TESLACRYPT 3.0.1 – TALES FROM THE CRYPT(O)!

By Talos Group This post is authored by Andrea Allievi and Holger Unterbrink Executive Summary Ransomware is malicious software that is designed to hold users‘ files (such as photos, documents, and music) for ransom by encrypting their contents and demanding the user pay a fee to decrypt their files. Typically, users are exposed to ransomware via email phishing campaigns and exploit […]

Source:: Cisco Security Notice

Malware Word Search: Identifying Angler’s Dictionary

By Talos Group This post authored by Steve Poulson with contributions from Nick Biasini. Exploit kits are constantly evolving and changing. We recently wrote about some subtle Angler changes but then Angler changed drastically on March 8. In this blog post, we will briefly cover these changes, examining different characteristics of the URL structure for Angler and the […]

Source:: Cisco Security Notice

Malware Word Search: Identifying Angler’s Dictionary

By Talos Group This post authored by Steve Poulson with contributions from Nick Biasini. Exploit kits are constantly evolving and changing. We recently wrote about some subtle Angler changes but then Angler changed drastically on March 8. In this blog post, we will briefly cover these changes, examining different characteristics of the URL structure for Angler and the […]

Source:: Cisco Security Notice

Endpoint Protection Platform (EPP) vs Endpoint Detection & Response (EDR)

By John Dominguez Many colleagues, customers, and Cisco partners have asked me, “Why isn’t Cisco AMP for Endpoints included in Gartner’s recent Magic Quadrant for Endpoint Protection Platforms (EPP)?” The answer to us is pretty simple. AMP was not categorized as a traditional “EPP,” and hence, was not included in the report. According to Gartner, “Endpoint protection platforms […]

Source:: Cisco Security Notice

Endpoint Protection Platform (EPP) vs Endpoint Detection & Response (EDR)

By John Dominguez Many colleagues, customers, and Cisco partners have asked me, “Why isn’t Cisco AMP for Endpoints included in Gartner’s recent Magic Quadrant for Endpoint Protection Platforms (EPP)?” The answer to us is pretty simple. AMP was not categorized as a traditional “EPP,” and hence, was not included in the report. According to Gartner, “Endpoint protection platforms […]

Source:: Cisco Security Notice

AMP Threat Grid Renews the Support of Law Enforcement

By Jessica Bair In March 2015, Cisco created the AMP Threat Grid for Law Enforcement Program, empowering state and local law enforcement agencies with its dynamic malware analysis and threat intelligence platform. Cisco has renewed the program and made it a permanent part of Cisco Gives. Law Enforcement investigators can register for the program on the new Cisco […]

Source:: Cisco Security Notice

AMP Threat Grid Renews the Support of Law Enforcement

By Jessica Bair In March 2015, Cisco created the AMP Threat Grid for Law Enforcement Program, empowering state and local law enforcement agencies with its dynamic malware analysis and threat intelligence platform. Cisco has renewed the program and made it a permanent part of Cisco Gives. Law Enforcement investigators can register for the program on the new Cisco […]

Source:: Cisco Security Notice

Don’t Let the Lights Go Out on Critical Infrastructure Security

By Edna Conway As cyberattack prevention becomes an increasingly critical focus of homeland security efforts, industry observers are taking a closer look at the readiness of the nation’s critical infrastructure. Some believe there is reason to worry. Researchers recently revealed that many industrial systems, including some used in public utilities, come with default passwords that are readily available and could be used by hackers to gain remote root access and disrupt services or cause damage. Just last December, at least three of Ukraine’s energy []

Source:: Cisco Security Notice

Don’t Let the Lights Go Out on Critical Infrastructure Security

By Edna Conway As cyberattack prevention becomes an increasingly critical focus of homeland security efforts, industry observers are taking a closer look at the readiness of the nation’s critical infrastructure. Some believe there is reason to worry. Researchers recently revealed that many industrial systems, including some used in public utilities, come with default passwords that are readily available and could be used by hackers to gain remote root access and disrupt services or cause damage. Just last December, at least three of Ukraine’s energy []

Source:: Cisco Security Notice

Microsoft Patch Tuesday – March 2016

By Talos Group Patch Tuesday for March 2016 has arrived. Today, Microsoft has released their monthly set of security bulletins designed to address security vulnerabilities within their products. This month’s release contains 13 bulletins addressing 44 vulnerabilities. Five bulletins are rated critical and address vulnerabilities in Edge, Graphic Fonts, Internet Explorer, Windows Media Player, and Window PDF. The remaining eight bulletins are rated important and address vulnerabilities in .NET, Office, and several other Windows components. Bulletins Rated Critical Microsoft bulletins MS16-023, MS16-024, and []

Source:: Cisco Security Notice