Conoce MISP Threat Sharing, plataforma de inteligencia de amenazas de c��digo abierto. En nuestro próximo webinar, @lucianorighetti, Ingeniero en sistemas en @circl_lu (Computer Incident Response Center Luxembourg) nos enseñará cómo instalar la herramienta, su modelo de datos y casos de uso prácticos, con énfasis en la codificación de incidentes de ciberseguridad del mundo real.
Este webinar ademas es instancia preparatoria para el training de seguridad que ofreceremos en el @FIRSTdotOrg Symposion para América Latina y el Caribe, que desarrollaremos en el marco de nuestro próximo #LACNIC42 @lacnic
Más info aquí https://t.co/0OoNfSm9lK
Learning from the Recent Windows/Falcon Sensor Outage - Causes and Potential Improvement Strategies in Linux with Open Source
https://t.co/uOdYX9p6YJ
#infosec#crowdstrike#opensource#edr
A new and maintained MISP Docker image has been released as part of the MISP project.
Check it out here: https://t.co/PO3tmoYxJE
Thanks to @ostefano for his commitment and hard work.
#MISP#infosec#ThreatIntelligence#opensource
@BradFireborn Hey, seems you are running MISP with the new Background Jobs system. Reach out via PM or open an issue in our repo and I'll guide you through https://t.co/aZxZ8oz0OQ
Today its #Sysmon 15.0 release but also the birth date of #Kunai an alternative to SysmonForLinux. The doc is already online https://t.co/LafBReqB4v so you can already imagine your best #Linux#ThreatHunting scenarios while waiting for the #opensource release #SOC#DFIR
MS Exchange nmap scanner just got a major overhaul and should not return false positive CVEs, pull the new version and try it out. feedback appreciated.
https://t.co/Pf7OYbzPdn
We have been informed that criminals impersonating CIRCL operators are contacting citizens and try to "give support" by installing remote access tools like TeamViewer. This is obviously scam. Hang up, don't react and please report the telephone numbers to us.
This is the difficult reality. There are still so many Microsoft Exchange servers left unpatched due to different reasons.
If you receive an email/call from us, please take it seriously. Many successful attacks were due to unpatched Microsoft servers.
https://t.co/lVyOYT5OeO
TR-71 - FortiOS - heap-based buffer overflow in sslvpnd (exploited) - FortiOS SSL-VPN - CVE-2022-42475
https://t.co/BdH8eHNQ52
We will update the document with additional information on a regular basis.
Misp-guard, presented by @righelx for the first time, if you ever wanted a safety net for your @MISPProject synchronization in more sensitive environments, now is the time!
First lightning talk, @cruciani_david setting the bar high by presenting his new typo squatting tool.
It’s his first conference talk, quite the feat to start by presenting such an awesome piece of work!
Don't forget to join us at the Cyber and Threat Intelligence Summit (CTIS-2022) Kirchberg, Luxembourg
October 19 - 20 2022.
The MISP core team and many contributors will be there. A great opportunity to discuss and contribute to the future of MISP.
https://t.co/gItqAEnVOI
We release a new public service to find potential typo-squatted domains.
https://t.co/WLopIGLEjT relying on our open source @ail_project typo-squatting library. You can select among algorithms, find the existing domains and download the results.
#infosec#threatintel