40 - NIST 2.0, Memory-Safe Tech, Conversation Overflow, Phobos Ransomware Insights
Manage episode 410244806 series 3477109
Welcome to Episode 40 of Emagine The Future our 2nd of our "This Month in Cyber" series - March 2024 edition.
February Catchup (Things we missed):
- NIST 2.0 Cybersecurity Framework: https://www.nist.gov/news-events/news/2024/02/nist-releases-version-20-landmark-cybersecurity-framework
- US Press release on Future Software should be Memory-Safe: https://www.whitehouse.gov/oncd/briefing-room/2024/02/26/press-release-technical-report/
- Annual Threat Assessment of the US Intelligence Community Released 2/5/2024: https://www.documentcloud.org/documents/24475399-unclassified-threat-assessment-us-government-2024
- Microsoft and OpenAI publish a report on Nation-State Hackers using AI for cyber-attacks: https://thehackernews.com/2024/02/microsoft-openai-warn-of-nation-state.html
Incidents & Breaches:
- Credential-stealing emails and Conversation Overflow: https://www.darkreading.com/cloud-security/conversation-overflow-cyberattacks-bypass-ai-security
- NIST National Vulnerability Database Disruption Sees CVE Enrichment on Hold: https://www.infosecurity-magazine.com/news/nist-vulnerability-database/
Regulatory & Government:
- In continuation of last month, FBI and CISA release details on the tactics and techniques threat actors are using to deploy the Phobos ransomware strain on target networks: https://www.darkreading.com/cyberattacks-data-breaches/fbi-cisa-release-iocs-for-phobos-ransomware
- NSA's Zero Trust Guidance: https://www.nsa.gov/Press-Room/Press-Releases-Statements/Press-Release-View/Article/3695223/nsa-releases-maturity-guidance-for-the-zero-trust-network-and-environment-pillar/
- Yearly US Intelligence Congress Testimony: https://techcrunch.com/2024/03/11/four-things-we-learned-when-us-spy-chiefs-testified-to-congress/
- DHS AI Roadmap Plans: https://fedscoop.com/dhs-ai-roadmap/?utm_content=286478443&utm_medium=social&utm_source=linkedin&hss_channel=lcp-1097874
Events That Occurred & Events < 60 Days Away:
- Philadelphia Cybersecurity Conference, Virtual and Philadelphia, Pennsylvania: April 4
- SANS New2Cyber Summit 2024–Central US, Virtual: April 4 – 15
- Cybersecurity Implications of AI Summit: North America West Summit, Seattle, Washington: April 16
- Google Cloud Next ’24, Las Vegas, Nevada: April 9 – 11
Subscribe on YouTube: https://www.youtube.com/@EITisCyber
Connect on LinkedIn:
https://www.linkedin.com/company/emagine-it-inc-/posts/
44 episoade