Cybersecurity Essentials

Mitre ATT&CK

The cybersecurity market already top $100 billion per year and will reach $300 billion by 2024. With that kind of money at stake, this market is one of the hottest areas for IT innovation.

Top news of the week: 08.01.2021.

#cybersecurity
#APT
#ransomware
#Supernova
#SUNBURST
#CorporateLawyer
#LegalAdvice
#LegalCounsel
#cybercrime
#China

Mitre Attack

@PatrickCMiller shared
On Jan 7, 2021
China's APT Groups May Be Looking to Cash In https://t.co/MSMo9BFJ4s
Open
China's APT Groups May Be Looking to Cash In

China's APT Groups May Be Looking to Cash In

Two campaigns have resulted in encrypted drives and ransom notes, suggesting that some China-linked nation-state advanced persistent threat groups have added financial gain as a motive, ...

@likethecoins shared
On Jan 5, 2021
RT @stonerpsu: Here is a new blog I wrote that attempts to bring some order to the chaos around Solarwinds and the latest vulnerability and malware called #Supernova as well as some ideas around using @splunk for detection searches https://t.co/iemKKvAiuQ
Open
Detecting Supernova Malware: SolarWinds Continued

Detecting Supernova Malware: SolarWinds Continued

Supernova exposes SolarWinds Orion to attack via an in-memory web shell. It needs to be patched and detections below can help identify adversary actions.

@CSOonline shared
On Jan 5, 2021
These 5 questions will help you find the right #CorporateLawyer to advise you on privacy and security issues https://t.co/TJkmok27jH @TechJohnEdwards #LegalCounsel #LegalAdvice
Open
5 questions CISOs should ask prospective corporate lawyers

5 questions CISOs should ask prospective corporate lawyers

Where can you find an attorney with the knowledge and insight to help you navigate thorny privacy and security issues? These five questions will help you find the right match.

@PatrickCMiller shared
On Jan 6, 2021
Egregor ransomware group explained: And how to defend against it https://t.co/jgUA4tw9FD
Open
Egregor ransomware group explained: And how to defend against it

Egregor ransomware group explained: And how to defend against it

Egregor is one of the most rapidly growing ransomware families. It employs "double ransom" techniques to threaten reputational damage and increase pressure to pay.

@PatrickCMiller shared
On Jan 8, 2021
SolarWinds hack is a wakeup call for taking cybersecurity action https://t.co/4vboO96PII
Open
SolarWinds hack is a wakeup call for taking cybersecurity action

SolarWinds hack is a wakeup call for taking cybersecurity action

Many questions are yet to be answered as the investigation and response continues, but one thing is clear: managing supply chain risks requires a level of sophistication similar to that of ...

@HackingDave shared
On Jan 5, 2021
RT @netresec: NEW FINDING: There's a 1 bit flag hidden in #SUNBURST DNS requests indicating whether or not the victim has been targeted and the backdoor has progressed to "stage 2" operation. https://t.co/xxe0SoBgKU
Open
Finding Targeted SUNBURST Victims with pDNS

Finding Targeted SUNBURST Victims with pDNS

Our SunburstDomainDecoder tool can now be used to identify SUNBURST victims that have been explicitly targeted by the attackers. The only input needed is passive DNS (pDNS) data for ...

@CrowdStrike shared
On Jan 5, 2021
CrowdStrike Falcon Zero Trust helps to evaluate risks to your current #identity store posture and #AD potential attacks with the MITRE ATT&CK framework. Learn more: https://t.co/6LPdRDOJCV https://t.co/DqR4BKahi3
Open
Demo Tuesdays: Falcon Zero Trust Coverage of the MITRE ATT&CK

Demo Tuesdays: Falcon Zero Trust Coverage of the MITRE ATT&CK

Watch Senior Product Manager Alex Talyanski demonstrate how to download and evaluate the Zero Trust coverage for yourself.

@CrowdStrike shared
On Jan 5, 2021
Adversaries will continue working overtime to thwart your cyber defenses — and it will be crucial for organizations to heed these recommendations and put them into practice in 2021 and beyond. https://t.co/AMJBWT1VtV #cybersecurity https://t.co/NQKZn4MSTE
Open
Holiday Cyber Warnings Will Echo Across 2021

Holiday Cyber Warnings Will Echo Across 2021

CrowdStrike Product Director Scott Taschler, provides ominous warnings of adversary activity and practical recommendations for increasing cybersecurity for 2021.