vulnerability

Stories From An IT Security Professional

Links of the Week 2017-12-23

Welcome to my collection of interesting links for the week to the 2017-12-23. The links are in no particular order. Learning From Security Breaches in 2017 Preparing for the mandatory use of TLS 1.2 in Office 365 Russia’s Globex bank says hackers targeted its SWIFT computers North Korea Bitten by Bitcoin Bug: Financially motivated campaigns […]

Continue Reading

Links of the Week 2017-07-16

Welcome to my collection of interesting links for the week to the 2017-07-16. The links are in no particular order. Detailed incident report Another day, another mass domain hijacking NemucodAES Decryptor Want to kill your IT security team? Put the top hacker in charge Cloud Leak: How A Verizon Partner Exposed Millions of Customer Accounts […]

Continue Reading

Links of the Week 2017-07-09

Welcome to my collection of interesting links for the week to the 2017-07-09. The links are in no particular order. 94 .ch & .li domain names hijacked and used for drive-by Report on July 7, 2017 incident Schedule for BSidesLV 2017 Attack on Critical Infrastructure Leverages Template Injection Broadpwn Bug Affects Millions of Android and […]

Continue Reading

Google’s BeyondCorp and some Thoughts

One of the big news stories last week was the Wall Street Journal article, reporting that Google has “given up on their internal network” and are moving their business applications to the internet (called BeyondCorp). The reason behind is that they don’t see the internal network as private/protectable anymore. With todays adversaries, malware and general lack […]

Continue Reading

Creative Commons: Donors Data Leak

A few days ago has the Creative Commons team sent out an email, informing me and some other donors about a data leak that happened on their GitHub repository: Creative Commons believes in open, frank, and prompt communication with our community, including our donors. We also take your privacy seriously. We are committed to responsibly guarding the personal information you […]

Continue Reading

Zeitgeist Daemon on Xubuntu does not respect your privacy

I toyed around with my Xubuntu, and found the strange named process “Zeitgeist”. What’s this? “zeitgeist-daemon  is  a  daemon which keeps track of activities on your system (file usage, browser history, calendar events, etc.) and  logs them  into  a  central  database. It does not only create a chronologic register, but also supports tagging  and  can […]

Continue Reading