READ ---> Joint CSA from FBI, CISA, NSA, EPA, DOE, and CNMF: Iranian-Affiliated Cyber Actors Exploit Programmable Logic Controllers Across US Critical Infrastructure
---------- break ----------
I'm going to sum up the longwinded rant I just hit my wife with into:
There's zero reason to have an HMI publicly exposed other than it being a honey pot. Z E R O
None of that cybersecurity marketing bullshit organization fall for and implement is going to save them from terrible network and system hygiene.
They must take control of those environments and secure them... YESTERDAY.
Her response: Why are you telling me, tell them. 😅
---------- break ----------
Check your logs for the IOCs listed within the CSA. If you find any hits, engage an incident response firm.
Publicly exposing an HMI suggests your current team likely lacks the capacity to properly and thoroughly investigate and remediate this. Bring in qualified external help to review the situation and get your systems and environment secured.
---------- break ----------
For the security teams overseeing OT infrastructure: There are too many people that rely on you to protect critical infrastructure, and it seems your orgs are failing to do so. Respectfully, get your shit together. It's not rocket science to put some security controls in front of these environments. I understand execs push back; flood them with every shred of evidence of attacks on OT environments and the outcomes of such. When something happens, you did what you could and hopefully their disinterest leads them to being held accountable.
https://t.co/EKGRNtDZbJ
We’ve uploaded the Advanced Malware Binary Triage launch stream from last Friday. Throughout this stream, we provided an overview of the course, answered questions and analyzed a piece of malware with Binary Ninja and dnSpy. Enjoy!
I’ll bite and be vulnerable for a moment, and I’m going to start with some context.
My wife and I have a disabled child, Poretti-Boltshauser syndrome (PTBHS) is the primary diagnosis and ASD as a secondary. There’s ZERO chance we would’ve terminated even if we knew about it before he was born. I can say that confidently since we chose to have another and that one is typical aside from being just like her mom 🤣.
Our son has been in speech therapy, physical therapy, and occupational therapy since the diagnosis. He’s doing great and is smarter than the average adult. I can’t put into words the joy we’ve experienced since God brought him into our lives. I wouldn’t change anything about him or what we’ve experienced since he was born. It’s not always easy, and I don’t believe it’s supposed to be.
At the end of the day, there are consequences for procreating, for better or worse.
With that said, my answer to your question is ‘none’ for my household.
@HackingDave Bubble pops when? Soon I hope. Frankly, I’m just tired of hearing about it in general. I suppose we can call it ‘AI fatigue’. It’s cool and certainly impactful, but that doesn’t negate the fact that I’m exhausted from all the AI headlines ‘news’, and hype.
“Sir, you can’t park there”
This happened to my buddy’s house in a residential neighborhood with a speed limit of 20mph. The driver was definitely well over the limit. All parties are okay.
Had it not been for the fire hydrant the guy hit prior to ramming into the house, the vehicle likely would’ve been much closer to the bottom floor window and crashed into the master suite on the lower level. His wife was in there with their youngest child.
It likely totaled the vehicle that was in the garage. Which leads me to wonder how much further would that truck have made it if the vehicle wasn’t in the garage.
My buddy did not have ‘2026 Ram crashes into my house’ on his bingo card.
Lastly, pay attention when you’re driving and put down your damn phones.
You interested in hacking and want to red team the government? CISA’s red team has an opening! Our assessments are typically 90 days and we’re performing actual red team work here. Check out the opening, and let me know if you have any questions!
https://t.co/DMX5zqbdgr
The May NoiseLetter is live! Early warning signals, blocklist gaps, and a SonicWall spike that echoes the pattern that preceded a CVE: https://t.co/j2f0MmwTt8
Is that about the chick that intentionally crashed her car which resulted in the death of her boyfriend and a friend?
If so, I remember watching a documentary or something about it before the Netflix doc. I agree that the situation is ‘insane’.
Her sentencing was too light imo. 15-Life for murdering two people. She could potentially get out at ~32 and still live most of her life after killing two others. FOH with that.
After actively scrolling for 10 minutes or so, I'm so grateful that I'm disconnected from the world during my workday for the most part.
I don't know how people spend so much time on here and not go crazy.....