<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Network security &#8211; Noise</title>
	<atom:link href="https://noise.getoto.net/tag/network-security/feed/" rel="self" type="application/rss+xml" />
	<link>https://noise.getoto.net</link>
	<description>The collective thoughts of the interwebz</description>
	<lastBuildDate>Mon, 20 Oct 2025 16:58:59 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.8.2</generator>
	<item>
		<title>Serious F5 Breach</title>
		<link>https://noise.getoto.net/2025/10/23/serious-f5-breach/</link>
		
		<dc:creator><![CDATA[Bruce Schneier]]></dc:creator>
		<pubDate>Thu, 23 Oct 2025 11:04:48 +0000</pubDate>
				<category><![CDATA[breaches]]></category>
		<category><![CDATA[disclosure]]></category>
		<category><![CDATA[Network security]]></category>
		<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[vulnerabilities]]></category>
		<guid isPermaLink="false">https://www.schneier.com/?p=71041</guid>

					<description><![CDATA[<p><a href="https://arstechnica.com/security/2025/10/breach-of-f5-requires-emergency-action-from-big-ip-users-feds-warn/">This</a> is bad:</p>
<blockquote><p>F5, a Seattle-based maker of networking software, <a href="https://my.f5.com/manage/s/article/K000154696">disclosed the breach</a> on Wednesday. F5 said a “sophisticated” threat group working for an undisclosed nation-state government had surreptitiously and persistently dwelled in its network over a “long-term.” Security researchers who have responded to similar intrusions in the past took the language to mean the hackers were inside the F5 network <a href="https://cyberplace.social/@GossiTheDog/115378445416288653">for years</a>.</p>
<p>During that time, F5 said, the hackers took control of the network segment the company uses to create and distribute updates for BIG IP, a line of server appliances that F5 ...</p></blockquote>]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Poor Password Choices</title>
		<link>https://noise.getoto.net/2025/08/25/poor-password-choices/</link>
		
		<dc:creator><![CDATA[Bruce Schneier]]></dc:creator>
		<pubDate>Mon, 25 Aug 2025 11:03:18 +0000</pubDate>
				<category><![CDATA[Network security]]></category>
		<category><![CDATA[passwords]]></category>
		<category><![CDATA[Uncategorized]]></category>
		<guid isPermaLink="false">https://www.schneier.com/?p=70629</guid>

					<description><![CDATA[Look at this: McDonald&#8217;s chose the password &#8220;123456&#8221; for a major corporate system.
]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Enhancing telecom security with AWS</title>
		<link>https://noise.getoto.net/2025/02/07/enhancing-telecom-security-with-aws/</link>
		
		<dc:creator><![CDATA[Kal Krishnan]]></dc:creator>
		<pubDate>Fri, 07 Feb 2025 18:04:34 +0000</pubDate>
				<category><![CDATA[Best practices]]></category>
		<category><![CDATA[cloud security]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[Network security]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Telecom]]></category>
		<category><![CDATA[Thought Leadership]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=90fc13b1611d8dc9122d24ef30409400</guid>

					<description><![CDATA[If you’d like to skip directly to the detailed mapping between the CISA guidance and AWS security controls and best practices, visit our Github page.  Implementing CISA’s enhanced visibility and hardening guidance for communications infrastructure In response to recent cybersecurity incidents attributed to actors from the People’s Republic of China, a number of cybersecurity agencies […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Establishing a data perimeter on AWS: Analyze your account activity to evaluate impact and refine controls</title>
		<link>https://noise.getoto.net/2024/05/29/establishing-a-data-perimeter-on-aws-analyze-your-account-activity-to-evaluate-impact-and-refine-controls/</link>
		
		<dc:creator><![CDATA[Achraf Moussadek-Kabdani]]></dc:creator>
		<pubDate>Wed, 29 May 2024 20:19:27 +0000</pubDate>
				<category><![CDATA[Advanced (300)]]></category>
		<category><![CDATA[Data protection]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[Network security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[service control policies]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=1a818414ddb7b9b0c4de45e932f5ec79</guid>

					<description><![CDATA[A data perimeter on Amazon Web Services (AWS) is a set of preventive controls you can use to help establish a boundary around your data in AWS Organizations. This boundary helps ensure that your data can be accessed only by trusted identities from within networks you expect and that the data cannot be transferred outside […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Establishing a data perimeter on AWS: Allow access to company data only from expected networks</title>
		<link>https://noise.getoto.net/2023/09/05/establishing-a-data-perimeter-on-aws-allow-access-to-company-data-only-from-expected-networks/</link>
		
		<dc:creator><![CDATA[Laura Reith]]></dc:creator>
		<pubDate>Tue, 05 Sep 2023 13:34:00 +0000</pubDate>
				<category><![CDATA[Best practices]]></category>
		<category><![CDATA[Data protection]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[Network security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[service control policies]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=7082a2a7696ede9a68adbb7047106355</guid>

