On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news:
Did the SharePoint bug leak out of the Microsoft MAPP program?Expel retracts its FIDO bypass writeupThe mess surrounding the women-only dating-safety app Tea gets worseBroadcom customers struggle to get patches for VMWare hypervisor escapesAeroflot gets hacked by the Cyber Partisans, disrupting flightsThis week’s episode is sponsored by Push Security. Daniel Cuthbert joins and explains how having telemetry about identity from inside the browser is a key pillar for investigating intrusions in the browser-centric future.
This episode is also available on Youtube.
Show notes
Microsoft Probing Whether Cyber Alert Tipped Off Chinese HackersMicrosoft says Warlock ransomware deployed in SharePoint attacks as governments scramble | The Record from Recorded Future NewsWhat we know about the Microsoft SharePoint attacks | Cybersecurity DiveAn important update (and apology) on our PoisonSeed blogTea User Files Class Action After Women’s Safety App Exposes DataA Second Tea Breach Reveals Users’ DMs About Abortions and CheatingTop Lawyer for National Security Agency Is FiredFrom Help Desk to Hypervisor: Defending Your VMware vSphere Estate from UNC3944VMware prevents some perpetual license holders from downloading patchesPro-Ukrainian hackers take credit for attack that snarls Russian flight travel - Ars TechnicaКИБЕРУДАР ПО АЭРОФЛОТУ РФ!vTreasury sanctions North Koreans involved in IT-worker schemes | Cybersecurity DiveMinnesota governor activates National Guard amid St. Paul cyberattack | StateScoopOutage was result of cyberattack, Post Luxembourg saysClorox files $380 million suit blaming Cognizant for 2023 cyberattack | Cybersecurity DiveCisco network access security platform vulnerabilities under active exploitation | CyberScoopArizona woman sentenced to 8.5 years for running North Korean laptop farm | The Record from Recorded Future NewsCybercrime forum Leak Zone publicly exposed its users' IP addresses | TechCrunch