Phishing & Malware Italia. Il report della scorsa settimana del CERT-AgID
In questa settimana, il #CERT-#AgID ha riscontrato ed analizzato, nello scenario #Italiano di suo riferimento, un totale di 39 campagne malevole, di cui 31 con obiettivi #Italiani e 8 generiche che hanno comunque interessato l’Italia, mettendo a disposizione dei suoi enti accreditati i relativi 228 indicatori di compromissione (#IOC) individuati.
#redhotcyber #online #it #web #ai #hacking #privacy #cybersecurity #cybercrime #intelligence #intelligenzaartificiale #informationsecurity #ethicalhacking #dataprotection #cybersecurityawareness #cybersecuritytraining #cybersecuritynews #infosecurity
#cert #agid #italiano #italiani #ioc #redhotcyber #online #it #web #ai #hacking #privacy #cybersecurity #cybercrime #intelligence #intelligenzaartificiale #informationsecurity #ethicalhacking #dataprotection #CyberSecurityAwareness #cybersecuritytraining #CyberSecurityNews #infosecurity
Attenti alla fatture urgenti! Il ransomware Knight inonda l’Italia di fatture false
Nel corso delle attività di #monitoraggio il #CERT-#AGID ha rilevato una #campagna #malspam #Italiana volta a compromettere le postazioni di lavoro con il #ransomware #Knight.
Condividi questo post se hai trovato la news interessante.
#redhotcyber #online #it #web #ai #hacking #privacy #cybersecurity #cybercrime #intelligence #intelligenzaartificiale #informationsecurity #ethicalhacking #dataprotection #cybersecurityawareness #cybersecuritytraining #cybersecuritynews #infosecurity
#monitoraggio #cert #agid #campagna #malspam #italiana #ransomware #knight #redhotcyber #online #it #web #ai #hacking #privacy #cybersecurity #cybercrime #intelligence #intelligenzaartificiale #informationsecurity #ethicalhacking #dataprotection #CyberSecurityAwareness #cybersecuritytraining #CyberSecurityNews #infosecurity
Using #OPNSense, is there really no "self-service" web interface? Where a user can login and do nothing beside changing their password, setting up OTP, download a #VPN config and (if needed) renew their users #X509 #cert (for that VPN)?
Right now it seems, if using OTP, an admin has to create the initial secret. Tell that to the user somehow. Also tell them initial password. Then user can login - and change password / request new OTP seed. But *nothing* else.
There appears to be no way to get the user a VPN config safely, have them update their cert once a year (default lifetime 397 days). Except for an admin doing the work of exporting the VPN config/cert and storing those exports in some other system, to which the user then needs access to download their config (or updated cert).
Really?
I hope I only miss stuff, this would be a *huge* point against OPNsense, unfortunately. I can't have an admin go and recreate things all the time.
Soo, what did I miss?
I just finished 32 hours of training to become an active Portland NET, aka Neighborhood Emergency Team member (CERT everywhere else). Our Final Field Exercise was at Portland Fire & Rescue's training center & it wasn't hot but our AQI sucks today, so it felt a bit more real. Thanks to PBEM & all the teachers who give up their weekends to teach us skills like search & rescue, putting out fires, extrication, & basic medical triage. What a great program! #pbem #portlandnet #cert #portland #pfr
#pfr #portland #cert #portlandnet #pbem
@MsMerope Berkeley CERT (@berkeleycert@twitter.com) also just posted a new set of classes for August/September: https://berkeleyca.gov/safety-health/disaster-preparedness/community-emergency-response-team-cert #CERT #DisasterPreparedness #Berkeley
#cert #disasterpreparedness #berkeley
Od początku sierpnia 2023 CERT Polska może nadawać numery CVE.
Każdy kto miał do czynienia z technicznym bezpieczeństwem IT na pewno spotkał się z pojęciem CVE. Popularnie rzecz ujmując, jest to baza zawierająca publicznie znane podatności, które można wyszukiwać np. tutaj. Tymczasem CERT Polska ogłosił na swoich stronach: Od początku sierpnia CERT Polska jako jedyna instytucja w kraju i jeden...
#WBiegu #Cert #Cve
https://sekurak.pl/od-poczatku-sierpnia-2023-cert-polska-moze-nadawac-numery-cve/
#SantaBarbara #CERT Basic Training for #HighSchool #students "We still have spots for our Teen CERT program from Monday, July 31 through Thursday, August 3, 2023, 9 AM – 3 PM. The CERT program trains individuals in disaster preparedness and emergency response." #DisasterPreparedness #EmergencyResponse
#santabarbara #cert #highschool #students #disasterpreparedness #emergencyresponse
La cybergang russa Gamaredon è un grosso problema per l’Ucraina. Esfiltra i dati dopo un’ora dalla penetrazione
Il Computer Emergency Response Team of Ukraine (#CERT-UA) avverte delle azioni del gruppo di #hacker #Gamaredon, i quali possono rubare #dati dai #sistemi dopo un’ora dalla penetrazione.