					<description><![CDATA[A key part of protecting your organization’s non-public, sensitive data is to understand who can access it and from where. One of the common requirements is to restrict access to authorized users from known locations. To accomplish this, you should be familiar with the expected network access patterns and establish organization-wide guardrails to limit access […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Gain insights and knowledge at AWS re:Inforce 2023</title>
		<link>https://noise.getoto.net/2023/03/30/gain-insights-and-knowledge-at-aws-reinforce-2023/</link>
		
		<dc:creator><![CDATA[CJ Moses]]></dc:creator>
		<pubDate>Thu, 30 Mar 2023 17:32:03 +0000</pubDate>
				<category><![CDATA[announcements]]></category>
		<category><![CDATA[AWS re:Inforce]]></category>
		<category><![CDATA[cloud security conference]]></category>
		<category><![CDATA[Compliance]]></category>
		<category><![CDATA[data privacy]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[Network security]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[threat detection]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=d477221de99ffb43efde41488192c69f</guid>

					<description><![CDATA[I’d like to personally invite you to attend the Amazon Web Services (AWS) security conference, AWS re:Inforce 2023, in Anaheim, CA on June 13–14, 2023. You’ll have access to interactive educational content to address your security, compliance, privacy, and identity management needs. Join security experts, peers, leaders, and partners from around the world who are […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Establishing a data perimeter on AWS: Allow only trusted resources from my organization</title>
		<link>https://noise.getoto.net/2023/03/09/establishing-a-data-perimeter-on-aws-allow-only-trusted-resources-from-my-organization/</link>
		
		<dc:creator><![CDATA[Laura Reith]]></dc:creator>
		<pubDate>Thu, 09 Mar 2023 16:24:35 +0000</pubDate>
				<category><![CDATA[Best practices]]></category>
		<category><![CDATA[Data protection]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[Network security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[service control policies]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=6ae19d9ee37dfa69a58bd25ea597dcd8</guid>

					<description><![CDATA[Companies that store and process data on Amazon Web Services (AWS) want to prevent transfers of that data to or from locations outside of their company’s control. This is to support security strategies, such as data loss prevention, or to comply with the terms and conditions set forth by various regulatory and privacy agreements. On […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>HardCIDR – Network CIDR and Range Discovery Tool</title>
		<link>https://noise.getoto.net/2022/12/29/hardcidr-network-cidr-and-range-discovery-tool/</link>
		
		<dc:creator><![CDATA[]]></dc:creator>
		<pubDate>Thu, 29 Dec 2022 07:36:08 +0000</pubDate>
				<category><![CDATA[Без категория]]></category>
		<category><![CDATA[Network Hacking]]></category>
		<category><![CDATA[Network security]]></category>
		<category><![CDATA[Networking Hacking Tools]]></category>
		<guid isPermaLink="false">https://www.darknet.org.uk/?p=5582</guid>

					<description><![CDATA[HardCIDR is a Linux Bash script to discover the netblocks, or ranges, (in CIDR notation) owned by the target organization during the intelligence gathering phase of a penetration test. ]]></description>
		
		
		
			</item>
		<item>
		<title>Establishing a data perimeter on AWS: Allow only trusted identities to access company data</title>
		<link>https://noise.getoto.net/2022/11/23/establishing-a-data-perimeter-on-aws-allow-only-trusted-identities-to-access-company-data/</link>
		
		<dc:creator><![CDATA[Tatyana Yatskevich]]></dc:creator>
		<pubDate>Wed, 23 Nov 2022 17:28:01 +0000</pubDate>
				<category><![CDATA[Best practices]]></category>
		<category><![CDATA[Data protection]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[Network security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[service control policies]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=b0f5f725f3fad1eafa5b3d06710dbe17</guid>

					<description><![CDATA[As described in an earlier blog post, Establishing a data perimeter on AWS, Amazon Web Services (AWS) offers a set of capabilities you can use to implement a data perimeter to help prevent unintended access. One type of unintended access that companies want to prevent is access to corporate data by users who do not […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>AWS re:Inforce 2022: Network &#038; Infrastructure Security track preview</title>
		<link>https://noise.getoto.net/2022/07/22/aws-reinforce-2022-network-infrastructure-security-track-preview/</link>
		
		<dc:creator><![CDATA[Satinder Khasriya]]></dc:creator>
		<pubDate>Fri, 22 Jul 2022 17:39:34 +0000</pubDate>
				<category><![CDATA[announcements]]></category>
		<category><![CDATA[AWS re:Inforce]]></category>
		<category><![CDATA[Foundational (100)]]></category>
		<category><![CDATA[Network and infrastructure security]]></category>
		<category><![CDATA[Network security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=2a4dc7514028b94fed290f54370881dc</guid>

					<description><![CDATA[Register now with discount code SALvWQHU2Km to get $150 off your full conference pass to AWS re:Inforce. For a limited time only and while supplies last. Today we’re going to highlight just some of the network and infrastructure security focused sessions planned for AWS re:Inforce. AWS re:Inforce 2022 will take place in-person in Boston, MA […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Establishing a data perimeter on AWS</title>
		<link>https://noise.getoto.net/2022/05/11/establishing-a-data-perimeter-on-aws/</link>
		
