Smart traffic lights cause jams when fed spoofed data
http://ift.tt/2IbkxNp
Submitted March 09, 2018 at 12:08AM by volci
via reddit http://ift.tt/2FpMRtK
http://ift.tt/2IbkxNp
Submitted March 09, 2018 at 12:08AM by volci
via reddit http://ift.tt/2FpMRtK
Naked Security
Smart traffic lights cause jams when fed spoofed data
Researchers have found that attack cars sending out fake trajectory data can plug up an intersection solid.
Kill Switch Can Mitigate Massive DDoS Attacks Via Memcached Servers
http://ift.tt/2G7JoRH
Submitted March 09, 2018 at 12:55AM by Horus_Sirius
via reddit http://ift.tt/2D92Zxz
http://ift.tt/2G7JoRH
Submitted March 09, 2018 at 12:55AM by Horus_Sirius
via reddit http://ift.tt/2D92Zxz
TSecurity Portal
Kill Switch Can Mitigate Massive DDoS Attacks Via Memcached Servers
RedisWannaMine Unveiled: New Cryptojacking Attack Powered by Redis and NSA Exploits
http://ift.tt/2p3EwoG
Submitted March 09, 2018 at 12:37AM by buildops
via reddit http://ift.tt/2G7JsRr
http://ift.tt/2p3EwoG
Submitted March 09, 2018 at 12:37AM by buildops
via reddit http://ift.tt/2G7JsRr
Blog | Imperva
RedisWannaMine Unveiled: New Cryptojacking Attack Powered by Redis and NSA Exploits
Recently cryptojacking attacks have been spreading like wildfire. This week we saw a new generation of cryptojacking attacks aimed at both database servers and application servers. We dubbed one of these attacks RedisWannaMine. Read on.
Monitors for DCSYNC and DCSHADOW attacks and create custom Windows Events for these events.
http://ift.tt/2G826Zq
Submitted March 09, 2018 at 01:24AM by digicat
via reddit http://ift.tt/2FqyDJ2
http://ift.tt/2G826Zq
Submitted March 09, 2018 at 01:24AM by digicat
via reddit http://ift.tt/2FqyDJ2
GitHub
shellster/DCSYNCMonitor
DCSYNCMonitor - Monitors for DCSYNC and DCSHADOW attacks and create custom Windows Events for these events.
Getting a Cybersecurity Job
http://ift.tt/2Fl2mqE
Submitted March 09, 2018 at 03:43AM by 1cmk
via reddit http://ift.tt/2DbvOK2
http://ift.tt/2Fl2mqE
Submitted March 09, 2018 at 03:43AM by 1cmk
via reddit http://ift.tt/2DbvOK2
reddit
Getting a Cybersecurity Job • u/1cmk
After passing my CEH I have for the last 5 months been job hunting. How do I get into cybersecurity without experience? I don't have any IT...
What dangers/exploits might present if you were to add servers to the NTP Pool?
DO has a tutorial on adding Ubuntu servers to the NTP Pool (https://www.digitalocean.com/community/tutorials/how-to-configure-ntp-for-use-in-the-ntp-pool-project-on-ubuntu-16-04).I'm all for helping-out others (I run a couple mirrors in Germany for CentOS and Haiku OS, for example - but those are "just" websites).Are there any inherent dangers or possibe exploits in adding servers to the public NTP Pool, presuming you have the estimated bandwidth available (that article claims peak demand shouldn't exceed 150KB/s, which totals to <300GB, if it sits at that theoretical peak for 30 days).
Submitted March 09, 2018 at 05:31AM by volci
via reddit http://ift.tt/2oTwQpA
DO has a tutorial on adding Ubuntu servers to the NTP Pool (https://www.digitalocean.com/community/tutorials/how-to-configure-ntp-for-use-in-the-ntp-pool-project-on-ubuntu-16-04).I'm all for helping-out others (I run a couple mirrors in Germany for CentOS and Haiku OS, for example - but those are "just" websites).Are there any inherent dangers or possibe exploits in adding servers to the public NTP Pool, presuming you have the estimated bandwidth available (that article claims peak demand shouldn't exceed 150KB/s, which totals to <300GB, if it sits at that theoretical peak for 30 days).
Submitted March 09, 2018 at 05:31AM by volci
via reddit http://ift.tt/2oTwQpA
Digitalocean
How to Configure NTP for Use in the NTP Pool Project on Ubuntu 16.04 | DigitalOcean
Accurate time keeping is critical for almost any service or software. Emails, loggers, event systems and schedulers, user authentication mechanisms, and serv…
NSA tracking program watched foreign hackers in action
http://ift.tt/2G6JxF3
Submitted March 09, 2018 at 08:43AM by chull2058
via reddit http://ift.tt/2Fu5nku
http://ift.tt/2G6JxF3
Submitted March 09, 2018 at 08:43AM by chull2058
via reddit http://ift.tt/2Fu5nku
SearchSecurity
NSA tracking program watched foreign hackers in action
Research into the data leaked by the Shadow Brokers in 2017 showed an NSA tracking program to watch foreign hackers in real time and see what data is being stolen.
