The Host Unknown Podcast

Episode 148 - The Short And Not-So-Sweet Episode


Listen Later

This week in InfoSec

With content liberated from the “today in infosec” twitter account and further afield

19th April 1965: Electronics magazine publishes an article by Gordon Moore, head of research and development for Fairchild Semiconductor and future co-founder of Intel, on the future of semiconductor components. In the article, Moore predicts that transistor density on integrated circuits will double every eighteen months for “at least” the next ten years. This theory will eventually come to be known as Moore’s Law and has largely held true to this day. Controversy exists over whether Moore’s Law remains applicable, however time will tell just how long Moore’s Law will continue to remain true.

 

19th April 2010: The OWASP Top 10 for 2010 was officially released.

http://web.archive.org/web/20100628190859/http://www.owasp.org/index.php/OWASPTop10-2010-PressRelease

https://twitter.com/todayininfosec/status/1251895022598803457  

 

Rant of the Week

Background: Capita IT breach gets worse as Black Basta claims it's now selling off stolen data

Black Basta, the extortionists who claimed they were the ones who lately broke into Capita, have reportedly put up for sale sensitive details, including bank account information, addresses, and passport photos, stolen from the IT outsourcing giant.

A spokesperson for the London-based corporation, which has UK government contracts totaling £6.5 billion ($8 billion), originally said it hadn't yet confirmed if that data leak is legit.

"We are in constant contact with all relevant regulators and authorities. Our investigations have not yet been able to confirm any evidence of customer, supplier, or colleague data having been compromised."

They stated that once they’d finalised their own probe, Capita said it will "if necessary" inform all parties affected in the security breach.

"We have taken all appropriate steps to ensure the robustness of our systems and are confident in our ability to meet our service delivery commitments," the spokesperson said.

The technology outsourcer at first confirmed it had suffered an "IT issue" late last month, though didn't cop to it being a "cyber incident" until April 3.

Over the weekend, the Sunday Times claimed the IT breach was worse than Capita has admitted to date: Capita has played down fears that personal and corporate information was accessed, though it appears the miscreants who broke into the business have started selling off that very kind of data, said to be lifted from Capita's systems.

Capita has 'evidence' customer data was stolen in digital burglary

Business process outsourcing and tech services player Capita says there is proof that some customer data was scooped up by cyber baddies that broke into its systems late last month.

The British listed business, which has around £6.5 billion ($8.09 billion) in public sector contracts, updated the London Stock Exchange thursday morning to confirm the criminals breached its infrastructure on March 22 and remained inside until “interrupted” by the company on March 31.

“As a result of the interruption, the incident was significantly restricted, potentially affecting around 4 percent of Capita’s server estate. There is currently some evidence of limited data exfiltration from the small proportion of affected server estate which might include customer, supplier or colleague data.”

 

Billy Big Balls of the Week

We would have talked about “An earlier supply chain attack led to the 3CX supply chain attack, Mandiant says” if we were doing a BBB

 

Industry News

UK's SMEs to Benefit From New Cyber Advisors

WhatsApp, Signal Claim Online Safety Bill Threatens User Privacy and Safety

NSO Group's Pegasus Spyware Found on High-Risk iPhones

NCSC Warns of Destructive Russian Attacks on Critical Infrastructure

Police Escape $1.2m Fine For Secretly Recording Phone Calls

Recycled Network Devices Exposing Corporate Secrets

ChatGPT-Related Malicious URLs on the Rise

Daggerfly APT Targets African Telecoms Firm With New MgBot Malware

North Korean Hacker Suspected in 3CX Software Supply Chain Attack

 

Tweet of the Week

https://twitter.com/quentynblog/status/1649302927910002689

Come on! Like and bloody well subscribe!

...more
View all episodesView all episodes
Download on the App Store

The Host Unknown PodcastBy Host Unknown, Thom Langford, Andrew Agnes, Javvad Malik

  • 4.8
  • 4.8
  • 4.8
  • 4.8
  • 4.8

4.8

5 ratings


More shows like The Host Unknown Podcast

View all
Security Now (Audio) by TWiT

Security Now (Audio)

1,965 Listeners

Risky Business by Patrick Gray

Risky Business

360 Listeners

No Such Thing As A Fish by No Such Thing As A Fish

No Such Thing As A Fish

4,836 Listeners

Page 94: The Private Eye Podcast by Page 94: The Private Eye Podcast

Page 94: The Private Eye Podcast

294 Listeners

Smashing Security by Graham Cluley & Carole Theriault

Smashing Security

314 Listeners

Click Here by Recorded Future News

Click Here

388 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

7,844 Listeners

Hard Fork by The New York Times

Hard Fork

5,356 Listeners

Risky Bulletin by risky.biz

Risky Bulletin

33 Listeners

The Rest Is Entertainment by Goalhanger

The Rest Is Entertainment

798 Listeners

The AI Fix by Graham Cluley and Mark Stockley

The AI Fix

24 Listeners

16 Sunsets by Antica & Telltale Studios

16 Sunsets

34 Listeners