Does anyone know if the recent APT targeting US energy sector is linked to the attacks on the power grid in Ukraine?
http://ift.tt/2hUJUXw
Submitted October 25, 2017 at 06:31PM by Derbel__McDillet
via reddit http://ift.tt/2gCjppy
http://ift.tt/2hUJUXw
Submitted October 25, 2017 at 06:31PM by Derbel__McDillet
via reddit http://ift.tt/2gCjppy
www.us-cert.gov
Advanced Persistent Threat Activity Targeting Energy and Other Critical Infrastructure Sectors
Since at least May 2017, threat actors have targeted government entities and the energy, water, aviation, nuclear, and critical manufacturing sectors, and, in some cases, have leveraged their capabilities to compromise victims’ networks. Historically, cyber…
SRM Video Series Pt 1
https://www.youtube.com/watch?v=w6jN3g5NDg4&t=3s
Submitted October 25, 2017 at 07:12PM by Uminekoshi
via reddit http://ift.tt/2xlDmYr
https://www.youtube.com/watch?v=w6jN3g5NDg4&t=3s
Submitted October 25, 2017 at 07:12PM by Uminekoshi
via reddit http://ift.tt/2xlDmYr
YouTube
Intro to Security Risk Management (SRM Series Part 1)
This is the first part of our video series on Security Risk Management (SRM) which explains why SRM is important and where you should start with measuring yo...
UEFI BIOS holes: how to detect vulnerabilities in a motherboard firmware
http://ift.tt/2iyOkqU
Submitted October 25, 2017 at 10:57AM by 0xdea
via reddit http://ift.tt/2yNyXkg
http://ift.tt/2iyOkqU
Submitted October 25, 2017 at 10:57AM by 0xdea
via reddit http://ift.tt/2yNyXkg
Embedi
UEFI BIOS holes. So Much Magic. Don’t Come Inside.
In recent years, embedded software security has become a red-hot topic, attracting the attention of high profile security researchers from all around the globe. However, the quality of code is still far from perfect as long as its security is considered.…
0patching the Office DDE / DDEAUTO Vulnerability... ehm... Feature
http://ift.tt/2y6AmP6
Submitted October 25, 2017 at 06:23PM by dielel
via reddit http://ift.tt/2y6Cqqk
http://ift.tt/2y6AmP6
Submitted October 25, 2017 at 06:23PM by dielel
via reddit http://ift.tt/2y6Cqqk
0patch.blogspot.co.uk
0patching the Office DDE / DDEAUTO Vulnerability... ehm... Feature
When "Dynamic Data Exchange" Becomes "Dynamic Data Execution" by Mitja Kolsek, the 0patch Team Introduction Two weeks ago SensePos...
SafeSecure Solution | SafeSecure Ireland
https://goo.gl/W7rD2p @ #Safe #Secure Solutions is a wholly owed Irish business established to provide cost effective security solutions to both residential and commercial #customers.
Submitted October 25, 2017 at 08:38PM by safesecure123
via reddit http://ift.tt/2z61NxI
https://goo.gl/W7rD2p @ #Safe #Secure Solutions is a wholly owed Irish business established to provide cost effective security solutions to both residential and commercial #customers.
Submitted October 25, 2017 at 08:38PM by safesecure123
via reddit http://ift.tt/2z61NxI
SafeSecure Solution
About Us
Safe Secure Solutions
Safe Secure Solutions is a wholly owed Irish business established to provide cost effective security solutions to both residential and commercial customers.
Our highly skilled team has over 30 years experience in the security…
Safe Secure Solutions is a wholly owed Irish business established to provide cost effective security solutions to both residential and commercial customers.
