Zoë Rose · @RoseSec
95 followers · 116 posts · Server techfieldday.net

The fancy “AI” can’t tell the difference between a human, a gnome miniature, and a giant red bouncy ball for toddlers. Oh, and a white door…

#falsepositive #sophisticated

Last updated 1 year ago

Marcel SIneM(S)US · @simsus
210 followers · 5015 posts · Server social.tchncs.de
Jason Pester (GameDev) · @jay
332 followers · 506 posts · Server mastodon.gamedev.place

⚠️ 'Anybody else get "Trojan:Win32/Randet.A!plock" from Windows Defender using the latest VSCodium 1.80.1.23194?

I can't stand updating my devices anymore - it's such a PITA 😒 🙄

Is this legit, or is Microsoft trying to scare me from using VSCodium with a false positive instead of using VSCode where it can track everything I do?

#microsoft #vscodium #vscode #trojan #legit #falsepositive #swdev #webdev #appdev #mobiledev #gamedev #infosec #windows #defender

Last updated 1 year ago

Tech news from Canada · @TechNews
795 followers · 21634 posts · Server mastodon.roitsystems.ca
Mr.Trunk · @mrtrunk
3 followers · 2424 posts · Server dromedary.seedoubleyou.me
Marcel SIneM(S)US · @simsus
194 followers · 4287 posts · Server social.tchncs.de

🎢⛷️💃🕺 ... Welche kommen als nächstes?

|s Autounfallerkennung: Ungewollte -Notrufe bei Musikfestival | Mac & i heise.de/news/Apples-Autounfal

#iphone #apple #falsepositive

Last updated 1 year ago

Marcel SIneM(S)US · @simsus
186 followers · 3813 posts · Server social.tchncs.de
Cory Doctorow's linkblog · @pluralistic
40235 followers · 38150 posts · Server mamot.fr
Marcel SIneM(S)US · @simsus
177 followers · 2975 posts · Server social.tchncs.de
Willi · @b90g
303 followers · 1314 posts · Server gruene.social

Hast du in den letzten 6 Monaten eine Spam-Email bekommen oder eine Email wurde als Spam erkannt auch wenn sie tatsächlichen Inhalt hatte? Die Systeme die versuchen anhand vorheriger Entscheidungen und bekannten Daten nervige Werbe-Emails filtern werden dafür eingesetzt Gesichtserkennung an Bahnhöfen durchzuführen, oder Entscheidungen vermeindlich autonomer Fahrzeuge zu treffen. Nur dass an einer Station nicht ein paar 100 Menschen durch gehen sondern tausende...

#falsepositive #falsenegative

Last updated 1 year ago

Indusface · @Indusface
0 followers · 34 posts · Server infosec.exchange

The burden of false positives is sometimes too heavy to bear! 😮‍💨

Along with the WAF features, look for a vendor who owns the false positives and fixes them for you.

After all, focusing on your business is your main priority. 😊

#falsepositive #waf #firewall #appsec #cybersecurity #applicationsecurity #applicationfirewall #apptrana #indusface

Last updated 1 year ago

Marcel SIneM(S)US ☑️ · @simsus
164 followers · 2178 posts · Server social.tchncs.de

Der Mastodon Server home.social ist neuerdings scheinbar in der Filterliste 1Hosts (Xtra) eingetragen, welche von diversen Adblockern und Filtertools verwendet wird.

Hab mich gestern und heute gewundert warum es nicht erreichbar war. Meine NextDNS Konfiguration greift auf 1Hosts (Xtra) zu.

Hier kann man ein Issue eröffnen um die Seite zu entsperren:
github.com/badmojr/1Hosts/issu

@ralf @admin

#meta #mastodon #falsepositive

Last updated 2 years ago

~ draft ~ · @Lyrum00psem
195 followers · 1737 posts · Server troet.cafe

"Die neue Edeka-Teuer-Aktion"


#falsepositive #verhoert

Last updated 2 years ago

ticura GmbH · @ticura
4 followers · 4 posts · Server infosec.exchange

Experiencing false positives, a DDoS attack or something else?
 
