Microsoft is making available the CodeQL queries it used to detect malicious implants in the massive supply chain attack that affected SolarWinds, tech firms and government agencies. The CodeQL queries, written in C# language, are now available in the GitHub repository. They help in ruling out the presence of the code-level indicators of compromise. “There […]
Author Archives: CSIRT
Ransomware continues to sting numerous organizations, and the problem only seems to be getting worse. So, defenders across every type of targeted organization – including government agencies and private businesses – would do well to have more effective defenses in place. Such defenses would ideally include organizations proactively looking for known ransomware attackers’ tactics, techniques […]
Cybersecurity researchers have disclosed a novel attack that could allow criminals to trick a point of sale terminal into transacting with a victim’s Mastercard contactless card while believing it to be a Visa card. The research, published by a group of academics from ETH Zurich, builds on a study detailed last September that delved into […]
The problem with a lot of things being online and connected to the internet these days is that it makes them vulnerable to hackers. A good example would be a recent story of how a town in Florida nearly had their water supply contaminated to dangerous levels when hackers managed to breach the system. According […]