Risky Business

Risky Business #770 -- A Russian IR guy discovers extremely cool spookware

5 snips
Nov 13, 2024
Chris Tarbell, a former FBI agent famed for his role in the Silk Road case, shares dramatic insights into combating cybercrime. He discusses the complexities of Ross Ulbricht’s story and the potential implications of a changing political landscape. Feross Aboukhadijeh, founder of Socket.dev, argues for a centralized tracking system for supply chain attacks, highlighting vulnerabilities in software ecosystems. The conversation delves into Apple’s new security feature limiting law enforcement access and the ongoing evolution of cybersecurity challenges in today’s digital landscape.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
ANECDOTE

GoblinRat Malware

  • GoblinRat, sophisticated Linux malware, was discovered in Russian critical infrastructure.
  • Adam Boileau believes it's likely Western intelligence due to its advanced features.
INSIGHT

Microsoft Bookings Bug

  • Microsoft Bookings bug allows low-privileged users to create free, unbilled mailboxes.
  • This enables impersonation, domain control auth bypass, and account reactivation.
INSIGHT

AD Certificate Services Bug

  • A TrustedSec researcher found a bug in Active Directory Certificate Services.
  • This allows privilege escalation by manipulating certificate issuance.
Get the Snipd Podcast app to discover more snips from this episode
Get the app