Risky Business

Risky Business #808 -- Insane megabug in Entra left all tenants exposed


Listen Later

On this week’s show Patrick Gray and special guest Rob Joyce discuss the week’s cybersecurity news, including:

  • Secret Service raids a SIM farm in New York
  • MI6 launches a dark web portal
  • Are the 2023 Scattered Spider kids finally getting their comeuppance?
  • Production halt continues for Jaguar Land Rover
  • GitHub tightens its security after Shai-Hulud worm
  • This week’s episode is sponsored by Sublime Security. In this week’s sponsor interview, Sublime founder and CEO Josh Kamdjou joins host Patrick Gray to chat about the pros and cons of using agentic AI in an email security platform.

    This episode is also available on YouTube

    Show notes
    • U.S. Secret Service disrupts telecom network that threatened NYC during U.N. General Assembly
    • MI6 launches darkweb portal to recruit foreign spies | The Record from Recorded Future News
    • One Token to rule them all - obtaining Global Admin in every Entra ID tenant via Actor tokens | dirkjanm.io
    • Github npm changes
    • Flights across Europe delayed after cyberattack targets third-party vendor | Cybersecurity Dive
    • Major European airports work to restore services after cyberattack on check-in systems | The Record from Recorded Future News
    • When “Goodbye” isn’t the end: Scattered LAPSUS$ Hunters hack on | DataBreaches.Net
    • UK arrests 2 more alleged Scattered Spider hackers over London transit system breach | Cybersecurity Dive
    • Alleged Scattered Spider member turns self in to Las Vegas police | The Record from Recorded Future News
    • Las Vegas police arrest minor accused of high-profile 2023 casino attacks | CyberScoop
    • DOJ: Scattered Spider took $115 million in ransoms, breached a US court system | The Record from Recorded Future News
    • vx-underground on X: "Scattered Spider ransoms company for 964BTC - wtf_thats_alot.jpeg - Document says "Cost of BTC at time was $36M" - $36M / 964BTC = $37.5K - BTC value was $37.5K in November, 2023 - Google "Ransomware, November, 2023" - omfg.exe https://t.co/uv2EzbL5HT" | X
    • JLR ‘cyber shockwave ripping through UK industry’ as supplier share price plummets by 55% | The Record from Recorded Future News
    • Jaguar Land Rover to extend production pause into October following cyberattack | Cybersecurity Dive
    • New plan would give Congress another 18 months to revisit Section 702 surveillance powers | The Record from Recorded Future News
    • AI-powered vulnerability detection will make things worse, not better, former US cyber official warns | Cybersecurity Dive
    • ...more
      View all episodesView all episodes
      Download on the App Store

      Risky BusinessBy Patrick Gray

      • 4.6
      • 4.6
      • 4.6
      • 4.6
      • 4.6

      4.6

      364 ratings


      More shows like Risky Business

      View all
      Hacked by Hacked

      Hacked

      184 Listeners

      Security Now (Audio) by TWiT

      Security Now (Audio)

      2,000 Listeners

      Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec by Jerry Bell and Andrew Kalat

      Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec

      370 Listeners

      SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

      SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

      638 Listeners

      CyberWire Daily by N2K Networks

      CyberWire Daily

      1,018 Listeners

      Smashing Security by Graham Cluley

      Smashing Security

      322 Listeners

      Click Here by Recorded Future News

      Click Here

      417 Listeners

      Darknet Diaries by Jack Rhysider

      Darknet Diaries

      8,010 Listeners

      Cybersecurity Today by Jim Love

      Cybersecurity Today

      175 Listeners

      Hacking Humans by N2K Networks

      Hacking Humans

      314 Listeners

      CISO Series Podcast by David Spark, Mike Johnson, and Andy Ellis

      CISO Series Podcast

      189 Listeners

      Defense in Depth by David Spark, Steve Zalewski, Geoff Belknap

      Defense in Depth

      73 Listeners

      Cyber Security Headlines by CISO Series

      Cyber Security Headlines

      134 Listeners

      Risky Bulletin by risky.biz

      Risky Bulletin

      44 Listeners

      Hacker And The Fed by Chris Tarbell & Hector Monsegur

      Hacker And The Fed

      169 Listeners