You are here

Cybersecurity

Network Defense – Think of Network Intruders Like Tourists Giving Themselves Away

This recent post by Brian Krebs is an interesting read for everyone, but security analysts, sysadmins, and other network defenders particularly should find this perspective interesting. This article suggests that a great many initial intrusions that lead to data theft could be nipped in the bud if more organizations started looking for the telltale signs of newly-arrived cybercriminals behaving like network tourists and how doing so can mean the difference between catching a compromise in week-1 (before the attackers dig in) and learning about the attack on CNN.

CISA ICS Vulnerability Advisories and Alerts, Updates, and Bulletins – August 24, 2023

The Cybersecurity and Infrastructure Security Agency (CISA) has published the following ICS vulnerability advisories, as well as alerts, updates, and bulletins:

ICS Vulnerability Advisories:

CISA Releases Six Industrial Control Systems Advisories

Products are used across multiple sectors, please check these latest advisories for specific equipment used across your ICS environments and address accordingly.

FBI FLASH: Suspected PRC Cyber Actors Continue to Globally Exploit Barracuda ESG Zero-Day Vulnerability

Action strongly suggested: Utilities which use and have not already isolated or replaced impacted Barracuda Email Security Gateway (ESG) appliances are encouraged to address immediately.

The FBI published a TLP:CLEAR FLASH (AC-000172-TT) emphasizing the Barracuda warning from early June to immediately replace impacted appliances.

Threat Awareness – QR Code Campaign Impacts Major U.S. Energy Company

What’s Black and White and Read all Over? Many years before computers, “newspaper” was the usual punchline to this riddle, but in today’s culture the QR code is more representative. QR codes have been in use for many years – a Japanese automotive company actually patented them in 1994 – but the usage became much more widespread during the COVID-19 pandemic. QR codes have benefits, but like anything electronically/digitally useful, scammers eventually leverage them with nefarious intent.

Pages

Subscribe to Cybersecurity