov 1, 2021
Coming up at Black Hat Europe: Mandiant researcher Bart Vanautgaerden shares the details of an investigation into the misuse of Pulse Secure VPN devices by suspected state-sponsored threat actors: https://t.co/J0x8XaXu2H
Open
APTs, Teleworking, and Advanced VPN Exploits: The Perfect Storm

APTs, Teleworking, and Advanced VPN Exploits: The Perfect Storm

A Mandiant researcher shares the details of an investigation into the misuse of Pulse Secure VPN devices by suspected state-sponsored threat actors.

@daveherrald shared
On Nov 3, 2021
RT @meansec: Here @splunk we are often asked "what should we focus on for defenses" here is a great list from @CISAgov of places to start. #SURGe wanted to help so worked with our #STRT breathren. CVE tags are now part of our security content. Read our blog here: https://t.co/Lpm1CcE0iO https://t.co/P8n8dbkJHW
Open
CISA’s Known Exploited Vulnerabilities Catalog and Splunk

CISA’s Known Exploited Vulnerabilities Catalog and Splunk

Accompanying today’s announcement from CISA (BOD 22-01) and their new Known Exploited Vulnerabilities Catalog, SURGe and Splunk Threat Research Team (STRT) have coordinated to add ...

@PatrickCMiller shared
On Nov 4, 2021
Biden’s cybersecurity executive order, a progress report https://t.co/aCkbIANzsP
Open
Biden’s cybersecurity executive order, a progress report

Biden’s cybersecurity executive order, a progress report

Of the 46 tasks President Biden mandated to protect digital government assets, 19 are now completed, though not all agencies have reported their progress.

@bry_campbell shared
On Nov 1, 2021
RT @TheDFIRReport: From Zero to Domain Admin ➡️Initial Access: Maldoc deploys Hancitor ➡️C2: #CobaltStrike & #Hancitor ➡️Discovery: net, nltest, check.exe, AD module, scan for backup systems ➡️Privilege Escalation: Zerologon CVE-2020-1472 https://t.co/gtiUAi9EQN
Open
From Zero to Domain Admin

From Zero to Domain Admin

This report will go through an intrusion from July that began with an email, which included a link to Google's Feed Proxy service that was used to download a malicious Word document. Upon ...

@PatrickCMiller shared
On Nov 3, 2021
Security Pros Know What They Need to Do, But Constrained by Lack of Resources https://t.co/telSf4yOFH
Open
Security Pros Know What They Need to Do, But Constrained by Lack of Resources

Security Pros Know What They Need to Do, But Constrained by Lack of Resources

A new survey report describes security teams as trapped by a lack of resources into continuing what they have been doing rather than migrating their efforts to what they believe they should ...

@cybereason shared
On Nov 2, 2021
RT @SecNewsDesk: @cybereason and @googlecloud announced a joint collaboration to create and bring to market unprecedented Extended Detection and Response (XDR) https://t.co/h9GF7B4N4T #security #cloud @PittockJon
Open
Google Cloud and Cybereason join forces to drive XDR Innovation

Google Cloud and Cybereason join forces to drive XDR Innovation

Cybereason and Google Cloud announced a joint collaboration between the two companies to create and bring to market unprecedented Extended Detection and

@PatrickCMiller shared
On Nov 3, 2021
CISA and Partners Coordinate on Security, Combatting Misinformation for Election Day https://t.co/41vV271bjU
Open
CISA and Partners Coordinate on Security, Combatting Misinformation for Election Day

CISA and Partners Coordinate on Security, Combatting Misinformation for Election Day

CISA will host an election situational awareness room to coordinate with federal partners, state and local election officials, private sector election partners, and political organizations ...

@CISecurity shared
On Nov 4, 2021
We have a mission to improve the practice of #cyberdefense by ensuring that our best practice recommendations track clear and transparent measures of security value for our users. #cybersecurity https://t.co/ij8EwxAiGA
Open
Enabling the Cooperative Cybersecurity Ecosystem

Enabling the Cooperative Cybersecurity Ecosystem

CIS Chief Product Architect discusses how the Open Security Alliance helps enable the cooperative ecosystem.