Publicerad
CERT-SE:s veckobrev v.47
CERT-SE har landat i nya lokaler, Trevlig helg!
Nyheter i veckan
Don't download this Windows 10 update – it's packed with ransomware
https://www.techradar.com/news/dont-download-this-windows-10-update-its-packed-with-ransomware
How to implement security by design for IoT
https://www.enisa.europa.eu/news/enisa-news/how-to-implement-security-by-design-for-iot
Office 365 phishing campaign uses multiple validated domains
https://www.scmagazineuk.com/office-365-phishing-campaign-uses-multiple-validated-domains/article/1666047
The way Bluetooth devices ‘talk’ to apps leaves them vulnerable
https://www.helpnetsecurity.com/2019/11/19/vulnerable-bluetooth-devices/
Så enkelt kan din bil hackas av kriminella
https://www.expressen.se/dinapengar/sa-stor-ar-risken-att-din-bil-hackas/
Ghost ships, crop circles, and soft gold: A GPS mystery in Shanghai
https://www.technologyreview.com/s/614689/ghost-ships-crop-circles-and-soft-gold-a-gps-mystery-in-shanghai/
A Notorious Iranian Hacking Crew Is Targeting Industrial Control Systems
https://www.wired.com/story/iran-apt33-industrial-control-systems/
Windows will improve user privacy with DNS over HTTPS
https://techcommunity.microsoft.com/t5/Networking-Blog/Windows-will-improve-user-privacy-with-DNS-over-httpS/ba-p/1014229
Phineas Fisher Offers $100,000 Bounty to Hack Banks and Oil Companies
https://www.vice.com/en_us/article/vb5agy/phineas-fisher-offers-dollar100000-bounty-for-hacks-against-banks-and-oil-companies
Edenred announces malware infection
https://www.edenred.com/en/medias/news-and-press-releases/edenred-announces-malware-infection
Inside Apple’s iPhone Software Shakeup After Buggy iOS 13 Debut
https://www.bloomberg.com/news/articles/2019-11-21/apple-ios-14-features-changes-testing-after-ios-13-bugs?srnd=technology-vp
Metasploit Shellcode Grows Up: Encrypted and Authenticated C Shells
https://blog.rapid7.com/2019/11/21/metasploit-shellcode-grows-up-encrypted-and-authenticated-c-shells/
1.2 Billion Records Found Exposed Online in a Single Server
https://www.wired.com/story/billion-records-exposed-online/
CERT-SE i veckan
Ny våg av angrepp mot e-postkonton i Office 365 och Exchange