On this week’s show Patrick Gray and Adam Boileau discuss the week’s security news. They cover:
Tenable gives Microsoft a spray over Azure bug fix delay, qualityLateral movement fun via Azure Active Directory Cross-Tenant SynchronizationRansomware targets hospitals, special needs schoolsJapan’s cybersecurity has some catching up to doMuch, much moreThis week’s show is brought to you by Corelight. Brian Dye, Corelight’s CEO, is this week’s sponsor guest.
Links to everything that we discussed are below and you can follow Patrick or Adam on Mastodon if that’s your thing.
Show notes
Tenable CEO accuses Microsoft of negligence in addressing security flaw | CyberScoopMicrosoft resolves vulnerability following criticism from Tenable CEONew Microsoft Azure AD CTS feature can be abused for lateral movementHackers force hospital system to take its national computer system offlineIsraeli hospital redirects new patients following ransomware attackRussia-linked cybercriminals target school for children with learning difficultiesHackers accessed 16 years of Colorado public school student data in June ransomware attackMarine industry giant Brunswick Corporation lost $85 million in cyberattack, CEO confirmsChina hacked Japan’s classified defense cyber networks, officials say - The Washington PostComrades in Arms? | North Korea Compromises Sanctioned Russian Missile Engineering Company - SentinelOneUkraine says it thwarted attempt to breach military tabletsThe Mystery of Chernobyl’s Post-Invasion Radiation Spikes | WIREDRadiation Spikes at Chernobyl: A Mystery Few Seem Interested in SolvingU.K. election regulator says hackers had access for over a year but elections still secureExclusive: DHS Used Clearview AI Facial Recognition In Thousands Of Child Exploitation Cold CasesEight Months Pregnant and Arrested After False Facial Recognition Match - The New York TimesNew ‘Downfall’ Flaw Exposes Valuable Data in Generations of Intel Chips | WIREDNew Inception attack leaks sensitive data from all AMD Zen CPUsSpyware maker LetMeSpy shuts down after hacker deletes server data | TechCrunch‘Crypto couple’ pleads guilty to money laundering, as husband admits to carrying out Bitfinex hackGoogle Online Security Blog: Android 14 introduces first-of-its-kind cellular connectivity security featuresRisky Biz News: Russian bill will hide the PII data of military, police, and intelligence agents