ISACARuSec
@IsacaRuSec
2.26K
subscribers
1.78K
photos
13
videos
308
files
5.67K
links
Канал направления ИБ Московского отделения ISACA
Направление канала новости ISACA, новости в области управления ИБ в России и мире, обмен лучшими практиками.
Связь с администрацией
@popepiusXIII
Download Telegram
Join
ISACARuSec
2.26K subscribers
ISACARuSec
https://m.youtube.com/watch?v=IFqfCkT4X8w
ISACARuSec
https://therecord.media/microsoft-adds-novel-feature-to-exchange-servers-to-allow-it-to-deploy-emergency-temporary-fixes/amp/
The Record by Recorded Future
Microsoft adds novel feature to Exchange servers to allow it to deploy emergency temporary fixes
Microsoft will roll out tomorrow a new security feature for its Exchange email servers named the Emergency Mitigation (EM) service that can automatically install temporary mitigations to block attacks until Microsoft is ready to release official patches.
ISACARuSec
https://twitter.com/EUHomeAffairs/status/1442391317510754307
Twitter
EU Home Affairs
📣
The #CyberSecMonth is almost here! Each year, for the entire month of October, hundreds of activities promoting cybersecurity take place across Europe, including conferences, workshops, training sessions, webinars, presentations and more. Stay tuned
👉
cyb…
ISACARuSec
https://arstechnica.com/information-technology/2021/09/new-azure-active-directory-password-brute-forcing-flaw-has-no-fix/
Ars Technica
New Azure Active Directory password brute-forcing flaw has no fix
Microsoft says AD authentication responses are working as intended.
ISACARuSec
ISACARuSec
ISACARuSec
#SAS21
slides by Diego Comas, Sourcegraph
ISACARuSec
ISACARuSec
ISACARuSec
ISACARuSec
ISACARuSec
ISACARuSec
Photo
https://www.microsoft.com/security/blog/2021/03/23/secure-containerized-environments-with-updated-threat-matrix-for-kubernetes/
Microsoft News
Secure containerized environments with updated threat matrix for Kubernetes
The updated threat matrix for Kubernetes adds new techniques found by Microsoft researchers, as well as techniques that were suggested by the community.
ISACARuSec
ISACARuSec
ISACARuSec
ISACARuSec
https://www.meritalk.com/articles/cisa-releases-draft-guidance-for-transition-to-ipv6/
Meritalk
CISA Releases Draft Guidance for Transition to IPv6
<div class="at-above-post addthis_tool" data-url="https://www.meritalk.com/articles/cisa-releases-draft-guidance-for-transition-to-ipv6/"></div>Federal agencies are on the clock to transition networks and systems to using Internet Protocol version 6 (IPv6)…
ISACARuSec
https://csrc.nist.gov/publications/detail/sp/800-204c/draft
CSRC | NIST
NIST Special Publication (SP) 800-204C (Draft), Implementation of DevSecOps for a Microservices-based Application with Service…
Cloud-native applications have evolved into a standardized architecture consisting of multiple loosely coupled components called microservices (implemented as containers), supported by code for providing application services called service mesh. Both of these…
ISACARuSec
https://therecord.media/facebook-open-sources-internal-tool-used-to-detect-security-bugs-in-android-apps/amp/
The Record by Recorded Future
Facebook open-sources internal tool used to detect security bugs in Android apps
Facebook has open-sourced Mariana Trench, one of its internal security tools, used by its security teams for finding and fixing bugs in Android and Java applications.
ISACARuSec
https://twitter.com/ISACANews/status/1443251774375223307
Twitter
ISACA Global
What are the keys to writing strong risk statements? Find out in this week’s edition of our @ ISACA e-newsletter: bit.ly/3kPzASk
ISACARuSec
https://csrc.nist.gov/publications/detail/sp/800-214/final
CSRC | NIST
NIST Special Publication (SP) 800-214, 2020 Cybersecurity and Privacy Annual Report
This Annual Report provides the opportunity to describe the many cybersecurity program highlights and accomplishments from throughout the NIST Information Technology Laboratory (ITL). The report is organized into several focus areas that highlight key research…
ISACARuSec
https://csrc.nist.gov/publications/detail/sp/800-218/draft
CSRC | NIST
NIST Special Publication (SP) 800-218 (Withdrawn), Secure Software Development Framework (SSDF) Version 1.1: Recommendations for…
Few software development life cycle (SDLC) models explicitly address software security in detail, so secure software development practices usually need to be added to each SDLC model to ensure that the software being developed is well-secured. This document…
TWeb.init({scrollToPost:'IsacaRuSec/4473'});