<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Wikileaks - malgregator</title>
    <link>https://malgregator.com/tags/wikileaks/</link>
    <description>Recent content in Wikileaks on malgregator</description>
    <generator>Hugo -- gohugo.io</generator>
    <language>en</language>
    <managingEditor>you@example.com</managingEditor>
    <webMaster>you@example.com</webMaster>
    <lastBuildDate>Fri, 18 May 2018 12:15:00 +0000</lastBuildDate>
    
        <atom:link href="https://malgregator.com/tags/wikileaks/index.xml" rel="self" type="application/rss+xml" />
    
    <item>
      <title>InfoSec Week 20, 2018</title>
      <link>https://malgregator.com/post/week-20-2018/</link>
      <pubDate>Fri, 18 May 2018 12:15:00 +0000</pubDate>
      <author>you@example.com</author>
      <guid>https://malgregator.com/post/week-20-2018/</guid>
      <description>Major (probably not only) US cell carriers are selling access to the real-time phone location data.   Because, you know the Electronic Communications Privacy Act only restricts telecommunication companies from disclosing data to the government, it doesn&#39;t restrict disclosure to other companies. Which can resell back to the gov. Hacker News discussion on a topic is quite informative.</description>
    </item><item>
      <title>InfoSec Week 18, 2018</title>
      <link>https://malgregator.com/post/week-18-2018/</link>
      <pubDate>Thu, 03 May 2018 20:48:00 +0000</pubDate>
      <author>you@example.com</author>
      <guid>https://malgregator.com/post/week-18-2018/</guid>
      <description>Multiple tech giants like Apple, Microsoft, Google and others formed an industry coalition and have joined security experts in criticizing encryption backdoors, after Ray Ozzie&#39;s CLEAR key escrow idea was widely derided. He basically proposed a scheme where the users have no control over their own devices, but the devices can be securely forensically analyzed by the government agencies.</description>
    </item><item>
      <title>InfoSec Week 45, 2017</title>
      <link>https://malgregator.com/post/week-45-2017/</link>
      <pubDate>Thu, 16 Nov 2017 07:20:00 +0000</pubDate>
      <author>you@example.com</author>
      <guid>https://malgregator.com/post/week-45-2017/</guid>
      <description>Researchers exploited antivirus software quarantine mechanism to gain privileges by manipulating the restore process from the virus quarantine. By abusing NTFS directory junctions, the AV quarantine restore process can be manipulated, so that previously quarantined files can be written to arbitrary file system locations.</description>
    </item><item>
      <title>InfoSec Week 32, 2017</title>
      <link>https://malgregator.com/post/week-32-2017/</link>
      <pubDate>Tue, 15 Aug 2017 17:15:00 +0000</pubDate>
      <author>you@example.com</author>
      <guid>https://malgregator.com/post/week-32-2017/</guid>
      <description>The lone Nigerian guy is responsible for an attack against at least 4000 gas, oil, banking, infrastructure organizations using phishing and NetWire trojan for remote access.</description>
    </item><item>
      <title>InfoSec Week 27, 2017</title>
      <link>https://malgregator.com/post/week-27-2017/</link>
      <pubDate>Tue, 11 Jul 2017 17:58:00 +0000</pubDate>
      <author>you@example.com</author>
      <guid>https://malgregator.com/post/week-27-2017/</guid>
      <description>WikiLeaks has published documents detailing two alleged CIA implants, BothanSpy and Gyrfalcon, designed to steal SSH credentials from Windows and Linux.</description>
    </item><item>
      <title>InfoSec Week 26, 2017</title>
      <link>https://malgregator.com/post/week-26-2017/</link>
      <pubDate>Tue, 04 Jul 2017 22:30:00 +0000</pubDate>
      <author>you@example.com</author>
      <guid>https://malgregator.com/post/week-26-2017/</guid>
      <description>The ExPetr/Petya ransomware which hits the Ukraine last week is actually a disk wiper. Victims are not able to decrypt their data, as the encryption key is not stored anywhere.</description>
    </item><item>
      <title>InfoSec Week 24, 2017</title>
      <link>https://malgregator.com/post/week-24-2017/</link>
      <pubDate>Tue, 20 Jun 2017 23:50:00 +0000</pubDate>
      <author>you@example.com</author>
      <guid>https://malgregator.com/post/week-24-2017/</guid>
      <description>Erebus ransomware distributed by the malicious advertisement campaign is using Rig exploit kit to infect Linux servers across the world.   Some companies had to pay already.</description>
    </item><item>
      <title>InfoSec Week 22, 2017</title>
      <link>https://malgregator.com/post/week-22-2017/</link>
      <pubDate>Mon, 05 Jun 2017 22:22:00 +0000</pubDate>
      <author>you@example.com</author>
      <guid>https://malgregator.com/post/week-22-2017/</guid>
      <description>Notoriously known Gh0st RAT spyware is spreading through the same SMB vulnerability as a WannaCry ransomware.</description>
    </item><item>
      <title>InfoSec Week 20, 2017</title>
      <link>https://malgregator.com/post/week-20-2017/</link>
      <pubDate>Sun, 21 May 2017 21:00:00 +0000</pubDate>
      <author>you@example.com</author>
      <guid>https://malgregator.com/post/week-20-2017/</guid>
      <description>Researchers published WannaCry ransomware decryption tool for older Windows (XP, 2003, 7). It uses bug in the Windows Crypto API which does not immediately erase private key. The application is crawling the computer memory, looking for the prime numbers which can divide the public key used for the encryption.</description>
    </item><item>
      <title>InfoSec Week 19, 2017</title>
      <link>https://malgregator.com/post/week-19-2017/</link>
      <pubDate>Tue, 16 May 2017 22:50:00 +0000</pubDate>
      <author>you@example.com</author>
      <guid>https://malgregator.com/post/week-19-2017/</guid>
      <description>You have probably heard about the WannaCry/WannaCrypt/WannaWhatever worm spreading ransomware, because of the sensation created by parties profiting from the scare tactics. But also because it is using really good spreading technique - exploiting MS17-010 SMB vulnerability leaked from the NSA.   Some post-mortem analysis of the first version (with the killswich) and TheShadowBrokers blog are listed below. Crypto is working, so no trivial decrypter is probable, except if the keys are published.</description>
    </item>
  </channel>
</rss>