Presentation is loading. Please wait.

Presentation is loading. Please wait.

PREVIOUS GNEWS. 6 Patches – 4 Critical – 19 CVEs Affected – Kernel, SQL, Kerberos, Word, HTML, SharePoint Other updates, MSRT, Defender Definitions, Junk.

Similar presentations


Presentation on theme: "PREVIOUS GNEWS. 6 Patches – 4 Critical – 19 CVEs Affected – Kernel, SQL, Kerberos, Word, HTML, SharePoint Other updates, MSRT, Defender Definitions, Junk."— Presentation transcript:

1 PREVIOUS GNEWS

2 6 Patches – 4 Critical – 19 CVEs Affected – Kernel, SQL, Kerberos, Word, HTML, SharePoint Other updates, MSRT, Defender Definitions, Junk Mail Filter –MS12-071 - Cumulative Security Update for Internet Explorer –MS12-072 - Windows Shell,Remote Code Execution –MS12-073 - Microsoft Internet Information Services (IIS), Information Disclosure –MS12-074 -.NET Framework, Remote Code Execution –MS12-075 - Windows Kernel-Mode Drivers, Remote Code Execution –MS12-076 - Microsoft Excel, Remote Code Execution Patch Tuesday

3 Oracle, 109 fixes Adobe –SandBox Evasion/Breakout –APSB12-23 – Adobe Shockwave Player –APSB12-24 – Adobe Flash Player Apple, –iOS 6.0.1 –QuickTime 7.7.3 –Safari 6.0.2 –Java update Cisco –IronPort with Sophos Threat Detection Engine –ASA TACACS Bypass –SNMPv3 Authentication –Unified Meeting Place Holes / Patches

4 paypal data leak (card and personal data) apache miconfig leaks data (passwords) cisco taccs auth Citadel Trojan – rain edition Anonymous launches wikileaks clone safai cookies, python reader secure boot dev Holes / Hacking

5 rapid 7 buys mobilesafe MS buys PhoneFactor kaspersky OS fb removes phone number search but only for two-factor?? iOS 6 tracking FB now partnering with panda FTC announes bounty program sprint buys clearwire HSBC ddos silent circle (secure mobile comms) fillabong hacked sony encryption keys relases Corp

6 tmobile metroPCS tmobile malware protection Yahoo to ignore IE10 do not track arm server chips FBI - ooops, sorry (phone companies blocking surveillance) off the hook goes off the air More Corp

7 FBI issues smart phone security advice SC court say go ahead read that web-based mail no extradition for McKinnon copyright ruling could block all grey market sales California enforces mobile privacy policies Aussies abandon internet filtering Legal

8 aquisition tool testing http://www.dfinews.com/news/test-results-digital-data-acquisition-tool-asr-data-smart-version-2010-11-03 http://www.cftt.nist.gov/DA-ATP-pc-01.pdf http://www.dfinews.com/news/test-results-digital-data-acquisition-tool-asr-data-smart-version-2010-11-03 http://www.cftt.nist.gov/DA-ATP-pc-01.pdf MS report SIRv13 http://go.microsoft.com/?linkid=9818567 https://blogs.technet.com/b/mmpc/archive/2012/10/09/sirv13-be-careful-where-you-go-looking-for-software-and- media-files.aspx?Redirected=true http://go.microsoft.com/?linkid=9818567 https://blogs.technet.com/b/mmpc/archive/2012/10/09/sirv13-be-careful-where-you-go-looking-for-software-and- media-files.aspx?Redirected=true TrendLabs q3 round up http://www.trendmicro.com/cloud-content/us/pdfs/security-intelligence/reports/rpt-3q-2012-security-roundup- android-under-siege-popularity-comes-at-a-price.pdf http://www.trendmicro.com/cloud-content/us/pdfs/security-intelligence/reports/rpt-3q-2012-security-roundup- android-under-siege-popularity-comes-at-a-price.pdf FTC facial recognition report http://news.hitb.org/content/google-microsoft-and-yahoo-fix-serious-email-weakness http://news.hitb.org/content/google-microsoft-and-yahoo-fix-serious-email-weakness Russian blackmarket http://www.trendmicro.com/cloud-content/us/pdfs/security-intelligence/white-papers/wp-russian-underground- 101.pdf http://www.trendmicro.com/cloud-content/us/pdfs/security-intelligence/white-papers/wp-russian-underground- 101.pdf Papers

9 network simulator (good for cisco cert study) nessus ntml5 beta (bye bye flash) VIRUS TOTAL ANDRIOD RecoverRS browser history (formerly RipRS and ParseRS) recon tools collection (http://lanmaster53.com/tools/) Pushpin (social media snarf by geolocation) Tapeworm (malware forensics) Sift (malware foremsics / password required) google, yahoo, and MS fix DKIM windows 8 released. dsploit for android AT&T 5GB free cloud storage for ios users tools

10 Windows PSR Whonix tools

11 WTF Bitcoin (analysis of how it is used) pirate bay cloud MC data selling one step closer to singularity –Borderland worm kills whole towns emp missile tested mcafee accused of murder

12 CON Events HITB google patches hole 10 hours after competition Papers posted http://it.toolbox.com/blogs/securitymonkey/hackinthebox-security-conference-2012- kuala-lumpur-materials-are-posted-53496?rss=1 skydogcon http://it.toolbox.com/blogs/securitymonkey/hackinthebox-security-conference-2012- kuala-lumpur-materials-are-posted-53496?rss=1 hacker halted nuke talks pulled at con

13 All images scavenged without permission


Download ppt "PREVIOUS GNEWS. 6 Patches – 4 Critical – 19 CVEs Affected – Kernel, SQL, Kerberos, Word, HTML, SharePoint Other updates, MSRT, Defender Definitions, Junk."

Similar presentations


Ads by Google