120 likes | 129 Views
Stay up-to-date with the latest cybersecurity news, including Patch Tuesday updates, critical fixes, issues with the Meltdown patch, hacking incidents, data leaks, and more.
E N D
Patch Tuesday • Feb – 53 CVE / 43 KB Articles with 927 unique downloads • Reports of 16 Critical / 56 fixes • Internet Explorer • Microsoft Edge • Microsoft Windows • Microsoft Office and Microsoft Office Services and Web Apps • ChakraCore • Adobe Flash
Holes / Patches • Lenovo Net OS • Oracle - 237 fixes • more meltdown patch issues • electron SDK • asus router patches • lenovo fingerprint reader • Braodcom Wifi • cisco vpn • Cisco ASA • ManageEngine • oracle micros • flash 0-day
Hacking • mobile scada apps • Record Google bug bounty payout • Dridex now with FTP • Gas pumps • US ATMs now under fire • more cyrptocoin exchange • weaponizing meltdown/spectre • covert channel in tls
Skype now secured by Signal • SinVR user leak • DragonBox sued by media houses • Oklahomo State University Center for Health Sciences popped • Blackberry turns attention to cars • office now with universal code base • jason's deli popped (again) • oneplus popped • Sonic data leak • Tinder encryption • amazon buys Sqrrl • PCI standard for pin entry • apple to drop 32bit apps • AllScripts Ransomeware • VMware to buy Dell?? • apple launches HomePod • Apple arm co-processors • bestbuy pulls cds • Gramerly chrome extension • octoly S3 leaks • google extends play bug bounty • proofpoint buys wombat • apple iBoot code leaked Corp
HR3202 - Cyber Vuln Disclosure • Apple health as evidence • kim dotcom loses megaupload domains • Belgium privacy reform • FCC backs off redefining broadband • Crashless drone • NSA not honest • HR 4814, the Community Broadband Act of 2018 • NY surveillence docs released • fitness trackers, what could go wrong • Tax Identiy Theft AWareness Week • IC3 impersonation • UK refuses Love extradition • infraud takedown Govt
new version of jpcert doc https://jpcertcc.github.io/ToolAnalysisResultSheet/ NOC/SOC integration https://www.sans.org/reading-room/whitepapers/incident/noc-soc-integration-opportunities-increased-efficiency-incident-response-cyber-security-38290 Papers
FB user moderated news time to buy lost imager sat found security over convience WTF
IDA Pro plugin AMT default password pi-top Usbpcap hak5 packet squirell maze runner CE altdns - subdomain recon (python) Tools
Future Cons BSidesAustin8-9 Mar 2018 austin $30 CanSecWest 14-16 Mar 2018 (passport) vancouver $2100 HouSecCon4 Apr 2018 houston $65 InfoSec Southwest 11-13 Apr 2018 austin $190 BSidesOK 13 Apr 2018 (training on 11-12) tulsa $FREE BSidesNash 14 Apr 2018 nashville$??? AtlSecCon26-27 Apr 2018 (passport) halifax $160 ThotCon4-5 May 2018 chicago $170 SOLDOUT HackMiami 18-20 May 2018 miami $125+ CircleCity 1-3 Jun 2018 indy $150 BSidesSATX 16 Jun 2018 san antonio $???
DHA @Dallas_Hackers ( 1st Wednesday / Family Karaoke, Dallas ) TX2600 @dallas2600 ( 1st Fri / Wild Turkey 35&WalnutHill, Dallas ) The Lab.MS @TheLab_ms ( 2nd Saturday + random events / TheLab.ms, Plano ) ISSA Fort Worth @ISSAFortWorth ( 2nd Tuesday / location varies ) Hack Ft Worth @Hack_FtW ( 3rd-ish Tuesday / Buffalo West, Fort Worth) OWASP Dallas @OWASPDallas ( 3rd Tuesday / location varies ) Crypto Party DFW @CryptoPartyDFW ( 3rd Thursday / TheLab.ms, Plano ) North Texas Cyber Security Group @ntxcsg ( Last Thursday, Jakes, Frisco ) Dallas MakerSpace @dallasmakers ( Random events / Carrollton ) Where
All images scavenged without permission All images scavenged without permission