Risky Business

Risky Business #683 -- OpenSSL bug is a fizzer, ASD responds to Medibank hack


Listen Later

On this week’s show Patrick Gray and Adam Boileau discuss the week’s security news, including:

  • Twitter bluechecks face phishing barrage
  • Australian government goes berserk on Medibank hack response
  • Former WSJ journalist sues law firm over email hack and info op that got him fired
  • OpenSSL bug lands with a whimper
  • Apple macOS Ventura update breaks security tools
  • Much, much more
  • This week’s show is brought to you by Thinkst Canary. Marco Slaviero, Thinkst’s head of engineering, joins us this week to talk through the company’s latest release, codenamed Quokka.

    Links to everything that we discussed are below and you can follow Patrick or Adam on Twitter if that’s your thing.

    Show notes
    • Twitter’s verification chaos is now a cybersecurity problem | TechCrunch
    • Unconfirmed hack of Liz Truss’ phone prompts calls for “urgent investigation” | Ars Technica
    • Chinese hackers are scanning state political party headquarters, FBI says - The Washington Post
    • Former WSJ reporter says law firm used Indian hackers to sabotage his career | Reuters
    • The source - Columbia Journalism Review
    • Upcoming ‘critical’ OpenSSL update prompts feverish speculation | The Daily Swig
    • OpenSSL vulnerability downgraded to ‘high’ severity | The Daily Swig
    • Medibank says hackers had access to ‘all personal data’ belonging to all customers - The Record by Recorded Future
    • Australia to tighten privacy laws, increase fines after series of data breaches - The Record by Recorded Future
    • Votes in Slovakia's parliament suspended after alleged ‘cybersecurity incident’ - The Record by Recorded Future
    • NY Post confirms hack after website, Twitter feed flooded with threats toward Biden, AOC - The Record by Recorded Future
    • Apple MacOS Ventura Bug Breaks Third-Party Security Tools | WIRED
    • Microsoft ties Vice Society hackers to additional ransomware strains - The Record by Recorded Future
    • How Vice Society Got Away With a Global Ransomware Spree | WIRED
    • FTC seeks action against Drizly — and its CEO — for cybersecurity failures - The Record by Recorded Future
    • Critical authentication bug in Fortinet products actively exploited in the wild | The Daily Swig
    • Google Play apps with >20M downloads depleted batteries and network bandwidth | Ars Technica
    • Battle with Bots Prompts Mass Purge of Amazon, Apple Employee Accounts on LinkedIn – Krebs on Security
    • Microsoft leaked 2.4TB of data belonging to sensitive customer. Critics are furious | Ars Technica
    • Microsoft disputes report on Office 365 Message encryption issue after awarding bug bounty - The Record by Recorded Future
    • Microsoft Office Online Server open to SSRF-to-RCE exploit | The Daily Swig
    • Microsoft's Sociopathic Cybersecurity Pedantry
    • Brazilian police announce arrest of alleged Lapsus$ member - The Record by Recorded Future
    • Accused ‘Raccoon’ Malware Developer Fled Ukraine After Russian Invasion – Krebs on Security
    • European gang that sold car hacking tools to thieves arrested - The Record by Recorded Future
    • How a Microsoft blunder opened millions of PCs to potent malware attacks | Ars Technica
    • ...more
      View all episodesView all episodes
      Download on the App Store

      Risky BusinessBy Patrick Gray

      • 4.6
      • 4.6
      • 4.6
      • 4.6
      • 4.6

      4.6

      352 ratings


      More shows like Risky Business

      View all
      Security Now (Audio) by TWiT

      Security Now (Audio)

      1,961 Listeners

      SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

      SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

      634 Listeners

      Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec by Jerry Bell and Andrew Kalat

      Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec

      368 Listeners

      Hacked by Hacked

      Hacked

      176 Listeners

      CyberWire Daily by N2K Networks

      CyberWire Daily

      1,008 Listeners

      Smashing Security by Graham Cluley & Carole Theriault

      Smashing Security

      312 Listeners

      Click Here by Recorded Future News

      Click Here

      387 Listeners

      Malicious Life by Malicious Life

      Malicious Life

      923 Listeners

      Darknet Diaries by Jack Rhysider

      Darknet Diaries

      7,843 Listeners

      Cybersecurity Today by Jim Love

      Cybersecurity Today

      142 Listeners

      CISO Series Podcast by David Spark, Mike Johnson, and Andy Ellis

      CISO Series Podcast

      182 Listeners

      Hacking Humans by N2K Networks

      Hacking Humans

      309 Listeners

      Defense in Depth by David Spark, Steve Zalewski, Geoff Belknap

      Defense in Depth

      72 Listeners

      Cyber Security Headlines by CISO Series

      Cyber Security Headlines

      120 Listeners

      Risky Bulletin by risky.biz

      Risky Bulletin

      33 Listeners