ShadowTalk: Powered by ReliaQuest

ShadowTalk: Powered by ReliaQuest

Download on the App Store

ShadowTalk: Powered by ReliaQuest episodes

  • Weekly: Business Email Compromise (BEC), ReliaQuest Bi-Annual threat reports, influence of AI on the Cyber Threat Landscape

     In this episode of ShadowTalk, host Chris, along with one of ReliaQuest's CISOs Rick, and James, discuss the latest news in cyber security and threat research. Topics this week include:

    • Themes in recent Business Email Compromise (BEC) activity
    • A breakdown of ReliaQuest research into threats facing the Professional, Scientific, and Technical Services (PSTS) sector
    • The influence of AI on the cyber threat landscape 
    • ReliaQuest activities at BlackHat 2023 conference
    41 min
  • Weekly: What We're Seeing Right Now, Cl0p Cycle Continues, Ivanti Zero-Day, ALPHV API

    In this episode of ShadowTalk, host Roman, along with Ivan and Brandon, discuss the latest news in cyber security and threat research. Topics this week include:

    • Twitter becoming X security concerns
    • Cl0p names 71 new victims
    • ReliaQuest releases Q2 ransomware report
    • Hackers target Norwegian government ministries with Ivanti zero-day exploit
    • ALPHV ransomware group creates API key for its data leak site

    Resources:

    • https://www.bleepingcomputer.com/news/security/norway-says-ivanti-zero-day-was-used-to-hack-govt-it-systems/
    • https://www.bleepingcomputer.com/news/security/alphv-ransomware-adds-data-leak-api-in-new-extortion-strategy/
    31 min
  • Weekly: What We're Seeing Right Now, Cl0p Update, WormGPT

    In this episode of ShadowTalk, host Chris, along with Brian and James, discuss the latest news in cyber security and threat research. Topics this week include:

    • ReliaQuest research into common attacker techniques
    • An update on Clop's exploitation of the MOVEit vulnerability 
    • ChatGPT rival with ‘no ethical boundaries’ sold on dark web

    Resources:

    • https://www.reliaquest.com/blog/top-adversary-techniques-july-2023/
    • https://www.reliaquest.com/blog/clop-leaks-first-victims/
    • https://www.zdnet.com/article/wormgpt-what-to-know-about-chatgpts-malicious-cousin/
    22 min
  • Weekly: Microsoft Cloud Breach, Strava App, Cl0p Update and Remote Management Monitoring

    In this episode of ShadowTalk, host Dean Murphy, one of ReliaQuests CISO's Rick Holland and threat research teamers Colin Ferris and Gjergji Paco discuss the latest news in cyber security and threat research. Topics this week include:

    • Chinese hackers breach Microsoft Cloud
    • Strava App – Tracked and Killed
    • Cl0p Update
    • Remote Monitoring and Management Software – RMM


    Resources:

    • https://www.cnn.com/2023/07/11/europe/russian-submarine-commander-killed-krasnador-intl/index.html
    • https://www.telegraph.co.uk/news/2023/07/11/russian-submarine-commander-shot-strava-krasnodar-vinnytsia/
    • https://jsac.jpcert.or.jp/archive/2023/pdf/JSAC2023_1_1_yamashige-nakatani-tanaka_en.pdf
    • https://www.reliaquest.com/blog/clop-leaks-first-victims/
    • https://www.cisa.gov/sites/default/files/2023-07/aa23-193a_joint_csa_enhanced_monitoring_to_detect_apt_activity_targeting_outlook_online.pdf
    • https://www.washingtonpost.com/national-security/2023/07/12/microsoft-hack-china/
    • https://blogs.microsoft.com/on-the-issues/2023/07/11/mitigation-china-based-threat-actor/
    • https://www.whitehouse.gov/briefing-room/statements-releases/2023/07/13/fact-sheet-biden-harrisadministration-publishes-thenational-cybersecurity-strategyimplementation-plan/
    39 min
  • Weekly: Defense Evasion via Virtualization, LockBit target TSMC, CISA Identify New Exploited Vulnerabilities

    In this episode of ShadowTalk, host Chris Morgan, along with Corey Carter, Jonny Elrod, Gjergji Paco, and one of ReliaQuests CISO's Rick Holland, discuss the latest news in cyber security and threat research. Topics this week include:

    • Threat actors obfuscating activity through virtualization
    • LockBit claim to have impacted Taiwanese semiconductor giant TSMC
    • CISA identify new exploited vulnerabilities
    • New critical vulnerability impacting Fortinet, FortiOS and FortiProxy SSL-VPN appliances

    Resources:

