Security News Analyzed

Updated page 9/12/2019

Security news must be kept up, here is a list of top websites, blogs, ezines, and more.  Interaction and review is critical to learn more about security.

What else is most important in Security information? What are the attackers doing (China and Russia – add others here) , and what are the monoliths doing (like Google and Microsoft – add any others here)

So adding China and Russia as threat actors and what are google/Microsoft doing to keep up in cybersecurity changes things.

  1. Cybersecurity value (subjective (my prerogative) (first value)
  2. Industrylinks (‘Cybersecurity’ keyword) ( second value)
  3. Attacker information (China, Russia, and others) (third value)
  4. Google importance information site discusses relevant Google news)  (fourth value)
  5. Recent updates frequency   (fifth value)
  6. video/audio(podcasts) relevance my subjective value – I am giving Irongeek.com a 10 and going down from there, but these are initial values, Changed these values in June 1, 2018

I keep the list and its numbers in a spreadsheet so I can make changes when necessary.

Top informational sites 1-10

1. Fire Eye Blog  – A blog from the company that found the initial China  attack angle.
 2. Threatpost  has many good posts. 

 3.  TechNewsWorld has a decent number of good articles http://www.technewsworld.com/perl/section/cyber-security/  

4.   Internet Storm Center SANS: an Industry leader in Security certification and training – the place to go to work on technical skillsets within Cybersecurity and this is their daily log of current events.

5.  Dark readingis an InformationWeek Security blog with good Security topics 

6. ZDNet Zero Day blog by ZDNet – new info about hacker some value

7. defenseone.com a news site of global security topics.

8. SCMagazine – Security magazine consistently has good Security articles and has been honored with national honors from ASBPE http://www.scmagazine.com/sc-wins-three-top-national-honors-from-asbpe/article/511656/

9.   Reddit section “netsec” https://www.reddit.com/r/netsec/  has very good posts frequently – Lots of new good posts. I switched the link to the “old” reddit look, as one can see all the posts easier in my opinion.  

 

10. With a special interest in KrebsonSecurity  David Krebs has authored “SpamNation” is looked at for computer breach news – He was a journalist, now Darknet reviewer and more.  

11. Adding IronGeek.com  as it is the video repository for constant reviews of latest Security conferences. If you want to stay up to speed on detailed and up-to-date Cybersecurity information then you must check this out frequently.   

12.  NakedSecurity by Sophos (AV company)keeps up on malware news (antivirus etc)

13.  Homeland Security News Wire http://www.homelandsecuritynewswire.com/topics/cybersecurity  Has many relevant cybersecurity news stories.  %5-7-6-8-0=26%  Some value, but high Google ranking, high updates, no video

14.  Bruce Schneier, a security expert writing about cyber security since 1998 – excellent theorist and book writer.

15.  The Register a classic IT news site   has some interesting angles. 

16. http://www.infosecurity-magazine.com/  Decent news topics general in nature.  And don’t forget Infosec magazine’s Blogs: http://www.infosecurity-magazine.com/blogs/  

17.  Cisco’s Talos Blog   Excellent threat research and more

18.  Stay safe online, A national Cybersecurity Alliance effort to help people improve Cyber Security

19.  Rand Corp Blog is where the Cybersecurity researcher Martin Libicki writes – Rand Corp is a prestigious science research institution among other items.

20. Securelist Blog  (A Kaspersky Lab endeavor)  and their Twitter feed seems to be in Germany.

21.  SucuriBlog   http://blog.sucuri.net/ WordPress developer Blog about security, Has other topics , we use this plugin has excellent WordPress insights

22. https://security.googleblog.com/ Blog about Google’s efforts in Security

23. ISACA Now Blog http://www.isaca.org/Knowledge-Center/Blog/default.aspx  which is the Information Systems Auditing and Control Association Blog

24. SANS Digital Forensics Blog is a good forensics blog with some new posts

25 Malwarebytes Unpacked the https://blog.malwarebytes.org/ Blog of malwarebytes (excellent AV app).

26. Rapid7 has a Security Blog well researched posts: https://blog.rapid7.com/

27.   TrendMicro Security Intelligence Blog is kept up and has good topics

28. White Hat Security Blog https://www.whitehatsec.com/blog/  White Hat security is a company that consults on application security – I have seen some of their researchers. 

29.  Bitdefender LABS has  some good posts (including new Ransomware tool https://labs.bitdefender.com/

30.  Securosis a blog with good content (sometimes does not post frequently)

Adding new blogs to review periodically:

http://www.freeforensics.org/ A blog started in March 2016 – about forensics and other topics (ransomware details)

moving IBM Security  out of top 30 X-Force website and the blog page X-Force bloggers  is good, but updated infrequently & pro IBM of course.

Also moved BugSEC as it is not updted often but is blog decent review of Cyber threats – from a security company in Israel

Could use this link in future…

https://bugs.chromium.org/p/project-zero/issues/list

 

MUST SEE LINKS:
US-CERT: United States Computer Emergency Response team  https://www.us-cert.gov

HIPAA: http://www.hhs.gov/ocr/privacy/hipaa/understanding/srsummary.html   PCI: https://www.pcisecuritystandards.org/

New addition(12/3/15): Amazon Web Services Bulletins(AWS) https://aws.amazon.com/security/security-bulletins/ 
removing Twitter and other stuff 01/19/16  keeping the repositories of interesting Cyber items.
NIST Publications  are important as they get referenced by a lot of compliance standards http://csrc.nist.gov/publications/PubsSPs.html 800-115 is the one for pentesting  :
Technical Guide to Information Security Testing and Assessment SP 800-115
Phrack.org   Papers on exploiting operating systems and other items like Stack-based buffer and memory overflow.  (does not get updated often)
 footnotes:
  1.  http://www.sorting-algorithms.com/

https://fixvirus.com/contact-us/ to test your cybersecurity