#incident-response — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #incident-response, aggregated by home.social.
-
Three in hospital after ‘police chase’ crash on major London bridge
Three people have been taken to hospital following an incident at Kew Bridge. The London Ambulance Service was…
#London #Britain #UnitedKingdom #UK #GB #England #Headlines #News #Europe #EU #Ambulancecrews #incidentresponse #KewBridge #LondonAmbulanceService #LondonFireBrigade #MetropolitanPolice
https://www.europesays.com/gbr/london/29006/ -
https://www.europesays.com/gbr/london/29006/ Three in hospital after ‘police chase’ crash on major London bridge #AmbulanceCrews #IncidentResponse #KewBridge #London #LondonAmbulanceService #LondonFireBrigade #MetropolitanPolice #News
-
Three in hospital after ‘police chase’ crash on major London bridge
Three people have been taken to hospital following an incident at Kew Bridge. The London Ambulance Service was…
#EuropeSays #Britain #Europe #EU #London #Ambulancecrews #IncidentResponse #KewBridge #LondonAmbulanceService #LondonFireBrigade #MetropolitanPolice
https://www.europesays.com/britain/128175/ -
https://www.europesays.com/britain/128175/ Three in hospital after ‘police chase’ crash on major London bridge #AmbulanceCrews #IncidentResponse #KewBridge #London #LondonAmbulanceService #LondonFireBrigade #MetropolitanPolice
-
Security Tip: Establish Out-of-Band (OOB) communication channels. 🛡️ During a major security incident, your standard communication tools (Email, Slack, Teams) may be compromised. Effective incident response requires a secure and isolated secondary channel to coordinate recovery efforts without tipping off the adversary. Stay informed on the latest threats at https://cvedatabase.com #InfoSec #CyberSecurity #IncidentResponse #InfosecTips
-
Security Tip: Establish Out-of-Band (OOB) communication channels. 🛡️ During a major security incident, your standard communication tools (Email, Slack, Teams) may be compromised. Effective incident response requires a secure and isolated secondary channel to coordinate recovery efforts without tipping off the adversary. Stay informed on the latest threats at https://cvedatabase.com #InfoSec #CyberSecurity #IncidentResponse #InfosecTips
-
Security Tip: Is your Incident Response plan battle-tested? 🛡️ Having a PDF document is not enough. Regular tabletop exercises (TTX) are essential to ensure every stakeholder—from IT to Legal—knows their role during a breach. Use these simulations to identify missing logs, communication breakdowns, and technical hurdles. Staying ahead of threats starts with preparation. Track the latest vulnerabilities at https://cvedatabase.com #InfoSec #CyberSecurity #IncidentResponse
-
Security Tip: Is your Incident Response plan battle-tested? 🛡️ Having a PDF document is not enough. Regular tabletop exercises (TTX) are essential to ensure every stakeholder—from IT to Legal—knows their role during a breach. Use these simulations to identify missing logs, communication breakdowns, and technical hurdles. Staying ahead of threats starts with preparation. Track the latest vulnerabilities at https://cvedatabase.com #InfoSec #CyberSecurity #IncidentResponse
-
NEW by me:
The U.S. military leaked more than 93,000 tips via insecure P3 Global Intel. Has anyone been notified?
I had reported on the school-related tips in the Navigate360 breach, and then the Crime Stoppers tips. In this post, I looked at the tips to the U.S. military.
#Navigate360 #P3GlobalIntel #databreach #cybersecurity #incidentresponse
-
NEW by me:
The U.S. military leaked more than 93,000 tips via insecure P3 Global Intel. Has anyone been notified?
I had reported on the school-related tips in the Navigate360 breach, and then the Crime Stoppers tips. In this post, I looked at the tips to the U.S. military.
#Navigate360 #P3GlobalIntel #databreach #cybersecurity #incidentresponse
-
NEW by me:
The U.S. military leaked more than 93,000 tips via insecure P3 Global Intel. Has anyone been notified?
