On this week’s show Patrick and Adam discuss the week’s security news, including:
Russian delivery company gets ransomware-wiper’dA supply-chain attack targets video software used in US courtsCheckpoint firewalls get hacked, details as clear as mudMicrosoft Recall delights hackersAussie telco Optus gets told its IR report isn’t legal adviceCyber insurer says you’re 5x more likely to get rekt if you have a Cisco ASAAnd much, much more.This week’s episode is sponsored by Kroll Cyber. Alex Cowperthwaite, Kroll’s technical director research and development for offence joins to talk about how his team attacks AI models, in ways both classic and new.
Show notes
Major Russian delivery company down for three days due to cyberattackStark Industries Solutions: An Iron Hammer in the Cloud – Krebs on SecurityCVE-2024-4978: Backdoored Justice AV Solutions Viewer Software Used in Apparent Supply Chain Attack | Rapid7 BlogCheck Point Software customers targeted by hackers using old, local VPN accounts | Cybersecurity DiveUS pharma giant Cencora says Americans' health information stolen in data breach | TechCrunchMicrosoft’s New Recall AI Tool May Be a ‘Privacy Nightmare’ | WIREDKevin Beaumont: "I got ahold of the Copilot+ so…" - CyberplaceKevin Beaumont: "For those who aren’t aware, Mi…" - CyberplacePatrick Gray on X: "You know it’s coming… Microsoft Defender Advanced Security for Recall"Microsoft Edge for Business: Revolutionizing your business with AI, security and productivity - Microsoft Edge BlogOptus loses appeal to keep Deloitte report on cyberattack secretOptus says it will defend allegations it failed to protect confidential details of 9 million customers in cyber attack - ABC NewsNearly 3 million affected by Sav-Rx data breachSpyware app pcTattletale was hacked and its website defaced | TechCrunch#F**kStalkerware pt. 6 - tattling on pcTattletaleSpyware maker pcTattletale shutters after data breach | TechCrunchJeremy Kirk: "Cyber insurer Coalition releas…" - Infosec ExchangeCoalition_2024-Cyber-Claims-ReportTikTok says it disrupted 15 influence operations this year — including one from ChinaIsraeli private eye accused of hacking was questioned about DC public affairs firm, sources say | ReutersRansomHub claims attack on Christie’s, the world’s wealthiest auction houseOpen-Source Assessments of AI Capabilities: The Proliferation of AI Analysis Tools, Replicating Competitor Models, and the Zhousidun DatasetShashank Joshi on X: "Additionally, OpenAI will retain and consult with other safety, security, and technical experts to support this work, including former cybersecurity officials, Rob Joyce [@RGB_Lights], who advises OpenAI on security, and John Carlin."