Three Buddy Problem

The dark hole of 'friendlies' and Western APTs


Listen Later

Three Buddy Problem - Episode 48: We unpack a Dutch intelligence agencies report on ‘Laundry Bear’ and Microsoft’s parallel ‘Void Blizzard’ write-up, finding major gaps and bemoaning the absence of IOCs. Plus, discussion on why threat-intel naming is so messy, how initial-access brokers are powering even nation-state break-ins, and whether customers (or vendors) are to blame for the confusion.

Plus, thoughts on an academic paper on the vanishing art of Western companies exposing Western (friendly) APT operations, debate whether stealth or self-censorship is to blame, and the long-tail effects on cyber paleontology.

We also dig into Sean Heelan’s proof that OpenAI’s new reasoning model can spot a Linux kernel 0-day and the implications for humans in the bug-hunting chain.

Cast: Juan Andres Guerrero-Saade, Ryan Naraine and Costin Raiu.

Links:

  • Transcript (unedited, AI-generated)
  • Dutch intelligence agency outs 'Laundry Bear' Russian APT
  • Russian gov hackers buying passwords from cybercriminals
  • Microsoft: Russian actor Void Blizzard targets critical sectors for espionage
  • Censys data on AyySSHush ASUS router botnet
  • Czech Republic statement on Chinese hack
  • Czech gov condemns Chinese hack on critical infrastructure
  • NATO floats cybersecurity included in new spending target
  • Mark your Google Calendar: APT41 innovative tactics
  • The rise of responsible behavior: Western commercial reports on Western cyber threat actors
  • How I used o3 to find CVE-2025-37899, a remote zeroday vulnerability in the Linux kernel’s SMB implementation
  • ASUS Botnet Tracker
  • CISA: Logging Made Easy (LME)
...more
View all episodesView all episodes
Download on the App Store

Three Buddy ProblemBy Security Conversations

  • 4.9
  • 4.9
  • 4.9
  • 4.9
  • 4.9

4.9

57 ratings


More shows like Three Buddy Problem

View all
Risky Business by Patrick Gray

Risky Business

365 Listeners

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

636 Listeners

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec by Jerry Bell and Andrew Kalat

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec

366 Listeners

Hacked by Hacked

Hacked

183 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,009 Listeners

Smashing Security by Graham Cluley

Smashing Security

312 Listeners

Click Here by Recorded Future News

Click Here

415 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

7,913 Listeners

Cybersecurity Today by Jim Love

Cybersecurity Today

166 Listeners

CISO Series Podcast by David Spark, Mike Johnson, and Andy Ellis

CISO Series Podcast

189 Listeners

Defense in Depth by David Spark, Steve Zalewski, Geoff Belknap

Defense in Depth

74 Listeners

Cyber Security Headlines by CISO Series

Cyber Security Headlines

127 Listeners

Signals and Threads by Jane Street

Signals and Threads

72 Listeners

Risky Bulletin by risky.biz

Risky Bulletin

43 Listeners

The 404 Media Podcast by 404 Media

The 404 Media Podcast

315 Listeners