Condividi questo post se hai trovato la news interessante.
#redhotcyber #online #it #web #ai #hacking #privacy #cybersecurity #cybercrime #intelligence #intelligenzaartificiale #informationsecurity #ethicalhacking #dataprotection #cybersecurityawareness #cybersecuritytraining #cybersecuritynews #infosecurity
#cert #hacker #gamaredon #dati #sistemi #redhotcyber #online #it #web #ai #hacking #privacy #cybersecurity #cybercrime #intelligence #intelligenzaartificiale #informationsecurity #ethicalhacking #dataprotection #CyberSecurityAwareness #cybersecuritytraining #CyberSecurityNews #infosecurity
SecurityAffairs: Russia-linked APT Gamaredon starts stealing data from victims between 30 and 50 minutes after the initial compromise https://securityaffairs.com/148488/apt/gamaredon-ttps.html #informationsecuritynews #ITInformationSecurity #PierluigiPaganini #SecurityAffairs #Cyberwarfare #Intelligence #SecurityNews #Gamaredon #Hacking #CERT-UA #Ukraine #Russia #APT
#informationsecuritynews #itinformationsecurity #pierluigipaganini #securityaffairs #cyberwarfare #intelligence #securitynews #gamaredon #hacking #cert #ukraine #russia #apt
Phishing Italia: AgentTesla è in pole position come malware più diffuso nelle campagne di malspam
In questa settimana, il #CERT-#AgID ha riscontrato ed analizzato, nello scenario #Italiano di suo riferimento, un totale di 27 #campagne #malevole, di cui 25 con obiettivi #Italiani e due generiche che hanno comunque interessato l’Italia, mettendo a disposizione dei suoi enti accreditati i relativi 549 indicatori di compromissione (#IOC) individuati.
#redhotcyber #online #it #web #ai #hacking #privacy #cybersecurity #cybercrime #intelligenzaartificiale #informationsecurity #ethicalhacking #dataprotection #cybersecurityawareness #cybersecuritytraining #cybersecuritynews #infosecurity
#cert #agid #italiano #campagne #malevole #italiani #ioc #redhotcyber #online #it #web #ai #hacking #privacy #cybersecurity #cybercrime #intelligenzaartificiale #informationsecurity #ethicalhacking #dataprotection #CyberSecurityAwareness #cybersecuritytraining #CyberSecurityNews #infosecurity
Instalar una CA en un perfil de Firefox desde la consola
#Bash #CA #cert #certutil #consola #firefox #install #Profile #terminal #tty
https://osiux.com/2019-04-22-install-ca-certificate-into-firefox-from-command-line.html
#bash #ca #cert #certutil #consola #firefox #install #profile #terminal #tty
Pole Position per il malware Strela nelle campagne di phishing per l’Italia
In questa settimana, il #CERT-#AgID ha riscontrato ed analizzato, nello scenario #Italiano di suo riferimento, un totale di 47 #campagne #malevole, di cui 46 con obiettivi #Italiani ed una generica che ha comunque interessato l’Italia, mettendo a disposizione dei suoi enti accreditati i relativi 666 indicatori di compromissione (#IOC) individuati.
#redhotcyber #informationsecurity #ethicalhacking #dataprotection #hacking #cybersecurity #cybercrime #cybersecurityawareness #cybersecuritytraining #cybersecuritynews #privacy #infosecurity
#cert #agid #italiano #campagne #malevole #italiani #ioc #redhotcyber #informationsecurity #ethicalhacking #dataprotection #hacking #cybersecurity #cybercrime #CyberSecurityAwareness #cybersecuritytraining #CyberSecurityNews #privacy #infosecurity
Dostałem dzisiaj bardzo dziwnego maila od (niby) #Allegro, a dziwne było to, że był po czesku… Niewiele myśląc wysłałem zgłoszenie do #CERT #NASK i otrzymałem info, że to nie atak tylko po prostu błąd w systemie Allegro, które weszło ostatnio na rynek czeski i używa właśnie domeny allegro.cz 😉
Welche digitale Bedrohungen gibt es in einem Land, in dem mit #Ransomware und #Crypto #Betrug nichts zu holen ist?
Ich hatte die Gelegenheit, mit dem Leiter des Malawi #CERT zu sprechen. #Malawi ist eines der ärmsten Länder der Welt, dennoch setzt die Regierung auf Digitalisierung. Allein, es gibt keine Fachkräfte für #IKT #Sicherheit.
Täter zu verhaften ist oft unmöglich - denn sie sitzen bereits in ganz furchtbaren Gefängnissen.
#ransomware #crypto #betrug #cert #malawi #ikt #sicherheit #firstcon23 #first #armut #afrika