I had reported on the school-related tips in the Navigate360 breach, and then the Crime Stoppers tips. In this post, I looked at the tips to the U.S. military.
#Navigate360 #P3GlobalIntel #databreach #cybersecurity #incidentresponse
-
NEW by me:
The U.S. military leaked more than 93,000 tips via insecure P3 Global Intel. Has anyone been notified?
I had reported on the school-related tips in the Navigate360 breach, and then the Crime Stoppers tips. In this post, I looked at the tips to the U.S. military.
#Navigate360 #P3GlobalIntel #databreach #cybersecurity #incidentresponse
-
NEW by me:
The U.S. military leaked more than 93,000 tips via insecure P3 Global Intel. Has anyone been notified?
I had reported on the school-related tips in the Navigate360 breach, and then the Crime Stoppers tips. In this post, I looked at the tips to the U.S. military.
#Navigate360 #P3GlobalIntel #databreach #cybersecurity #incidentresponse
-
An unauthorized ScreenConnect session, a fake WindowsUpdate.exe, and repeated relay traffic were enough to treat a client workstation as potentially compromised.
I wrote up the investigation, including what quarantine and a clean second scan did—and did not—prove.
https://www.kylereddoch.me/blog/from-the-field-investigating-an-unauthorized-screenconnect-session/
-
An unauthorized ScreenConnect session, a fake WindowsUpdate.exe, and repeated relay traffic were enough to treat a client workstation as potentially compromised.
I wrote up the investigation, including what quarantine and a clean second scan did—and did not—prove.
https://www.kylereddoch.me/blog/from-the-field-investigating-an-unauthorized-screenconnect-session/
-
An unauthorized ScreenConnect session, a fake WindowsUpdate.exe, and repeated relay traffic were enough to treat a client workstation as potentially compromised.
I wrote up the investigation, including what quarantine and a clean second scan did—and did not—prove.
https://www.kylereddoch.me/blog/from-the-field-investigating-an-unauthorized-screenconnect-session/
-
An unauthorized ScreenConnect session, a fake WindowsUpdate.exe, and repeated relay traffic were enough to treat a client workstation as potentially compromised.
I wrote up the investigation, including what quarantine and a clean second scan did—and did not—prove.
https://www.kylereddoch.me/blog/from-the-field-investigating-an-unauthorized-screenconnect-session/
-
An unauthorized ScreenConnect session, a fake WindowsUpdate.exe, and repeated relay traffic were enough to treat a client workstation as potentially compromised.
I wrote up the investigation, including what quarantine and a clean second scan did—and did not—prove.
https://www.kylereddoch.me/blog/from-the-field-investigating-an-unauthorized-screenconnect-session/
-
Ransomware disrupts Ellis County, Kansas, services #Ransomware #CountyGovernment #IncidentResponse #Kansas #PublicServices #Cybersecurity https://dysruptionhub.com/ellis-county-kansas-ransomware-disruption/
-
Ransomware disrupts Ellis County, Kansas, services #Ransomware #CountyGovernment #IncidentResponse #Kansas #PublicServices #Cybersecurity https://dysruptionhub.com/ellis-county-kansas-ransomware-disruption/
-
Security Teams Struggle to Connect Dots in Cross-Environment Attacks
Attacks are getting more complex, with 43% of incidents spreading across four or more environments - and in some cases, as many as eight. Security teams struggle to piece together these cross-environment attacks, making it crucial to connect the dots between disparate signals.
#CrossEnvironmentAttacks #IncidentResponse #CloudSecurity #EndpointSecurity #IdentitySecurity
-
I agree with this blog post - the more we have AI handling outages, repairing things, etc. the less humans will know about the systems they run.
Not much can replace hands on experience, troubleshooting, and learning systems design. I work in consulting (all things VMware) and if I stop learning, I'm out of date. I've held that position for a while and that's not changing in the age of AI. In fact, it's even more important.
