Internet
Joined October 2014
Expertise à l'Ouest retweeted
Your business deserves better! 🎁 Achieve uber-fast levels of backup and recovery with one tiny backup solution that unites all-NVMe storage, novel commodity hardware, and a years-proven SDS #Backup #Restore #DataProtection #NVMe #DataManagement starwindsoftware.com/backup-…
0
10
0
7
Expertise à l'Ouest retweeted
Looks like the US is getting serious about post-quantum crypto. whitehouse.gov/briefing-room…
10
59
4
182
Expertise à l'Ouest retweeted
After ransomware attacks against schools seemed to slow down in the second half of 2021, we might be seeing an uptick in early 2022. Not sure if this is a pattern yet or just coincidence but keep your eyes on this. via @KHQA khqa.com/news/local/griggsvi…
0
3
0
6
Expertise à l'Ouest retweeted
Research by @ValeryMarchive indicates that attackers may have exploited a critical vulnerability affecting a Zoho ManageEngine server. Indeed, according to @onyphe, the #ICRC still exposed on January 12, such an unpatched server. @HaboubiAnis Via @LeMagIT lemagit.fr/actualites/252512…
1
1
0
2
Show this thread
Expertise à l'Ouest retweeted
Actually, the @ICRC claimed that the cyber-attack "targeted" their hosting provider. The vulnerable #Zoho #ManageEngine server was hosted at @swiss_data. I've asked the latter if they got targeted by a #cyberattack. Waiting for them to call back ⏱️
1
1
0
6
Expertise à l'Ouest retweeted
CERTFR-2022-AVI-058 : Multiples vulnérabilités dans Drupal core (20 janvier 2022) cert.ssi.gouv.fr/avis/CERTFR…
0
8
0
3
Expertise à l'Ouest retweeted
Orgs if you are only using the CVSS score to assess a vulnerability, you are doing it wrong. You need to use the vector and apply to your own context, and evaluate the risk from there. A 4 may be critical for your org, similarly a 10 may be medium.
2
3
2
21
Show this thread
Expertise à l'Ouest retweeted
FYI: Packer v1.7.9 and the Packer Plug-in for VMware vSphere v1.0.3 are now GA.
0
7
0
15
Expertise à l'Ouest retweeted
CERTFR-2022-AVI-062 : Multiples vulnérabilités dans F5 BIG-IP et BIG-IQ (20 janvier 2022) cert.ssi.gouv.fr/avis/CERTFR…
0
5
0
3
Expertise à l'Ouest retweeted
#Ubuntu 21.04 (Hirsute Hippo) Reached End of Life, Upgrade to Ubuntu 21.10 (Impish Indri) Now 9to5linux.com/ubuntu-21-04-h… @ubuntu #Linux #OpenSource #infosecurity #infosec
0
17
0
47
Expertise à l'Ouest retweeted
Security vendors should 100% look at these and create durable signatures. You will trigger a bunch of security log4j incidents if basic AV detects - there's tens of thousands of VMware Horizon boxes on the internet by design, and the internet got sprayed for it over Xmas period.
Replying to @GossiTheDog
Example VMware Horizon shells. 100% miss across all vendors with static detection still (they're really easy to spot as they're just ASCII text). virustotal.com/gui/file/dcec… virustotal.com/gui/file/cf06… virustotal.com/gui/file/43f7…
Show this thread
2
9
0
32
Show this thread
Expertise à l'Ouest retweeted
Marketing: "What if we took two of the most recognizable brand names in the industry and just dumped 'em way the fuck over there?" Board: "First off, you're promoted."
FireEye and McAfee brands are being retired. They will now be Trellix. Trellix plans to be the leader in XDR. "The company name is a reference to a garden trellis that supports plants as they grow—hence the notion of 'living' security." venturebeat.com/2022/01/18/m…
41
97
9
552
Expertise à l'Ouest retweeted
Une grande victoire pour la protection des données personnelles et la transparence algorithmique, sur un combat que je défends depuis plusieurs jours : l'appli Elyze supprime ses bases de données et rend son code open source !
17
91
10
754
Show this thread
Expertise à l'Ouest retweeted
This is a great attack tool - enumerate valid users, without authentication, over the internet - without authentication logs.
It’s tool time Thursday. Did you know if someone has an M365 account they automatically get provisioned a onedrive account simply by logging in. Want to do user enum on a tenant that leaves no logs? @nyxgeek onedrive tool is awesome for that. 🙃 github.com/nyxgeek/onedrive_…
4
25
0
70
Expertise à l'Ouest retweeted
It’s tool time Thursday. Did you know if someone has an M365 account they automatically get provisioned a onedrive account simply by logging in. Want to do user enum on a tenant that leaves no logs? @nyxgeek onedrive tool is awesome for that. 🙃 github.com/nyxgeek/onedrive_…
1
40
4
123