Não Categorizado

Information Security in the Workplace- Use of Mobile Storage-v

junho 12, 2020 | Adeline Zhang

With the advancement of IT-based transformation and the rapid development of IT, various network technologies have seen more extensive and profound applications, along with which come a multitude of cyber security issues. Come to find out what information security issues you should beware of in the workplace.

NSFOCUS Named a Representative Vendor in Gartner Market for Security Threat Intelligence Products and Services

maio 30, 2020 | Adeline Zhang

The world’s leading research and advisory company, Gartner, has named NSFOCUS as a Representative Vendor in its May 2020 Market Guide for Security Threat Intelligence Products and Services. This guide provides in-depth analysis of the threat intelligence (TI) market, focusing on introducing its technical value and commercial potential of threat intelligence, and selecting credible vendors […]

Java Deserialization Exploits: Registry Whitelist Bypass

maio 25, 2020 | Adeline Zhang

In 2019, An Trinh discovered two vulnerabilities, CVE-2019-9670 (XXE/SSRF) and CVE-2019-6980 (deserialization vulnerability), in Zimbra. As usual, An Trinh did not disclose any details. Luckily, Hans Martin Munch is more generous than An Trinh and has shared many interesting ideas. For example, he once advised using YouDebug to fix the CVE-2017-3241 vulnerability. ysoserial.payloads.JRMPClient is designed […]

635Gbps DDoS attack spike During Covid-19 Pandemic

maio 22, 2020 | Adeline Zhang

NSFOCUS cloud scrubbing center witnessed a torrent of DDoS attack traffic, with peak volume up to 634.8 Gbps. At 5 p.m. of May 20th, 2020, NSFOCUS SOC team detected an enormous DDoS attack – three IPs of a Hong Kong customer were hit by DDoS attacks and inbound traffic kept increasing sharply. As DDoS attack […]

NetWire Controllers Are Dropping COVID-19-Themed Decoy Files

maio 18, 2020 | Adeline Zhang

With the outbreak of the COVID-19 pandemic around the world, trending hashtags related to the epidemic are flooding social media, attracting attention of a number of international hacker organizations, which jump at the chance to conduct social engineering based on decoy messages. Recently, NSFCOUS found that NetWire controllers began to drop the trojan with the […]

Firmware Analysis: Extraction of ASP Files in the GoAhead Architecture

maio 15, 2020 | Adeline Zhang

GoAhead is an open-source web architecture that is widely used in embedded systems thanks to its high performance and high availability. Traditional servers built on the GoAhead architecture usually see a large number of dynamic pages written in the Active Server Pages (ASP) scripting language and functions written in C/C++ that are registered to the […]

Information Security in the Workplace- Print of Documents at a Print Shop-v

maio 8, 2020 | Adeline Zhang

With the advancement of IT-based transformation and the rapid development of IT, various network technologies have seen more extensive and profound applications, along with which come a multitude of cyber security issues. Come to find out what information security issues you should beware of in the workplace.

A Look Into WS-Discovery Reflection Attacks for 2020 Q1

maio 5, 2020 | Adeline Zhang

Executive Summary Web Services Dynamic Discovery (WSD) is a multicast discovery protocol to locate services on a local area network (LAN). However, due to device vendors’ design flaw in the implementation, when a normal IP address sends a service discovery packet, devices will also respond to the request. If exposed on the Internet, these devices […]

Information Security in the Workplace- Distribution of Sensitive Documents-v

janeiro 10, 2020 | Adeline Zhang

With the advancement of IT-based transformation and the rapid development of IT, various network technologies have seen more extensive and profound applications, along with which come a multitude of cyber security issues. Come to find out what information security issues you should beware of in the workplace.

Information Security in the Workplace- Business Chat Groups-v

dezembro 13, 2019 | Adeline Zhang

With the advancement of IT-based transformation and the rapid development of IT, various network technologies have seen more extensive and profound applications, along with which come a multitude of cyber security issues. Come to find out what information security issues you should beware of in the workplace.