Hoy os he dejado un artículo de reflexión sobre los "Aprendizajes del Crowdstrike BSOD: ¿Debes abandonar Windows?" y podáis jugar a descubrir al Tecnicoless https://t.co/Qh3DRkvD91 #tecnicoless#BSOD#Windows#Crowdstrike
💾 Notable APT Research and Cybersecurity News of the Week.
Crowdstrike released a technical analysis of the incident that led to one of the largest IT infrastructure outages in history. It revealed that c*.sys Crowdstrike files were not drivers, the problematic update was distributed for less than an hour and a half, and a defective named pipes analysis routine caused the BSOD. The company’s stock remains down 20% from last week.
https://t.co/QcJNzCFmyc
https://t.co/esaMPvSe37
A few hours before the Crowdstrike drama, Azure indeed experienced an outage, but Microsoft claims the two incidents were unrelated.
https://t.co/WLRQDLisGq
An analysis of the updated tools of GhostEmperor APT including their signature Demodex rootkit. The group has improved its infection chain and EDR evasion since our last review.
https://t.co/gipGN3Rk73
https://t.co/Awq8maSi3j
A detailed overview of new activities by the notorious FIN7 group indicates they are disguising themselves under aliases, developed their own "EDR killer," and are selling it to other groups.
https://t.co/SsqdDkAg7i
New TTPs of Qilin ransomware, including exploiting vulnerabilities in Fortinet and Veeam, have been observed.
https://t.co/XR1xe0Up3k
Interestingly, Qilin and RansomHub malware have been used by the notorious Scattered Spider/Octo Tempest gang. The Twitter thread includes other Microsoft observations on active ransomware operations.
https://t.co/0L5Tq57xZn
The well-known Asian APT17/DeputyDog is continuously enhancing its tools and increasingly targeting European companies.
https://t.co/JBBxaX1Dee
Meanwhile, another Asian APT powerhouse, APT41, has significantly ramped up its activities. It focuses on long-term espionage against major logistics, technology, and automotive international companies.
https://t.co/NvaCChnJoI
The new group TAG-100 is conducting global espionage operations with a focus on Asia. Their TTPs include exploiting defects in perimeter network equipment like Citrix Netscaler, Cisco ASA, F5 BIG-IP, Fortinet FortiGate, Sonicwall, and others. After network penetration, they use open-source backdoors, Pantegana and SparkRAT.
https://t.co/fk11Nv215b
#digest #APT #cybersecurity #news #malware
"De la misma manera que #AI y #MachineLearning van a cambiar la forma en que trabajan las personas, también traerán cambios para el departamento de TI" no te pierdas este #blog de Juan Manuel Gómez https://t.co/zJ2BWR9g2O
In our 2019 #Cryptocurrency Report, 25% of consumers believe #cryptocurrency to be a fad. What do you think?
View the full report ➡️ https://t.co/jjFE9cQGrN
El Reglamento General de Protección de Datos (#GDPR) requiere que las organizaciones eliminen información de identificación personal si los clientes lo piden, lo que puede ser un desafío. He aquí 4 consejos de expertos para hacerlo exitosamente https://t.co/TeIlWbr7d3
Resultados de una investigación revelaron la existencia de una gran cantidad de vulnerabilidades en el firmware y aplicaciones instaladas por defecto en varios modelos de smartphones con Android. ¡Entérate! https://t.co/RmYAbvw5Dm
El mundo 🌍 evolucionó rápido y la escalada diaria de flujo de datos e información hacen que la #Seguridad de la Información sea un elemento estratégico para garantizar Confidencialidad, Integridad y Disponibilidad. #JPCNS
¿Ya respondieron la encuesta de #SalariosTI para los profesionales y ejecutivos de TI en #México y #AméricaLatina? ¡Faltan pocos días para recopilar los resultados! Al responder, participan en el sorteo de dos tarjetas #Amazon https://t.co/CfoYMdZH9u
Tendencias tecnológicas para 2018: inteligencia artificial, realidad virtual, internet de las cosas (#IoT) y robótica, de acuerdo con vocero de #Citrix https://t.co/TFRM1HpdTd #TendenciasTI cc @CitrixLatAm