Research Saturday

Research Saturday

By N2K NetworksNewsTechnologyTech News
Download on the App Store

Research Saturday episodes

  • Online underground markets in the Middle East.

    Researchers at Trend Micro recently published their look inside online underground marketplaces in the Middle East and North Africa, where criminals are buying and selling malware, laundering money and event booking their next discount vacation.

    Jon Clay is director of global threat communications at Trend Micro, and he joins us with their findings. 


    The original research can be found here:

    https://www.trendmicro.com/vinfo/us/security/news/cybercrime-and-digital-threats/cash-and-communication-new-trends-in-the-middle-east-and-north-africa-underground

    Learn more about your ad choices. Visit megaphone.fm/adchoices

    21 min
  • Amplification bots and how to detect them.

    Researchers from Duo Security have been analyzing the behavior of Twitter bots in a series of posts on their web site. Their most recent dive into the subject explores amplification bots, which boost the impact of tweets through likes and retweets.


    Jordan Wright is a principal R&D engineer at Duo Security, and he joins us to share their findings.

    Link to the original research - 

    https://duo.com/labs/research/anatomy-of-twitter-bots-amplification-bots

    Learn more about your ad choices. Visit megaphone.fm/adchoices

    22 min
  • Luring IoT botnets to the honeypot.

    Researchers from Netscout's ASERT team have been making use of honeypots to gather information on rapidly evolving IoT botnets that take advantage of default usernames and passwords to gain access and take control of unprotected devices.

    Matt Bing is a security research analyst with Netscout, and he guides us through their findings.

    The original research can be found here:

    https://asert.arbornetworks.com/dipping-into-the-honeypot/

    Learn more about your ad choices. Visit megaphone.fm/adchoices

    22 min
  • Magecart payment card theft analysis.

    Researchers at RiskIQ have been tracking a series of web-based credit card skimmers known as Magecart. We take a closer look at attacks on Ticketmaster, British Airways, NewEgg and Shopper Approved payment card pages. 

    Yonathan Klijnsma is lead of threat research at RiskIQ, and he guides us through what they've learned.

    Links to RiskIQ research:

    https://www.riskiq.com/blog/labs/magecart-ticketmaster-breach/

    https://www.riskiq.com/blog/labs/magecart-british-airways-breach/

    https://www.riskiq.com/blog/labs/magecart-newegg/

    https://www.riskiq.com/blog/labs/magecart-shopper-approved/

    Learn more about your ad choices. Visit megaphone.fm/adchoices

    32 min
  • NOKKI, Reaper and DOGCALL target Russians and Cambodians.

    Researchers from Unit 42 at Palo Alto Networks have discovered an interesting relationship between the NOKKI and DOGCALL malware families, as well as a new RAT being used to deploy the malware.

    Jen Miller-Osborn is Deputy Director of Threat Intelligence with Unit 42, and she joins us to share their findings.

    The original research can be found here:

    https://unit42.paloaltonetworks.com/unit42-nokki-almost-ties-the-knot-with-dogcall-reaper-group-uses-new-malware-to-deploy-rat/

     

    Learn more about your ad choices. Visit megaphone.fm/adchoices

    18 min
  • Apple Device Enrollment Program vulnerabilities explored.

    Researchers at Duo Security have been looking into Apple's Device Enrollment Program (DEM) and have discovered vulnerabilities that could expose users of the service to potential issues from social engineering and rogue devices.

    James Barclay is Senior R&D Engineer at Duo Security, and he joins us to share what they've found.

    The original research can be found here:

    https://duo.com/blog/weak-apple-dep-authentication-leaves-enterprises-vulnerable-to-social-engineering-attacks-and-rogue-devices

     

    Learn more about your ad choices. Visit megaphone.fm/adchoices

    20 min
  • The Sony hack and the perils of attribution.

    Researchers at Risk Based Security took a detailed look back at the 2014 Sony hack, comparing analysis that occurred while the facts were still unfolding with what we know, today. There are interesting lessons to be learned, especially when it comes to attribution.

    Brian Martin is V.P. of vulnerability intelligence at Risk Based Security, and he shares their findings.

    The research can be found here:

    https://www.riskbasedsecurity.com/2018/09/you-didnt-think-the-sony-saga-was-over-did-you/

    Learn more about your ad choices. Visit megaphone.fm/adchoices

    23 min
  • Operation Red Signature targets South Korean supply chain.

    Researchers at Trend Micro uncovered a supply chain attack targeting organizations in South Korea. With the goal of information theft, attackers compromised the update server of a third party support provider, resulting in the installation of a RAT, or remote access trojan.


    Rik Ferguson is Vice President of Security Research at Trend Micro, and he guides us through their discoveries.


    The research can be found here:

    https://blog.trendmicro.com/trendlabs-security-intelligence/supply-chain-attack-operation-red-signature-targets-south-korean-organizations/

    Learn more about your ad choices. Visit megaphone.fm/adchoices

    27 min
  • Getting an education on Cobalt Dickens.

    Researchers from Secureworks' Counter Threat Unit have been tracking a threat group spoofing login pages for universities. Evidence suggests the Iranian group Cobalt Dickens is likely responsible.

    Allison Wikoff is a senior researcher at Secureworks, and she joins us to share what they've found.


    The original research is here:

    https://www.secureworks.com/blog/back-to-school-cobalt-dickens-targets-universities

    Learn more about your ad choices. Visit megaphone.fm/adchoices

    16 min
  • Doubling down on Cobalt Group activity.

    The NETSCOUT Arbor ASERT team has been tracking Cobalt Group campaigns targeting financial institutions. Richard Hummel is manager of threat intelligence with ASERT, and he joins us to share his team's findings. 

    The research can be found here:

    https://asert.arbornetworks.com/double-the-infection-double-the-fun/

    Learn more about your ad choices. Visit megaphone.fm/adchoices

    22 min

About Research Saturday

From the publisher's feed

Every Saturday, we sit down with cybersecurity researchers to talk shop about the latest threats, vulnerabilities, and technical discoveries.

More shows like Research Saturday

Risky Business by Risky Business Media

Risky Business

374 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,028 Listeners

ChinaPower by CSIS | Center for Strategic and International Studies

ChinaPower

206 Listeners

Smashing Security by Graham Cluley

Smashing Security

317 Listeners

Click Here by Recorded Future News

Click Here

419 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

8,055 Listeners

Cybersecurity Today by David Shipley

Cybersecurity Today

179 Listeners

Hacking Humans by N2K Networks

Hacking Humans

314 Listeners

CISO Series Podcast by David Spark, Mike Johnson, and Andy Ellis

CISO Series Podcast

191 Listeners

Career Notes by N2K Networks

Career Notes

14 Listeners

Pekingology by Center for Strategic and International Studies

Pekingology

141 Listeners

Cybersecurity Headlines by CISO Series

Cybersecurity Headlines

138 Listeners

The AI Fix by Mark Stockley

The AI Fix

32 Listeners

The FAIK Files by Perry Carpenter | N2K Networks

The FAIK Files

18 Listeners