🖥درس آموخته ای از حادثهی اخیر Crowdstrike و استفاده از تجربه آن در امنیت سایبری شبکه های OT
1️⃣ اهمیت آزمایش هرگونه بهروزرسانی در محیط آزمایشی قبل از استقرار در محیط اجرایی مطابق با گزارش فنی استاندارد ISA/IEC 62443-2-3. آزمایش Patchها در حوزه OT بسیار حیاتیست چون عدم دسترسی به ایستگاه های کاری اپراتورها یا سرورهای کنترلی میتواند به پیامدهای نامطلوبی منجر شود.
2️⃣ اهمیت مفهوم Secure Product Development Lifecycle هست که در استاندارد ISA/IEC 62443-4-1 به آن پرداخته شده است تا اطمینان حاصل شود که تأمینکننده محصول امنیت را در طول توسعه محصول در نظر میگیرد.
گروه امنیت سایبری SGAP
www.sgap.co
@sgapsec
1️⃣ اهمیت آزمایش هرگونه بهروزرسانی در محیط آزمایشی قبل از استقرار در محیط اجرایی مطابق با گزارش فنی استاندارد ISA/IEC 62443-2-3. آزمایش Patchها در حوزه OT بسیار حیاتیست چون عدم دسترسی به ایستگاه های کاری اپراتورها یا سرورهای کنترلی میتواند به پیامدهای نامطلوبی منجر شود.
2️⃣ اهمیت مفهوم Secure Product Development Lifecycle هست که در استاندارد ISA/IEC 62443-4-1 به آن پرداخته شده است تا اطمینان حاصل شود که تأمینکننده محصول امنیت را در طول توسعه محصول در نظر میگیرد.
گروه امنیت سایبری SGAP
www.sgap.co
@sgapsec
Malware Development, Analysis and DFIR Series
PART I
Introduction
This will be a series focussed on developing Malwares for ethical purposes only, The author is not liable for any damages caused.
before we begin, let’s know about a few things
what is a malware?
Malwares are malicious softwares, that are a nefarious class of software meticulously engineered to compromise the integrity, confidentiality, or availability of computer systems. These pernicious programs are often cloaked in deceit, masquerading as legitimate software to trick unsuspecting users into granting them access. A malware can perform harmful actions such as stealing sensitive data, causing system disruptions, or even taking control of the system.
Malwares can also be used by red/purple teamers and pentesters for ethical and authorized purposes like Assessment of Defenses, Simulation of Threat Actors, Testing Incident Response Plans, Validation of Security
گروه امنیت سایبری SGAP
www.sgap.co
@sgapsec
PART I
Introduction
This will be a series focussed on developing Malwares for ethical purposes only, The author is not liable for any damages caused.
before we begin, let’s know about a few things
what is a malware?
Malwares are malicious softwares, that are a nefarious class of software meticulously engineered to compromise the integrity, confidentiality, or availability of computer systems. These pernicious programs are often cloaked in deceit, masquerading as legitimate software to trick unsuspecting users into granting them access. A malware can perform harmful actions such as stealing sensitive data, causing system disruptions, or even taking control of the system.
Malwares can also be used by red/purple teamers and pentesters for ethical and authorized purposes like Assessment of Defenses, Simulation of Threat Actors, Testing Incident Response Plans, Validation of Security
گروه امنیت سایبری SGAP
www.sgap.co
@sgapsec
azr43lkn1ght.github.io
Malware Development, Analysis and DFIR Series - Part I
1st post of Malware Development, Analysis and DFIR Series. This post will be focussed on developing Malwares for ethical purposes only, The author is not liable for any damages caused.
🗂Security Certification Roadmap 📝
https://pauljerimy.com/security-certification-roadmap/
گروه امنیت سایبری SGAP
www.sgap.co
@sgapsec
https://pauljerimy.com/security-certification-roadmap/
گروه امنیت سایبری SGAP
www.sgap.co
@sgapsec
Paul Jerimy Media
Security Certification Roadmap - Paul Jerimy Media
IT Security Certification Roadmap charting security implementation, architecture, management, analysis, offensive, and defensive operation certifications.
https://malwaretech.com/2024/08/exploiting-CVE-2024-38063.html
گروه امنیت سایبری SGAP
www.sgap.co
@sgapsec
گروه امنیت سایبری SGAP
www.sgap.co
@sgapsec
Malwaretech
CVE-2024-38063 - Remotely Exploiting The Kernel Via IPv6
Performing a root cause analysis & building proof-of-concept for CVE-2024-38063, a CVSS 9.8 Vulnerability In the Windows Kernel IPv6 Parser
