The CyberCall Podcast

Encryption to Extortion, the Evolution of Cloud Based Attacks


Listen Later

In this session we talk about Salesloft Drift and the implications of OAuth based attacks. Companies use Drift with Salesloft to automate lead capture + sales workflows into Salesforce.com. Enter Nation State threat actor UNC6395, who was able to steal the tokens and gain a backdoor into Salesforce via these OAuth tokens. 

We then dive into the Evolution of Cloud Based Attacks, where threat actors like Storm-0501 are moving away from noisy, on-prem encryption and pivoting to the cloud—where exfiltration, data destruction, and extortion can all happen without dropping a single payload. Add to that the rise of extortion-only campaigns, and we’re looking at an evolution that defenders need to understand right now.

Special guests:

MacKenzie Brown, VP of APG at Blackpoint

Charles Buck, Founder and CTO of SaaS Alerts

Chris Loehr, DFIR Exerpt

Phyllis Lee, VP of Content at CIS

...more
View all episodesView all episodes
Download on the App Store

The CyberCall PodcastBy Andrew Morgan

  • 4.7
  • 4.7
  • 4.7
  • 4.7
  • 4.7

4.7

16 ratings


More shows like The CyberCall Podcast

View all
Global News Podcast by BBC World Service

Global News Podcast

7,601 Listeners

VINCE by Cumulus Podcast Network | VINCE

VINCE

62,644 Listeners

Security Now (Audio) by TWiT

Security Now (Audio)

2,010 Listeners

Risky Business by Patrick Gray

Risky Business

373 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,021 Listeners

Smashing Security by Graham Cluley

Smashing Security

318 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

8,035 Listeners

The Matt Walsh Show by The Daily Wire

The Matt Walsh Show

28,428 Listeners

Paul Green's MSP Marketing Podcast by Paul Green's MSP Marketing Edge

Paul Green's MSP Marketing Podcast

16 Listeners