Get a Pentest and security assessment of your IT network.

Cyber Security

CISA releases new SolarWinds malicious activity detection tool

The Cybersecurity and Infrastructure Security Agency (CISA) has released a new tool to detect post-compromise malicious activity associated with the SolarWinds hackers in on-premises enterprise environments. CHIRP searches for IOCs associated with malicious activity detailed in AA20-008A and AA21-352A that has spilled into an enterprise environment. CISA advises organizations to use CHIP to analyze their environment when they want to: examine Windows event logs for artifacts associated with this activity;.Examine Windows Registry for evidence of intrusion; and.Apply YARA rules to detect malware, backdoors, or implants.

Source: https://www.bleepingcomputer.com/news/security/cisa-releases-new-solarwinds-malicious-activity-detection-tool/

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security