En esta sección se ofrecen contenidos de interés para los profesionales de TI que se ocupan de administrar sistemas, servicios, aplicaciones, equipos de redes, soporte técnico y de usuarios, controles de acceso y especialistas de SOC o de respuesta a incidentes de TI.

Technologies shaping the electricity grid of the future

Posted on 29/04/2021, by
INCIBE (INCIBE)
technologies shaping the electricity grid of the future
In recent years we have witnessed the evolution of the electrical grid and the development of new technologies produce what we know today as the smart grid. This evolution continues to this day and the trend seems to point to greater interconnection between end consumers and the grid, which increases possible attack vectors. Over the course of this article, we shall see the security measures that will be used in the electrical grid of the future.

DrDoS: characteristics and operation

Posted on 22/04/2021, by
INCIBE (INCIBE)
DrDoS: characteristics and operation
This article reviews the origin and development of the best-known types of denial-of-service attacks, placing special emphasis on Reflected Distributed Denial of Service attacks, analysing their main characteristics, operation, and consequences, as well as the measures necessary to mount a good defence against them.

Threat analysis studies: Mekotio, FluBot, Cring and WannaMine

Posted on 15/04/2021, by
INCIBE (INCIBE)
Threat analysis studies image
Various studies with threat analysis or malware distribution campaigns affecting Spain and identified through incident management undertaken by INCIBE-CERT. The aim is to increase knowledge of the more technical details and characteristics of the threats so that organisations can implement appropriate detection and protection measures.

Secure remote access in ICS

Posted on 04/03/2021, by
INCIBE (INCIBE)
secure remote access in ICS
With the arrival of industry 4.0 to companies’ productive processes, including IIoT and Cloud, the need to control and monitor the ICS that remotely make them up arises. However, said access points should be established securely and in a controlled manner, mainly due to the criticality of these assets. This article discusses good practices, tools and methods that can be used to establish remote connections to OT networks as securely as possible.

Dangers of drones in industrial settings

Posted on 21/01/2021, by
INCIBE (INCIBE)
dangers of drones in industrial settings
The attacks on the Saudi Aramco oil refinery have highlighted the vulnerabilities of these plants against physical attacks using drones. There’s a wide variety of physical and cyber attacks that use drones, from launching explosives, to capturing images, invasion of privacy or taking screenshots of Wi-Fi traffic, so companies should take new defense measures in order to protect their assets
Etiquetas

SweynTooth: Bluetooth in the spotlight

Posted on 17/12/2020, by
INCIBE (INCIBE)
Sweyntooth: Bluetooth in the spotlight
Wireless communications encompass a set of protocols that are widely used in some industrial sectors. In particular, building automation is based on these protocols, mainly using the BACNET and Lontalks protocols, but also making use of new ZigBee and Bluetooth based devices for IIoT. This article will provide information on SweynTooth, a set of vulnerabilities that affect Bluetooth technology.

INCIBE-CERT technical webinars

Posted on 24/09/2020, by
INCIBE (INCIBE)
INCIBE-CERT technical webinars
With the aim of increasing cybersecurity knowledge, INCIBE-CERT has published a series of webinars in video format, so that, in a light and entertaining way, knowledge and technical aspects of cybersecurity can be expanded in various areas of interest, for both INCIBE-CERT's technical audience and anyone interested in cybersecurity.