Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec

Defensive Security Podcast Episode 294

Jan 26, 2025
The discussion kicks off with a hidden backdoor in Juniper routers that raises serious network security alarms. PayPal’s recent data breach highlights the urgent need for better data protection strategies. The conversation then dives into older Ivanti vulnerabilities still being exploited, emphasizing timely patching. The massive PowerSchool data breach reveals the severe consequences of poor credential protection. Lastly, CISA's new software security guidelines aim to enhance protection across critical infrastructure, showcasing the ongoing battle against cyber threats.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
ADVICE

Detection Recommendations

  • Use specialized hunt guides for BPF-based malware detection on perimeter devices.
  • Review network logs and check for common persistence mechanisms.
ADVICE

Basic Security Measures

  • Implement multi-factor authentication and monitor brute force login attempts.
  • PayPal's settlement highlights the need for these basic security measures.
INSIGHT

Shifting Responsibility

  • Service providers can no longer blame customers for security breaches caused by inadequate protection.
  • The responsibility is shifting towards the service providers.
Get the Snipd Podcast app to discover more snips from this episode
Get the app