WiFi security! Yesterday, security flaws in all wifi implementations were announced under the term #FragAttacks: https://t.co/1uG1VHOKZf
Unauthorized attackers could inject alternative DNS servers to users and then read along. PoC available.
@hackinarticles There are a lot of tools mentioned that are sources for a SIEM, but are no SIEM at all. ELK and Splunk is the closest to SIEM, the rest not.
Fun fact: we installed two additional RAM bars to increase the awareness platform's performance, and the server failed over and over again. Tested all combinations of the new ones.
In the end, the error was found with one of the old bars.
🔍If you are looking for a comprehensive overview of the current #3CX supply chain attack, I created a diagram that shows the attack flow!💥I'll update as soon as the analysis progresses. Stay tuned for the MacOS edition! #cybersecurity#infosec#supplychainattack#3CXpocalypse
Die Angriffsform ist nicht neu. DLL #Sideloading ist (leider) seit Jahren ein Problem unter #Windows und findet (leider²) wenig Beachtung in der Software-Entwicklung.