quotesArtboard 1 copy 2

WELCOME TO BLACK HAT USA 2023


Now in its 26th year, Black Hat USA returned to the Mandalay Bay Convention Center in Las Vegas with a 6-day program. The event opened with four days of specialized cybersecurity Trainings (August 5-10), with courses for all skill levels. The two-day main conference (August 9-10) has been featured more than 100 selected Briefings, dozens of open-source tool demos in Arsenal, a robust Business Hall, networking and social events, and much more. This year Black Hat has launched a 'Certified Pentester' program - a full day practical exam, covering pentesting topics.

Black Hat attracts over 20,000 of the world's most renowned security experts, executives, and attendees, that create the industry's most dynamic and concentrated information security community. For over 25 years, Black Hat has provided attendees with the very latest in information security research, development, and trends. These high-profile global events and training are driven by the needs of the security community, striving to bring together the best minds in the industry. Black Hat inspires professionals at all career levels, encouraging growth and collaboration among academia, world-class researchers, and leaders in the public and private sectors. Black Hat Briefings and Trainings are held annually in the United States, Canada, Europe, Middle East and Africa, and Asia.


The event welcomed more than 22,750 unique attendees, with 19,750 joining in-person at the Mandalay Bay Convention Center in Las Vegas, while more than 3,000 registered for On-Demand Access to the event.


John&Partners was one of the finalists invited to exhibit at Black Hat USA 2023 and received a 10-minute scheduled speaking slot and 30-minute call with an Omdia Cybersecurity Analyst.


Source: John&Partners LLC. - Black Hat USA 2023
More on Black Hat US 2023

NEWS

June 5, 2024
The TP-Link Archer C5400X gaming router is vulnerable to security flaws that could enable an unauthenticated, remote attacker to execute commands on the device.
June 4, 2024
Threat actors are targeting Check Point Remote Access VPN devices in an ongoing campaign to breach enterprise networks, the company warned in a May 27 advisory.
June 3, 2024
Prescription management company Sav-Rx is warning over 2.8 million people in the United States that it suffered a data breach, stating that their personal data was stolen in a 2023 cyberattack.
June 1, 2024
Hackers are utilizing code from a Python clone of Microsoft's venerable Minesweeper game to hide malicious scripts in attacks on European and US financial organizations.
Xem thêm

CYBERSECURITY SOLUTIONS

March 4, 2022
According to TechRepublic, Symantec said that the newly-discovered Daxin exhibits a previously unseen level of complexity, and it’s been targeting governments around the world for some time.
February 27, 2022
US and UK cybersecurity and law enforcement agencies today shared information on new malware deployed by the Iranian-backed MuddyWatter hacking group in attacks targeting critical infrastructure worldwide.
February 24, 2022
A notification from the U.S. Cybersecurity Infrastructure and Security Agency (CISA) warns that threat actors are exploiting vulnerabilities in the Zabbix open-source tool for monitoring networks, servers, virtual machines, and cloud services.
February 7, 2022
New cryptomalware currently targets cryptocurrency wallets, such as Coinbase, Binance Chain, and MetaMask. Right now, these digital wallet services are not focusing on their systems' security features.
January 6, 2022
One of the largest Vietnamese crypto trading platforms, ONUS, recently suffered a cyber attack on its payment system running a vulnerable Log4j version.
December 30, 2021
The Have I Been Pwned data breach notification service now lets you check if your email and password are one of 441,000 accounts stolen in an information-stealing campaign using RedLine malware.
December 13, 2021
Researchers at the University of Darmstadt, Brescia, CNIT, and the Secure Mobile Networking Lab, have published a paper that proves it's possible to extract passwords and manipulate traffic on a WiFi chip by targeting a device's Bluetooth component. - According to BleepingComputer
December 8, 2021
Google said Tuesday it has moved to shut down a network of about one million hijacked electronic devices used worldwide to commit online crimes, while also suing Russia-based hackers the tech giant claimed were responsible.
quotesArtboard 1 copy 2

Introspecting on 30 years of resumed diplomatic relations, on May 14, Vietnamese Prime Minister Phạm Minh Chính visited Harvard Kennedy School to discuss the U.S.-Vietnam relationship and the country’s evolving economic outlook. Prime Minister Chính, invited to campus by the Vietnam Program at the Kennedy School’s Ash Center for Democratic Governance and Innovation, emphasized Hanoi’s continued efforts to attract foreign investment and deepen its international trade ties and foreign partnerships. He also underscores the importance of collaborating with US cybersecurity companies in the cyber range.   

quotesArtboard 1 copy 2

The Great Bank Robbery: the Carbanak APT


The Carbanak group was first seen operating in 2013. By 2015, the group managed to breach more than 100 banks in 40 countries around the world and stole more than $1 billion, according to a Kaspersky investigation.   

Source: Kaspersky & Joint Cybercrime Action Task Force (JCAT)

BLOG

May 23, 2024
The Norwegian National Cyber Security Centre (NCSC) recommends replacing SSLVPN/WebVPN solutions with alternatives due to the repeated exploitation of related vulnerabilities in edge network devices to breach corporate networks.
May 20, 2024
On May 13, Apple and Google jointly announced a new privacy feature that warns Android and iOS users when an unknown Bluetooth tracking device travels with them.
May 13, 2024
Finland's Transport and Communications Agency (Traficom) is warning about an ongoing Android malware campaign attempting to breach online bank accounts.
May 4, 2024
Microsoft has released hotfix updates to address multiple known issues impacting Exchange servers after installing the March 2024 security updates.
April 27, 2024
​Microsoft warns that the Russian APT28 threat group exploits a Windows Print Spooler vulnerability to escalate privileges and steal credentials and data using a previously unknown hacking tool called GooseEgg.
April 26, 2024
The Forminator WordPress plugin used in over 500,000 sites is vulnerable to a flaw that allows malicious actors to perform unrestricted file uploads to the server.
Xem thêm

ABOUT US

June 22, 2022
Recognized Amongst 100 of the Industry's Best State-of-the-Art Risk Assessment Platforms
By Vivian Ngọc Nguyễn February 24, 2021
John&Partners, LLC. Cybersecurity partners with Netskope to deliver Security and Data Protection beyond the corporate perimeter Ho Chi Minh, Vietnam – February 24, 2021
By Vivian Ngọc Nguyễn October 14, 2020
John&Partners strengthened the Strategic Protect4S Partnership in Vietnam, with its cybersecurity consulting services and Protect4S’s world-class continuous automated SAP cybersecurity next-gen technology services.
Show More
Share by: