Publicerad
CERT-SE:s veckobrev v.5
Gott och blandat från veckan som gått.
Nyheter i veckan
Comodo och hur man inte säkrar upp en webbläsare
http://thehackernews.com/2016/02/comodo-web-browser-security.html
DDoS vanligaste attacktypen mot finansiella sektorn
http://www.computerweekly.com/news/4500272230/DDoS-is-most-common-cyber-attack-on-financial-institutions
Facebook, Android och TOR
http://www.pandasecurity.com/mediacenter/social-media/facebook-app-for-android-allowing-browsing-with-tor/
Krebs kommer inte sakna Java's webbplugin
http://krebsonsecurity.com/2016/02/good-riddance-to-oracles-java-plugin/
Google hittar sårbarheter i Malwarebytes
http://www.theregister.co.uk/2016/02/02/malwarebytes_0day/
Google fixar sårbarheter i Android
http://thehackernews.com/2016/02/update-android-security.html
Organisationer, fiska er själva
http://www.theregister.co.uk/2016/02/04/no_more_excuses_dev_builds_dead_easy_open_source_antiphishing_app/
Hidden tear och utvecklingen
https://securelist.com/blog/research/73565/hidden-tear-and-its-spin-offs/
Malvertising-våg
https://blog.sucuri.net/2016/02/massive-admedia-iframe-javascript-infection.html
Google safe-browsing ger sig på social-engineering
https://googleonlinesecurity.blogspot.se/2016/02/no-more-deceptive-download-buttons.html
De populäraste exploit-kiten
https://blog.malwarebytes.org/exploitkits/2016/02/top-exploit-kits-round-up-january-edition/
Cross-platform bakdörr
https://securelist.com/blog/research/73503/from-linux-to-windows-new-family-of-cross-platform-desktop-backdoors-discovered/
Dokument-Macro-RTF-Exe
http://labs.bromium.com/2016/02/03/macro-redux-the-premium-package/
Virustotal, nu med firmware-stöd
http://www.theregister.co.uk/2016/01/29/virustotals_bios_badness_in_firmware_forensic_fossick/
NSA's chefshackare informerar om hur man kan skydda sig
https://www.schneier.com/blog/archives/2016/02/nsas_tao_on_int.html
Analys av en liten ELF-bakdörr
http://blog.malwaremustdie.org/2016/02/mmd-0051-2016-debungking-tiny-elf.html
Hackad webbserver? Dags att kolla samtliga javascript
http://www.theregister.co.uk/2016/02/03/wordpress_javascript_malware_attack/