Open source SIEM with Wazuh and elastic stack

“Wazuh is a free, open source and enterprise-ready security monitoring solution for threat detection, integrity monitoring, incident response and compliance” which when integrated with elastic stack enhances visualization and reporting. If you are looking for open source Siem solution and struggling with installation, feel free to use the guide  Wazuh with elastic stack Guide.  This guide has been prepared following official Wazuh installation documentation....

Coronavirus Scams and Malware

The threat actors are weaponizing the tremendous urge for coronavirus related  information people have, as it spreads across the globe to drop malware through various channels including Phishing email , Malicious websites and social engineering.  Therefore, BtCIRT urges everyone to Think before you click on any links received via email, instant messaging apps or shared via other social media platforms. For any updates,  please visit trusted sources of information: WHO  for global statistics and advisories and  Ministry of Health for any information related to Bhutan.  ...

Mailvelope Manual

Mailvelope is a browser add-on or a plugin that extends its   capability in encrypting email contents and is based on OpenPGP cryptography standards. To be able to send, receive or digitally sign emails securely using OpenPGP based services like Mailvelope, users first have to create public, private key pair and share the public key. For detailed manual please visit: Mailvelope manual...

GandCrab Ransomware

BtCIRT has been recently reported of few instance of system files being encrypted by a ransomware family called GandCrab, therefore we urge all users to be alerted and take precaution. 1. Description: GandCrab is a Ransomware   that encrypts almost all file types on affected system with a ransom message displayed insisting to make payment using crypto currency to decrypt the data. 2.  Distribution mechanism:   Email attachment , cracked softwares, websites, fake software updaters, trojans, exploit kits  and untrustworthy software download sites are some of the means used to infect and then exploit vulnerabilities in installed, outdated softwares of...

BtCIRT Annual Report 2018

The report captures all essential activities undertaken by BtCIRT in the year 2018. The overall mission of BtCIRT is to enhance cyber security in Bhutan by enabling cybersecurity information coordination and establishing computer security incident handling capabilities within the country. Please click here to read the Report....