DEF CON 28 Safe Mode Blue Team Village – Jake Smith’s And Jack McDowell’s ‘Building Blue Spawn: An Open Source Active Defense And EDR Solution’

Many thanks to DEF CON and Conference Speakers for publishing their comprehensive and outstanding presentations; of which, originally appeared at the organization’s DEFCON 28 SAFE MODE Conference, and on the DEF CON YouTube channel. Enjoy!
Permalink
Th… Continue reading DEF CON 28 Safe Mode Blue Team Village – Jake Smith’s And Jack McDowell’s ‘Building Blue Spawn: An Open Source Active Defense And EDR Solution’

AC/DC Act: Good in Theory, Terrible in Practice

Earlier this month, Georgia Congressman Tom Price introduced H.R. 4036, the Active Cyber Defense Certainty Act (AC/DC Act). The legislation would permit certain “victims” of cyberattacks to engage in certain types of “active defense” or “hack back” free from both civil and criminal liability under the Computer Fraud and Abuse Act. It would also empower..

The post AC/DC Act: Good in Theory, Terrible in Practice appeared first on Security Boulevard.

Continue reading AC/DC Act: Good in Theory, Terrible in Practice

Revised Active Defense Bill Allows Victims to Recover or Destroy Stolen Data

Rep. Tom Graves has revised a draft of the Active Cyber Defense Certainty Act with new provisions that include mandatory notification and permission to recovery or destroy stolen data on the attacker’s computer. Continue reading Revised Active Defense Bill Allows Victims to Recover or Destroy Stolen Data

Revised Active Defense Bill Allows Victims to Recover or Destroy Stolen Data

Rep. Tom Graves has revised a draft of the Active Cyber Defense Certainty Act with new provisions that include mandatory notification and permission to recovery or destroy stolen data on the attacker’s computer. Continue reading Revised Active Defense Bill Allows Victims to Recover or Destroy Stolen Data

Threatpost News Wrap, March 10, 2017

Mike Mimoso and Chris Brook discuss the news of the week including a rash of new IP camera backdoors, James Comey’s talk at Boston College, hacking back vs. active defense, and the DOJ dropping one of its Playpen cases. Continue reading Threatpost News Wrap, March 10, 2017

Active Defense Bill Raises Concerns Of Potential Consequences

A bill that would exclude organizations from prosecution for hacking back is already stirring up some concerns about potential unintended consequences. Continue reading Active Defense Bill Raises Concerns Of Potential Consequences

New cybersecurity report focuses on the private sector

George Washington University’s Center for Cyber and Homeland Security (CCHS), a “think and do” tank responsible for carrying out research and analysis on homeland security, counter-terrorism, and cybersecurity issues, has recently released a new report entitled “Into the Gray Zone: The Private Sector and Active Defense against Cyber Threats”.

Categories:

Tags:

(Read more…)

Continue reading New cybersecurity report focuses on the private sector

Mirai Vulnerability Disclosed, But Exploits May Constitute Hacking Back

A buffer overflow found in the Mirai botnet could eliminate its ability to carry out HTTP flood attacks. But exploiting that vulnerability puts defenders in a gray area with regard to hacking back. Continue reading Mirai Vulnerability Disclosed, But Exploits May Constitute Hacking Back

Gentle Reminder at RSA: Hacking Back is a Bad Idea

A panel at RSA Conference on appropriate responses to state-sponsored espionage of intellectual property for economic gain served as a reminder of the dangers of hacking back. Continue reading Gentle Reminder at RSA: Hacking Back is a Bad Idea

The Active Response Continuum & The Right To Cyber Self Defense…

At the 2015 Kaspersky Security Analyst Summit, I kicked off the event with a keynote titled: “Active Defense and the A.R.T. of W.A.R.” The A.R.T. of W.A.R. stands for “Active Response Techniques of Weaponization and Resilience.” You can read about some of what I discussed here.  I will post the presentation shortly and Kaspersky will […] Continue reading The Active Response Continuum & The Right To Cyber Self Defense…