Publicerad
CERT-SE:s veckobrev v.40
CERT-SE önskar alla en trevlig @-dag
Nyheter i veckan
Tänk säkert
https://www.msb.se/tanksakert
Four Simple Steps to Staying Secure
https://www.sans.org/security-awareness-training/resources/four-simple-steps-staying-secure
Regeringen har bestämt sig – Sverige ska ha ett statligt moln
https://computersweden.idg.se/2.2683/1.724249/regeringen-sverige-statligt-moln
Building the Azure IoT Edge Security Daemon in Rust
https://msrc-blog.microsoft.com/2019/09/30/building-the-azure-iot-edge-security-daemon-in-rust/
New 'Gucci' IoT Botnet Targets Europe
https://www.securityweek.com/new-gucci-iot-botnet-targets-europe
Legit-Looking iPhone Lightning Cables That Hack You Will Be Mass Produced and Sold
https://www.vice.com/en_us/article/3kx5nk/fake-apple-lightning-cable-hacks-your-computer-omg-cable-mass-produced-sold
Users Need to Consent to Online Tracking Cookies: EU Court
https://www.securityweek.com/users-need-consent-online-tracking-cookies-eu-court
Cisco Webex & Zoom Bug Lets Attackers Spy on Conference Calls
https://www.darkreading.com/vulnerabilities---threats/cisco-webex-and-zoom-bug-lets-attackers-spy-on-conference-calls/d/d-id/1335967
Developer of Checkm8 explains why iDevice jailbreak exploit is a game changer
https://arstechnica.com/information-technology/2019/09/developer-of-checkm8-explains-why-idevice-jailbreak-exploit-is-a-game-changer/
Cyber Storm 2020 Could be DHS’s Most Rigorous Drill for Critical Infrastructure Yet
https://www.hstoday.us/federal-pages/dhs/cyber-storm-2020-could-be-dhss-most-rigorous-drill-for-critical-infrastructure-yet/
Rancor: The Year of The Phish
https://research.checkpoint.com/rancor-the-year-of-the-phish/
Google rolls out Incognito Mode for Maps, password checkup tool
https://www.slashgear.com/google-rolls-out-incognito-mode-for-maps-password-checkup-tool-02593840/
Kriminella fick tillgång till personuppgifter vid Esbo stad och Finnair – varje dag faller organisationer offer för phishing
https://svenska.yle.fi/artikel/2019/10/03/kriminella-fick-tillgang-till-personuppgifter-vid-esbo-stad-och-finnair-varje-dag
Cyber Security Roundup for September 2019
https://blog.itsecurityexpert.co.uk/2019/10/cyber-security-roundup-for-september.html
Phishing Users using Evilginx and Bypassing 2FA
https://www.vdalabs.com/2019/10/01/phishing-users-using-evilginx-and-bypassing-2fa/
Buffer overflows found in libpcap and tcpdump
https://isc.sans.edu/forums/diary/Buffer+overflows+found+in+libpcap+and+tcpdump/25386/