إظهار الرسائل ذات التسميات AlienVault USM. إظهار كافة الرسائل
إظهار الرسائل ذات التسميات AlienVault USM. إظهار كافة الرسائل
الأحد، 20 ديسمبر 2015
AlienVault Unified Security Management: Real-Time Threat Detection Starting on Day 1
As organizations expand their IT infrastructure to match their evolving business models and meet changing regulatory requirements, they often find that their networks have become extremely complex and challenging to manage.
A primary concern for many IT teams is detecting threats in the mountain of event data being generated every day.
Even a relatively small network can generate
الاثنين، 19 أكتوبر 2015
How to Protect Yourself against XcodeGhost like iOS Malware Attacks
Recently, Chinese iOS developers have discovered a new OS X and iOS malware dubbed XcodeGhost that has appeared in malicious versions of Xcode, Apple’s official toolkit for developing iOS and OS X apps.
The hack of Apple’s Xcode involves infecting the compiler with malware and then passing that malware onto the compiled software.
This is a unique approach because the hack does not
الثلاثاء، 4 أغسطس 2015
Operation Lotus Blossom APT - Elise Malware
Advanced Persistent Threat (APT) type attacks continue to emerge on a global scale. What makes these attacks deviate from the norm is often the resources required to develop and implement them: time, money, and the knowledge required to create custom pieces of malware to carry out specific, targeted attacks.
Operation Lotus Blossom is one of the more recent APT attacks that has been
الخميس، 21 مايو 2015
Understanding the Shared Security Model in Amazon Web Services
Security in the Amazon EC2 environment is a responsibility shared by both the end user and Amazon. This is because within this environment there are specific parts that Amazon has control of and specific parts that are controlled by the end user.
For the end user, they are responsible for securing the operating systems running on their instances, as well as the applications running on those
الخميس، 12 فبراير 2015
How to Detect Exploits of the GHOST Buffer Overflow Vulnerability
The GHOST vulnerability is a buffer overflow condition that can be easily exploited locally and remotely, which makes it extremely dangerous. This vulnerability is named after the GetHOSTbyname function involved in the exploit.
Attackers utilize buffer overflow vulnerabilities like this one by sending specific packets of data to a vulnerable system. The attack allows the attacker to
الاشتراك في:
الرسائل (Atom)