On this week’s show Patrick Gray and Adam Boileau discuss the week’s security news. They cover:
How Storm-0558 stole Microsoft’s signing keyCisco 0day being used by ransomware crewsWe were right about Elon stumbling into the Ukraine warSomeone’s amazing image library 0day just got crushedMuch, much more!This week’s show is brought to you by Nucleus Security. Co-founder Scott Kuffer is this week’s sponsor guest.
Links to everything that we discussed are below and you can follow Patrick or Adam on Mastodon if that’s your thing.
Show notes
Results of Major Technical Investigations for Storm-0558 Key Acquisition | MSRC Blog | Microsoft Security Response CenterMicrosoft reveals how hackers stole its email signing key… kind of | TechCrunchKevin Beaumont: "One extra thing to highlight -…" - CyberplacePreventing Authentication Bypass: A Tale of Two Researchers - YouTubeBEC phishing kit hits thousands of Microsoft 365 business accounts | Cybersecurity DiveMicrosoft Teams phishing attack pushes DarkGate malwareCISA warns of attacks using Microsoft Word, Adobe bugsNew Emergency Chrome Security Update After Critical iOS 16.6.1 ReleaseMozilla patches Firefox, Thunderbird against zero-day exploited in attacksCisco security appliance 0-day is under attack by ransomware crooks | Ars TechnicaCisco BroadWorks vulnerability snags highest CVSS score | Cybersecurity DiveHigh-profile CVEs turn up in vulnerability exploit sales | Cybersecurity DiveMGM Resorts takes systems offline following cyberattackSave the Children International hit with cyberattack, but says operations weren’t impactedSri Lankan government loses months of data following ransomware attack(6) Risky Biz News: US and UK dox and sanction 11 more Trickbot/Conti members. Charges included too.Opinion | The untold story of Elon Musk’s support for Ukraine - The Washington PostElon Musk on X:SpaceX unveils Starshield, a military variation of Starlink satellitesChina-Linked Hackers Breached a Power Grid—Again | WIREDJust waiting for a mate - YouTubeNorth Korea-backed hackers target security researchers with 0-day | Ars TechnicaCars are collecting data on par with Big Tech, watchdog report findsCrypto Town Hall on X: "Crypto Kingpin's Downfall: 11,196 Years Behind Bars!"https://t.co/1RCNJ8um4c" / X