Security Leftovers
-
Security headers you should add into your application to increase cyber risk protection, (Thu, Apr 6th)
Web applications are a wide world that is currently the object of numerous cyberattacks, mostly seeking to compromise the information directly in the clients that use them.
-
2023-03-30 [Older] CISA Adds Ten Known Exploited Vulnerabilities to Catalog [Ed: Microsoft tops the list!]
-
2023-03-30 [Older] CISA Releases One Industrial Control Systems Advisory
-
2023-03-30 [Older] Supply Chain Attack Against 3CXDesktopApp
-
2023-03-30 [Older] Intercept and Inject: DNS Response Manipulation in the Wild
-
Threat researchers dissect anatomy of a Royal ransomware attack [Ed: Microsoft Windows TCO]
Trellix researchers have shared the details of a Royal ransomware attack on one of its customers, revealing insight into the tactics, techniques and procedures (TTPs) employed by one of the world’s most active and dangerous ransomware operations.
Royal ransomware was first detected in January of 2022 but the group ramped up its activity from September onwards. It has since become a widespread and dangerous threat and the subject of warnings from US authorities.
[...]
Royal used these privileges to run a PowerShell command and launch the PowerSploit post-exploitation framework via Cobalt Strike’s service on port 11925. In this case, it downloaded and executed the PowerView module.
-
ICYMI: LastPass Data Breach Post Mortem
LastPass attacks began with a hacked employee's home computer. The investigation now reveals the password manager company's data vault was compromised, according to an article on TechRepublic. The password manager's company has released two security bulletins, one for LastPass users and another one for business administrators. Hopefully, most of you reading this were like me, and ditched LastPass altogether after they severely limited the "free accounts," which included deleting all of my data from LastPass and porting everything over to BitWarden. We covered the move from LastPass to BitWarden, as well as the whole LastPass money-grab, in the April 2021 issue of The PCLinuxOS Magazine.