dokumendiregister.ee
OtsingAsutusedMCP
Otsing›Majandus- ja Kommunikatsiooniministeerium
Sissetulev kiriAvalik

Kiri

Majandus- ja Kommunikatsiooniministeerium · 6. november 2024
Viit
9-2/2806-1
Registreeritud
6. november 2024
Dokumendi liik
Sissetulev kiri
Adressaat
Dreamlab Technologgies AG
Saabumis/saatmisviis
tavapost
Funktsioon
9 Digiarengu korraldamine
Sari
9-2 Küberturvalisuse kavandamise ning korraldamise kirjavahetus
Toimik
9-2/2024
Vastutaja
Taavi Viilukas (Majandus- ja Kommunikatsiooniministeerium, Kantsleri valdkond, Digiarengu valdkond, Riikliku küberturvalisuse osakond)

Failid

  • 📎9-2-2806-1 06.11.2024 Kiri.pdf426 KB

Sisu (failidest)

DREAMLAB TECHNOLOGIES Majandus- ja Kommunikatsiooniministeerium Suur-Ameerika 1 10122 Tallinn Estonia Bern/Switzerland, October 2024 Cyber sovereignty - measure and monitor your nation’s cyberspaces Dear Minister of Economic Affairs and Infomation Technology Tiit Riisalo Dreamlab TechnoIogies is a Swiss cybersecurity innovation pioneer which partners with the UNs ITU (International Telecommunication Union) for its Cyber for Good initiative and the 2024 Giobal Cybersecurity Index (GCI) report by - utilising the CyObs platform. CyObs is the Swiss made software solution (www.cyobs.com) that has the ability to scan an entire’s nation cyberspace and create a fuil repository of the public attack surface. With this, CyObs provides unparafleled visibflity on ali cyber assets’ attack surfaces and supply chain dependencies. Key features include: O Analyse: Complete a high-precision, high-speed analysis of the nations digital infrastructure. O Identify: Provide fuil visibility of vulnerabilities and anomalies. O Protect: Reduce your nation’s public attack surface to improve the overali security. O Monitor: Stay ahead with automated alerts and notifications regarding potential threats. We aiready sent you a copy of your country report some weeks ago. As we believe that the protection of your cyberspace is a criticai undertaking in the digital age, we herewith attach another copy for your perusal. Please contact us for further information and a demonstration on how CyObs can help you protect your nation’s cyberspace. With kind regards, Nicolas Mayencourt Founder and Giobal CEO Dreamlab Technologies AG nickdreamIab.net MAJANDIJS- JA K0UNIKATSI0ON1M1NISTEERIUM 06. lj. 2024 Nr. Dreamlab Technologies AG Monbijoustrasse 36 CH-3011 Berne T + 41 31 398 66 66 F + 41 31 398 66 69 [email protected] http://dreamlab.net/ (?C’(OBS SEE T’E CY8E Cyber Attack Surface & Risk Profile: Estonia Scientific, non-intrusive scan as of July 2024 based on allocated IPv4 addresses and identified domains National Cyberspace Metrics Decoding Estonia’s InvisbIe Cyberspace Risk Vectors by Regions Overali Assets Monitored and Level of Threat Actlve IPv4 O O • 1.506.931 348,780 Total i?T1 Li1)! + 35,705 (11.4%) “ 1 ; Open Ports 998 447,220 Unique SOotty nk. ovmi.W ., + 370,890 (485.9%) .-‘ Actlve Domoins 301.928 202,658 + 18,183 (9.9%) ‘.‘ Total e Vuinerabillties 678.259 678,259 + 441,418 (186.4%) ‘-‘ Potential Geo-Dependencies of Top-Level Dom ains Hosting Top Domciins TLDs h. Hong Kong Netherlands United States of America Germany Estonia O ee 162,270 O Others 42,284 O com 40,820 ru 25,396 O eu 23,308 fi 7,458 In this example, the majority 01 the .ee domains (dark green) are hosted (blue pie) in the country, but we see a poHjan of them hosted in Germany, Netherlands, Hong Kong and the USA. Further information: wvw.cyobs.com © DreamlabTechnologies AG, Bern/Sw[tzerland % DREAMLAB TECHNOLOGIE5 [1] ____________ (?CYOBS \‘ SEETHECVBE Cyber Attack Surface & Risk Profile: Estonia Scientific, non-intrusive scan as of July 2024 based on allocated IPv4 addresses and identified domains National Attack Surface Metrics Attack Surface Risks (Overali) 678.259 Total 1.966 Unique Vuinerabilities 27.388 Host 37.055 Applications List of Vuinerabilities by Criticality and CVEs Top Vulrierabilfties Critical 131,819 Critical HigP •7 Med Low Quantity High 243,217 CVE-2023-48795 14893 — CVE 2023-51385 -.,,, — — 14655 Medium 274,459 3) CVE-2023-38408 crItIo 14379 CVE—2021-36368 Low 11,274 Low 28,764 CVE-2G16-20012 11,208 Vulnerable Assets found in the Country’s Cyberspace 6,400 11,841 Email Servers Web Servers 931 Databases Further information: www.cyobs.com DREAM LAB [2] © DreamlabTechnologiesAG, Bern/Swttzerland — CYOBS Cyber Attack Surface & Risk Profile: Estonia Scientific, non-intrusive scan as of juy 2024 based on allocated IPv4 addresses and identified domains Nation’s Cyberspace Geopolitical Dependency Domains: 301.928 Geolocatlon 0 D.,n,, Uwn.S.vsa Mol Exchong, . O.e. . 