Cybersecurity Essentials

Mitre ATT&CK

The cybersecurity market already top $100 billion per year and will reach $300 billion by 2024. With that kind of money at stake, this market is one of the hottest areas for IT innovation.

Top news of the week: 18.12.2020.

#cloud
#TTPs
#cybersecurity
#solarigate
#IncidentResponse
#holidays
#securityrisk
#cyberthreat
#solarwinds
#CISA

Mitre Attack

@rickhholland shared
On Dec 14, 2020
When he isn’t cooking, he is writing Sunbust detections in Splunk .@meansec presents "Sunburst Backdoor Detections in Splunk” https://t.co/DtjLR0x5HH
Open
Sunburst Backdoor Detections in Splunk

Sunburst Backdoor Detections in Splunk

The Sunburst Backdoor threat truly burst on the scene as a send off for 2020. The good news is that the Splunk Security team has produced detections you can run in Splunk Enterprise ...

@PatrickCMiller shared
On Dec 16, 2020
Top 10 in-demand cybersecurity skills for 2021 https://t.co/fsDSC9YSko
Open
Top 10 in-demand cybersecurity skills for 2021

Top 10 in-demand cybersecurity skills for 2021

The list of needed security skills is long and growing. Here's what experts say is driving the demand.

@likethecoins shared
On Dec 16, 2020
RT @MITREattack: Love control frameworks? Today, the @MITREengenuity Center for Threat Informed Defense released over 6,300 mappings between NIST 800-53 Rev. 4/5 and ATT&CK. You can read about their methodology and find links to the mappings in https://t.co/ie4UuYC1sh. https://t.co/cEJKVfeAKN
Open
@techgirlmary shared
On Dec 18, 2020
RT @NSACyber: Malicious cyber actors are using two sets of #TTPs to access protected data in the #cloud. Detect and mitigate against this activity by reviewing our latest #cybersecurity advisory: https://t.co/scmnGlM7cP https://t.co/qb6oYXaPha
Open
NSA Cybersecurity Advisory: Malicious Actors Abuse Authentication Mechanisms to Access Cloud Resources

NSA Cybersecurity Advisory: Malicious Actors Abuse Authentication Mechanisms to Access Cloud Resources

In response to ongoing cybersecurity events, the National Security Agency (NSA) released a Cybersecurity AdvisoryThursday “Detecting Abuse of Authentication Mechanisms.” This advisory ...

@HackingDave shared
On Dec 17, 2020
RT @TrustedSec: 🚨URGENT🚨 Our #IncidentResponse team has put together a playbook of recommended actions to provide some level of assurance that your organization is no longer affected by the SolarWinds backdoor #solarigate https://t.co/XuvpxLMJ9d
Open
SolarWinds Backdoor (Sunburst) Incident Response Playbook

SolarWinds Backdoor (Sunburst) Incident Response Playbook

TrustedSec's blog is an expert source of information on information security trends and best practices for strategic risk management.

@CrowdStrike shared
On Dec 15, 2020
RT @DarkReading: Nowhere to Hide: Don't Let Your Guard Down This Holiday Season https://t.co/t6XvxKRawL by Scott Taschler (@taschlerreport), Director of Product Marketing for @CrowdStrike #holidays #securityrisk #cyberthreat
Open
Nowhere to Hide: Don't Let Your Guard Down This Holiday Season

Nowhere to Hide: Don't Let Your Guard Down This Holiday Season

Harden your defenses to ensure that your holiday downtime doesn't become an open door for cyber threats.

@DarkReading shared
On Dec 17, 2020
RT @kjhiggins: Yet another twist to a very complex attack... there's a lot more to come, I'm afraid: CISA: SolarWinds Not the Only Initial Attack Vector in Massive Breach https://t.co/EdreTIEWeZ
Open
CISA: SolarWinds Not the Only Initial Attack Vector in Massive Breach

CISA: SolarWinds Not the Only Initial Attack Vector in Massive Breach

Agency says it has evidence of additional initial access vectors besides SolarWinds' Orion software.

@likethecoins shared
On Dec 17, 2020
RT @MITREattack: Want to influence the ATT&CK team researching ATT&CK for Containers? @snarejen has a new post on work we're launching in partnership with the @MITREengenuity CTID. We're interested in what you're seeing adversaries do with tech like Kubernetes and Docker! https://t.co/B5Y86P7TRJ https://t.co/DJzUmzrnbj
Open