Overview On May 14, 2019, local time, Microsoft released security updates for May that address a critical remote code execution vulnerability (CVE-2019-0708) in Remote Desktop Services. The Remote Desktop Protocol (RDP) is not affected by this vulnerability. As the vulnerability may be exploited in worm-related attacks, users are advised to...
Category: Blog
2018 DDoS Attack Landscape-7
3.5Â Analysis of IoT Attack Sources 3.5.1 Participation of IoT Devices in DDoS Attacks According to NSFOCUS's IoT threat intelligence, some DDoS attacks are associated with IoT devices. By further analyzing the proportion of IoT devices in DDoS attack source IP addresses, we find that 3.14% are IoT devices. Although...
A Retrospective Analysis of 300G DDoS Mitigation Powered by NSFOCUS Cloud DPS
The NSFOCUS multi-terabit DDoS protection was designed specifically to help enterprises regain control and build confidence with its vigorous layered protections against sophisticated attacks. With automation as an integral part of the NSFOCUS solution, DDoS attacks are detected and remediated immediately, with no disruption to services. (more…)
Machine Learning Algorithms Power Security Threat Reasoning and Analysis
RSA Conference 2019, an annual infosec event that brings all cybersecurity professionals together, kicked off in San Francisco, USA on March 4, 2019. This year's Conference took "Better" as its theme, which reflected infosec players' visions to constantly improve their own capabilities and work out better security solutions. (more…)
Practices of China’s Internet Giants in Machine Learning
At RSA Conference 2019, Tao Zhou, a senior staff algorithm engineer from Alibaba Security, Alibaba Group, as one of only a few Chinese speakers, started his presentation on application of statistical learning to intrusion detection in the context of massive big data with an account of challenges facing Internet giants...
Cisco Elastic Services Controller REST API Authentication Bypass Vulnerability Threat Alert
Overview Cisco has released a security advisory, announcing the existence of a REST API authentication bypass vulnerability (CVE-2019-1867) in Cisco Elastic Services Controller (ESC). This vulnerability is due to improper validation of API requests. An attacker could exploit this vulnerability by sending a crafted request to the REST API. A...





