Hunting for IOC's with ioc-parser, (Mon, Sep 7th)
Threat intelligence became a hot topic for a while. The food of threat intelligence is based on IOCs (Indicators of Compromise) which contains technical information like: Files, path Hashes IP...
View ArticleISC StormCast for Tuesday, September 8th 2015...
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
View ArticleA Close Look at PayPal Overpayment Scams That Target Craigslist Sellers,...
My hope is that when people become familiar with the tactics employed by scammers, they will be less likely to get ripped off. With this in mind, Id like to describe my recent interactions with...
View ArticleSeptember 2015 Microsoft Patch Tuesday, (Tue, Sep 8th)
Overview of the September 2015 Microsoft patches and their status. # Affected Contra Indications - KB Known Exploits Microsoft rating(**) ISC rating(*) clients servers MS15-094 Cumulative Security...
View ArticleISC StormCast for Wednesday, September 9th 2015...
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
View ArticleAdobe Updates Shockwave Player, (Wed, Sep 9th)
This one fell between the cracks yesterday. Adobe released one bulletin yesterday for patch Tuesday [1]. The update fixes twovulnerabilitiesin Adobes Shockwave player. All versions of Shockwave Player...
View ArticleA look through the spam filters - examining waves of Upatre malspam, (Thu,...
Introduction Any email filtering worth its cost should block numerous messages every day. however, Im always interested to see what exactly is being blocked. Perhaps the most common type of malicious...
View ArticleISC StormCast for Thursday, September 10th 2015...
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
View ArticleISC StormCast for Friday, September 11th 2015...
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
View ArticleFeeding DShield with OSSEC Logs, (Fri, Sep 11th)
Today, Id like to promotea tool that I wrote four years ago and thatis running every 30 minutes on my OSSEC server. DShield offers manyclients to collect and process logs from multiple firewall...
View ArticleSome password advice, (Sun, Sep 13th)
No not from me, but from the UK government. GZ (thanks) sent a link through to this document"...
View ArticleISC StormCast for Monday, September 14th 2015...
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
View ArticleThe Wordpress Plugins Playground, (Mon, Sep 14th)
This morning, I had a quick look at my web serverlog file and searched for malicious activity. Attacks like brute-force generate a lot of entries and thuscan be easily detected.Other scanners are...
View ArticleISC StormCast for Tuesday, September 15th 2015...
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
View ArticleRisk... in the most obscure places, (Tue, Sep 15th)
I read an article yesterday about various stores and markets requiring a state-issued drivers license or identification as proof of identification for returns. When the return is made, identification...
View ArticleMalicious spam with zip attachments containing .js files, (Wed, Sep 16th)
Introduction On 2015-07-29, the ISC publisheda diary covering malicious spam (malspam) with zip archives of javascript (.js) files [1]. Since then, weve received notifications from others who have...
View ArticleISC StormCast for Wednesday, September 16th 2015...
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
View ArticleISC StormCast for Thursday, September 17th 2015...
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
View ArticleA day in the life of a pentester, or is my job is too sexy for me?, (Thu,...
As a professional penetration tester I often get asked questions like What are the top 10 tools you use or How do you get to be a pentester. Since I become a SANS instructor more and more these...
View ArticleISC StormCast for Friday, September 18th 2015...
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
View Article