As many have read at Reuters, hivepro and other sources there was (or is?) a DDoS attack against several organizations going on, which also targeted the danish financial sector. 
 
On 2023-01-02 our analytics identified a danish banking site as false positive in multiple different CTI sources. It is absolutely clear that this is a benign website, but these sources still claim it's a phishing URL - even after 2 weeks. 

Interestingly one of the sources is a very prominent CTI source - operated by a large cybersecurity company and this URL has been verfied as phishing by multiple people from the community. As this is such an obvious false positive and in combination of reading the articles about the cyber attack targeting also the banks in Denmark, we are wondering if this could also be an attempt of that group? Or symphatisants? And if so - why is the community verification not effective here?  
 
Sure, chance is high this is just coincidence. But what if not? Supply chain attacks on CTI sources - could this be a new attack vector we need to worry about? 
 
At least it's a good example how valuable a good false positive analytics is - for CTI provider and consumers.
 
See also: 
hivepro.com/pro-russian-hackti

reuters.com/technology/denmark
 
     

#cti #threatintelligence #ticura #falsepositive #falsepositiveprevention #banking #infrastructure #vulnerable

Last updated 2 years ago

Joe Słowik · @jfslowik
2211 followers · 631 posts · Server infosec.exchange

We're getting into "silly season" at the end of the year. With that in mind, I've thought about the things I did in 2022 that I found most interesting, helpful, or potentially impactful.

First, there's the paper on -driven I wrote and presented on at several events:
gigamon.com/content/dam/resour

Then, there was my @VirusBulletin paper on the actor responsible for the event, which I thought was neat as a deep-dive into organizational relationships that get masked in our tracking a single "adversary:"
virusbulletin.com/uploads/pdf/

On a personal front, I wrote up some prelimianry analysis on the attempted (?) incident as part of the conflict in - and there are still some items raised there for which we don't have answers several months after the incident was discovered:
pylos.co/2022/04/23/industroye

Finally, I wrote a blog for my employer diving into the idea of the in and that I think is helpful for analysts from to the
blog.gigamon.com/2022/08/05/re

I need to think this over a bit, but look for something covering the most insightful work of others, from my perspective, from the past year!

#cti #threathunting #xenotime #triton #industroyer2 #ics #ot #ukraine #falsepositive #detectionengineering #SecurityMonitoring #ir #soc

Last updated 2 years ago

Real Quack · @ducker
40 followers · 631 posts · Server union.place

@chronos

I donate to a local group.

As they prohibited a cishet man I know from donating for several months due to a positive HIV test (), I'm pretty sure they test every donation, every time. There is zero reason to prohibit based on sexual behavior.

#falsepositive

Last updated 2 years ago

Jamie Booth · @jamie
75 followers · 225 posts · Server boothcomputing.social

Microsoft Defender just flagged the PowerDVD updater as malicious.

No sorry. That's as designed. It's just that sketchy a program.

#mde #falsepositive #cyberlink

Last updated 2 years ago

Thomas Kramer · @thk
191 followers · 172 posts · Server drk.network

Leider alles nicht korrekt. Ja, es verleitet dazu Nutzerdaten einzugeben und sich einzuloggen. Aber ja, dass muss auch so sein!

#google #safebrowsing #falsepositive

Last updated 2 years ago

Falk Appel · @FalkAppel
50 followers · 237 posts · Server digitalcourage.social

Hey anyone who has with to accounts, which is marked as ?
Looks like their anti spam inbound filter is based crap. Seems to be a combination of mailclient/signature/domain.

It's now the second time I fight a fight against this broken system because emails are marked as junk only in the microsoft office world, which is sadly business relevant....

Additionally even as business account admin it is hard to get support for such problem and they really don't want to do anything. 😡

Conclusion: PLS everyone get rid off microsoft

#falsepositive #ai #junk #microsoft #email #problems

Last updated 2 years ago