Guidance: S/MIME Signed Certificate invalid for many clients even though it worked previously and still works

I have a very strange problem and i would like to get some guidance on this.
Problem description:
My application is sending S/MIME signed Email messages to clients. It worked perfectly no problems were reported and also in my mail client a… Continue reading Guidance: S/MIME Signed Certificate invalid for many clients even though it worked previously and still works

The 3 key stages of ransomware attacks and useful indicators of compromise

For SOC teams to be able to defend their organization against ransomware attacks, they need to have the right security toolset, but also an understanding of the three primary ransomware attack stages. In this article, we will dive into those key stages… Continue reading The 3 key stages of ransomware attacks and useful indicators of compromise

If only ‘two’ insecure MFA options are available (email and sms) which is ‘most secure’? [duplicate]

Although I disagree with the term MFA entirely if it refers to ‘login code send to email’, it’s a one-time password at best, and likely badly implemented with its associated risks. I do see quite some software having email as their only ‘M… Continue reading If only ‘two’ insecure MFA options are available (email and sms) which is ‘most secure’? [duplicate]

How to determine if email is from from gaia.bounces.google.com or just forwarded from there? [duplicate]

Shown below are the "from and to" portions of the message. It looks like it is just forwarded by "gaia.bounces.google.com". The message itself (and I have quite a few of them) indicates I have been awarded something by … Continue reading How to determine if email is from from gaia.bounces.google.com or just forwarded from there? [duplicate]

What does the IMAP banner alone show regarding security (STARTTLS, hashing, information disclosure)?

I encountered an open TCP/143 IMAP port which responded with this banner:
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ STARTTLS AUTH=PLAIN AUTH=LOGIN AUTH=DIGEST-MD5 AUTH=CRAM-MD5] Dovecot ready.

From this I … Continue reading What does the IMAP banner alone show regarding security (STARTTLS, hashing, information disclosure)?

Spoofed email sent to me from my email address with SPF/DKIM/DMARC passing

I received an email earlier today on my work email address. The email came from the same address—mine—but I didn’t send it.
It was an email claiming that he was a professional hacker who had hacked my operating system and planted harmful s… Continue reading Spoofed email sent to me from my email address with SPF/DKIM/DMARC passing

Finding the right approach to security awareness

As artificial intelligence amplifies the sophistication and reach of phishing, vishing, and smishing attacks, understanding and managing human cyber risks has become increasingly vital. Security awareness training is essential and must be a live, evolv… Continue reading Finding the right approach to security awareness