ISC StormCast for Thursday, July 17th 2014

By Johannes Ullrich #LibreSSL: Free but not Safe? #MSFT: Use less passwords! Having fund with #IOCs and IOCe.
———-
Deriving IOCs Using Mandiant’s IOCe tool
https://isc.sans.edu/forums/diary/Keeping+the+RATs+out+an+exercise+in+building+IOCs+-+Part+1/18401
Libre SSL Vulnerabilities on Linux
https://www.agwa.name/blog/post/libressls_prng_is_unsafe_on_linux
CNet Breached and User Database as well as Source Code Leaked
http://www.cnet.com/news/cnet-attacked-by-russian-hacker-group/
Microsoft Asks Us to Rethink Password Policies
http://research.microsoft.com/pubs/217510/passwordPortfolios.pdf
More Here