
Risky Business Risky Business #770 -- A Russian IR guy discovers extremely cool spookware
5 snips
Nov 13, 2024 Chris Tarbell, a former FBI agent famed for his role in the Silk Road case, shares dramatic insights into combating cybercrime. He discusses the complexities of Ross Ulbricht’s story and the potential implications of a changing political landscape. Feross Aboukhadijeh, founder of Socket.dev, argues for a centralized tracking system for supply chain attacks, highlighting vulnerabilities in software ecosystems. The conversation delves into Apple’s new security feature limiting law enforcement access and the ongoing evolution of cybersecurity challenges in today’s digital landscape.
AI Snips
Chapters
Transcript
Episode notes
GoblinRat Malware
- GoblinRat, sophisticated Linux malware, was discovered in Russian critical infrastructure.
- Adam Boileau believes it's likely Western intelligence due to its advanced features.
Microsoft Bookings Bug
- Microsoft Bookings bug allows low-privileged users to create free, unbilled mailboxes.
- This enables impersonation, domain control auth bypass, and account reactivation.
AD Certificate Services Bug
- A TrustedSec researcher found a bug in Active Directory Certificate Services.
- This allows privilege escalation by manipulating certificate issuance.