Our highly skilled team has over 30 years experience in the security…
Malvertising Campaign Redirects Browsers To Terror Exploit Kit
http://ift.tt/2yNwF4l
Submitted October 25, 2017 at 09:17PM by jinxrr
via reddit http://ift.tt/2zCKIra
http://ift.tt/2yNwF4l
Submitted October 25, 2017 at 09:17PM by jinxrr
via reddit http://ift.tt/2zCKIra
hackeroid.org
Malvertising Campaign Redirects Browsers To Terror Exploit Kit | Hackeroid
According to researchers at Zscaler, ads are redirecting browsers to malicious landing pages hosting the Terror exploit kit.
cheap security camera systems,cheap security cameras, top security companies,hidden cameras for home,commercial alarm systems,secret video camera,motion activated security camera
http://securityvow.com/
Submitted October 25, 2017 at 11:11PM by lovelen75
via reddit http://ift.tt/2i4PHK9
http://securityvow.com/
Submitted October 25, 2017 at 11:11PM by lovelen75
via reddit http://ift.tt/2i4PHK9
Security Vow
Choosing Cheap Security Cameras Do It Yourself For Your Home - Security Vow
Are you looking for Cheap Security Cameras systems for your home or business? You are at the right place, also come with motion activated security camera.
Week 42 in Information Security, 2017
http://ift.tt/2izvzni
Submitted October 26, 2017 at 02:17AM by undercomm
via reddit http://ift.tt/2z71ySG
http://ift.tt/2izvzni
Submitted October 26, 2017 at 02:17AM by undercomm
via reddit http://ift.tt/2z71ySG
Malgregator
InfoSec Week 42, 2017
Interesting research on the possibility of a cheap online surveillance.
Dell Lost Control of Key Customer Support Domain for a Month in 2017
http://ift.tt/2yL4bJG
Submitted October 26, 2017 at 02:03AM by volci
via reddit http://ift.tt/2gJuB7l
http://ift.tt/2yL4bJG
Submitted October 26, 2017 at 02:03AM by volci
via reddit http://ift.tt/2gJuB7l
reddit
Dell Lost Control of Key Customer Support Domain for... • r/security
1 points and 0 comments so far on reddit
BadRabbit Technical Analysis
http://ift.tt/2gJGURg
Submitted October 26, 2017 at 03:08AM by mikiozen
via reddit http://ift.tt/2izq4os
http://ift.tt/2gJGURg
Submitted October 26, 2017 at 03:08AM by mikiozen
via reddit http://ift.tt/2izq4os
Endgame
BadRabbit Technical Analysis
On October 12th, Ukraine’s SBU security service warned of an imminent attack against government and private institutions similar to the NotPetya attack in June. Two months earlier, the SBU made a similar warning, noting that a second wave of attacks could…
SnatchLoader Reloaded - Analysis of the snatch loader downloader malware
http://ift.tt/2z6esQX
Submitted October 26, 2017 at 03:07AM by mikiozen
via reddit http://ift.tt/2yNzDVd
http://ift.tt/2z6esQX
Submitted October 26, 2017 at 03:07AM by mikiozen
via reddit http://ift.tt/2yNzDVd
Arbor Networks Threat Intelligence
SnatchLoader Reloaded
Executive Summary SnatchLoader is a “downloader” malware—a type of malware that specializes in distributing (or loading) other malware onto infected comput
Hacking Cryptocurrency Miners with OSINT Techniques
http://ift.tt/2gHgyiC
Submitted October 26, 2017 at 02:42AM by teknoseyfo
via reddit http://ift.tt/2zDOyAc
http://ift.tt/2gHgyiC
Submitted October 26, 2017 at 02:42AM by teknoseyfo
via reddit http://ift.tt/2zDOyAc
Medium
Hacking Cryptocurrency Miners with OSINT Techniques
NOTE: All the methods I have explained are at your own risk
Yi Cameras- Nightmare or okay?
