Threat Source newsletter for June 25, 2020

Threat Source newsletter for June 25, 2020
Newsletter compiled by Jon Munshaw.Good afternoon, Talos readers.We recently decided to replace our use of the terms "blacklist" and "whitelist" with "block list" and "allow list.” Even though these terms are commonly in use in the security industry, we will not go along with casually assigning positive connotations to "white" while assigning negative connotations to "black.”

Elsewhere, we have new episodes of Beers with Talos and Talos Takes up. Check them out on our podcasts page or download them on your favorite podcast app.

Upcoming public engagements


Event: “Help! We need an adult! Engaging an external IR team” at DFIR Summit & Training 2020Location: Streaming onlineDate: July 16 - 25 Speakers: Liz WaddellSynopsis: Too often, the decision to bring in a third-party forensic team occurs when an incident has reached crisis level. As an Incident Commander for such a team, Liz has seen many people handle this crisis engagement well, and others – not so much. This presentation will prepare you for what happens when you need additional surge support. We will discuss what to expect during the engagement “how to properly scope and set objectives with your firm, how to prep for both remote and onsite forensics, tool deployment, what data/logs may be asked for and establishing command centers.

Cyber Security Week in Review



The BlueKai software, which tracks users' web usage to help serve targeted ads, left a server unprotected on the web. While the vulnerability has since been fixed, anyone could have exploited this server to gain access to millions of records. 
Adversaries are increasingly requiring threat source newsletter