<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Year 2019 ssl and tls is more vulnerable in Tech Talk</title>
    <link>https://community.isc2.org/t5/Tech-Talk/Year-2019-ssl-and-tls-is-more-vulnerable/m-p/18149#M830</link>
    <description>&lt;P&gt;This year 2019 most of the attack will come via SSL/TLS channel.&lt;/P&gt;&lt;P&gt;example..&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This is one of the process of user id and password harvesting from top corporation.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Each and every day this URL being changed. It is sharing simple spreadsheet macros to destination system.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Most of the firewall confused to detect it as malicious...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="http://baliaalaskaadventure.com/" target="_blank" rel="noopener"&gt;https://baliaalaskaadventure.com&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;A href="https://seoprroccket.com" target="_blank" rel="noopener"&gt;https://seoprroccket.com&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 23 Jan 2019 18:21:53 GMT</pubDate>
    <dc:creator>paul200310</dc:creator>
    <dc:date>2019-01-23T18:21:53Z</dc:date>
    <item>
      <title>Year 2019 ssl and tls is more vulnerable</title>
      <link>https://community.isc2.org/t5/Tech-Talk/Year-2019-ssl-and-tls-is-more-vulnerable/m-p/18149#M830</link>
      <description>&lt;P&gt;This year 2019 most of the attack will come via SSL/TLS channel.&lt;/P&gt;&lt;P&gt;example..&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This is one of the process of user id and password harvesting from top corporation.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Each and every day this URL being changed. It is sharing simple spreadsheet macros to destination system.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Most of the firewall confused to detect it as malicious...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="http://baliaalaskaadventure.com/" target="_blank" rel="noopener"&gt;https://baliaalaskaadventure.com&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;A href="https://seoprroccket.com" target="_blank" rel="noopener"&gt;https://seoprroccket.com&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 23 Jan 2019 18:21:53 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/Year-2019-ssl-and-tls-is-more-vulnerable/m-p/18149#M830</guid>
      <dc:creator>paul200310</dc:creator>
      <dc:date>2019-01-23T18:21:53Z</dc:date>
    </item>
    <item>
      <title>Re: Year 2019 ssl and tls is more vulnerable</title>
      <link>https://community.isc2.org/t5/Tech-Talk/Year-2019-ssl-and-tls-is-more-vulnerable/m-p/18267#M832</link>
      <description>&lt;P&gt;This is one of the biggest reasons why URL filtering is best accomplished by hiring a service to maintain the list, rather than trying to "roll your own".&amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 25 Jan 2019 02:53:09 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/Year-2019-ssl-and-tls-is-more-vulnerable/m-p/18267#M832</guid>
      <dc:creator>denbesten</dc:creator>
      <dc:date>2019-01-25T02:53:09Z</dc:date>
    </item>
    <item>
      <title>Re: Year 2019 ssl  is and tls is more vulnerable</title>
      <link>https://community.isc2.org/t5/Tech-Talk/Year-2019-ssl-and-tls-is-more-vulnerable/m-p/18268#M833</link>
      <description>&lt;P&gt;My experience is saying that those URLs are confused Next gen firewall and proxy as well.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Latest URL filtering signature unable to detect it unless you made Manuel exception on vendor side.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thinks are ephemeral....All renounce researcher are fail to identify this new variant...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Unless we have some sort&amp;nbsp; of SSL inspection device in line.&lt;/P&gt;</description>
      <pubDate>Fri, 25 Jan 2019 03:08:11 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/Year-2019-ssl-and-tls-is-more-vulnerable/m-p/18268#M833</guid>
      <dc:creator>paul200310</dc:creator>
      <dc:date>2019-01-25T03:08:11Z</dc:date>
    </item>
    <item>
      <title>Re: Year 2019 ssl  is and tls is more vulnerable</title>
      <link>https://community.isc2.org/t5/Tech-Talk/Year-2019-ssl-and-tls-is-more-vulnerable/m-p/18270#M834</link>
      <description>&lt;P&gt;If you were to report it to your firewall/proxy vendor and ask that they mark it malicious, it would benefit many more people than just adding it to your own private list.&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Also, most filtering systems allow unknowns by default.&amp;nbsp; Changing this to default-deny is painful, but will generally catch cr*p like this.&lt;/P&gt;</description>
      <pubDate>Fri, 25 Jan 2019 06:08:23 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/Year-2019-ssl-and-tls-is-more-vulnerable/m-p/18270#M834</guid>
      <dc:creator>denbesten</dc:creator>
      <dc:date>2019-01-25T06:08:23Z</dc:date>
    </item>
    <item>
      <title>Re: Year 2019 ssl  is and tls is more vulnerable</title>
      <link>https://community.isc2.org/t5/Tech-Talk/Year-2019-ssl-and-tls-is-more-vulnerable/m-p/18271#M835</link>
      <description>&lt;P&gt;With in second hundred system were compromise..............till vendor categorized as malicious.....As quick fix deny that host ip at perimeter device ACL....&amp;nbsp; May be your Internet Router from were your entire external site being routed...&lt;/P&gt;</description>
      <pubDate>Fri, 25 Jan 2019 06:36:00 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/Year-2019-ssl-and-tls-is-more-vulnerable/m-p/18271#M835</guid>
      <dc:creator>paul200310</dc:creator>
      <dc:date>2019-01-25T06:36:00Z</dc:date>
    </item>
  </channel>
</rss>

