CyberWire Daily

N2K Networks
undefined
8 snips
Sep 28, 2023 • 29min

Buckworm APT’s specialized tools. Cyberattack against Johnson Controls. Oversight panel reports on Section 702. Cyber in election security, and in the US industrial base. Hacktivism versus Russia.

LogicGate describing struggles with low cost attacks, Kasada's findings on Stolen Auto Accounts. Budworm APT's bespoke tools, cyberattack on Johnson Controls. Oversight panel reports on Section 702. Cybersecurity in US industrial base. Hacktivism vs Russia.
undefined
Sep 27, 2023 • 33min

What up in the underworld’s C2C markets. An update on the Sony hack claims. Notes on cyberespionage, from Russia, China, and parts unknown. And there’s a market for bugs.

China's 'BlackTech' threat activity, a new ransomware as a service group, UAE's Smishing Triad, Openfire flaw exploitation, suspicious Sony hack claims, Xenomorph malware, DDoS and API attacks in finance sector. Joe DePlato from Bluestone Analytics delves into dark net drug markets. Richard Hummel shares trending DDoS vectors. FCC chair plans to restore net neutrality.
undefined
Sep 26, 2023 • 23min

Crooks phish for guests; spies phish for drone operators. ZenRAT is used in an info-stealing campaign. More MOVEit-related incidents (some involving Cl0p). DeFi platforms hit. The UK hunts forward.

An advanced phishing campaign hits hospitality industry. An information-stealing campaign deploys ZenRAT. More MOVEit-related data breaches are disclosed. Mixin Network suspends deposits and withdrawals. The OpenSea NFT market warns of third-party risk to its API. Phishing for Ukrainian military drone operators. Mr. Security Answer Person John Pescatore shares thoughts in Cisco acquiring Splunk. Ann Johnson from the Afternoon Cyber Tea podcast interviews Deb Cupp sharing a lesson in leadership. And the UK adopts a hunt-forward approach to cyber war.
undefined
Sep 25, 2023 • 31min

Cyberespionage in East and Southeast Asia, for both intelligence collection and domestic security, Spyware tools tracked. Shifting cyber targets in Russia’s hybrid war. Securing the Super Bowl.

Amit Sinha, CEO of Digicert, talks about digital trust in the software supply chain. The podcast also covers cyberespionage activities in East and Southeast Asia, including campaigns against Tibetan, Uighur, and Taiwanese targets. It discusses the use of Telegram groups to share spyware tools and the discovery of new backdoors. The episode highlights the importance of security coaching and incident detection. It also explores the risks of code signing key leaks and the need to inspect the software development supply chain. The podcast concludes with speculation on a recent ransomware incident and the challenges of incident analysis.
undefined
Sep 25, 2023 • 16min

Threat intelligence discussion with Chris Krebs. [Special Edition]

Chris Krebs, an expert in threat intelligence and cybersecurity, discusses the strategic integration of technological systems, challenges of attribution and strategic considerations in cyber attacks, common intelligence requirements and needed skill sets in cybersecurity, connecting cybersecurity with business objectives and growing the workforce. The conversation concludes with a lighthearted discussion about the speaker's unique sock collection.
undefined
Sep 24, 2023 • 7min

Merritt Baer: No one has to go down for you to go up. [CISO] [Career Notes]

Merritt Baer, a Field CISO from Lacework, shares her incredible journey in cybersecurity and the evolving role of the CISO. She emphasizes the importance of collaboration and supporting one another in the field. The podcast also discusses building trust, inclusivity, and enhancing security for vulnerable communities.
undefined
Sep 23, 2023 • 15min

Behind the Google shopping ad masks. [Research Saturday]

Akamai researchers have discovered a Magento 2 campaign named Xurum that exploits digital commerce websites by using an advanced web shell. The podcast discusses the details of the attack, vulnerability exploitation, and provides recommendations for protection against future attacks on e-commerce platforms.
undefined
Sep 22, 2023 • 32min

Enter Sandman. A look at an initial access broker. Iran’s OilRig hits Israeli targets. Cyber ops and soft power. Update on casino ransomware attacks. Bermuda’s government sustains cyberattacks.

The podcast discusses a new APT group called Sandman targeting telecommunications providers. They also cover recent cybersecurity incidents, talent retention, increasing the pipeline of diverse talent, challenges of employee retention, and the importance of being coachable and adaptable in life.
undefined
Sep 21, 2023 • 31min

Don’t get snatched. Trends in phishing, cyber insurance claims, and threats to academic institutions. Hacktivism in the hybrid war. Updates on the ICC attack. MGM says its casinos are back.

Topics discussed in the podcast include trends in phishing, cyber insurance claim related to ransomware, threats to academic institutions, hacktivism disrupting Canadian border control, updates on the ICC cyberattack, and MGM Resorts' recovery.
undefined
Sep 20, 2023 • 32min

Hacking the ICC. ShroudedSnooper active, simple, and novel. New criminal malware used against Chinese-speakers. More on the materiality of cyberattacks.

Aaron Brazelton, Dean of Admissions and Advancement at the Alabama School of Cyber Technology, discusses the Alabama School's unique admissions process. The podcast also covers a cybersecurity incident at the International Criminal Court, criminal malware targeting Chinese-speaking victims, and the challenges of determining material impact on public companies in cybersecurity investigations.

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app