#ai #engineering #handsonexperience #knowledgework #incidentresponse #learning #it #work
https://www.sylvainkalache.com/blog/ai-handles-incidents-engineers-lose-touch-with-their-systems
-
I agree with this blog post - the more we have AI handling outages, repairing things, etc. the less humans will know about the systems they run.
Not much can replace hands on experience, troubleshooting, and learning systems design. I work in consulting (all things VMware) and if I stop learning, I'm out of date. I've held that position for a while and that's not changing in the age of AI. In fact, it's even more important.
#ai #engineering #handsonexperience #knowledgework #incidentresponse #learning #it #work
https://www.sylvainkalache.com/blog/ai-handles-incidents-engineers-lose-touch-with-their-systems
-
I agree with this blog post - the more we have AI handling outages, repairing things, etc. the less humans will know about the systems they run.
Not much can replace hands on experience, troubleshooting, and learning systems design. I work in consulting (all things VMware) and if I stop learning, I'm out of date. I've held that position for a while and that's not changing in the age of AI. In fact, it's even more important.
#ai #engineering #handsonexperience #knowledgework #incidentresponse #learning #it #work
https://www.sylvainkalache.com/blog/ai-handles-incidents-engineers-lose-touch-with-their-systems
-
I agree with this blog post - the more we have AI handling outages, repairing things, etc. the less humans will know about the systems they run.
Not much can replace hands on experience, troubleshooting, and learning systems design. I work in consulting (all things VMware) and if I stop learning, I'm out of date. I've held that position for a while and that's not changing in the age of AI. In fact, it's even more important.
#ai #engineering #handsonexperience #knowledgework #incidentresponse #learning #it #work
https://www.sylvainkalache.com/blog/ai-handles-incidents-engineers-lose-touch-with-their-systems
-
I agree with this blog post - the more we have AI handling outages, repairing things, etc. the less humans will know about the systems they run.
Not much can replace hands on experience, troubleshooting, and learning systems design. I work in consulting (all things VMware) and if I stop learning, I'm out of date. I've held that position for a while and that's not changing in the age of AI. In fact, it's even more important.
#ai #engineering #handsonexperience #knowledgework #incidentresponse #learning #it #work
https://www.sylvainkalache.com/blog/ai-handles-incidents-engineers-lose-touch-with-their-systems
-
🔵 THREAT INTELLIGENCE
Cisco Warns of New Zero-Day ISE Auth Bypass (CVSS 10.0) Exploited in Active Attacks
Vulnerability | CRITICAL
CVEs: CVE-2026-76460Cisco has released security updates to address a maximum-severity Identity Services Engine vulnerability that attackers are actively exploiting in...
Full analysis:
https://www.yazoul.net/news/article/cisco-warns-of-new-zero-day-ise-auth-bypass-cvss-10-0-exploited-in-active-attackby Yazoul AI
-
NEW by me:
Navigate360 may soon release a public notice about its horrific breach, but will any individuals be notified?
#databreach #infosec #cybersecurity #incidentresponse #notification #Navigate360 #P3GlobalIntel
-
NEW by me:
Navigate360 may soon release a public notice about its horrific breach, but will any individuals be notified?
#databreach #infosec #cybersecurity #incidentresponse #notification #Navigate360 #P3GlobalIntel
-
NEW by me:
Navigate360 may soon release a public notice about its horrific breach, but will any individuals be notified?
#databreach #infosec #cybersecurity #incidentresponse #notification #Navigate360 #P3GlobalIntel
-
NEW by me:
Navigate360 may soon release a public notice about its horrific breach, but will any individuals be notified?
#databreach #infosec #cybersecurity #incidentresponse #notification #Navigate360 #P3GlobalIntel
-
NEW by me:
Navigate360 may soon release a public notice about its horrific breach, but will any individuals be notified?
