Cybersecurity

Mitre ATT&CK News

Explore the latest news articles and reports about the Mitre Attack Framework, a curated knowledge base that helps network defenders learn exactly how networks are attacked. Discover everything about it and its place in the world of cybersecurity.

Top news of the week: 06.10.2022.

Security
Attack
Computer security
Physical security
Two-factor authentication
Remote desktop

@PatrickCMiller shared
On Oct 6, 2022
How AWS, Cisco, Netflix & SAP Are Approaching Cybersecurity Awareness Month https://t.co/sKatBQqhSd
Open
How AWS, Cisco, Netflix & SAP Are Approaching Cybersecurity Awareness Month

How AWS, Cisco, Netflix & SAP Are Approaching Cybersecurity Awareness Month

This year's theme is "See Yourself in Cyber," and these security folks are using the month to reflect on the personal factor in cybersecurity.

@HackingDave shared
On Oct 1, 2022
RT @cglyer: New blog from @MsftSecIntel Key points 1️⃣Earliest use: August 2022 2️⃣<10 orgs globally 3️⃣”assesses with medium confidence that the single activity group is likely to be a state-sponsored organization” https://t.co/NJ8aMznKnS
Open
Analyzing attacks using the Exchange vulnerabilities CVE-2022-41040 and CVE-2022-41082

Analyzing attacks using the Exchange vulnerabilities CVE-2022-41040 and CVE-2022-41082

MSTIC observed activity related to a single activity group in August 2022 that achieved initial access and compromised Exchange servers by chaining CVE-2022-41040 and CVE-2022-41082 in a ...

@PatrickCMiller shared
On Oct 6, 2022
First 72 Hours of Incident Response Critical to Taming Cyberattack Chaos https://t.co/e8pm4XZjbs
Open
First 72 Hours of Incident Response Critical to Taming Cyberattack Chaos

First 72 Hours of Incident Response Critical to Taming Cyberattack Chaos

Responding to cyberattacks is extraordinarily stressful, but better planning, frequent practice, and the availability of mental health services can help IR professionals, a survey finds.

@PatrickCMiller shared
On Oct 5, 2022
Vice Society Publishes LA Public School Student Data, Psych Evals https://t.co/kUKBxohdlL
Open
Vice Society Publishes LA Public School Student Data, Psych Evals

Vice Society Publishes LA Public School Student Data, Psych Evals

After a flat refusal to pay the ransom, Los Angeles Unified School District's stolen data has been dumped on the Dark Web by a ransomware gang.

@PatrickCMiller shared
On Oct 2, 2022
Cybercriminals See Allure in BEC Attacks Over Ransomware https://t.co/1ZtZCWUNnW
Open
Cybercriminals See Allure in BEC Attacks Over Ransomware

Cybercriminals See Allure in BEC Attacks Over Ransomware

While ransomware seems stalled, business email compromise (BEC) attacks continue to make profits from the ProxyShell and Log4j vulnerabilities, nearly doubling in the latest quarter.

@likethecoins shared
On Oct 4, 2022
RT @redcanary: AppleScript, JXA, and other abuses of OSA are prevalent in macOS malware. We’ve gathered the experts to show you where to look for activity, how to develop detection analytics, and ways to test your visibility. https://t.co/61wkz3Toah
Open
The Detection Series: AppleScript and the Open Scripting Architecture

The Detection Series: AppleScript and the Open Scripting Architecture

Experts weigh-in on where to look for activity, how to develop detection analytics, and ways to test your visibility. Register today!

@PatrickCMiller shared
On Oct 2, 2022
Reshaping the Threat Landscape: Deepfake Cyberattacks Are Here https://t.co/g2iY9TpNik
Open
Reshaping the Threat Landscape: Deepfake Cyberattacks Are Here

Reshaping the Threat Landscape: Deepfake Cyberattacks Are Here

It's time to dispel notions of deepfakes as an emergent threat. All the pieces for widespread attacks are in place and readily available to cybercriminals, even unsophisticated ones.

@PatrickCMiller shared
On Oct 6, 2022
The Top 4 Mistakes in Security Programs to Avoid https://t.co/kQXk4jhj4e
Open
The Top 4 Mistakes in Security Programs to Avoid

The Top 4 Mistakes in Security Programs to Avoid

Overlooking even just a single security threat can severely erode a company’s community and consumer confidence, tarnish reputation and brand, negatively impact corporate valuations, ...