Re: [AFMUG] Fireye

2020-12-16 Thread Ken Hohhof
: [AFMUG] Fireye Yeah I read about the cname updates and all that. I dont think its malicious, I just think it's odd that microsoft, or any single private company has an authority that technically no nation was supposed to have. I assume somewhere in the bylaws was a mechanism to cor

Re: [AFMUG] Fireye

2020-12-15 Thread Steve Jones
bably > got those. You were hoping for Hillary’s emails, weren’t you. And Jaime > was hoping for Trump’s tax returns. > > > > *From:* AF *On Behalf Of *Steve Jones > *Sent:* Tuesday, December 15, 2020 11:34 PM > *To:* AnimalFarm Microwave Users Group > *Subject:* Re: [

Re: [AFMUG] Fireye

2020-12-15 Thread Ken Hohhof
ails, weren’t you. And Jaime was hoping for Trump’s tax returns. From: AF On Behalf Of Steve Jones Sent: Tuesday, December 15, 2020 11:34 PM To: AnimalFarm Microwave Users Group Subject: Re: [AFMUG] Fireye I still dont understand how a private company gets the authority. It's good tha

Re: [AFMUG] Fireye

2020-12-15 Thread Steve Jones
December 15, 2020 9:34 PM > *To:* AnimalFarm Microwave Users Group > *Subject:* Re: [AFMUG] Fireye > > > > How does Microsoft wield the authority to take over domains? > > > > On Mon, Dec 14, 2020, 9:58 PM Steve Jones > wrote: > > Wow > > I wonder i

Re: [AFMUG] Fireye

2020-12-15 Thread Ken Hohhof
This article discusses the domain takeover. https://krebsonsecurity.com/2020/12/solarwinds-hack-could-affect-18k-customers/ From: AF On Behalf Of Steve Jones Sent: Tuesday, December 15, 2020 9:34 PM To: AnimalFarm Microwave Users Group Subject: Re: [AFMUG] Fireye How does

Re: [AFMUG] Fireye

2020-12-15 Thread Steve Jones
ed if they mess with my >>>>>> google >>>>>> play playlists. >>>>>> >>>>>> I wonder if the disruptions with office365 and the weird spam filter >>>>>> changes lately are related to cleanup prior to publication. >>>>>&g

Re: [AFMUG] Fireye

2020-12-14 Thread Steve Jones
ng the trigger on >>>>> various solarwinds offerings over the years. Thats with tiny company tiny >>>>> budgets. I cant imagine CTO voicemails going down around the world today, >>>>> depending on budget, you hand the keys over to solarwinds, and by design, >>>>> each key you hand

Re: [AFMUG] Fireye

2020-12-14 Thread Steve Jones
holy fuck, thats scorched earth response. That almost seems like a response that doesnt need to be made public knowlege. Collection, monitoring and central management will be down. Chaos and confusion as new processes are onboarded. On Mon, Dec 14, 2020 at 2:34 PM Robert Andrews wrote: > Read th

Re: [AFMUG] Fireye

2020-12-14 Thread Steve Jones
How would you even begin to clean up your organization when >>>> your systems that would provide you your forensics are the systems that did >>>> the damage? >>>> >>>> Is this just mediahype and more russia russia russia, or is this as b

Re: [AFMUG] Fireye

2020-12-14 Thread Robert Andrews
Read through some of this and it will confirm how big a deal it is. And if a service you were wondering about isn't working, there is a decent chance that this is why... https://cyber.dhs.gov/ed/21-01/ On 12/14/2020 11:52 AM, Ryan Ray wrote: This is a big deal. Solarwinds Orion is a product

Re: [AFMUG] Fireye

2020-12-14 Thread Ryan Ray
> On Mon, Dec 14, 2020 at 9:01 AM dave wrote: >>> >>>> DA HUMANITY!! >>>> >>>> >>>> On 12/14/20 8:58 AM, Ken Hohhof wrote: >>>> >>>> I had a customer this morning complaining she could

Re: [AFMUG] Fireye

2020-12-14 Thread Steve Jones
gt;> of a deal as it seems >>> >>> On Mon, Dec 14, 2020 at 9:01 AM dave wrote: >>> >>>> DA HUMANITY!! >>>> >>>> >>>> On 12/14/20 8:58 AM, Ken Hohhof wrote: >>>> >>>> I had a customer this morning comp

Re: [AFMUG] Fireye

2020-12-14 Thread Steve Jones
ote: >>> >>> I had a customer this morning complaining she couldn’t “sign on” to the >>> Internet. I mentioned that Google had an outage this morning, but she >>> responded that she doesn’t use any Google services. Of course her email >>> was from a Gmai