#databreach #infosec #cybersecurity #incidentresponse #notification #Navigate360 #P3GlobalIntel
-
Reward: Congratulations on your randomized Autonomous Breach Crate! Contents unknown. Refunds unavailable. Regret guaranteed.
https://cyberworldops.eu/en/spain-investigates-a-data-breach-in-which-an-ai-agent-chained-multiple
#AgenticAI #DataBreach #CyberSecurity #IncidentResponse #AIThreats #AchievementUnlocked (3/3)
-
Reward: Congratulations on your randomized Autonomous Breach Crate! Contents unknown. Refunds unavailable. Regret guaranteed.
https://cyberworldops.eu/en/spain-investigates-a-data-breach-in-which-an-ai-agent-chained-multiple
#AgenticAI #DataBreach #CyberSecurity #IncidentResponse #AIThreats #AchievementUnlocked (3/3)
-
Reward: Congratulations on your randomized Autonomous Breach Crate! Contents unknown. Refunds unavailable. Regret guaranteed.
https://cyberworldops.eu/en/spain-investigates-a-data-breach-in-which-an-ai-agent-chained-multiple
#AgenticAI #DataBreach #CyberSecurity #IncidentResponse #AIThreats #AchievementUnlocked (3/3)
-
Spain's AEPD disclosed the first notified breach where an AI agent chained multiple attack stages autonomously. It moves beyond AI-assisted phishing to agent-driven execution across the kill chain, with major implications for detection and breach reporting. #AgenticAI #DataBreach #IncidentResponse
https://cyberworldops.eu/en/spain-investigates-a-data-breach-in-which-an-ai-agent-chained-multiple
-
Spain's AEPD disclosed the first notified breach where an AI agent chained multiple attack stages autonomously. It moves beyond AI-assisted phishing to agent-driven execution across the kill chain, with major implications for detection and breach reporting. #AgenticAI #DataBreach #IncidentResponse
https://cyberworldops.eu/en/spain-investigates-a-data-breach-in-which-an-ai-agent-chained-multiple
-
DORA-Audits schaffen Dokumentation, aber echte Resilienz zeigt sich erst im Ernstfall: Sind Ihre Sicherheitsprozesse auch praktisch einsatzbereit? Nur regelmäßige, realistische Incident-Response-Übungen machen IT-Teams wirklich krisenfest.
#Aktuell #Security #DORA #IncidentResponse #Resilienz #SecuritybyDesign #x26SDZT #ZeroTrust
https://www.it-finanzmagazin.de/audit-bestanden-angriff-ve...
https://www.it-finanzmagazin.de/audit-bestanden-angriff-verloren-dora-reicht-nicht-249684/?fsp_sid=41244 -
DORA-Audits schaffen Dokumentation, aber echte Resilienz zeigt sich erst im Ernstfall: Sind Ihre Sicherheitsprozesse auch praktisch einsatzbereit? Nur regelmäßige, realistische Incident-Response-Übungen machen IT-Teams wirklich krisenfest.
#Aktuell #Security #DORA #IncidentResponse #Resilienz #SecuritybyDesign #x26SDZT #ZeroTrust
https://www.it-finanzmagazin.de/audit-bestanden-angriff-ve...
https://www.it-finanzmagazin.de/audit-bestanden-angriff-verloren-dora-reicht-nicht-249684/?fsp_sid=41244 -
Want to be part of FIRST LAC 2026? We’d love to have you there, and we’d love to have you as a sponsor.
The FIRST Regional Symposium for Latin America & the Caribbean is an opportunity to bring together the people, ideas, and organizations working to strengthen incident response across the region.
Support the event as a sponsor and put your organization at the heart of the conversation.
📍 Mendoza, Argentina
📅 October 21–22, 2026Sponsorship opportunities are available now.
🔗 https://www.first.org/events/symposium/latam2026/
#FIRSTLAC26 #FIRSTEvents #Cybersecurity #IncidentResponse #LAC #Sponsorship
-
Want to be part of FIRST LAC 2026? We’d love to have you there, and we’d love to have you as a sponsor.
