Recent highlights
TR-54 - Sextortion scam emails - I know your password- 2nd August 2018
Meltdown and Spectre Bugs in modern computers leak passwords and sensitive data - 3rd January 2018
TR-50 - WPA2 handshake traffic can be manipulated to induce nonce and session key reuse - 16th October 2017
TR-49 - CVE-2017-7494 - A critical vulnerability in Samba - remote code execution from a writable share - 26th May 2017
MS17-010 is critical and patches MUST BE applied. including EOL Windows. - 12th May 2017
TR-46 - Information Leaks Affecting Luxembourg and Recommendations (regularly updated) - 22nd December 2016
TR-42 - CVE-2015-7755 - CVE-2015-7756 - Critical vulnerabilities in Juniper ScreenOS - 21st December 2015
TR-41 (fr) - Crypto Ransomware - Défenses proactives et réponse sur incident - 1st December 2015
TR-41 - Crypto Ransomware - Proactive defenses and incident response - 1st December 2015
TR-38 (fr) - Attaques visant les solutions bancaires d'entreprise - Recommandations - 28th May 2015
TR-38 - Attacks targeting enterprise banking solutions - recommendations and remediations - 19th May 2015
TR-37 - VENOM / CVE-2015-3456 - Critical vulnerability in QEMU Floppy Disk Controller (FDC) emulation - 14th May 2015
TR-36 Example setup of WordPress with static export Another approach to secure your WordPress CMS - 29th April 2015
TR-33 Analysis - CTB-Locker / Critroni - 18th February 2015
A new wave of crypto ransomware targeting Luxembourg - Une nouvelle vague de ransomware cible le Luxembourg - 5th February 2015
glibc: buffer overflow in gethostbyname - 27th January 2015
NTP (Network Time Protocol) daemon - ntpd - critical vulnerabilities - 22nd December 2014
TR-27 - GNU Bash Critical Vulnerability - CVE-2014-6271 - CVE-2014-7169 - 24th September 2014
CIRCL warns about spear phishing scams targeting corporate executives and their accounting department - 14th September 2014
Latest CIRCL tweets
- "A stack-based buffer overflow could be triggered in WhatsApp by sending a specially crafted MP4 file to a WhatsApp… https://t.co/v6BddXqkXE https://twitter.com/i/web/status/1195344591840595968 2019-11-15 14:15:33
- RT @chrisred_68: So I guess @mokaddem_sami and I are the 1% representing Luxembourg here at #G33kw33k? @circl_lu @MISPProject @centrecyber_… 2019-11-15 10:02:10
- There is another active French @uni_lu themed #malspam run in #Luxembourg right now, subject 'Demande de devis' wit… https://t.co/ovvJhDFefL https://twitter.com/i/web/status/1195280657393557504 2019-11-15 10:01:30
- "A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handl… https://t.co/0FFXWQtJUq https://twitter.com/i/web/status/1194704143115587588 2019-11-13 19:50:38
- RT @LSELabs: Tool review: CIRCLean (USB stick and drives cleaner) by @rafi0t @circl_lu #usb #infosec #tools https://t.co/VXcScjcwKU https://linuxsecurity.expert/tools/circlean/ 2019-11-13 13:20:06
- "FUDForum 3.0.9 is vulnerable to Stored XSS via the User-Agent HTTP header. This may result in remote code executio… https://t.co/Zp8lK7VWfq https://twitter.com/i/web/status/1194197261179408384 2019-11-12 10:16:28
- RT @gallypette: @circl_lu @d4_project Here are the slides https://t.co/KGZQhpkzLM https://github.com/D4-project/architecture/blob/master/docs/preso/05-LID/lid.pdf 2019-11-12 09:45:15



