Aggregator
2024 年上半年勒索软件赎金达 4.5 亿美元 创历史新高
CAMO Unveiled: How Cybercriminals Exploit Legitimate Software for Stealthy Attacks
CISA Releases Four Industrial Control Systems Advisories
CISA released four Industrial Control Systems (ICS) advisory on September 5, 2024. These advisories provide timely information about current security issues, vulnerabilities, and exploits surrounding ICS.
- ICSA-24-249-01 Hughes Network Systems WL3000 Fusion Software
- ICSMA-24-249-01 Baxter Connex Health Portal
- ICSA-20-303-01 Mitsubishi Electric MELSEC iQ-R, Q, and L Series (Update E)
- ICSA-22-356-03 Mitsubishi Electric MELSEC iQ-R, iQ-L Series and MELIPC Series (Update E)
CISA encourages users and administrators to review newly released ICS advisories for technical details and mitigations.
FBI, CISA, NSA, and US and International Partners Release Advisory on Russian Military Cyber Actors Targeting US and Global Critical Infrastructure
Today, the Federal Bureau of Investigation (FBI)—in partnership with CISA, the National Security Agency (NSA), and other U.S. and international partners—released a joint Cybersecurity Advisory Russian Military Cyber Actors Target U.S. and Global Critical Infrastructure. This advisory provides overlapping cybersecurity industry cyber threat intelligence, tactics, techniques, and procedures (TTPs) and Indicators of Compromise (IOCs) associated with Russian General Staff Main Intelligence Directorate (GRU) 161st Specialist Training Center (Unit 29155) cyber actors, both during and succeeding their deployment of the WhisperGate malware against Ukraine.
These cyber actors are responsible for computer network operations against global targets for the purposes of espionage, sabotage, and reputational harm since at least 2020. The authoring agencies encourage organizations to review this advisory for recommended mitigations against such malicious activity.
For additional information on Russian state-sponsored malicious cyber activity and related indictments, see the recent U.S. Department of Justice (DOJ) press release for June 26, 2024, and Sept. 5, 2024, FBI’s Cyber Crime webpage, and CISA’s Russia Cyber Threat Overview and Advisories webpage.
New Report Highlights Economic Value of Neutron Science to U.S. Industry
CVE-2017-13840 | Apple macOS up to 10.13.1 Kernel information disclosure (HT208221 / Nessus ID 103598)
安全防护|一文解析“纵深防御”(DiD)
CVE-2004-2522 | Geeos Team Gattaca Server 2003 1.1.10.0 language cross site scripting (EDB-24286 / XFDB-16701)
Ставка на «прогнивших»: Камала Харрис запускает провокационную рекламную кампанию
喜报|火绒受邀加入国家计算机病毒协同分析平台并荣获“天网杯”网络安全大赛奖项
CVE-2007-2062 | VCDGear 3.55/3.56 Beta FILE stack-based overflow (EDB-3727 / XFDB-33642)
Proofpoint helps organizations simplify governance of communication data
Proofpoint introduced its Digital Communications Governance (DCG) offering, bolstering its existing offerings in pace with the evolving modern data governance and enterprise archiving market. The new offering helps organizations simplify governance of communication data and provides security insights across all major digital channels for conduct risk. It leverages artificial intelligence (AI) to surface key data insights, reducing false positives while facilitating high efficacy information discovery and supervisory review. Today’s data governance and compliance market has … More →
The post Proofpoint helps organizations simplify governance of communication data appeared first on Help Net Security.