The FIRST Regional Symposium for Latin America & the Caribbean is an opportunity to bring together the people, ideas, and organizations working to strengthen incident response across the region.
Support the event as a sponsor and put your organization at the heart of the conversation.
📍 Mendoza, Argentina
📅 October 21–22, 2026Sponsorship opportunities are available now.
🔗 https://www.first.org/events/symposium/latam2026/
#FIRSTLAC26 #FIRSTEvents #Cybersecurity #IncidentResponse #LAC #Sponsorship
-
Want to be part of FIRST LAC 2026? We’d love to have you there, and we’d love to have you as a sponsor.
The FIRST Regional Symposium for Latin America & the Caribbean is an opportunity to bring together the people, ideas, and organizations working to strengthen incident response across the region.
Support the event as a sponsor and put your organization at the heart of the conversation.
📍 Mendoza, Argentina
📅 October 21–22, 2026Sponsorship opportunities are available now.
🔗 https://www.first.org/events/symposium/latam2026/
#FIRSTLAC26 #FIRSTEvents #Cybersecurity #IncidentResponse #LAC #Sponsorship
-
Want to be part of FIRST LAC 2026? We’d love to have you there, and we’d love to have you as a sponsor.
The FIRST Regional Symposium for Latin America & the Caribbean is an opportunity to bring together the people, ideas, and organizations working to strengthen incident response across the region.
Support the event as a sponsor and put your organization at the heart of the conversation.
📍 Mendoza, Argentina
📅 October 21–22, 2026Sponsorship opportunities are available now.
🔗 https://www.first.org/events/symposium/latam2026/
#FIRSTLAC26 #FIRSTEvents #Cybersecurity #IncidentResponse #LAC #Sponsorship
-
Want to be part of FIRST LAC 2026? We’d love to have you there, and we’d love to have you as a sponsor.
The FIRST Regional Symposium for Latin America & the Caribbean is an opportunity to bring together the people, ideas, and organizations working to strengthen incident response across the region.
Support the event as a sponsor and put your organization at the heart of the conversation.
📍 Mendoza, Argentina
📅 October 21–22, 2026Sponsorship opportunities are available now.
🔗 https://www.first.org/events/symposium/latam2026/
#FIRSTLAC26 #FIRSTEvents #Cybersecurity #IncidentResponse #LAC #Sponsorship
-
New by me: A Certification Does Not Make a Security Analyst Incident-Ready
https://www.kylereddoch.me/blog/a-certification-does-not-make-a-security-analyst-incident-ready/
#Cybersecurity #InfoSec #SecOps #SOC #IncidentResponse #CyberWorkforce
-
New by me: A Certification Does Not Make a Security Analyst Incident-Ready
https://www.kylereddoch.me/blog/a-certification-does-not-make-a-security-analyst-incident-ready/
#Cybersecurity #InfoSec #SecOps #SOC #IncidentResponse #CyberWorkforce
-
New by me: A Certification Does Not Make a Security Analyst Incident-Ready
https://www.kylereddoch.me/blog/a-certification-does-not-make-a-security-analyst-incident-ready/
#Cybersecurity #InfoSec #SecOps #SOC #IncidentResponse #CyberWorkforce
-
New by me: A Certification Does Not Make a Security Analyst Incident-Ready
https://www.kylereddoch.me/blog/a-certification-does-not-make-a-security-analyst-incident-ready/
#Cybersecurity #InfoSec #SecOps #SOC #IncidentResponse #CyberWorkforce
-
New by me: A Certification Does Not Make a Security Analyst Incident-Ready
https://www.kylereddoch.me/blog/a-certification-does-not-make-a-security-analyst-incident-ready/
#Cybersecurity #InfoSec #SecOps #SOC #IncidentResponse #CyberWorkforce
-
Ransomware Recovery Plans Routinely Crumble Under Attack
The harsh reality is that most ransomware recovery plans fail to deliver, with a staggering 99.5% of over 800 clients assessed by Fenix24 missing their 24-48 hour recovery targets. Even partial recoveries were rare, and full operations often took weeks to restore.
