CyberWire Daily

Critical GoAnywhere bug exposed.

22 snips
Sep 25, 2025
Michele Kellerman, a cybersecurity engineer at Johns Hopkins University, dives into the privacy storm surrounding women’s health and period-tracking apps. She highlights how HIPAA protections often don’t cover these apps, leaving users vulnerable. Following the Dobbs decision, privacy concerns have intensified, as data from these apps could potentially be misused in legal contexts. Kellerman also explores ongoing legislative efforts to protect reproductive health data amidst a patchwork of state laws.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
ANECDOTE

Maryland Transit Data Theft And Service Disruption

  • Maryland Transit confirmed data theft and the Ryceta gang claims responsibility, releasing sample IDs and contracts.
  • Core transit services were unaffected, but tracking and mobility services were disrupted and partially restored via interim systems.
ADVICE

Hunt For Obscura On Domain Controllers

  • Monitor domain controllers closely for suspicious files and GPO changes to detect Obscura ransomware early.
  • Enforce endpoint detection, restrict admin privileges, and protect shadow copies to prevent recovery deletion.
INSIGHT

GenAI Expands Retail Risk Surface

  • Rapid GenAI adoption in retail is widening attack surfaces as employees upload sensitive data to unapproved models and services.
  • Attackers exploit trusted cloud platforms to host malware, leveraging their credibility to bypass defenses.
Get the Snipd Podcast app to discover more snips from this episode
Get the app