2OZS8 SoMog 0 ,oOjo. 202 658 30L295 “ 000nfiguro.j Giobal spread ot dornain hosting giobally. Geolocation 000100 0 NflS.flfl 1200 £200.009. . OO :. V 800.00,2009 14.938 . 1, Uro0’od,00.1 16,348 310.91 OOj Nornbopooloo,40NS Giobal spread ot DNS server hosting giobally. Geolocation 0on 9000 809*1 0 U08&dOoflgO [120. £0010009O I3o3 71,155 200,484 0,0120 Giobal spread ot mail server hosting giobally. The more services, such ao domains, DNS, and mail servers, are hosted outside the jurisdiction ota nation-state, the greater the dependence becomes. This also Ieads to an increased Iikelihood ot eavesdropping, cyber espionage, and Ioss ot control over the service and associated data. Further information: wv0.w.cyobs.com © DreamlabTechnologiesAG, Bern/Switzerland v DREAMLAB TECHNOLOGIES [31 CYOSS SE rE CYBEP Cyber Attack Surface & Risk Profile: Estonia Scientific, non-intrusive scan as of July 2024 based on allocated tPv4 addresses and identified domains National Trust & SSL Analytics Certificcites 24.421 Issuers 4.733 Services with certifications 42.150 SeIf-signed certificates 24.637 Expired certificates 12.410 1, — 1 ,,•pP, ,*‘ \ \ 1 Ä O Issuers O Subjects 4 Top Organizotions Issuers Subjects Quantity Lets Encrypt 5,061 Componynomo 3,535 (3 FASTVPS 2,386 4 Sectigo [imited 842 DrgiCert mc 433 Further information: www.cyobs.com DREAMLAB [4] © DreamlabTechnologies AG, Bern/Switzerland TECUNOLOGIES Cyber Attack Surface & Risk Profile: Estonia Scientific, non-intrusive scan as of July 2024 based on allocated IPv4 addresses and identified domains Software & OS Landscape Detected at National Level Unique software 1.357 Unique OS 72 Host exposing software 31.124 Host exposing OS information 23.346 Top Software Quantity OpenSSH 14,801 2 Apache httpd 13,209 3 Nginx 10,935 Dovecot 7,342 6 Exim 6,290 Statistics and Detailed Views on Services Exposed Directly on the Internet Email Servers Web Servers 51,918 Seretces rotal 7,880 StMP III 51,180 14,233 Total S,vIce0 ss,w, 7,230 ÅRP 7,629 10.190 IMAPS totol Se,vero 7,007 O Do,000t O E,dn, O Uflkeows 0 Othors POP3 O Mioosoff Exdoo9o So,’,o, O Sendmet epoobehL. Ng.,,o ,sflt0Oo,n OthO,s Me,OsOft.,.. Ligtstlpd Aped,oI. CysM0P 7,201 P0035 Databases Remote Administration lnterfaces (RAI) Services Servlces 3,478 7,949 SQL Dotoboses FTP 0 16,543 N0SQI SSH Dotaboses 159 TEINET O tJrtknown O MySQL O MariaDl O M0SQL O OpenSSH 0 Unkflowfl O PrOFTPD Ooropbear Oothers OVsFTPD ORosssh Further information: www.cyobs.com © DreamlabTechnologiesAG, Bern/Switzerlartd % DREAMLAB TECHNOL.OGIES [5] cYo3s SE tE Cyber Attack Surface & Risk Profile: Estonia Scientific, non-intrusive scan as of July 2024 based on allocated IPv4 addresses and identified domains Spotlight Risk - Dynamic Queries showing Vulnerable System from Specific CVE EXPLORE RESUI.TS J vulnerability.cve = CVE-2023--38408 x Showing 1 to 10 of 14379 results. CVE-2023-38408 A vuinerability was found in - Top Locations OpenSSH (before 9.3p2 version). The PKCS#11 feature in the ssh-agent in OpenSSH has an insufficiently Name Quantlty trustworthy search path, Ieading to remote code Harjumaa 6895 execution if an agent is forwarded to an attacker controlled system (the code in /usr/Ib is not Ida-Virumaa 6855 necessarily safe for Ioading into ssh-agent). This flaw Tartumaa 441 allows an attacker with control of the forwarded agent-socket on the server and the ability to write to Parnumaa 50 the fitesystem ot the client host to execute arbitrary Laanemaa 18 code with the privileges ot the user running the ssh agent. We found 14.379 vulnerable assets (CVE-2023-38408) July 6, 2023: The initial advisory draft and patch were in the cyberspace ot Estonia. submitted to OpenSSH. July 19, 2023: A coordinated disclosure and patch release were executed. CYOBS IF YOU CAN’T SEE IT,YOU CAN’T MANAGE F[. SEE THE CVBE0 STEP OUT OF THE DARK. CyObs is a high-precison cyber radar system that ofters a complete view of your country’s cyberspace, combining threat detection, risk management and insights needed to eliminate threats and reduce your attack surlace. Further information: www.cyobs.com © Dreamlab Technologies AG, Bern/Switzerland % DREAMLAB TECHNOLOGIES [6]
Allikas: Majandus- ja Kommunikatsiooniministeerium dokumendiregister →
dokumendiregister.eeAsutusedEesti avalike dokumendiregistrite otsing · nimistu.ee andmetel