@AWSSupport@awscloud Since there is no progress dear @AWSSupport, here a little bit of support for your team from me. You are being fooled around by the attackers - sorry - your customers. See the difference? Want me to explain what's happening? Sure, here we are: google geofencing. Thank me later.
@AWSSupport@awscloud More here: ccss-lu[.]eu
We're sick of reporting the same stuff over and over again. By now, this is incomparable to any other hosting provider in the world.
@AWSSupport Dear @AWSSupport. Your wishful thinking is laudable, but you have frequently proven the opposite. Reports were sent to [email protected].
Now walk the walk. And fix this permanently. You have some responsibility!
Despite multiple unsuccessful attempts to shut down the phishing infrastructure on @awscloud, we urgently advise blocking the IP 54.211.144[.]11, a hub for numerous phishing attacks against Luxembourgian services. See attached passive DNS screenshot.
#luxembourg#phishing
@AWSSupport@circl_lu@awscloud I am doubting the seriousness of such replies. Why is this work externalized to unpaid individuals or organizations instead of working on such a systematic problem responsibly as soon as you are aware of it?
Do you want to integrate fail2ban intelligence into MISP?
Here is a simple way to do it with fail2ban, curl and a MISP instance as described by @rommelfs
https://t.co/QM0sRWMCcz
#ThreatIntelligence#fail2ban#infosec#misp#CTI
Everything is ready - Cyber and Threat Intelligence Summit (CTIS-2022) October 19 - 20 2022 -
https://t.co/GyZ45jlEVS
Thanks to our sponsors @ThreatQuotient @DeloitteLU @MISPProject
Still some seats available if you want to join us. #ThreatIntelligence@LuxSecurityWeek
I see a regular comment when you release a new open source software.
"I did the same, it's not difficult to do."
Then you ask where the open source release is.
"Oh, it's not open sourced..."
I'm wondering about the psychological approach behind such feedback.
We release a new public service to find potential typo-squatted domains.
https://t.co/WLopIGLEjT relying on our open source @ail_project typo-squatting library. You can select among algorithms, find the existing domains and download the results.
#infosec#threatintel
CIRCL TR-70 - Vulnerabilities in Microsoft Exchange CVE-2022-41040 - CVE-2022-41082
https://t.co/iyMeuOz503
Page will be updated regularly. #infosec
https://t.co/8k01FyhreL
Often organisation ask us about the most common entry point for a security incident, open and unpatched public services are the most common during the past month. The ATT&CK statistics below is one month from one of our @MISPProject community. #infosec
Reminder - MISP Training - Threat Intelligence Introduction for Analysts and Security Professionals and upcoming MISP trainings are from 14:00 until 17:00 CEST. #ThreatIntelligence
https://t.co/7LU3XJGGU1
This year we don't do @hack_lu but we do a #CTI conference Cyber and Threat Intelligence Summit 2022 (CTIS) (October 19 - 20 2022)) - There is a call for paper or presentation open (9 days left). So you know what to do ;-)
https://t.co/rk99j4a77M