home.social

#threat-landscape — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #threat-landscape, aggregated by home.social.

fetched live
  1. French law enforcement, supported by Europol’s EC3, is investigating alleged criminal activity linked to platform X, including the dissemination of illegal content such as deepfakes and child sexual abuse material.

    Authorities conducted investigative measures in France, with Europol providing on-site analytical and cybercrime expertise. The investigation remains active, with no final findings disclosed.

    From a security and governance standpoint, this case underscores ongoing challenges around platform-level controls, detection mechanisms, and regulatory compliance across jurisdictions.

    How do you see enforcement evolving for large social platforms?

    Source: europol.europa.eu/media-press/

    Share insights below and follow @technadu for fact-driven cybersecurity and policy reporting.

    #Cybercrime #PlatformRisk #OnlineAbuse #ThreatLandscape #DigitalGovernance #Europol #InfoSec

  2. AI is changing the ransomware game—making high-stakes attacks accessible even to amateurs and pushing average ransom payments into the millions. How are companies gearing up to fight back?

    thedefendopsdiaries.com/how-ai

    #ai
    #ransomware
    #cybersecurity
    #threatlandscape
    #ransomwareasaservice

  3. You need to prove that your #security program mitigates risk. But, are you tracking the right metrics to show that it is? 🤔 #Cybersecurity metrics quantify your security controls’ effectiveness. And, as the threat landscape becomes more complex, teams often struggle to identify the best metrics to showcase their value. 💎

    😌 Do not worry! We got ya. Here are numbers 1 through 10 from the list you've been waiting for...

    1️⃣ Mean Time to Detect (MTTD)
    2️⃣ Mean Time to Respond (MTTR)
    3️⃣ Mean Time to Recover/Mean Time to Resolve (MTTR)
    4️⃣ Mean Time to Contain (MTTC)
    5️⃣ Mean Time to Acknowledge (MTTA)
    6️⃣ Non-Human Network Traffic
    7️⃣ Number of Detected Incidents
    8️⃣ Incident Severity Levels
    9️⃣ Patching Cadence
    🔟 Patch Latency

    To see the full list of metrics that you should be tracking, read our latest blog! 👓 📖 👇

    graylog.org/post/40-infosec-me #SIEM #threatlandscape #infosec #infosecurity

  4. An old but still true statement for today’s cybersecurity solutions…April Fools!
    #cybersecurity #riskmanagement #threatlandscape

  5. Hello hive mind! I am looking for some good examples and write ups on how to complete a threat landscape assessment. Any good recommendations out there?

    #CTI #threatlandscape #strategicthreatintel #threatassessment #threatintel #cyberthreatintelligence

  6. Extremely grateful for having the opportunity to contribute to the latest ENISA Threat Landscape for DoS Attacks. It is an important report from ENISA that gives useful insights into a cybersecurity threat that is often understudied. Read here: enisa.europa.eu/publications/e

    #CyberSecurity #ThreatResearch #DoS #infosec #CyberAttacks #ThreatLandscape #ThreatIntelligence #DenialOfService #DDoS #ENISA

  7. Our team recently attended #CYBERWARCON to discuss new laws in China that require companies to report vulnerability information. The session explored how these new terms shift the global #ThreatLandscape. Learn more: wapo.st/3QyuZ5H

  8. 🚨The ENISA Threat Landscape Report 2023 was released today!

    It includes the top threats, major trends observed with respect to threats, threat actors & attack techniques, impact and motivation analysis.

    It also describes relevant mitigation measures.

    The top 3 threats that were identified and analyzed were:

    🔹 Ransomware
    🔹 Malware
    🔹 Social Engineering

    The report is a very insightful resource, especially for those who seek to make informed decisions for their cybersecurity strategy the coming year.

    #cybersecurity #threatlandscape #cybersecurityawareness #cybersecuritynews #socialengineering #infosec #informationsecurity #ransomware #malware #enisa

    enisa.europa.eu/topics/cyber-t

  9. Mandiant's latest M-Trends report reveals that 63% of organizations were notified of breaches by external entities.

    Staying ahead of the bad guys requires understanding the threat landscape. It was great to be in Seattle with Mandiant to speak with cybersecurity leaders about the latest trends and what they're doing to protect their organizations.

    What new threats are you seeing? What are you doing to keep your organization safe today?
    #cybersecurity #threatlandscape #incidentresponse

  10. "🚨 Juniper Firewalls Under Siege: Over 12,000 Vulnerable Devices Exposed! 🔥"

    New research reveals nearly 12,000 internet-facing Juniper firewall devices are susceptible to a recently disclosed remote code execution flaw. The vulnerability, identified as CVE-2023-36845, allows an unauthenticated remote attacker to execute arbitrary code without creating a file on the system. This medium-severity flaw in the J-Web component of Junos OS can be weaponized by adversaries to control certain environment variables. Juniper Networks patched this alongside other vulnerabilities last month. A proof-of-concept (PoC) exploit by watchTowr combined CVE-2023-36846 and CVE-2023-36845 to upload malicious PHP files and achieve code execution. Jacob Baines points out, "Firewalls are interesting targets to APT as they help bridge into the protected network and can serve as useful hosts for C2 infrastructure." Juniper has acknowledged the vulnerability but is unaware of any successful exploits against its customers. However, they've detected exploitation attempts in the wild, urging users to apply necessary patches. 🛡️

    Source: The Hacker News

    Tags: #Juniper #Firewall #Cybersecurity #Vulnerability #CVE202336845 #RemoteCodeExecution #JunosOS #APT #ThreatLandscape 🌐🔐🔍

  11. Seattle friends and cybersecurity leaders: I'll be in the #Seattle area to host an iSMG #cybersecurity roundtable next Tuesday, September 19th.

    We'll be discussing the Mandiant M-Trends report and learning from each other about the most pressing cybersecurity risks today.

    If you are a cybersecurity leader in the Seattle area join me for great food and great conversation at El Gaucho restaurant in Bellevue, WA. :
    ismg.events/roundtable-event/s
    #threatlandscape #events #community

  12. I am reading a few threat landscape and semi annual security recap reports and came across a section in one that mentioned that GandCrab was starting to become active again.
    I've personally had to deal with GandCrab during an IR event in the past, so this naturally peaked my interest. In the rabbit hole that ensued, I found this awesome analysis that I wish I had 4 years ago. Happy hacking!

    taintedbits.com/2018/10/18/gan

    #security #reports #threatlandscape #Gandcrab #ransomware

  13. Happy Turkey Day! 🦃
    Yesterday I utilized some good practices for AzureAD sync. I was in the process of enforcing MFA in an Office365 tenant when I discovered service and admin OUs getting sync'd from their on premise domain. We will be cleaning this up!

    Also any account with administrator privileges in Office365 should be cloud only. You don't want to be syncing your on premise admin accounts in the event of an on premise compromise. If so, your cloud tenant will then also be compromised without any effort from the TA. I have a cool map somewhere that shows zero trust in Office365 utilized in a way that makes sense. If I find it I'll make sure to post it here.

    #zerotrust #azuread #security #mfa #2fa #turkey #mashedpotatoes #Office365 #threatlandscape