Malware attacks rocket, while SSL holds traffic keys
http://ift.tt/2oYUYGE
Submitted March 09, 2018 at 08:42AM by chull2058
via reddit http://ift.tt/2G5Oa1T
http://ift.tt/2oYUYGE
Submitted March 09, 2018 at 08:42AM by chull2058
via reddit http://ift.tt/2G5Oa1T
Htbridge
Malware attacks rocket, while SSL holds traffic keys
Growth in SSL having considerable impact on attacker strategies, as malware charts considerable rise.
CIGslip attack could allow hacker to bypass Microsoft Code Integrity Guard
http://ift.tt/2Dclj9j
Submitted March 09, 2018 at 03:52PM by CasperVPN
via reddit http://ift.tt/2G8pZ31
http://ift.tt/2Dclj9j
Submitted March 09, 2018 at 03:52PM by CasperVPN
via reddit http://ift.tt/2G8pZ31
Security Affairs
CIGslip attack could allow hacker to bypass Microsoft Code Integrity Guard
Security experts devised a stealth attack technique dubbed CIGslip that could be exploited by attackers to bypass Microsoft Code Integrity Guard (CIG)
Facebook lets me log in when I have a typo in my e-mail adress, is this on purpose?
I just realized that I mistyped my e-mail adress the last time I logged into my FB account, so I gave it another try and again I could just log in without a problem. I tried a different character in different positions of the e-mail adress and it always worked. So I tried changing two and then three characters to something else, and I can still log in. Not sure what to think about that.
Submitted March 09, 2018 at 05:16PM by debtsnbooze
via reddit http://ift.tt/2Db3gjL
I just realized that I mistyped my e-mail adress the last time I logged into my FB account, so I gave it another try and again I could just log in without a problem. I tried a different character in different positions of the e-mail adress and it always worked. So I tried changing two and then three characters to something else, and I can still log in. Not sure what to think about that.
Submitted March 09, 2018 at 05:16PM by debtsnbooze
via reddit http://ift.tt/2Db3gjL
reddit
Facebook lets me log in when I have a typo in my... • r/security
I just realized that I mistyped my e-mail adress the last time I logged into my FB account, so I gave it another try and again I could just log in...
Yahoo Agrees $80m Securities Fraud Settlement
http://ift.tt/2DdWR7c
Submitted March 09, 2018 at 05:39PM by CasperVPN
via reddit http://ift.tt/2twfV12
http://ift.tt/2DdWR7c
Submitted March 09, 2018 at 05:39PM by CasperVPN
via reddit http://ift.tt/2twfV12
Infosecurity Magazine
Yahoo Agrees $80m Securities Fraud Settlement
Yahoo Agrees $80m Securities Fraud Settlement. Shareholders filed class action following breach revelations
comparison vulnerability scanners
Hi everyone,I'm looking for a site or document where commercial vulnerability scanners are compared in a (semi)professional way.Is there anyone here that knows of the existence of such an comparison? I have been searching but unfortunately I couldn't find any.Thanks in advance.
Submitted March 09, 2018 at 06:35PM by koningsvh
via reddit http://ift.tt/2DdAQpf
Hi everyone,I'm looking for a site or document where commercial vulnerability scanners are compared in a (semi)professional way.Is there anyone here that knows of the existence of such an comparison? I have been searching but unfortunately I couldn't find any.Thanks in advance.
Submitted March 09, 2018 at 06:35PM by koningsvh
via reddit http://ift.tt/2DdAQpf
reddit
comparison vulnerability scanners • r/security
Hi everyone, I'm looking for a site or document where commercial vulnerability scanners are compared in a (semi)professional way. Is there...
How to Protect Your Computer or Smartphone Against the Meltdown and Spectre CPU Security Flaws?
http://ift.tt/2twOvYY
Submitted March 09, 2018 at 06:20PM by gibber879
via reddit http://ift.tt/2oW9aRy
http://ift.tt/2twOvYY
Submitted March 09, 2018 at 06:20PM by gibber879
via reddit http://ift.tt/2oW9aRy
NextInDigital
How to Protect Your Computer or Smartphone Against the Meltdown and Spectre CPU Security Flaws? - NextInDigital
How to Protect Your Computer or Smartphone Against the Meltdown and Spectre CPU Security Flaws?Rate this post Recently security flaws such as Meltdown and Spectre CPU flaw have made headlines all around the globe. As such, if you are looking for ways to protect…
Our company analyzed over 50K hacking incidents this month. Here's some data.
http://ift.tt/2tzFyhC
Submitted March 09, 2018 at 06:52PM by ded1cated
via reddit http://ift.tt/2tsjMMF
http://ift.tt/2tzFyhC
Submitted March 09, 2018 at 06:52PM by ded1cated
via reddit http://ift.tt/2tsjMMF
WebARX
February 2018 Website Hacking Statistics
When we dive into the data and talk about different countries the most targeted ones in February were the sites hosted in the United States with...
