Showing posts with label CIA. Show all posts
Showing posts with label CIA. Show all posts

March 19, 2017

G's Reading List for March 19, 2017

Virtual machine escape fetches $105,000 at Pwn2Own hacking contest [updated]
by Dan Goodin @ Arstechnica.com

Using 3 different exploits in Microsoft Edge browser, Windows 10, and then VMWare contestants were able to escape a virtual machine to compromise the host the VM was running on. Impressive.
Linkhttps://arstechnica.com/security/2017/03/hack-that-escapes-vm-by-exploiting-edge-browser-fetches-105000-at-pwn2own/
_____________________________________________

Malwarebytes teams up with Cybersecurity Factory
by Malwarebytes Labs
Malwarebytes is proud to support Cybersecurity Factory, a 10-week summer program for early-stage cybersecurity companies. This program runs in collaboration with Highland Capital Partners provides teams with a $35,000 convertible note investment, office space, and dedicated security mentorship from industry leaders at leading companies throughout the United States...
Linkhttps://blog.malwarebytes.com/malwarebytes-news/2017/02/malwarebytes-teams-up-with-cybersecurity-factory/
_____________________________________________

WikiLeaks to Share CIA Hacking Data with Tech Companies
by Marissa Lang, San Francisco Chronicle
WikiLeaks will release the code showing how the CIA managed to break into phones, work around encrypted messaging apps and avoid detection by software designed to defend against cyberattacks.
_____________________________________________

Google Points to Another POS Vendor Breach
by Brian Krebs @ Krebs on Security

Another good thing about Google's site warnings.


November 24, 2016

G's Reading List for Nov.24, 2016

I read a lot - at least I try to find time to.  I have to...just like all my peers in this the industry of information security.  My focus is in the threat intelligence and infosec/cyber attack space and that requires even more reading.  Thankfully there are a lot of smart people in this space with interesting insights, and my plan is to start highlighting these interesting articles, books, etc. in this blog more frequently.  In some cases I may make some "piffy" comment about the article to give you an idea what it's about and/or my thoughts on it.

I don't have some catching name to call these posts so for now I'll call them "G's Reading List."  Pretty inventive...huh?! not.

My hope is that you'll find these readings as interesting as I find them.  Feel free to share your thoughts on them as well in the comment section.  Also, I encourage you to share any interesting readings you've found related to my posts and if you let me know it's okay to share with others I will put it on this blog with full attribution (let me know if you don't want attribution).

Okay let's get this party started...here are two great posts by MalwareJake...

Source: MalwareJake

Source: MalwareJake
Wow, this is just embarrassing. C'mon, OpSec 101 people!