On this week’s show Patrick Gray and Adam Boileau discuss the week’s security news, including:
Why former Uber CISO Joe Sullivan’s guilty verdict shouldn’t worry youUnited States puts chipmaking restrictions on China, APT activity is comingElon blinks and Starlink goes dark on Ukraine’s front lineMaster cyber criminal arrested in AustraliaMuch, much moreThis week’s show is brought to you by runZero, the asset inventory and network visibility solution. runZero’s founding CTO and industry legend HD Moore is this week’s sponsor guest.
Links to everything that we discussed are below and you can follow Patrick or Adam on Twitter if that’s your thing.
Show notes
Risky Biz News: Good news for the Capital One hacker, bad news for the former Uber CSOJoe Sullivan guilty in Uber hacking case - The Washington PostSecurity chiefs fear ‘CISO scapegoating’ following Uber-Sullivan verdict - The Record by Recorded FutureU.S. imposes foreign direct product rule on China for AI and supercomputing - The Washington PostPopular censorship circumvention tools face fresh blockade by China | TechCrunch'Fear' driving Chinese state to manipulate tech ecosystem... - GCHQ.GOV.UKRisky Biz News: China blocks several protocols used to bypass the Great FirewallJoint_CSA_Top_CVEs_Exploited_by_PRC_cyber_actors_TLPWHITE - DocumentCloudStarlink goes darkCoverage of Killnet DDoS attacks plays into attackers' hands, experts say - The Record by Recorded FutureUkrainian cybersecurity officer killed by Russian missile strike - The Record by Recorded FutureBiden signs new US-EU privacy framework, setting up surveillance safeguards - The Record by Recorded FutureWhite House to unveil ambitious cybersecurity labeling effort modeled after Energy StarAustralian teen charged with using leaked Optus data to blackmail customers - The Record by Recorded FutureReport: Big U.S. Banks Are Stiffing Account Takeover Victims – Krebs on SecurityHackers steal at least $100 million from Binance-linked blockchain - The Record by Recorded FutureSomeone is clogging up the Zcash blockchain with a spam attackAlberto Rodriguez, and Erik Hunstad - Stop writing malware! The Blue team has done it for you - YouTubeCVE-2022-34689 - Security Update Guide - Microsoft - Windows CryptoAPI Spoofing VulnerabilityGet root on macOS 12.3.1: proof-of-concepts for Linus Henze’s CoreTrust and DriverKit bugs (CVE-2022-26766, CVE-2022-26763) | Worth Doing BadlyRisky Biz News: LofyGang runs amok in the npm ecosystem with minimal gains