		<dc:creator><![CDATA[Ilya Epshteyn]]></dc:creator>
		<pubDate>Tue, 10 May 2022 21:14:07 +0000</pubDate>
				<category><![CDATA[Data protection]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[Network security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[service control policies]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=47d376e9335f00ddfaa798ddfd94e456</guid>

					<description><![CDATA[For your sensitive data on AWS, you should implement security controls, including identity and access management, infrastructure security, and data protection. Amazon Web Services (AWS) recommends that you set up multiple accounts as your workloads grow to isolate applications and data that have specific security requirements. AWS tools can help you establish a data perimeter […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>How the SolarWinds Hackers Bypassed Duo&#8217;s Multi-Factor Authentication</title>
		<link>https://noise.getoto.net/2020/12/15/how-the-solarwinds-hackers-bypassed-duos-multi-factor-authentication/</link>
		
		<dc:creator><![CDATA[Bruce Schneier]]></dc:creator>
		<pubDate>Tue, 15 Dec 2020 20:13:01 +0000</pubDate>
				<category><![CDATA[authentication]]></category>
		<category><![CDATA[breaches]]></category>
		<category><![CDATA[Network security]]></category>
		<category><![CDATA[two-factor authentication]]></category>
		<category><![CDATA[Uncategorized]]></category>
		<guid isPermaLink="false">https://www.schneier.com/?p=60605</guid>

					<description><![CDATA[<p>This is <a href="https://www.volexity.com/blog/2020/12/14/dark-halo-leverages-solarwinds-compromise-to-breach-organizations/">interesting</a>:</p>
<blockquote><p>Toward the end of the second incident that Volexity worked involving Dark Halo, the actor was observed accessing the e-mail account of a user via OWA. This was unexpected for a few reasons, not least of which was the targeted mailbox was protected by MFA. Logs from the Exchange server showed that the attacker provided username and password authentication like normal but were not challenged for a second factor through Duo. The logs from the Duo authentication server further showed that no attempts had been made to log into the account in question. Volexity was able to confirm that session hijacking was not involved and, through a memory dump of the OWA server, could also confirm that the attacker had presented cookie tied to a Duo MFA session named ...</p></blockquote>]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>FireEye Hacked</title>
		<link>https://noise.getoto.net/2020/12/09/fireeye-hacked/</link>
		
		<dc:creator><![CDATA[Bruce Schneier]]></dc:creator>
		<pubDate>Wed, 09 Dec 2020 12:36:14 +0000</pubDate>
				<category><![CDATA[breaches]]></category>
		<category><![CDATA[cyberespionage]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[Network security]]></category>
		<category><![CDATA[russia]]></category>
		<category><![CDATA[Uncategorized]]></category>
		<guid isPermaLink="false">https://www.schneier.com/?p=60553</guid>

					<description><![CDATA[<p>FireEye was <a href="https://www.fireeye.com/blog/products-and-services/2020/12/fireeye-shares-details-of-recent-cyber-attack-actions-to-protect-community.html">hacked</a> by &#8212; they believe &#8212; &#8220;a nation with top-tier offensive capabilities&#8221;:</p>
<blockquote><p>During our investigation to date, we have found that the attacker targeted and accessed certain Red Team assessment tools that we use to test our customers&#8217; security. These tools mimic the behavior of many cyber threat actors and enable FireEye to provide essential diagnostic security services to our customers. None of the tools contain zero-day exploits. Consistent with our goal to protect the community, we are proactively releasing methods and means to detect the use of our stolen Red Team tools...</p></blockquote>]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Enforce your AWS Network Firewall protections at scale with AWS Firewall Manager</title>
		<link>https://noise.getoto.net/2020/12/04/enforce-your-aws-network-firewall-protections-at-scale-with-aws-firewall-manager/</link>
		
		<dc:creator><![CDATA[Michael Wasielewski]]></dc:creator>
		<pubDate>Fri, 04 Dec 2020 17:08:39 +0000</pubDate>
				<category><![CDATA[AWS Firewall Manager]]></category>
		<category><![CDATA[Network security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=bf07b22b7b458f61bc755af87d4406b1</guid>

					<description><![CDATA[As you look to manage network security on Amazon Web Services (AWS), there are multiple tools you can use to protect your resources and keep your data safe. Amazon Virtual Private Cloud (Amazon VPC), security groups (SGs), network access control lists (network ACLs), AWS WAF, and the recently launched AWS Network Firewall all offer points [&#8230;]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/

Object Caching 41/297 objects using Memcached
Page Caching using Disk: Enhanced 
Lazy Loading (feed)
Database Caching using Memcached

Served from: noise.getoto.net @ 2025-12-06 21:55:44 by W3 Total Cache
-->