Threat Source newsletter for July 2, 2020

Threat Source newsletter for July 2, 2020
Newsletter compiled by Jon Munshaw.Good afternoon, Talos readers.Our latest research you should catch up on is the Valak malware. This information-stealer sneaks its way onto victim machines by hijacking legitimate email threads. The threat actors send their phishing emails and attachments in email threads, hoping to trick users into thinking they’re legitimate.

We also have two vulnerability spotlights that alert users to patches you should make now. One is an information leak in Mozilla Firefox, and the other is a remote code execution bug in the LEADTOOLS kit


Upcoming public engagements


Event: “Help! We need an adult! Engaging an external IR team” at DFIR Summit & Training 2020Location: Streaming onlineDate: July 16 - 25 Speakers: Liz WaddellSynopsis: Too often, the decision to bring in a third-party forensic team occurs when an incident has reached crisis level. As an Incident Commander for such a team, Liz has seen many people handle this crisis engagement well, and others – not so much. This presentation will prepare you for what happens when you need additional surge support. We will discuss what to expect during the engagement “how to properly scope and set objectives with your firm, how to prep for both remote and onsite forensics, tool deployment, what data/logs may be asked for and establishing command centers.

Cyber Security Week in Review



A study of Amazon’s facial recognition technology found its often inaccurate, especially with non-white individuals. The security researchers behind the test also found that it misidentified more t ..

Support the originator by clicking the read the rest link below.