Re: [AFMUG] Fireye

2020-12-14 Thread Ryan Ray
> Internet. I mentioned that Google had an outage this morning, but she >>> responded that she doesn’t use any Google services. Of course her email >>> was from a Gmail address. >>> >>> >>> >>> >>> >>> *From:* AF *On >>

Re: [AFMUG] Fireye

2020-12-14 Thread Ryan Ray
;> Internet. I mentioned that Google had an outage this morning, but she >> responded that she doesn’t use any Google services. Of course her email >> was from a Gmail address. >> >> >> >> >> >> *From:* AF *On >> Behalf Of *Mike Hammett >&g

Re: [AFMUG] Fireye

2020-12-14 Thread Steve Jones
; > > > > *From:* AF *On Behalf > Of *Mike Hammett > *Sent:* Monday, December 14, 2020 6:54 AM > *To:* AnimalFarm Microwave Users Group > *Subject:* Re: [AFMUG] Fireye > > > > "I know I'm next, they're coming after my google home mini

Re: [AFMUG] Fireye

2020-12-14 Thread dave
address. *From:* AF *On Behalf Of *Mike Hammett *Sent:* Monday, December 14, 2020 6:54 AM *To:* AnimalFarm Microwave Users Group *Subject:* Re: [AFMUG] Fireye "I know I'm next, they're coming after my google home mini and my netflix account." a  Google is

Re: [AFMUG] Fireye

2020-12-14 Thread Ken Hohhof
: Monday, December 14, 2020 6:54 AM To: AnimalFarm Microwave Users Group Subject: Re: [AFMUG] Fireye "I know I'm next, they're coming after my google home mini and my netflix account." a Google is broken this morning. - Mike Hammett <http://www.i

Re: [AFMUG] Fireye

2020-12-14 Thread Jaime Solorza
Yep On Sun, Dec 13, 2020, 7:46 PM Steve Jones wrote: > These guys F'd up beyond belief. > > Inept as jaime would say > -- > AF mailing list > AF@af.afmug.com > http://af.afmug.com/mailman/listinfo/af_af.afmug.com > -- AF mailing list AF@af.afmug.com http://af.afmug.com/mailman/listinfo/af_af.af

Re: [AFMUG] Fireye

2020-12-14 Thread Jaime Solorza
https://www.newsweek.com/solar-winds-probably-hacked-russia-serves-white-house-pentagon-nasa-1554447 On Sun, Dec 13, 2020, 7:46 PM Steve Jones wrote: > These guys F'd up beyond belief. > > Inept as jaime would say > -- > AF mailing list > AF@af.afmug.com > http://af.afmug.com/mailman/listinfo/af

Re: [AFMUG] Fireye

2020-12-14 Thread Mike Hammett
From: "Steve Jones" To: "AnimalFarm Microwave Users Group" Sent: Sunday, December 13, 2020 9:57:21 PM Subject: Re: [AFMUG] Fireye Nope, per fireye, the toolset had to be released because of it being stolen, was not "in the wild" Going to get really interesti

Re: [AFMUG] Fireye

2020-12-13 Thread Ken Hohhof
They’re coming for your cheese. From: AF On Behalf Of Steve Jones Sent: Sunday, December 13, 2020 9:57 PM To: AnimalFarm Microwave Users Group Subject: Re: [AFMUG] Fireye Nope, per fireye, the toolset had to be released because of it being stolen, was not "in the wild" Go

Re: [AFMUG] Fireye

2020-12-13 Thread Steve Jones
roup” (cough, cough, NSA) > who lost novel and very powerful hacking tools like Eternal Blue to the > Shadow Brokers group. > > > > *From:* AF *On Behalf Of *Steve Jones > *Sent:* Sunday, December 13, 2020 8:45 PM > *To:* AnimalFarm Microwave Users Group > *Subject:* [AF

Re: [AFMUG] Fireye

2020-12-13 Thread Ken Hohhof
Steve Jones Sent: Sunday, December 13, 2020 8:45 PM To: AnimalFarm Microwave Users Group Subject: [AFMUG] Fireye These guys F'd up beyond belief. Inept as jaime would say -- AF mailing list AF@af.afmug.com http://af.afmug.com/mailman/listinfo/af_af.afmug.com

Re: [AFMUG] Fireye

2020-12-13 Thread Ken Hohhof
“Equation Group” (cough, cough, NSA) who lost novel and very powerful hacking tools like Eternal Blue to the Shadow Brokers group. From: AF On Behalf Of Steve Jones Sent: Sunday, December 13, 2020 8:45 PM To: AnimalFarm Microwave Users Group Subject: [AFMUG] Fireye These guys F'd up b

[AFMUG] Fireye

2020-12-13 Thread Steve Jones
These guys F'd up beyond belief. Inept as jaime would say -- AF mailing list AF@af.afmug.com http://af.afmug.com/mailman/listinfo/af_af.afmug.com