Skip to main content

Questions tagged [apt]

APT Stands for "Advanced Persistent Threat". It is usually used in reference to a threat posed by a group with the capability and intent to persistently and effectively carry out cyber attacks against specific entities. APT has been used to refer to either the perpetrators, or the actual hack itself (typically when there is no attribution).

8 votes
3 answers
3k views

I was researching on Threat Intelligence and came across the Pyramid of Pain. The pyramid places Tactics, Techniques, and Procedures (TTPs) at the top, indicating that having defense mechanisms ...
Sreeraj's user avatar
  • 1,447
2 votes
0 answers
118 views

Current Threat Intelligence leads me to believe, that Senior Management of my company could be targeted by Threat Actors like APT28. Threats I am concerned about are - listed by priority: Information ...
throw_it_away's user avatar
1 vote
1 answer
4k views

What is the difference between a Remote Access Trojan and a hidden Virtual Network Computing? It seems that both software allows a hacker to access a victim's computer and to spy on activity.
HardCoder_9's user avatar
5 votes
3 answers
4k views

I was looking at the installation instructions for VS Code today and found this step curious: sudo apt install apt-transport-https I see that there appears to be https transport available for apt: $ ...
S. Imp's user avatar
  • 226
4 votes
1 answer
584 views

Does the built-in apt package manager in Debian-based systems require successful cryptographic authentication and integrity validation for all packages? My understanding was that software downloaded ...
Michael Altfield's user avatar
1 vote
2 answers
227 views

Consider the case where a user with a freshly installed Linux box is operating in a hostile environment controlled by an attacker with access to the internet gateway. How can such a user update the ...
user942937's user avatar
0 votes
0 answers
518 views

apt InRelease files update like twice every day, in ubuntu repositories and their mirrors. similarly in ubuntu and debian based distros, and other apt repositories. these files are small text files ...
qdinar's user avatar
  • 99
3 votes
2 answers
272 views

I work in infosec and as such, have read many whitepapers and been to many conference talks. I hear all the time, especially in conversation and literature about malware, the term "nation state" used ...
the_endian's user avatar
  • 1,362
2 votes
1 answer
134 views

I've been trying to encourage some people I know to install and use the COVIDsafe app. Some people have raised privacy concerns as a reason to not install the app (there's other concerns, such as it ...
Andrew Grimm's user avatar
  • 2,122
9 votes
1 answer
1k views

I have an Ansible script that setup google chrome apt repo. I keep Google's signing key together with the scripts (rather than download it every time) because I think it minimizes the chance of ...
Jan Warchoł's user avatar
2 votes
1 answer
1k views

Ubuntu (focal 20.04) Using Google webdesigner apt repository in /etc/apt/sources.list.d/google-webdesigner.list: deb [arch=amd64] https://dl.google.com/linux/webdesigner/deb/ stable main leads to: #...
jean-christophe manciot's user avatar
1 vote
0 answers
189 views

In this whitepaper, they use a HTTP server history (see screenshot) as the basis for the codename of an identified attack, "Operation Wocao". https://www.fox-it.com/en/news/whitepapers/operation-wocao-...
Cireo's user avatar
  • 111
0 votes
3 answers
1k views

I was looking for conditions/circumstances under which Dllhost.exe can spawn a child process. I examined a huge quantity of event logs from various Windows system and didn't come across any event in ...
pinpwn's user avatar
  • 1
2 votes
3 answers
1k views

I created an Ubuntu server on Digital Ocean to deploy my app on. Less then 24 hours later, I log in to the server and see this: 18 packages can be updated. 7 updates are security updates. I install ...
George's user avatar
  • 131
0 votes
3 answers
368 views

I used sudo apt-get update sudo apt-get upgrade before I read https://www.debian.org/security/2019/dsa-4371 There was I change that my PC got exploited/hacked/virused. So I used chkrootkit and ...
user197878's user avatar

15 30 50 per page