Cybersecurity Essentials

Mitre ATT&CK

The cybersecurity market already top $100 billion per year and will reach $300 billion by 2024. With that kind of money at stake, this market is one of the hottest areas for IT innovation.

Top news of the week: 11.11.2021.

#cybersecurity
#infosec
#ransomware
#ITsecurity
#cybercrime
#SolarWinds
#healthIT
#government
#BHEU
#OTsecurity

Mitre Attack

@PatrickCMiller shared
On Nov 10, 2021
Zoho ManageEngine Flaw Highlights Risks of Race to Patch https://t.co/JBesvhPze3
Open
Zoho ManageEngine Flaw Highlights Risks of Race to Patch

Zoho ManageEngine Flaw Highlights Risks of Race to Patch

Attackers used a pre-auth vulnerability in a component of the enterprise management software suite to compromise businesses, highlighting the dangers of Internet-facing software.

@likethecoins shared
On Nov 10, 2021
RT @redcanary: New from @jsecurity101: MSRPC to ATT&CK is an encyclopedia of comprehensive context about specific Remote Procedure Call protocols. https://t.co/giieQZE4bs https://t.co/0lAJ0ECwG5
Open
The dark side of Microsoft Remote Procedure Call protocols

The dark side of Microsoft Remote Procedure Call protocols

MSRPC to ATT&CK is a one-stop shop for learning more about how adversaries abuse Remote Procedure Calls and what you can do to detect it.

@DarkReading shared
On Nov 10, 2021
SolarWinds Vulnerability Exploited in First Stage of Clop Ransomware Attacks https://t.co/7GXaprQbIS #ransomware #cybercrime #SolarWinds
Open
SolarWinds Vulnerability Exploited in First Stage of Clop Ransomware Attacks

SolarWinds Vulnerability Exploited in First Stage of Clop Ransomware Attacks

Russian cybercrime group known as T505 is targeting SolarWinds Server-U systems that haven't been patched for a remote code execution vulnerability fixed this summer.

@DarkReading shared
On Nov 9, 2021
What Security Strategies Are Driving InfoSec's Decisions Around Defense? https://t.co/TjiiunuDpz #cybersecurity #infosec #ITsecurity
Open
What Security Strategies Are Driving InfoSec's Decisions Around Defense?

What Security Strategies Are Driving InfoSec's Decisions Around Defense?

The data shows security leaders are focusing on multilayered defenses, including multifactor authentication, threat intelligence, and incident response.

@DarkReading shared
On Nov 10, 2021
With attackers pivoting to ransomware as an easy payout, odds are better than ever that your organization will eventually experience a ransomware attack. If ransomware is unpreventable, then how can organizations minimize its impact and lessen the blow? https://t.co/eNn1V5S6PB
Open
How to Minimize Ransomware's Trail of Destruction and Its Associated Costs

How to Minimize Ransomware's Trail of Destruction and Its Associated Costs

One of the biggest mistakes an organization can make is blindly throwing technology at the problem instead of properly investing in building a security team.

@SushiDude shared
On Nov 9, 2021
RT @SCMagazine: Motivated by WannaCry attack, group unveils medical device incident response playbook https://t.co/XUhwfLqRYB #healthIT #cybersecurity #infosec https://t.co/nQZMVhhSBV
Open
Motivated by WannaCry attack, group unveils medical device incident response playbook

Motivated by WannaCry attack, group unveils medical device incident response playbook

New Cloud Security Alliance guidance takes aim at some of the biggest challenges facing providers when it comes to defending and responding to incidents impacting medical devices.

@DarkReading shared
On Nov 11, 2021
Securing the Public: Who Should Take Charge? https://t.co/ZDbdUvIjrD by @kellymsheridan #cybersecurity #government #BHEU
Open
Securing the Public: Who Should Take Charge?

Securing the Public: Who Should Take Charge?

International policy expert Marietke Schaake explores the intricacies of protecting the public as governments depend on private companies to build and secure digital infrastructure.

@DarkReading shared
On Nov 10, 2021
4 Tips to Secure the OT Cybersecurity Budget You Require https://t.co/uUR4lMfNJY by Jim Crowley, CEO at Industrial Defender (@iDefend_ICS) #OTsecurity #cybersecurity #riskmanagement
Open
4 Tips to Secure the OT Cybersecurity Budget You Require

4 Tips to Secure the OT Cybersecurity Budget You Require

OT security engineers and personnel should approach senior management with an emphasis on risk reduction benefits and with a concrete plan to secure budget and funding before it's too late.