On this week’s show Patrick Gray, Adam Boileau and Lina Lau discuss the week’s security news. They cover:
Microsoft’s 38TB oopsieMGM’s Okta compromised, was this what Okta was warning us about?Why we need a cyber knife fightGoogle Authenticator sync abused in the wildMuch, much moreThis week’s show is brought to you by Push Security. Co-founder Adam Bateman is this week’s sponsor guest.
Links to everything that we discussed are below and you can follow Patrick or Adam on Mastodon if that’s your thing.
Show notes
Microsoft AI researchers exposed sensitive signing keys, internal messages | CyberScoopWiz on X: "🚨 BREAKING: Wiz Research discovers a massive 38TB data leak by Microsoft AI researchers, including 30,000+ internal Teams messages. Here's what you need to know 🧵 https://t.co/2V8u9IekGV" / XMicrosoft mitigated exposure of internal information in a storage account due to overly-permissive SAS token | MSRC Blog | Microsoft Security Response Center(6) Microsoft's Security Culture Just Isn't up to ScratchThreat actors claim to have compromised MGM Resorts’ Okta environment | Cybersecurity DiveMGM, Caesars attacks raise new concerns about social engineering tactics | Cybersecurity DiveI Gambled in MGM's Hacked Casinos‘Scattered Spider’ group launches ransomware attacks while expanding targets in hospitality, retailMGM Resorts disruption linked to recent attacks against hospitality industry | Cybersecurity DiveCaesars Entertainment says it was also a victim of a cyberattackClorox warns of product shortages a month after disclosing cyberattack | Cybersecurity DiveDHS: Ransomware attackers headed for second most profitable year(1) chrisrohlf on X: "I can think of multiple occasions where well respected experts assured the world that taking offensive actions would put an end to this ransomware problem. Unfortunately 1) it won’t end that easily and 2) they’re still seen as experts. This is an economics problem that is enabled…" / XWhite House urging dozens of countries to publicly commit to not pay ransomsCyberattack on Kansas town affects email, phone, payment systemsMajor trucking software provider confirms ransomware incidentSeveral Colombian government ministries hampered by ransomware attackManchester police officers’ data stolen following ransomware attack on supplierUpstate New York nonprofit hospitals still facing issues after LockBit ransomware attackEvidence points to North Korea in CoinEx cryptocurrency hack, analysts sayHow Google Authenticator made one company’s network breach much, much worse | Ars TechnicaChinese Spies Infected Dozens of Networks With Thumb Drive Malware | WIREDMozilla, CISA urge users to patch Firefox security flawUK passes the Online Safety Bill — and no, it doesn’t ban end-to-end encryptionExiled Russian journalist hacked using NSO Group spyware | Hacking | The GuardianТри журналиста рассказали, что получали оповещение от Apple о хакерской атаке. Такое же приходило Галине Тимченко, в телефоне которой нашли шпионскую программу Pegasus — MeduzaWar crimes tribunal ICC says it has been hacked | ReutersXINTRA - Cybersecurity TrainingCrikeyCon 2022 - Lina Lau - Inside the Persistent Mind of a Chinese APT - YouTubeSaaS attack techniquesSaaS attack matrix: The shadow workflow’s evil twinSaaS Attack: How to SAMLjack a poisoned tenantSAMLjacking a poisoned tenant demo - YouTubeSaaS Attacks: Shadow workflows + Evil twin integration demo - YouTube