#Ransomware #RansomwareRecovery #IncidentResponse #Fenix24 #StateOfRecoverability
-
Sysdig reports a human operator exploited CVE-2026-39987, a pre-auth RCE in Marimo, and pivoted from the notebook to an SSH bastion in eight seconds with a custom Python toolkit. It shows manual tradecraft can match automation speed, shrinking detection windows for exposed dev infrastructure. #MarimoRce #SshBastion #IncidentResponse
https://cyberworldops.eu/en/human-operator-exploits-marimo-rce-and-reaches-ssh-bastion-in-eight
-
The odd timestamp is found. The timeline lines up. Case closed.
https://www.logorrr.app/
https://apps.apple.com/app/logorrr/id1583786769Image: AI generated.
-
The odd timestamp is found. The timeline lines up. Case closed.
https://www.logorrr.app/
https://apps.apple.com/app/logorrr/id1583786769Image: AI generated.
-
Meet our keynote speaker: Edward Sakocius, Network Intrusion Forensic Analyst with the U.S. Secret Service.
With 18 years of law enforcement experience, Special Agent Sakocius brings valuable expertise in digital forensics and incident response through the Empire State Cyber Fraud Task Force.
Standard tickets are $280 but prices increase to $380 on September 20. Register now!
https://www.eventzilla.net/e/rochester-security-summit-2026-2138673723
#RochesterSecuritySummit #Cybersecurity #DigitalForensics #IncidentResponse #GRC #RochesterNY -
Meet our keynote speaker: Edward Sakocius, Network Intrusion Forensic Analyst with the U.S. Secret Service.
With 18 years of law enforcement experience, Special Agent Sakocius brings valuable expertise in digital forensics and incident response through the Empire State Cyber Fraud Task Force.
Standard tickets are $280 but prices increase to $380 on September 20. Register now!
https://www.eventzilla.net/e/rochester-security-summit-2026-2138673723
#RochesterSecuritySummit #Cybersecurity #DigitalForensics #IncidentResponse #GRC #RochesterNY -
🔵 THREAT INTELLIGENCE
CISA Adds 5 Actively Exploited Artifactory, ScreenConnect, and RouterOS Flaws to KEV
Vulnerability | CRITICAL
CVEs: CVE-2026-42016The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added five security flaws impacting JFrog Artifactory, ConnectWise...
Full analysis:
https://www.yazoul.net/news/article/cisa-adds-5-actively-exploited-artifactory-screenconnect-and-routeros-flaws-to-kby Yazoul AI
-
LogoRRR and the haystack. The needle is hidden in one line. Start with the break in the heatmap.
https://www.logorrr.app/
https://apps.apple.com/app/logorrr/id1583786769Image: AI generated.
-
LogoRRR and the haystack. The needle is hidden in one line. Start with the break in the heatmap.
https://www.logorrr.app/
https://apps.apple.com/app/logorrr/id1583786769Image: AI generated.
-
Security Tip: The best IR plan is one that has been practiced. 🛡️ Tabletop Exercises (TTX) are low-cost, high-impact simulations where stakeholders discuss roles during a hypothetical security incident. Benefits: Identifies gaps in the plan, clarifies roles, and improves communication. Don't wait for a real CVE to test your team. Resources: https://cvedatabase.com #CVE #InfoSec #CyberSecurity #IncidentResponse
-
Security Tip: The best IR plan is one that has been practiced. 🛡️ Tabletop Exercises (TTX) are low-cost, high-impact simulations where stakeholders discuss roles during a hypothetical security incident. Benefits: Identifies gaps in the plan, clarifies roles, and improves communication. Don't wait for a real CVE to test your team. Resources: https://cvedatabase.com #CVE #InfoSec #CyberSecurity #IncidentResponse