Vulnerability Spotlight: Windows 10 Remote Denial of Service

By Talos Group Talos is releasing an advisory for a remote denial of service attack vulnerability in Microsoft Windows 10 AHCACHE.SYS. An attacker can craft a malicious portable executable file, which if accessed causes AHCACHE.SYS to attempt to access out of scope memory. This triggers a bugcheck in the Windows kernel causing the system to […]

Transforming Endpoint Security

By Tom Stitt It’s been said before, but this bears repeating. On average, it takes organizations 100 days1 or more to detect a breach after it occurs. On average. This means attackers often have more than three months to examine an organization’s data and then steal what they want. Clearly, this is not effective. These […]

Transforming Endpoint Security

By Tom Stitt It’s been said before, but this bears repeating. On average, it takes organizations 100 days1 or more to detect a breach after it occurs. On average. This means attackers often have more than three months to examine an organization’s data and then steal what they want. Clearly, this is not effective. These […]

botfrei.de – kostenlose G DATA App für Android

Immer mehr mobile Geräte sind Opfer von Schadsoftware. In Kooperation mit seinem Mitgliedsunternehmen G DATA bieter der eco-Verband auf der Webseite www.botfrei.de eine kostenlose EU-Cleaner App für Android Geräte an. Der Botfrei EU Cleaner Mobile ist ein kostenfreier Ersthelfer, der im Falle einer Malware-Infektion hilft, Schadprogramme wie z.B. Viren, Trojaner oder Spyware auf einem mobilen Android-Gerät zu […]

Sundown EK: You Better Take Care

By Talos Group This post was authored by Nick Biasini Over the last six months the exploit kit landscape has seen some major changes. These changes began with Nuclear ceasing operations in April/May and arrests in Russia coinciding with the end of Angler in June. Recently, Neutrino has been added to the list of exploit […]

Sundown EK: You Better Take Care

By Talos Group This post was authored by Nick Biasini Over the last six months the exploit kit landscape has seen some major changes. These changes began with Nuclear ceasing operations in April/May and arrests in Russia coinciding with the end of Angler in June. Recently, Neutrino has been added to the list of exploit […]

The Evolution of Scoring Security Vulnerabilities: The Sequel

By Omar Santos Back in April, I wrote a blog post about the new version of the Common Vulnerability Scoring System (CVSS). The changes made for CVSSv3 addressed some of the challenges that existed in CVSSv2. For example, CVSSv3 analyzes the scope of a vulnerability and identifies the privileges an attacker needs to exploit it. […]