On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news, including:
SEC fines tech firms for downplaying the Solarwinds hacksAnonymous Sudan still looks and quacks like a Russian duckApple proposes max 10 day TLS certificate lifeOopsie! Microsoft loses a bunch of cloud logsVeeam and Fortinet are bad and should feel badNorth Koreans are good (at hacking)And much, much more.This week’s episode is sponsored by Proofpoint. Chief Strategy Officer Ryan Kalember joins to talk about their work keeping up with prolific threat actor SocGholish.
This episode is also available on Youtube.
Show notes
Four cyber companies fined for SolarWinds disclosure failuresU.S. charges Sudanese men with running powerful cyberattack-for-hire gangHacker Charged With Seeking to Kill Using Cyberattacks on Hospitals | WIREDRisky Biz News: Anonymous Sudan's Russia Links Are (Still) ObviousMicrosoft confirms partial loss of security log data on multiple platforms | Cybersecurity DiveRisky Biz News: Apple wants to reduce the lifespan of TLS certificates to 10 daysEncrypted Chat App ‘Session’ Leaves Australia After Visit From PoliceCrypto platform Radiant Capital says $50 million in digital coins stolen following account compromisesNorth Korean hackers use newly discovered Linux malware to raid ATMs - Ars TechnicaBrazil Arrests ‘USDoD,’ Hacker in FBI Infragard Breach – Krebs on SecurityHere’s how SIM swap in alleged bitcoin pump-and-dump scheme worked - Ars TechnicaCritical Veeam CVE actively exploited in ransomware attacks | Cybersecurity DiveFortiGate admins report active exploitation 0-day. Vendor isn’t talking. - Ars TechnicaHackers reportedly impersonate cyber firm ESET to target organizations in IsraelThe latest in North Korea’s fake IT worker scheme: Extorting the employers