Looking back at a Windows Kernel info leak bug involving improper checks from Pwn2Own 2016.
http://ift.tt/2trDMim
Submitted March 09, 2018 at 06:59PM by RedmondSecGnome
via reddit http://ift.tt/2tx9meA
http://ift.tt/2trDMim
Submitted March 09, 2018 at 06:59PM by RedmondSecGnome
via reddit http://ift.tt/2tx9meA
Security In 5: Episode 191 - Tools, Tips and Tricks - Spiceworks
http://ift.tt/2HkNSne
Submitted March 09, 2018 at 07:32PM by BinaryBlog
via reddit http://ift.tt/2FGx8Kg
http://ift.tt/2HkNSne
Submitted March 09, 2018 at 07:32PM by BinaryBlog
via reddit http://ift.tt/2FGx8Kg
Libsyn
Security In Five Podcast: Episode 191 - Tools, Tips and Tricks - Spiceworks
This week's tools, tips and tricks goes over a fantastic collection of IT Administration and Security tools, Spiceworks. Spiceworks is a full free suite of tools that covers everything from a full funcitonal IT discovery and Inventory management system, Help…
#0daytoday #Tor Browser ( Firefox 41 &lt; 50 ) - Code Execution 0day Exploit [#0day #Exploit]
http://ift.tt/2Hkqnuz
Submitted March 09, 2018 at 08:28PM by Horus_Sirius
via reddit http://ift.tt/2FDAVYB
http://ift.tt/2Hkqnuz
Submitted March 09, 2018 at 08:28PM by Horus_Sirius
via reddit http://ift.tt/2FDAVYB
TSecurity Portal
#0daytoday #Tor Browser ( Firefox 41 < 50 ) - Code Execution 0day Exploit [#0day #Exploit]
Best Security Conference Session You've Ever Attended
With RSA 2018 coming up next month, I'm interested to hear what keynote or breakout sessions have stood out as being particularly interesting or educational for everyone here (not necessarily at RSA, but at any security conferences you've been to).
Submitted March 09, 2018 at 08:07PM by Forgetful_Prophet
via reddit http://ift.tt/2HkqqGL
With RSA 2018 coming up next month, I'm interested to hear what keynote or breakout sessions have stood out as being particularly interesting or educational for everyone here (not necessarily at RSA, but at any security conferences you've been to).
Submitted March 09, 2018 at 08:07PM by Forgetful_Prophet
via reddit http://ift.tt/2HkqqGL
reddit
Best Security Conference Session You've Ever Attended • r/security
With RSA 2018 coming up next month, I'm interested to hear what keynote or breakout sessions have stood out as being particularly interesting or...
Hardcoded Password Found in Cisco Software
http://ift.tt/2Fzwhec
Submitted March 09, 2018 at 10:06PM by grepnork
via reddit http://ift.tt/2GclGU8
http://ift.tt/2Fzwhec
Submitted March 09, 2018 at 10:06PM by grepnork
via reddit http://ift.tt/2GclGU8
Cisco
Cisco Security Threat and Vulnerability Intelligence
The Cisco Security portal provides actionable intelligence for security threats and vulnerabilities in Cisco products and services and third-party products.
Over 15,000 Memcached DDoS Attacks Hit 7,100 Sites in Last 10 Days
http://ift.tt/2FuVqn4
Submitted March 09, 2018 at 10:51PM by EvanConover
via reddit http://ift.tt/2oTOl9l
http://ift.tt/2FuVqn4
Submitted March 09, 2018 at 10:51PM by EvanConover
via reddit http://ift.tt/2oTOl9l
The Hacker News
Over 15,000 Memcached DDoS Attacks Hit 7,100 Sites in Last 10 Days
Researchers recorded over 15,000 memcached amplification DDoS attack events in past 10 days against 7,131 unique targets.
Anyone have an answer?
I got a call from a number in Nuski Alberta and when I called back it was a painting company and a nice woman who claimed she was the only one in the office and no on had called my number. When I answered (when they called me) There was silence, then some number dials, I was put on hold then they hung up. It happened 3 times before I called back and the lady answered
Submitted March 09, 2018 at 10:44PM by Aybeastboy
via reddit http://ift.tt/2Hll5PE
I got a call from a number in Nuski Alberta and when I called back it was a painting company and a nice woman who claimed she was the only one in the office and no on had called my number. When I answered (when they called me) There was silence, then some number dials, I was put on hold then they hung up. It happened 3 times before I called back and the lady answered
Submitted March 09, 2018 at 10:44PM by Aybeastboy
via reddit http://ift.tt/2Hll5PE
reddit
Anyone have an answer? • r/security
I got a call from a number in Nuski Alberta and when I called back it was a painting company and a nice woman who claimed she was the only one in...