El Diario del CISO El Diario del CISO (The CISO Journal) Edición 29 | Page 8

IIS attacks surge from 2,000 to 1.7 million over last quarter Growing intrusion trends: A perspective on today’s most sophisticated cyberattacks APT28 group return to covert intelligence gathering ops in Europe and South America. BEC scams, hacked accounts available from $150 up to $5,000 CVE-2018-8453 Zero-Day flaw exploited by FruityArmor APT in attacks aimed at MiddleEast D-Link fixed several flaws in Central WiFiManager access point management tool DOM-XSS Bug Affecting Tinder, Shopify, Yelp, and More Exaramel Malware Links Industroyer ICS malware and NotPetya wiper Expert presented a new attack technique to compromise MikroTik Routers Experts warn of fake Adobe Flash update hiding a miner that works as a legitimate update Facebook Data Breach Update: attackers accessed data of 29 Million users Fitmetrix fitness software company may have exposed millions of customer records Five Eyes Intelligence agencies warn of popular hacking tools GAO report reveals new Pentagon weapon systems vulnerable to hack Google was aware of a flaw that exposed over 500,000 of Google Plus users, but did not disclose it Modern application architectures create vast business benefits WECON PI Studio HMI software affected by code execution flaws Hackers targeting Drupal vulnerabilities to install the Shellbot Backdoor How Secure Are Bitcoin Wallets, Really? Juniper Networks provides dozens of fix for vulnerabilities in Junos OS Kaspersky shed lights on the overlap of operations conducted by Turla and Sofacy Millions of Xiongmai video surveillance devices can be easily hacked via cloud feature New Gallmaker APT group eschews malware in cyber espionage campaigns NHS is still assessing the cost of WannaCry one year later Pentagon Defense Department travel records data breach Project Strobe, what will change after the Google security breach? Researchers presented an improved version of the WPA KRACK attack SAP October 2018 set of patches fixes first Hot News security note for SAP BusinessObjects in 5 years The Git Project addresses a critical arbitrary code execution vulnerability in Git Group-IB: $49.4 million of damage caused to Russias financial sector from cyber attacks 12 Free, Ready-to-Use Security Tools Chinese Intelligence Officer Under Arrest for Trade Secret Theft Constructing the Future of ICS Cybersecurity DoD Weapon Systems Contain Security Vulnerabilities Facebook Update: 30 Million Users Actually Hit in its Recent Breach Git Gets Patched for Newly Found Flaw Most IT Security Pros Want to Change Jobs Most Malware Arrives Via Email New Domains: A Wide-Open Playing Field for Cybercrime New Threat Group Conducts Malwareless Cyber Espionage Not All Multifactor Authentication Is Created Equal One-Third of US Adults Hit with Identity Theft