Presentation is loading. Please wait.

Presentation is loading. Please wait.

PREVIOUS GNEWS All images scavenged without permission.

Similar presentations


Presentation on theme: "PREVIOUS GNEWS All images scavenged without permission."— Presentation transcript:

1 PREVIOUS GNEWS All images scavenged without permission

2 Patch Tuesday Jun 2017 – 96 vulnerabilities with 331 unique dowloads
Internet Explorer / Microsoft Edge Microsoft Windows Microsoft Office and Microsoft Office Services and Web Apps Silverlight Skype for Business and Lync Adobe Flash Player Windows 10 and Windows Server 2016 (including Microsoft Edge) / Remote Code Windows 8.1 and Windows Server 2012 R2 / Remote Code Windows Server 2012 / Remote Code Windows RT 8.1 / Remote Code Windows 7 and Windows Server 2008 R2 / Remote Code Windows Server 2008 / Remote Code Microsoft Office, Office Services, Office Web Apps, and other Office-related software / Remote Code Microsoft Silverlight / Remote Code Microsoft Lync and Skype for Business / Remote Code Adobe Flash Player / Remote Code Sources: MS malware protection engine MS kills SHA-1 in ie edge Last Update Mar 2017 No longer working

3 Holes / Patches Oracle Adobe Android VMWare Apple Due 18 Jul 2017
APSB17-17 Flash Player ( 9 CVE) APSB17-18 Shockwave Player ( 1 CVE) APSB17-19 Captivate ( 1 CVE) APSB17-20 Digital Editions( 9 CVE) Android ( 20 CVE) ( 98 CVE) VMWare VMSA ( 2 CVE) workstation VMSA ( 2 CVE) vSphere Data Protection VMSA ( 1 CVE) Horizon View Client Apple iOS ( 55 CVE) Security Update ( 44 CVE) watchOS ( 21 CVE) iTunes for Windows ( 1 CVE) Safari ( 27 CVE) iCloud for Windows ( 1 CVE) tvOS ( 33 CVE) Sources: ## Oracle Patches ##Adobe Patches ##Apple patches ##Cisco patches ## VMWare ## Android

4 Holes / Patches HP audio driver with KeyLogger MS bulletin site
Sudo 1.86p7 – w/ SELinux Samba prior to 4.4.x cisco anyconnect prior to (windows) 30 fixes in chrome 59 Sources: HP audioo MS bulletin site sudo samba cisco anyconnect 11 MS advanced notice 30 chrome fixes

5 Hacking WCry / WanaCry evil subtitles indexing azure Jeep thefts
Raberry Pis vuln to lunix bug More leaks, cia frameworks shadow brokers going monthly? keybase extension rig EK shutdown ATM now getting abused Hacking Sources: WCry / WanaCry MS Patch evil subtitles kodi indexing azure Jeep thefts pis vuln to lunix bug More leaks, cia frameworks shadow brokers going monthly? keybase extension rig EK shutdown ATM now getting abused

6 Corp Chase payment outage. Need for Cobol
InterContinental hack bigger than originally reported. da font popped chipotle popped (FW stores affected) kmart popped one login popped hotels.com suspicous activity twitter dropping donottrack? square to replace DC taxi meters OpenVPN audits Sources: Chase payment outage. Need for Cobol InterContinental hack bigger than originally reported. fedex popped (ransomware) 12t9YDPgwueZ9NyMgw519p7AA8isjr6Mw da font popped chipotle popped FW stores affected kmart popped one login popped hotels.com suspicous activity twitter dropping donottrack? square to replace DC taxi meters OpenVPN audits Corp

7 Govt Cashless Sweden Cyber Security Executive Order
Govt Pay averages 7K less Protecting our Ability To Counter Hacking (PATCH) Act FL Dept of Agreculture and Consumer Services popped - CHL data patent suit must be local NV bans blockchain tax Modernizing Government Technology Act, passes House Apple NSL OCR IR Checklist Sources: Cashless sweden executive order Govt Pay patch act FL Dept of Agreculture and Consumer Services popped - CHL data patent suit must be local NV bans blockchain tax govt tech act Apple NSL OCR checklist Govt

8 Understanding Pacemaker Systems Cybersecurity
Papers Sources: pacemakers

9 google auto photo sharing?
shrooms are safest take off eh! WTF Sources: google auto phot sharing? shrooms are safest take off eh!

10 Tools KeychainCracker SITCH maltrail Labryneth nix auditor
stingray detector maltrail Traffic analysis Labryneth ctf nix auditor forensics roll-up 22 tools Tools Sources: mac keychain cracker sitch / fake phone maltrail Labryneth nix auditor forensics roll-up

11 Circle City Con Indy 9-11 Jun
HackMiami May NolaCon May Circle City Con Indy 9-11 Jun Past Cons Sources: cansecwest pwn2own

12 Future Cons ANYCon Albany 16-18 Jun BlackHat 22-27 Jul
BSidesLV Jul DefCon Jul Future Cons Sources:

13 Where DHA @Dallas_Hackers TX2600 @dallas2600 The Lab.MS @TheLab_ms
( 1st Wednesday / Family Karaoke, Dallas ) TX2600 @dallas2600 ( 1st Fri / Wild Turkey 35&WalnutHill, Dallas ) The Lab.MS @TheLab_ms ( 2nd Saturday + random events / TheLab.ms, Plano ) ISSA Fort Worth @ISSAFortWorth ( 2nd Tuesday / location varies ) Fort Worth Crypto Party ( 2nd Tuesday ? / The Maker Spot, N. Richland Hills ) Hack Ft Worth @Hack_FtW ( 3rd-ish Tuesday / Buffalo West, Fort Worth) OWASP Dallas @OWASPDallas ( 3rd Tuesday / location varies ) Crypto Party DFW @CryptoPartyDFW ( 3rd Thursday / TheLab.ms, Plano ) North Texas Cyber Security Group @ntxcsg ( Last Thursday, Jakes, Frisco ) Dallas MakerSpace @dallasmakers ( Random events / Carrollton ) Lock Pick DFW @LockPickDFW ( Last Monday/ Sherlocks Arlington ) Sources: Where

14 Sources: All images scavenged without permission


Download ppt "PREVIOUS GNEWS All images scavenged without permission."

Similar presentations


Ads by Google