BSides Atlanta 2018 with sponsorship from Critical Path Security!

CPS is proud to announce our sponsorship of BSidesATL 2018! The great folks at the Kennesaw State University Department of Information Systems, Yvette Johnson and Andy Green, has taken upon themselves to revive BSides, and we cannot thank them enough! This great tradition of the information security community was sorely missed last year by those of us that wish to push the conversations beyond the traditional. BSides is where people can present ideas and ask questions in an environment that encourages questioning the status quo. It is an intense event with discussions, demos, and interaction from participants. It is where conversations for the next-big-thing are happening. This year’s theme is “Standing on the Shoulders of Giants”, and it’s a going to spawn a ton of great talks. In today’s world of new hardware and software being released into the wild at a rapid pace from an ever increasing pool of…

0 Comments

Critical Path Security’s CTO, Patrick Kelley, interviewed by 11Alive News.

Kaitlyn Ross, Reporter for 11 Alive, caught up with Patrick Kelley, Chief Technology Officer of Critical Path Security, on Tuesday to discuss the most recent ransomware attack on the City of Atlanta. "Just because a ransom wasn't paid, doesn't mean that the means of doing it has gone away. We will continue to see this evolution of attacks and then how to battle those attacks," Patrick Kelley, Chief Technology Officer with Critical Path Security said. "Once ransomware lands on a machine, if you don't have the key to decrypt those files, they're effectively gone," Kelley said. "The math and the effort required computationally to break that crypto is just not available. So they would wipe those environments entirely and go from there." Patrick Kelley expands on conversation above with the following statement. The primary message is you have to respect the problem you are trying to solve. It isn't as…

0 Comments

Hacked: City of Atlanta

Last evening, it was announced that the City of Atlanta has been hacked and the threat actors have encrypted some city data. According to a report from Atlanta NBC affiliate WXIA, a city employee sent the station a screenshot of a ransomware message demanding a payment of $51,000 to provide all the keys for affected systems. Employees are also receiving emails from the city's information technology department instructing them to unplug their computers if they noticed anything suspicious. Based on the early information, it seems that malware, called "Samsam" by Talos, was leveraged in the attack. Once the malware had a foothold on a server, it spreads to Windows machines on the same network. It also seems to be affecting payroll systems, as well. However, Atlanta officials have informed employees that they can fill out paper timesheets. A very short time ago, Critical Path Security worked with a government agency…

Comments Off on Hacked: City of Atlanta

The “Ryzenfall” of AMD

Security research firm CTS has disclosed four critical flaws in AMD’s latest CPU models based on the ZEN architecture: Ryzen and EPYC. Ironically enough the Secure Processor located on the main CPU is the source of the vulnerability. While the firm’s motivation is under some scrutiny due to poor reporting practices, the vulnerabilities appear to be real enough with some terrifying implications. Usually, a compromised machine can be cleaned of the infection and defended again with the appropriate patches or software upgrades. Not anymore. Three of the flaws, dubbed Ryzenfall, Fallout, and Masterkey, allow an attacker to plant malware in a “secure enclave” thereby skipping all detection and other security controls such as Microsoft’s Credential Guard, Virtualization based Security, and AMD’s own firmware Trusted Platform Module (fTPM), or they can just brick your motherboard. The flaws use the fact that the BIOS validation program can be tricked into believing a…

0 Comments