CyberWire Daily

Iran's covert cyber operations exposed.

4 snips
Apr 24, 2024
Iranian hackers indicted by the DOJ, TikTok legislation, Russian hack on water treatment plant, dark web data leaks. Mandiant monitors dwell times, North Korean hackers target defense secrets. CISSP certification journey discussion, pain points for CISOs & CIOs. Ransomware impacts Sweden’s liquor stores.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
ANECDOTE

Russian Hackers Claim Tipton Water Attack But Impact Is Limited

  • The Cyber Army of Russia claimed an attack on Tipton Wastewater Treatment Plant but local officials reported minimal disruption while investigations continue.
  • Mandiant links the group to Sandworm and notes their history of targeting US infrastructure.
INSIGHT

Median Attacker Dwell Time Drops To Ten Days

  • Mandiant's 2024 report shows median attacker dwell time fell to 10 days in 2023 (from 16 in 2022), aided by more ransomware incidents and improved detection.
  • Regionally APAC saw the biggest decrease while EMEA slightly increased; zero-days are rising as evasion tactics.
INSIGHT

Bcrypt Holds But Short Or Predictable Passwords Are Vulnerable

  • New GPU cracking tests against bcrypt show sub-7-character passwords crack within hours on an RTX 4090, while strong 8+ character mixed passwords resist for months or years.
  • Hive Systems warns non-random predictable passwords remain vulnerable despite bcrypt's robustness.
Get the Snipd Podcast app to discover more snips from this episode
Get the app