⚠️ Threat actors are leveraging a technique called #FastFlux to rapidly change DNS records, hiding malicious servers & creating resilient C2 infrastructure. Our joint advisory calls for CSPs & PDNS providers to bolster detection & blocking. Learn more: 👉 https://t.co/21JqQJ6zpC
“The DoD will be merit based and colorblind. You will be judged based on how good you are at your job. FULL STOP.” - Defense Secretary Pete Hegseth
BOOM
There are 3,000 Chinese cyberattacks PER MINUTE in Canada.
And after 20 years of protecting our secrets,
This man is breaking his silence.
Here's the classified truth about China's control over Canada:
The fifth article (57 pages) of the Exploiting Reversing Series (ERS) is available on:
https://t.co/rdaPMOm4WM
I would like to thank Ilfak Guilfanov @ilfak and Hex-Rays SA @HexRaysSA for their constant and uninterrupted support, which have helped me write these articles over time.
I hope you enjoy reading it and have an excellent day.
#hypervisor #hyperv #architecture #cybersecurity #research #internals #idapro #informationsecurity #microsoft
2000: Kevin Mitnick was released after 5 years in US federal prison, 8 months of which were spent in solitary confinement. His supervised release ended exactly 3 years later.
The Chinese threat intelligence report is here:
https://t.co/X5TEiZHQXa
It’s always nice to see reports from other parts of the world because they can give a different perspective.
That said, the translation I read was super confusing so I’m sure I missed some details
During a recent Incident Response case, it was evident that the attacker disabled Defender on various hosts during a timeframe of a few hours.
Would you detect such behavior in your environment? Do you monitor for AV disabling and, on top of that, monitor for a threshold of systems left unprotected within a certain period?
Windows Defender creates the EventID 5001 = "Real-time protection is disabled."
https://t.co/bIlUUusb9m
This strange tweet got >25k retweets. The author sounds confident, and he uses lots of hex and jargon. There are red flags though... like what's up with the DEI stuff, and who says "stack trace dump"? Let's take a closer look... 🧵1/n
1995: After writing the initial version of the yet-to-be-released SSH, Tatu Ylonen emailed a request to IANA for SSH to be assigned port 22, receiving approval and assignment mere hours later. Yes, people of 2024, 29 years ago that's how things got done!
The FTC’s enforcement actions in consumer cybersecurity hold key lessons for policymakers interested in designing or refining legal cybersecurity regimes. What lessons, you ask? Check out this paper from Isabella Wright and Maia Hamin: https://t.co/ZQJW0heU3z
The Three Buddy Problem podcast Episode 3: Former NSA computer scientist Dave Aitel (Immunity Inc., Cordyceps Systems) joins Juan Andres Guerrero-Saade for a frank discussion on the OpenSSH unauthenticated remote code execution vulnerability and the challenges around patching and exploitation, the CISA 'secure-by-design' pledge and its impact on software vendor practices, Microsoft lobbying and the CSRB report, and changing face of government's attempts at cybersecurity regulations.
We discuss the disruption caused by political changes and the potential implications for cybersecurity policies, impact from the Supreme Court Chevron ruling, security regulations and the challenges of writing laws for future technology, the role of CISA and its accomplishments, the debate around offensive cyber operations and the responsibility of companies like Google in addressing vulnerabilities.
The need for clear separation between counterterrorism and espionage operations is highlighted, as well as the importance of understanding both defensive and offensive perspectives.
LISTEN: https://t.co/W81MqvlfeL
* Costin Raiu is on vacation.
Huge news!
“Introducing The Shelf” - our research team writes amazing things we never publish.
We’ve decided to release some of these projects in various states as well as sunset some of our most used tools to start new and better ones.
https://t.co/U0uFGTikuk
#TrustedSec
Deanon is claiming to have the original version of Pegasus that works on all versions of Android and iOS. The pricing for the lifetime access is $ 1,500,000 👀 A few days later, Deanon offered the subscription model for Pegasus Panel.
Around April 10, Apple started sending email notifications on targeted mercenary spyware attacks to affected users (https://t.co/jqFlblofUL) 🤔
🚨Our DFIR labs are here! Investigate real intrusions by shifting through an abundant of logs. Follow through our public reports or challenge yourself with our private intrusion cases!
You can use these labs to improve your skills in:
✅Detection Engineering
✅Threat Hunting
✅Intrusion Analysis & investigations
✅And much more!
Folks started using it and the feedback so far has been incredibly positive 🙏 And the good part is that we can use this new platform for so much more… 🔜