No one mentioned it yet, so thought worth to do now: Ragnarok ransomware actors have a new leak site, named "RAGNAROK FILE LEAKED".
First entry was added on December 23...
@demonslay335@VK_Intel
[Register now] Upcoming webcast hosted by HealthITSecurity "Developing a Secure Care Strategy" on January 25th at 3:00PM ET featuring Mitchell Parker, MBA, CISSP | Sponsored By: @DellTech#cybersecurity https://t.co/V2mB6gwOAm
Ascension will divest seven hospitals, 21 physician clinics and a medical transport company in north and central Wisconsin. #healthcare https://t.co/2fAPM7eS6x
This guide is a collection of some of the most useful information & models for those working in a #SOC, as well as incredibly powerful free tools, book references & more to help build your team.
Download now: https://t.co/tStUHuAy8l
Discover why organizations that view capital allocation and operational execution as an integrated process drive increased value. https://t.co/0RN3KBcAb1
Alleged attackers behind the Solarwinds #Sunburst attack are apparently auctioning off the data stolen from various breaches.
Again alleged, but appears to be Microsoft/Cisco/Solarwinds source code, FireEye red team tools, etc. all up for auction.
https://t.co/qpN9aumRH1
🚨URGENT🚨 Our #IncidentResponse team has put together a playbook of recommended actions to provide some level of assurance that your organization is no longer affected by the SolarWinds backdoor #solarigate
https://t.co/XuvpxLMJ9d
Key revelation in the #SolarWindsHack advisory from @CISAgov:
"The SolarWinds Orion supply chain compromise is not the only initial infection vector this APT actor leveraged.”
Stay tuned for more revelations… This is worse than people think
https://t.co/5HicAhaAJg
According to FireEye, attackers tampered with a #software update released by #SolarWinds, which eventually led to the compromise of numerous public and private organizations around the world with #SUNBURST backdoor.
https://t.co/iPqcm4CDpH
#infosecurity
This continues to be an interesting development.
Looks like Solarwinds Orion was the original entry point from the FireEye breach including treasury and commerce.
Microsoft updated 21 hours ago with defender update with artifact detection .
https://t.co/rowgktKn2K