Cyber Defense Advisors

Month: July 2023

  • by
  • July 20, 2023

Sophisticated HTTP and DNS DDoS attacks on the rise

The last few months have seen an increase in the number of distributed denial-of-service (DDoS) vectors with sophisticated techniques, including attack targeting authoritative DNS servers for domain names, attacks launched from botnets built using hijacked virtual machines and HTTP application-layer attacks with highly randomized fingerprints. “The second quarter of 2023 was characterized by thought-out, tailored […]

Cyber News, Cyber Threat Trends
  • by
  • July 20, 2023

Estée Lauder Breached in Twin MOVEit Hacks, by Different Ransom Groups

The cosmetics conglomerate was apparently breached through the infamous MOVEit flaw by both Cl0p and BlackCat, at roughly the same time.

Cyber News, Cyber Threat Trends
  • by
  • July 20, 2023

Kevin Mandia Brings the HammerCon

US Air Force veteran and Mandiant CEO discussed dwell time and state-sponsored attacks at the Military Cyber Professionals Association’s HammerCon conference.

Cyber News, Cyber Threat Trends
  • by
  • July 20, 2023

Critical Infrastructure Workers Better At Spotting Phishing

Critical-infrastructure employees are comparatively more engaged in organizational security — and compliance training — than those in other sectors.

Cyber News, Cyber Threat Trends

Akamai Survey: API-Specific Controls are Lacking

Phishing, misconfigurations and missing patches are top concerns among security leaders, but they also say their organizations are letting observability tools gather rust.

Cyber News, Cyber Threat Trends

Akamai Survey: API-Specific Controls are Lacking

Phishing, misconfigurations and missing patches are top concerns among security leaders, but they also say their organizations are letting observability tools gather rust.

Cyber News, Cyber Threat Trends
  • by
  • July 20, 2023

The perfect trio: the Cyber Kill Chain, MITRE ATT&CK Framework, and attack path analysis

In an ever-evolving cybersecurity landscape, organizations continue to face increasingly sophisticated and persistent cyber threats. To effectively defend against these threats, it is crucial to understand the attacker’s modus operandi, predict their actions, and use that knowledge to proactively fortify defensive strategies. Two existing frameworks, the Cyber Kill Chain and the MITRE ATT&CK Framework, provide […]

Cyber News, Cyber Threat Trends

Akamai Survey: API-Specific Controls are Lacking

Phishing, misconfigurations and missing patches are top concerns among security leaders, but they also say their organizations are letting observability tools gather rust.

Cyber News, Cyber Threat Trends

Plurilock Announces Generative AI ‘Guardrails’ Product, PromptGuard

The SaaS product is available under the Company’s early access program as a closed, invitation-only beta experience, as part of the Plurilock AI platform.

Cyber News, Cyber Threat Trends