On this week’s show Patrick Gray and Adam Boileau discuss the week’s security news. They cover:
Iran-linked attacks on US water infrastructureWhy the ownCloud bug isn’t the end of the worldThe D-Link 0day that… never existed?In defence of OktaMuch, much moreThis week’s show is brought to you by Proofpoint. Ryan Kalember, Proofpoint’s EVP of Cybersecurity Strategy, is this week’s sponsor guest.
Links to everything that we discussed are below and you can follow Patrick or Adam on Mastodon if that’s your thing.
Show notes
CISA warns of threat groups exploiting Unitronics PLCs in water treatment hacks | Cybersecurity DiveNorth Texas water utility the latest suspected industrial ransomware target | Cybersecurity DiveFlorida water agency latest to confirm cyber incident as feds warn of nation-state attacksownCloud vulnerability with maximum 10 severity score comes under “mass” exploitation | Ars TechnicaStaples hit by cyberattack during critical Cyber Week sales push | Cybersecurity DiveNew Jersey, Pennsylvania hospitals affected by cyberattacks60 credit unions facing outages due to ransomware attack on popular tech providerHHS warns of ‘Citrix Bleed’ attacks after hospital outagesPayments processor Tipalti investigating ransomware attack | Cybersecurity DiveCISA's Goldstein wants to ditch 'patch faster, fix faster' model | CyberScoopThreat Actors Exploit Adobe ColdFusion CVE-2023-26360 for Initial Access to Government Servers | CISAKremlin-backed hackers attacking unpatched Outlook systems, Microsoft saysLatest severe Chrome bug prompts CISA warningGoogle researchers report critical 0-days in Chrome and all Apple OSes | Ars TechnicaOkta again promises it is taking security seriously | Cybersecurity DiveOkta: Breach Affected All Customer Support Users – Krebs on SecurityRussian and Chinese interference networks are ‘building audiences’ ahead of 2024, warns MetaMeta says it broke up Chinese influence operation looking to exploit U.S. political divisionsClandestine online operations now require sign-off by senior officials - The Washington PostFeds seize Sinbad crypto mixer allegedly used by North Korean hackers | TechCrunchUS sanctions North Korean ‘Kimsuky’ hackers after surveillance satellite launch‘Fugitive’ Spanish aristocrat behind North Korea cryptocurrency conference arrestedUsed by only a few nerds, Facebook kills PGP-encrypted emails | TechCrunch