Risky Business

Risky Business #808 -- Insane megabug in Entra left all tenants exposed


Listen Later

On this week’s show Patrick Gray and special guest Rob Joyce discuss the week’s cybersecurity news, including:

  • Secret Service raids a SIM farm in New York
  • MI6 launches a dark web portal
  • Are the 2023 Scattered Spider kids finally getting their comeuppance?
  • Production halt continues for Jaguar Land Rover
  • GitHub tightens its security after Shai-Hulud worm
  • This week’s episode is sponsored by Sublime Security. In this week’s sponsor interview, Sublime founder and CEO Josh Kamdjou joins host Patrick Gray to chat about the pros and cons of using agentic AI in an email security platform.

    This episode is also available on YouTube

    Show notes
    • U.S. Secret Service disrupts telecom network that threatened NYC during U.N. General Assembly
    • MI6 launches darkweb portal to recruit foreign spies | The Record from Recorded Future News
    • One Token to rule them all - obtaining Global Admin in every Entra ID tenant via Actor tokens | dirkjanm.io
    • Github npm changes
    • Flights across Europe delayed after cyberattack targets third-party vendor | Cybersecurity Dive
    • Major European airports work to restore services after cyberattack on check-in systems | The Record from Recorded Future News
    • When “Goodbye” isn’t the end: Scattered LAPSUS$ Hunters hack on | DataBreaches.Net
    • UK arrests 2 more alleged Scattered Spider hackers over London transit system breach | Cybersecurity Dive
    • Alleged Scattered Spider member turns self in to Las Vegas police | The Record from Recorded Future News
    • Las Vegas police arrest minor accused of high-profile 2023 casino attacks | CyberScoop
    • DOJ: Scattered Spider took $115 million in ransoms, breached a US court system | The Record from Recorded Future News
    • vx-underground on X: "Scattered Spider ransoms company for 964BTC - wtf_thats_alot.jpeg - Document says "Cost of BTC at time was $36M" - $36M / 964BTC = $37.5K - BTC value was $37.5K in November, 2023 - Google "Ransomware, November, 2023" - omfg.exe https://t.co/uv2EzbL5HT" | X
    • JLR ‘cyber shockwave ripping through UK industry’ as supplier share price plummets by 55% | The Record from Recorded Future News
    • Jaguar Land Rover to extend production pause into October following cyberattack | Cybersecurity Dive
    • New plan would give Congress another 18 months to revisit Section 702 surveillance powers | The Record from Recorded Future News
    • AI-powered vulnerability detection will make things worse, not better, former US cyber official warns | Cybersecurity Dive
    • ...more
      View all episodesView all episodes
      Download on the App Store

      Risky BusinessBy Patrick Gray

      • 4.6
      • 4.6
      • 4.6
      • 4.6
      • 4.6

      4.6

      362 ratings


      More shows like Risky Business

      View all
      Security Now (Audio) by TWiT

      Security Now (Audio)

      2,001 Listeners

      SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

      SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

      639 Listeners

      Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec by Jerry Bell and Andrew Kalat

      Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec

      370 Listeners

      Hacked by Hacked

      Hacked

      185 Listeners

      CyberWire Daily by N2K Networks

      CyberWire Daily

      1,017 Listeners

      Smashing Security by Graham Cluley

      Smashing Security

      321 Listeners

      Click Here by Recorded Future News

      Click Here

      414 Listeners

      Darknet Diaries by Jack Rhysider

      Darknet Diaries

      7,971 Listeners

      Cybersecurity Today by Jim Love

      Cybersecurity Today

      176 Listeners

      CISO Series Podcast by David Spark, Mike Johnson, and Andy Ellis

      CISO Series Podcast

      188 Listeners

      Hacking Humans by N2K Networks

      Hacking Humans

      315 Listeners

      Defense in Depth by David Spark, Steve Zalewski, Geoff Belknap

      Defense in Depth

      73 Listeners

      Cyber Security Headlines by CISO Series

      Cyber Security Headlines

      134 Listeners

      Risky Bulletin by risky.biz

      Risky Bulletin

      43 Listeners

      The AI Fix by Graham Cluley and Mark Stockley

      The AI Fix

      33 Listeners