Hey guys! I'm in need of a dirt cheap wifi security system to get alerts on my phone when motion is detected upstairs at our house during parties. I won't be using it 24/7 likely and I'm not too concerned about the obvious security loopholes of a Wifi camera just because of my use scenario. My search has lead me to Xiaomi's cheap Yi series- almost every review seems to point out the amount of permissions the app asks for on Android. I use an iPhone but obviously I'm still concerned. It seems to me that people are worried about the app trying to get device ID information and stuff, but I've been on other forums where devs are explaining that it needs the scary looking permissions in order for a feature of another Yi product, the GoPro competitor, and everything is handled through the same app.Bottom line- I'm not worried about the usual IoT concerns, but does anyone know if these Xiaomi products are safe to begin with?
Submitted October 26, 2017 at 04:28AM by Funkbass
via reddit http://ift.tt/2zDPg0p
Hey guys! I'm in need of a dirt cheap wifi security system to get alerts on my phone when motion is detected upstairs at our house during parties. I won't be using it 24/7 likely and I'm not too concerned about the obvious security loopholes of a Wifi camera just because of my use scenario. My search has lead me to Xiaomi's cheap Yi series- almost every review seems to point out the amount of permissions the app asks for on Android. I use an iPhone but obviously I'm still concerned. It seems to me that people are worried about the app trying to get device ID information and stuff, but I've been on other forums where devs are explaining that it needs the scary looking permissions in order for a feature of another Yi product, the GoPro competitor, and everything is handled through the same app.Bottom line- I'm not worried about the usual IoT concerns, but does anyone know if these Xiaomi products are safe to begin with?
Submitted October 26, 2017 at 04:28AM by Funkbass
via reddit http://ift.tt/2zDPg0p
reddit
Yi Cameras- Nightmare or okay? • r/security
Hey guys! I'm in need of a dirt cheap wifi security system to get alerts on my phone when motion is detected upstairs at our house during parties....
Third Man Charged in Hacking Celebrities' iCloud ...
http://ift.tt/2zD39vS
Submitted October 26, 2017 at 03:22AM by magnum100
via reddit http://ift.tt/2xnmSPB
http://ift.tt/2zD39vS
Submitted October 26, 2017 at 03:22AM by magnum100
via reddit http://ift.tt/2xnmSPB
Dark Reading
Third Man Charged in Hacking Celebrities' iCloud and Gmail Accounts
An Illinois man is charged with hacking into more than 550 accounts that belong to entertainment industry figures and others.
Help with security cameras
My uncles doing a job for a man that wants security cameras that can record footage up to a week long but also give a live feed to his phone is this doable without going through a company like xfinity?
Submitted October 26, 2017 at 04:52AM by muckballs
via reddit http://ift.tt/2iCKwoQ
My uncles doing a job for a man that wants security cameras that can record footage up to a week long but also give a live feed to his phone is this doable without going through a company like xfinity?
Submitted October 26, 2017 at 04:52AM by muckballs
via reddit http://ift.tt/2iCKwoQ
reddit
Help with security cameras • r/security
My uncles doing a job for a man that wants security cameras that can record footage up to a week long but also give a live feed to his phone is...
PIA VPN Android App Can Be Crashed via Large Download [CVE-2017-15882]
http://ift.tt/2gJpnsd
Submitted October 26, 2017 at 06:55AM by nightwatchcyber
via reddit http://ift.tt/2zDRxsu
http://ift.tt/2gJpnsd
Submitted October 26, 2017 at 06:55AM by nightwatchcyber
via reddit http://ift.tt/2zDRxsu
Nightwatch Cybersecurity
Advisory: Private Internet Access (PIA) Android App Can Be Crashed via Large Download [CVE-2017-15882]
Summary The Android application provided by Private Internet Access (PIA) VPN service can be crashed by downloading a large file containing a list of current VPN servers. This can be exploited by a…
Whatsapp privacy questions
Whatsapp as marketed is using end-to-end encryption in message transfer.i.e. if bob sends message to alice. only in this world alice has capability to decrypt that message.If alice meanwhile losses her set of pre-keys (ephemeral private keys) then those messages should remain un-decryptable forever (considering current state of hardware)Question:1 How can facebook ad and "Facebook families of companies" can utilize this data ? re:http://ift.tt/2rSXj8M2 When Bob uses two client (phone and chrome application). In ideal world of private communication there can not be anyway that ephemeral private keys leaves the client.How can Bob see message that Bob sent to alice from phone and his chrome app ?2.1. Are they sharing ephemeral private keys across device ?2.2. Are they treating each client as another user and self sending message ?3 Apart from this what metadata of messages are available to FB and what are they using for ?
