Dragon Research Group (DRG) announced an updated VNC probe insight report:...
(c) SANS Internet Storm Center. http://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
View ArticleDragon Research Group (DRG) announced the white paper entitled "VNC: Threats...
Pedro Bueno (pbueno /%%/ isc. sans. org) Twitter: http://twitter.com/besecure (c) SANS Internet Storm Center. http://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
View ArticleMonitoring your Log Monitoring Process, (Sat, Nov 19th)
A review of this year's diaries on Log Monitoring We Write a lot about Log Monitoring and Analysis. Some recent entries that focus on log analysis: Why you should monitor your logs:...
View ArticleISC StormCast for Monday, November 21st 2011...
(c) SANS Internet Storm Center. http://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
View ArticleISC StormCast for Tuesday, November 22nd 2011...
(c) SANS Internet Storm Center. http://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
View ArticleRealPlayer update addresses 19 CVEs. Patch it! Remember that Exploit kits...
Pedro Bueno (pbueno /%%/ isc. sans. org) Twitter: http://twitter.com/besecure (c) SANS Internet Storm Center. http://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
View ArticleUpdates on ZeroAccess and BlackHole front..., (Tue, Nov 22nd)
Mpack, IcePack, Eleonore, Phoenix, BlackHole...from time to time we see a new exploit kit being prevalent due the advances it brings. These names are all very well known exploit kits that were/are...
View ArticleISC StormCast for Wednesday, November 23rd 2011...
(c) SANS Internet Storm Center. http://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
View ArticleSCADA hacks published on Pastebin, (Wed, Nov 23rd)
pastebin.com has become a simple platform to publish evidence of various attacks. Lenny a few months back already noted that it may be useful for organizations to occasionally search pastebin for data...
View ArticleQuick Tip: Pastebin Monitoring & Recon, (Thu, Nov 24th)
Happy Thanksgiving! On the heels of Dr. Ullrich's diary regardingSCADA hacks published on Pastebin I thought I'd mention some Pastebin monitoring and recon resources that you may find useful. One...
View ArticleISC StormCast for Tuesday, December 6th 2011...
(c) SANS Internet Storm Center. http://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
View ArticleISC describe DNS crash bug analysis, (Mon, Dec 5th)
You may recall in mid November that it was reported that DNS resolvers across the Internet were crashing. This was classified as CVE-2011-4313. Well, the developers of BIND at the Internet Systems...
View ArticleThe RedRet connection..., (Tue, Dec 6th)
Have you ever wondered why we are on this security chaos these days? Well, I have one simple explanation, besides Stuxnets and DuQus oneof's , most of the current malware is simple, easy to understand...
View ArticleC|Net download.com serving malware with nmap software, (Tue, Dec 6th)
Fyodor from insecure.org and the creator of nmap has issued the following statement on the nmap-hackers mailing list today. http://seclists.org/nmap-hackers/2011/5 nmap is one the most respected...
View ArticleCain & Abel v4.9.43 Released - http://www.oxid.it/, (Tue, Dec 6th)
(c) SANS Internet Storm Center. http://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
View ArticleISC StormCast for Tuesday, December 7th 2011...
(c) SANS Internet Storm Center. http://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
View ArticleSQL Injection Attack happening ATM, (Thu, Dec 1st)
We've had several reports (thanks guys) of sites being injected with the following string: /titlescript src=hXXp://lilupophilupop.com/sl.php/script Typically it is inserted into several tables. From...
View ArticleV8 as an Alternative to SpiderMonkey for JavaScript Deobfuscation, (Wed, Dec...
A popular approach to obfuscating malicious browser scripts involves using JavaScript itself to decode the original script when the browser processes the malicious web page. Malware analysts can often...
View ArticleAdobe Acrobat Latest Zero-Day Vulnerability Fix Coming to All Platforms by...
Adobe announced a currently-unpatched vulnerability (CVE-2011-2462) that seems to affect all versions ofAdobe Reader and Acrobat. The issue is most relevant to the users of Adobe Reader and Acrobat 9...
View ArticleISC StormCast for Thursday, December 8th 2011...
(c) SANS Internet Storm Center. http://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
View Article