Cybersecurity

Mitre ATT&CK

Explore the latest news articles and reports about the Mitre Attack Framework, a curated knowledge base that helps network defenders learn exactly how networks are attacked. Discover everything about it and its place in the world of cybersecurity.

Top news of the week: 27.10.2022.

#osquery
#VPN
#CyberMonth
#IncidentResponse
#Cybersecurity
#SCWXCyberTips
#security
#blog
#cyber
#DLL

@PatrickCMiller shared
On Oct 26, 2022
Cisco Warns AnyConnect VPNs Under Active Cyberattack https://t.co/OMbbFpDvyn
Open
Cisco Warns AnyConnect VPNs Under Active Cyberattack

Cisco Warns AnyConnect VPNs Under Active Cyberattack

Older bugs in the AnyConnect Secure Mobility Client are being targeted in the wild, showcasing patch-management failures.

@Secureworks shared
On Oct 24, 2022
⚠️ #IncidentResponse is both a proactive and reactive process. Today's #CyberMonth tip is to create an incident response plan and test it. Need help? Consult the experts at Secureworks: https://t.co/lIzw3jsXy8 #SCWXCyberTips #Cybersecurity https://t.co/0kOI0J6Hlr
Open
The Value of Incident Response Planning

The Value of Incident Response Planning

This white paper is intended to guide your incident response planning from a consequence management perspective by addressing the strategic risks.

@jaysonstreet shared
On Oct 22, 2022
RT @campuscodi: CISA and gang have published an advisory on “Daixin Team,” a cybercrime group that is actively targeting U.S. businesses, predominantly in the Healthcare and Public Health (HPH) Sector, with ransomware and data extortion operations. https://t.co/kBjWOITyz1 https://t.co/FtCVYCJwGG
Open
#StopRansomware: Daixin Team

#StopRansomware: Daixin Team

Actions to take today to mitigate cyber threats from ransomware: • Install updates for operating systems, software, and firmware as soon as they are released. • Require phishing-resistant ...

@olafhartong shared
On Oct 22, 2022
RT @thomrstrom: 📢 I'm proud to announce that we've open-sourced our #osquery detection & response ruleset: https://t.co/IsNvtzzn8z It contains 130+ production-ready queries we found useful for detecting malware & other anomalous behavior on our endpoints, designed with alerting in mind. 🚨
Open
chainguard-dev/osquery-defense-kit

chainguard-dev/osquery-defense-kit

Production-ready detection & response queries for osquery - GitHub - chainguard-dev/osquery-defense-kit: Production-ready detection & response queries for osquery

@CrowdStrike shared
On Oct 26, 2022
CrowdStrike and @EYnews have formed an alliance to deliver cloud security and observability services globally that will run on the CrowdStrike Falcon platform. Read more via @SCMagazine. https://t.co/V9AqQUmBsS
Open
CrowdStrike, Ernst & Young to offer cloud security and observability services

CrowdStrike, Ernst & Young to offer cloud security and observability services

CrowdStrike and EY alliance to focus on ransomware, incident response, recovery and remediation, identity assessment, and zero trust.

@HackingDave shared
On Oct 25, 2022
RT @TrustedSec: Now on the TrustedSec #security #blog: Senior Incident Response Consultant Nick Gilberti @lo0pback outlines a high-level approach to investigating cloud-based incidents. https://t.co/VzhZ4CZaxz
Open
A Primer on Cloud Logging for Incident Response

A Primer on Cloud Logging for Incident Response

TrustedSec's blog is an expert source of information on information security trends and best practices for strategic risk management.

@cybereason shared
On Oct 21, 2022
THREAT ANALYSIS REPORT: DLL side-loading attacks and tactics Check out this report as part of the Purple Team Series: https://t.co/H6lwAscm6v #MDR #DLL #cyber
Open
THREAT ANALYSIS REPORT: DLL Side-Loading Widely (Ab)Used

THREAT ANALYSIS REPORT: DLL Side-Loading Widely (Ab)Used

This Threat Analysis Report explores widely used DLL Side-Loading attack techniques, outlines how threat actors leverage these techniques, describes how to reproduce an attack, and reports ...

@InfosecurityMag shared
On Oct 26, 2022
Hive Ransomware Group Leaks Data Stolen in Tata Power Cyber-Attack https://t.co/ptRF9xcdnV
Open
Hive Ransomware Group Leaks Data Stolen in Tata Power Cyber-Attack

Hive Ransomware Group Leaks Data Stolen in Tata Power Cyber-Attack

The leak reportedly affected several of Tata’s 12 million customers and included various PII