دورة تطبيقية في أمن الأنظمة الصناعية ICS OT للمبتدئين أمن الأنظمة الصناعية
📚 للاطلاع على تفاصيل الدورة وشرائها:
https://t.co/q1FtqqYr7x
https://t.co/pmZ8fo2BCF
#otsecurity#cybersecurity
Building an OT SOC? Avoid These Common Mistakes
https://t.co/EjmCy5xhmJ
مقتطف من لقائي مع Shaker Hashlan حول أبرز الأخطاء عند بناء OT SOC: الاعتماد على الأدوات فقط، نقص الخبرات المتخصصة، وتجاهل السياق التشغيلي الحقيقي.
🎙️ الحلقة الكاملة يوم الجمعة على ICS Arabia Podcast.
25 Years Securing Factories: OT Security Lessons from the Shop Floor | 92 with guest : Claudio SANGALETTI 🎙️
https://t.co/U595YLGm6w
#icsarabia#otsecurity
We're tracking a new EDR killer using a #BYOVD driver that isn't in Microsoft's block lists / #LOLDrivers and enumerates 140+ security products, including: Crowdstrike, SentinelOne, Microsoft Defender / Sentinel, Carbon Black, Cybereason, Cylance, Symantec, Sophos, FortiEDR, Elastic, Kaspersky, ESET, Avast / AVG, Bitdefender, McAfee / Trellix, Malwarebytes, Webroot, Trend Micro, Avira, Dr. Web, F-Protect / F-Secure, G-Data, Panda Security, and more.
All credits to @jgajek for finding it in the wild 🔥
It only activates if the payload being loaded contains ScreenConnect-related strings, uses IOCTL control code 0x2205c0, and passes each security product PID to terminate via input buffer to the driver via DeviceIOControl, which terminates the specified PID via ZwTerminateProcess.
BYOVD: https://t.co/qqhDFhFKiq
Blog coming soon on the loader, after Defcon of course!
🍎 A CAPTCHA should never ask you to press ⌘V.
Fake verification pages are now tricking macOS users into pasting malicious commands into Terminal.
If a website asks you to do that, it’s probably a scam.
Learn more:
🔗 https://t.co/ZNsnw2QqeY
#ClickFix#macOS#CyberSecurity
🚨 Attackers are exploiting Palo Alto Networks PAN-OS flaw CVE-2026-0257 to deploy Qilin ransomware.
Some intrusions ended in rapid encryption. Others escalated to credential theft, data exfiltration, and double extortion.
How the attacks unfolded: https://t.co/NWiGvzeFer
‼️ Chaos Hid Its C2 Inside Chrome.
Instead of connecting directly to its command server, Chaos #ransomware’s msaRAT launches Chrome or Edge in hidden mode and uses the browser to send encrypted commands over WebRTC, making the malicious traffic look like normal browser activity.
Read: https://t.co/yQshcQONpR
The original progress bar anxiety.
Estimated time remaining:
4,381 years.
Accurate? Not really.
Stressful? Absolutely.
#DDW#TechHumor#Nostalgia#Computers
🛑 WARNING - Meta’s new Muse Image tool can let others use your public #Instagram photos in AI-generated images UNLESS you opt out.
Users can @-mention public Instagram accounts in Meta AI to pull public photos into new visuals, and existing AI creations may not be deleted after you disable reuse.
Here’s how to turn it off 🠖 https://t.co/JJtAVUZVXF