home.social

#mitre — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #mitre, aggregated by home.social.

fetched live
  1. You have discovered a new vulnerability? Submit it here and we will assign a CVE in no time. vuldb.com/vuln/add #vuldb #cna #cve #mitre #nvd

  2. Yes, were elected to reinvent the wheel, and oh by the way, we are not very good at it!

    US Government looks to centralize software vulnerability management with 'Gold Eagle' cybersecurity clearinghouse. techradar.com/pro/security/whi

    We already have this NOW - its called NIST NVE and CVE processes coordinated by MITRE. nvd.nist.gov/general #CyberSecurity #Security #NIST #MITRE #CVE #NVE #Software #AI #GoldEagle #CyberAttack #USGov #CyberThreat #DataSecurity #ReinventtheWheel

  3. Simulate T1562.001 (Disable Windows Defender) with Atomic Red Team. Invoke-AtomicTest -GetPrereqs installs dependencies, -ExecutionLog tracks, -Cleanup reverts registry changes. Clean, scripted adversary simulation on Windows 10/Server 2019+.
    #mitre #atomic-red-team #ValtersIT

    valtersit.com/vault/atomic-red

  4. Submit your new vulnerability discovery here and we will assign a CVE in no time. vuldb.com/vuln/add #vuldb #cna #cve #mitre #nvd

  5. You want to publish a new vulnerability? Just submit and we will handle your CVE assignment in no time. vuldb.com/vuln/add #vuldb #cna #cve #mitre #nvd

  6. I try to get a #CVE for weeks, no response!
    Neither mitre nor github is responding at all :/

    Does someone know more?!?!

    #security #mitre #github #report #foss #WoodpeckerCI

  7. Resulting from funding gaps and idiotic shifts in priorities the U.S.A. is now woefully under investing in our core CyberDefense Ecosystem....

    National Institute of Standards and Technology (NIST) is no longer enhancing all Common Vulnerabilities and Exposures (CVEs) with analysis and severity indicators, and instead NIST will prioritize enriching a much narrower set of security vulnerabilities.

    Related: In April 2025, a funding gap by in DHS appropriations threatened to cease CVE operations entirely —which would have creating systemic risk for global vulnerability management. An emergency funding extension was implemented to avoid a full on crisis. justsecurity.org/136914/nist-c #NIST #MITRE #CVEs #NVD #Security #Risk #CyberSecurity #CyberDefence #CyberInfrastructure #AI #AISecurity #CISA #DHS #Vulnerability #ThreatIntelligence

  8. You have discovered a new vulnerability? Submit it here and we will assign a CVE in no time. vuldb.com/vuln/add #vuldb #cna #cve #mitre #nvd

  9. Extracted CAPEC to CWE Mappings (first 10 examples)...
    Total CVEs with CAPEC relationships found: 6

    #Mitre #CAPEC #CWE #CyberThreats
    2/2

  10. ClearWater — обзор нового шифровальщика

    Приветствую, сегодня я расскажу про новый шифровальщик, который мне удалось обнаружить на просторах Интернета. Первые упоминания ClearWater появились ещё в январе 2026 года. Исследуя всемирную паутину, я ещё не находил ни одной нормальной статьи по этому вредоносу, поэтому решил сам написать такую. Данный шифровальщик не отличается какой-то технической сложностью или необычными приемами поэтому его обзор несёт больше информативный характер и предназначен для Malware и TI-аналитиков.

    habr.com/ru/articles/1018822/

    #ClearWater #шифровальщик #вредонос #вредоносное_по #реверсинжиниринг #реверс #анализ_вредоносов #yara #mitre

  11. @bitpirate while this is laughable it seems like a complete failure of the CNA (VULSec Labs). I would think RustDesk would have a decent complaint to make to MITRE

    #cve #securiry #cybersecurity #MITRE

  12. Менеджеры паролей — решение извечной проблемы слабой парольной политики

    Привет всем! На связи аналитики из команды PT Cyber Analytics. Мы сопровождаем red‑team‑проекты и помогаем клиентам разобраться в результатах работы белых хакеров. Детально анализируем результаты тестирований на проникновение, оцениваем риски, связанные с обнаруженными уязвимостями, определяем уровень защищенности компаний и разрабатываем рекомендации по устранению слабых мест в инфраструктуре. В этой статье мы проанализируем практики безопасного использования менеджеров паролей. Рассмотрим принципы работы различных типов менеджеров и их архитектуру, методы защиты, возможные угрозы безопасности, некоторые примеры взломов, а также способы минимизации рисков. Кроме того, уделим внимание рекомендациям по мониторингу и реагированию на инциденты, связанные с менеджерами паролей.

    habr.com/ru/companies/pt/artic

    #менеджер_паролей #onpremises #saas #уязвимости #mitre #keepass #2faаутентификация #sso

  13. You want to publish a new vulnerability? Just submit and we will handle your CVE assignment in no time. vuldb.com/?id.add #vuldb #cna #cve #mitre #nvd

  14. You want to publish a new vulnerability? Just submit and we will handle your CVE assignment in no time. vuldb.com/?id.add #vuldb #cna #cve #mitre #nvd

  15. I don't seem to get any response from MITRE Corporation requesting CVE IDs. Multiple requests have been silently ignored. What can I do ... except becoming my own CNA?

    #cve #mitre #security #cre #foswiki #opensource #perl

  16. Is there a good #MITRE ATT&CK technique to point out a attacker used incremented Identifiers do discover devices easily?