• ISC Stormcast For Thursday, February 29th, 2024 https://isc.sans.edu/podcastdetail/8874, (Thu, Feb 29th)

    Updated: 2024-02-29 02:00:02
    , , : Internet Storm Center Sign In Sign Up Handler on Duty : Jesse La Grew Threat Level : green previous ISC Stormcast For Thursday , February 29th , 2024 https : isc.sans.edu podcastdetail 8874 previous Comments Login here to join the . discussion Top of page Ø Diary Archives Homepage Diaries Podcasts Jobs Data TCP UDP Port Activity Port Trends SSH Telnet Scanning Activity Weblogs Threat Feeds Activity Threat Feeds Map Useful InfoSec Links Presentations Papers Research Papers API Tools DShield Sensor DNS Looking Glass Honeypot RPi AWS InfoSec Glossary Contact Us Contact Us About Us Handlers About Us Slack Channel Mastodon Bluesky X 2024 SANS™ Internet Storm Center Developers : We have an API for you Link To Us About Us Handlers Privacy Policy

  • Top 9 AI Governance Tools 2024

    Updated: 2024-02-28 23:43:33
    As AI usage increases, so does the need for governance and tools to manage and monitor it. Discover the top X AI governance and tools now. The post Top 9 AI Governance Tools 2024 appeared first on eWEEK.

  • Exploit Attempts for Unknown Password Reset Vulnerability, (Wed, Feb 28th)

    Updated: 2024-02-28 14:36:16
    My Google skills let me down this morning, attempting to figure out which vulnerability is exactly being exploited by these "forgotuserpassword.action" scans. Maybe someone else can help me out here. Based on the scans, I do not believe this is a "normal" password reset vulnerability. Atlassian&#;x26;#;39;s Confluence is one suspect using a URL scheme like this, but there may be others. Here are some of the URLs:

  • ISC Stormcast For Tuesday, February 27th, 2024 https://isc.sans.edu/podcastdetail/8870, (Tue, Feb 27th)

    Updated: 2024-02-27 02:00:02
    Last week, the US Department of Justice published a press release entitled "Justice Department Conducts Court-Authorized Disruption of Botnet Controlled by the Russian Federation's Main Intelligence Directorate of the General Staff (GRU)" [1]. The disruption targeted a botnet built using the "Moobot" malware. According to the press release, this particular botnet focused on routers made by Ubiquity, using well-known default credentials.

  • ISC Stormcast For Monday, February 26th, 2024 https://isc.sans.edu/podcastdetail/8868, (Mon, Feb 26th)

    Updated: 2024-02-26 02:00:02
    Last week, the US Department of Justice published a press release entitled "Justice Department Conducts Court-Authorized Disruption of Botnet Controlled by the Russian Federation's Main Intelligence Directorate of the General Staff (GRU)" [1]. The disruption targeted a botnet built using the "Moobot" malware. According to the press release, this particular botnet focused on routers made by Ubiquity, using well-known default credentials.

  • Update: MGLNDD_* Scans, (Sat, Feb 24th)

    Updated: 2024-02-25 08:43:36
    Almost 2 years ago, a reader asked us about TCP connections they observed. The data of these TCP connections starts with "MGLNDD_": "MGLNDD_* Scans".

Current Feed Items | Previous Months Items

Jan 2024 | Dec 2023 | Nov 2023 | Oct 2023 | Sep 2023 | Aug 2023