    • https://www.reliaquest.com/blog/virtual-machines-defense-evasion/
    • https://www.bleepingcomputer.com/news/security/cisa-orders-govt-agencies-to-patch-bugs-exploited-by-russian-hackers/
    • https://thehackernews.com/2023/07/alert-330000-fortigate-firewalls-still.html
    • https://www.scmagazine.com/brief/ransomware/tsmc-discloses-data-breach-from-lockbit-claimed-attack-against-third-party
    34 min
  • Weekly: Legal Developments, New APT29 Campaign and ReliaQuest's Annual Threat Report

    In this episode of ShadowTalk, host Stefano, along with Kim Bromley, and one of ReliaQuests CISO's Rick Holland, discuss the latest news in cyber security and threat research. Topics this week include:

    • The SEC reportedly charging SolarWinds executives
    • APT29 hunting for credentials
    • Our new, shiny Annual Threat Report

    Resources:

    • https://www.reuters.com/technology/solarwinds-executives-receive-wells-notice-us-sec-2023-06-23/
    • https://www.scmagazine.com/brief/identity-and-access/apt29-intensifies-credential-stealing-attacks
    • https://www.reliaquest.com/resources/research-reports/annual-threat-report/
    29 min
  • Weekly: Cl0p update, Killnet target European financial institutions, closed sources findings

    In this episode of ShadowTalk, host Chris, along with Dani, and one of ReliaQuests CISO's Rick Holland, discuss the latest news in cyber security and threat research. Topics this week include:

    • The latest updates related to Cl0p's exploitation of MOVEit zero-day
    • Killnet targeting European financial institutions
    • Insights drawn from our closed sources team
    • The team's observations on this years InfoSec conference

    Resources:

    • https://www.reliaquest.com/blog/clop-leaks-first-victims/ 
    • https://techmonitor.ai/technology/cybersecurity/killnet-revil-and-anonymous-threaten-swift-with-destructive-attack-in-48-hours 
    43 min
  • Weekly: Cl0p releases company names, Gootloader, new Fortinet RCE, Ukrainians hackers take down Infotel.

    In this episode of ShadowTalk, host Chris, along with Colin and Caroline, discuss the latest news in cyber security and threat research. Topics this week include:

    • The latest updates related to Clop's exploitation of MOVEit zero-day
    • An overview of the Gootloader initial access malware
    • Fortinet RCE CVE-2023-27997
    • Ukraine's Cyber Anarchy Squad take down Infotel

    Resources:

    • https://www.reliaquest.com/blog/clop-leaks-first-victims/
    • https://www.scmagazine.com/news/device-security/fortinet-patches-critical-rce-fortigate-ssl-vpn-appliances
    • https://www.bleepingcomputer.com/news/security/ukrainian-hackers-take-down-service-provider-for-russian-banks/
    33 min
  • Weekly: MOVEit Zero-day and Cl0p attribution, Infostealing ecosystem, DBIR 2023 Report

    In this episode of ShadowTalk, host Stefano, along with Rick, Dean, and Ivan, discuss the latest news in cyber security and threat research. Topics this week include:

    • What you need to know on the MOVEit Zero-day vulnerability and the latest Cl0p updates 
    • Infostealers ecosystem: most common malware, impact, and mitigation strategies
    • Key insights from the latest Verizon's DBIR issue

    Resources:

    • https://www.reliaquest.com/blog/moveit-vulnerability-update-clop-claims-responsibility/ 
    • https://www.verizon.com/business/resources/reports/dbir/
    33 min

About ShadowTalk: Powered by ReliaQuest

From the publisher's feed

Want to hear what industry experts really think about the cyber threats they face? ShadowTalk is a weekly cybersecurity podcast, made by practitioners for practitioners, featuring analytical…

More shows like ShadowTalk: Powered by ReliaQuest

Hacked by Hacked

Hacked

193 Listeners

Security Now (Audio) by TWiT

Security Now (Audio)

2,011 Listeners

WSJ Tech News Briefing by The Wall Street Journal

WSJ Tech News Briefing

1,644 Listeners

Risky Business by Risky Business Media

Risky Business

374 Listeners

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

650 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,027 Listeners

Click Here by Recorded Future News

Click Here

418 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

8,061 Listeners

Cybersecurity Today by David Shipley

Cybersecurity Today

179 Listeners

CISO Series Podcast by David Spark, Mike Johnson, and Andy Ellis

CISO Series Podcast

191 Listeners

True Spies: Espionage | Investigation | Crime | Murder | Detective | Politics by SPYSCAPE

True Spies: Espionage | Investigation | Crime | Murder | Detective | Politics

1,943 Listeners

Cybersecurity Headlines by CISO Series

Cybersecurity Headlines

137 Listeners

Cyber Hack by BBC World Service

Cyber Hack

1,594 Listeners

Risky Bulletin by Risky Business Media

Risky Bulletin

46 Listeners

The Economics Show by Financial Times

The Economics Show

139 Listeners