Great blog post by a colleague of mine who asks why "Security through obscurity" is not dead in 2023! How many "#cybersecurity #incidents" is it going to take to finally realize that keeping your #securitycontrols a secret is a good thing? How many times does the #cybercommunity have to demonstrate that sharing of #threatintelligence, #TTPs, #IOCs, #securityconcepts, #AwarenessTraining methods, #zerodays, and everything else that goes along with having a #DefenseInDepth approach to a #HealthySecurityProgram, is ACTUALLY THE GOOD THING 🤨
(ahem)
You want to know about the platform I architected? No problem! 👌🏻
You want to know what Threat Intelligence I gather? Check my GitHub (link on my profile 😁).
You want the keys to my kingdom? 🤣 No, but thanks for playing 👍🏻
I'm NOT saying #compromise yourself or open some dark #backdoor to your systems. Just share the knowledge of how you're protecting stuff! Everyone is more #secure for it, and the next generation will make it better.
https://kalahari.substack.com/p/security-through-obscurity?sd=pf
#cybersecurity #INCIDENTS #securitycontrols #cybercommunity #threatintelligence #TTPs #iocs #securityconcepts #awarenesstraining #zerodays #defenseindepth #healthysecurityprogram #compromise #backdoor #secure
Truebot sta arrivando più pericoloso che mai: si intensifica la minaccia in Stati Uniti e Canada
Il 6 luglio 2023, le #autorità #statunitensi e #canadesi hanno emesso un #avviso sull’aumento dell’attività del #malware #Truebot relativa a alle sue nuove tattiche, tecniche e procedure (#TTPs).
#redhotcyber #online #it #web #ai #hacking #privacy #cybersecurity #cybercrime #intelligence #intelligenzaartificiale #informationsecurity #ethicalhacking #dataprotection #cybersecurityawareness #cybersecuritytraining #cybersecuritynews #infosecurity
#autorità #statunitensi #canadesi #avviso #malware #truebot #TTPs #redhotcyber #online #it #web #ai #hacking #privacy #cybersecurity #cybercrime #intelligence #intelligenzaartificiale #informationsecurity #ethicalhacking #dataprotection #CyberSecurityAwareness #cybersecuritytraining #CyberSecurityNews #infosecurity
New #Shuckworm #TTPs as reported by Symantec is the highlight of the #readoftheday. Shuckworm, aka #Gamaredon or #Armageddon, has been targeting Ukraine since 2014.
Link in the comments!
***I am going to leave one of the MITRE ATT&CK blank. I would like to see if any of you that see this can help FILL in that blank! If so, leave your thoughts in the comments OR send me a DM!***
TA0001 - Initial Access
T1566.001 - Phishing: Spearphishing Attachment
TA0002 - Execution
T1059.001 - Command and Scripting Interpreter: PowerShell
TA0003 - Persistence
T1053.005 - Scheduled Task/Job: Scheduled Task
TA0009 - Collection
[Here is your chance to shine! Let the community or me know what you find!]
#CyberSecurity #ITSecurity #InfoSec #BlueTeam #ThreatIntel #ThreatHunting #ThreatDetection #HappyHunting
#shuckworm #TTPs #readoftheday #gamaredon #armageddon #cybersecurity #itsecurity #infosec #blueteam #threatintel #threathunting #ThreatDetection #happyhunting
Happy Friday and #happystpatricksday! Today's #readoftheday is brought to you by Mandiant (now part of Google Cloud)! It is interesting how the threat actors use the same #TTPs and #behaviors but just adapt to the environment they are in. In this case, they are accessing network devices instead of endpoints, but they still try to hide their tracks! Enjoy and Happy Hunting!
Fortinet Zero-Day and Custom Malware Used by Suspected Chinese Actor in Espionage Operation
https://www.mandiant.com/resources/blog/fortinet-malware-ecosystem
#CyberSecurity #ITSecurity #InfoSec #BlueTeam #ThreatIntel #ThreatHunting #ThreatDetection #HappyHunting
#happystpatricksday #readoftheday #TTPs #behaviors #cybersecurity #itsecurity #infosec #blueteam #threatintel #threathunting #ThreatDetection #happyhunting
Good day everyone! The Cyble Inc. has published an article titled "Unmasking MedusaLocker Ransomware" and it contains #behaviors and #TTPs that were observed! That is why it is my #readoftheday! Happy Hunting!
UnMasking MedusaLocker Ransomware
https://blog.cyble.com/2023/03/15/unmasking-medusalocker-ransomware/
#CyberSecurity #ITSecurity #InfoSec #BlueTeam #ThreatIntel #ThreatHunting #ThreatDetection #HappyHunting
#behaviors #TTPs #readoftheday #cybersecurity #itsecurity #infosec #blueteam #threatintel #threathunting #ThreatDetection #happyhunting
Nighthawk: An Up-and-Coming Pentest Tool Likely to Gain Threat Actor Notice
#infosec #redteam #pentesting #ttps #c2c
#infosec #redteam #pentesting #TTPs #c2c
El #ransomeware Hive consigue más de 100 millones de dólares extorsionando más de 1300 organizaciones. En el siguiente enlace podrás encontrar #IOCs, #TTPs usados por los cibercriminales.
#ciberseguridad #CyberAttack #infosec #Ransomware
https://simodef.com/2022/11/19/hive-el-ransomware-de-los-100-millones-de-dolares
#ransomeware #iocs #TTPs #ciberseguridad #cyberattack #infosec #ransomware
Es emocionante anunciar el trabajo de varios días, hoy presentamos una web de noticias de #ciberseguridad, en la cual se podrá encontrar noticias relevantes, artículos de #TTPs, #IOCs y #vulnerabilidades.
https://simdef.com
#ciberseguridad #TTPs #iocs #vulnerabilidades