On this week’s show Patrick Gray and Adam Boileau discuss the week’s security news, including:
Google’s search results have become a malware-riddled sh*tshowRansomware payment values dropped by 40% YoY in 2022Kraken takes over Solaris the old school wayGrand Theft Auto RCE is wreaking havocManageEngine customers are all getting ownedSo you know, pretty much business as usualThis week’s show is brought to you by Kroll.
Jim Hung co-leads the special projects and applied research team at Kroll and joins us to talk about the big changes happening in the incident response discipline.
Links to everything that we discussed are below and you can follow Patrick or Adam on Mastodon if that’s your thing.
Show notes
Risky Biz News: Google Search and Ads have a major malware problemJustice Department Sues Google for Monopolizing Digital Advertising Technologies | OPA | Department of JusticeHackers push malware via Google search ads for VLC, 7-Zip, CCleanerA Sneaky Ad Scam Tore Through 11 Million Phones | WIREDRisky Biz News: Crypto-crime volumes went down in 2022, ransomware payments tooInternational Counter Ransomware Task Force kicks off - The Record from Recorded Future NewsRisky Biz News: Dark web mega-hack as Kraken takes over SolarisCongressman ‘coming for answers’ after ‘no-fly list’ hack - The Record from Recorded Future NewsHackers Demand $10M From Riot Games to Stop Leak of ‘League of Legends’ Source CodeCVE - CVE-2023-24059GoTo says hackers stole encrypted backups during November cyberattack - The Record from Recorded Future NewsCosta Rica’s Ministry of Public Works and Transport crippled by ransomware attack - The Record from Recorded Future NewsPakistani authorities investigating if cyberattack caused nationwide blackout - The Record from Recorded Future NewsRoyal Mail trials ‘operational workarounds’ following suspected ransomware attack - The Record from Recorded Future NewsRansomware attack hits nearly 300 fast food restaurants in UK, including KFC and Pizza Hut - The Record from Recorded Future NewsCanada's largest alcohol retailer infected with card skimming malware twice since December - The Record from Recorded Future NewsNearly 35,000 PayPal users had SSNs, tax info leaked during December cyberattack - The Record from Recorded Future NewsSamsung investigating claims of hack on South Korea systems, internal employee platform - The Record from Recorded Future NewsElectronic health record giant NextGen dealing with cyberattack - The Record from Recorded Future NewsCyberattack on Nunavut energy supplier limits company operations - The Record from Recorded Future NewsMore than 100 Mailchimp accounts accessed via social engineering cyberattack - The Record from Recorded Future NewsNew T-Mobile Breach Affects 37 Million Accounts – Krebs on SecuritySuspected Chinese hackers exploit vulnerability in Fortinet devices - The Record from Recorded Future NewsMore than 4,400 Sophos firewall servers remain vulnerable to critical exploits | Ars TechnicaCVE-2022-47966: Rapid7 Observed Exploitation of Critical ManageEngine Vulnerability | Rapid7 BlogAWS patches bypass bug in CloudTrail API monitoring tool | The Daily Swig2022 Microsoft Teams RCEGit security audit reveals critical overflow bugs | The Daily SwigU.S. arrests Bitzlato cofounder, alleges $700 mln of illicit funds processed | ReutersFBI Confirms Lazarus Group Cyber Actors Responsible for Harmony's Horizon Bridge Currency Theft — FBI