Submitted October 26, 2017 at 07:45AM by 1ECx
via reddit http://ift.tt/2gJq9pn
Whatsapp as marketed is using end-to-end encryption in message transfer.i.e. if bob sends message to alice. only in this world alice has capability to decrypt that message.If alice meanwhile losses her set of pre-keys (ephemeral private keys) then those messages should remain un-decryptable forever (considering current state of hardware)Question:1 How can facebook ad and "Facebook families of companies" can utilize this data ? re:http://ift.tt/2rSXj8M2 When Bob uses two client (phone and chrome application). In ideal world of private communication there can not be anyway that ephemeral private keys leaves the client.How can Bob see message that Bob sent to alice from phone and his chrome app ?2.1. Are they sharing ephemeral private keys across device ?2.2. Are they treating each client as another user and self sending message ?3 Apart from this what metadata of messages are available to FB and what are they using for ?
Submitted October 26, 2017 at 07:45AM by 1ECx
via reddit http://ift.tt/2gJq9pn
WhatsApp.com
WhatsApp FAQ - How do I choose not to share my account information with Facebook to improve my Facebook ads and products experiences?
How do I choose not to share my account information with Facebook to improve my Facebook ads and products experiences? - If you are an existing user, you can choose not to share your account information with Facebook to improve your Facebook ads and products…
Security Now 634 IoT Flash Botnets | TWiT.TV
http://ift.tt/2zNJXg1
Submitted October 26, 2017 at 06:24AM by dmp1ce
via reddit http://ift.tt/2zPHUb0
http://ift.tt/2zNJXg1
Submitted October 26, 2017 at 06:24AM by dmp1ce
via reddit http://ift.tt/2zPHUb0
TWiT.tv
Security Now 634 IoT Flash Botnets | TWiT.TV
This week we discuss some ROCA fallout specifics, an example of PRNG misuse, the Kaspersky Lab controversy, a DNS security initiative for Android, another compromised download occu…
Automatic Boom Barriers
http://ift.tt/2yLTZ3i
Submitted October 26, 2017 at 12:50PM by anjali874
via reddit http://ift.tt/2gJV8BH
http://ift.tt/2yLTZ3i
Submitted October 26, 2017 at 12:50PM by anjali874
via reddit http://ift.tt/2gJV8BH
Fleet Tracking Services Indore
http://ift.tt/2gJZ19O
Submitted October 26, 2017 at 03:13PM by Easysecure
via reddit http://ift.tt/2yNQAkK
http://ift.tt/2gJZ19O
Submitted October 26, 2017 at 03:13PM by Easysecure
via reddit http://ift.tt/2yNQAkK
www.easysecure.co.in
Easy Secure GPS tracking device | Vehicle Security Device | Home security | Personal security | Fleet Security | Indore,India
Easy Secure is one of the best company which provide anti theft and anti hacking devices and services in Indore, India. Easy Secure provides all type of tracking solutions like Bike Tracking,Car tracking,Mobile tracking,Fleet tracking,Personal tracking and…
SSL|TLS Server Session
http://ift.tt/2y5fBs5
Submitted October 26, 2017 at 02:54PM by MicheeLengronne
via reddit http://ift.tt/2zRl0Ag
http://ift.tt/2y5fBs5
Submitted October 26, 2017 at 02:54PM by MicheeLengronne
via reddit http://ift.tt/2zRl0Ag
Limawi
SSL|TLS Server Session
SSL/TLS Server session protocol with Let’s Encrypt.