Microsoft Threat Intelligence Podcast

Threat Landscape Update: Ransomware-as-a-Service and Advanced Modular Malware


Listen Later

In this episode of the Microsoft Threat Intelligence Podcast, host⁠ ⁠⁠Sherrod DeGrippo is joined by Tori Murphy, Anna Seitz, and Chuong Dong to break down two threats: the modular backdoor PipeMagic and Medusa ransomware. They discuss how PipeMagic disguises itself as a ChatGPT desktop app to deliver malware, its sophisticated modular design, and what defenders can do to detect it.  

The team also explores Medusa’s evolution into a ransomware-as-a-service model, its use of double extortion tactics, and the broader threat landscape shaped by ransomware groups, social engineering, and the abuse of legitimate tools.  


In this episode you’ll learn:      

  • Why modular malware is harder to detect and defend against 

    • How attackers abuse vulnerable drivers to disable security tools 

      • Why leak sites play a central role in ransomware operations 

        Some questions we ask:     

        • How did Microsoft researchers uncover PipeMagic in the wild? 

          • Why do ransomware groups often borrow names and themes from mythology? 

            • What initial access techniques are commonly associated with Medusa attacks? 

               

              Resources:  

              View Anna Seitz on LinkedIn 

              View Chuong Dong on LinkedIn   

              View Sherrod DeGrippo on LinkedIn  

               

              Related Microsoft Podcasts:                   

              • Afternoon Cyber Tea with Ann Johnson 

                • The BlueHat Podcast 

                  • Uncovering Hidden Risks     

                     

                    Discover and follow other Microsoft podcasts at microsoft.com/podcasts  

                     

                    Get the latest threat intelligence insights and guidance at Microsoft Security Insider 

                     

                    The Microsoft Threat Intelligence Podcast is produced by Microsoft and distributed as part of N2K media network.  

                    ...more
                    View all episodesView all episodes
                    Download on the App Store

                    Microsoft Threat Intelligence PodcastBy Microsoft

                    • 5
                    • 5
                    • 5
                    • 5
                    • 5

                    5

                    21 ratings


                    More shows like Microsoft Threat Intelligence Podcast

                    View all
                    Hacked by Hacked

                    Hacked

                    184 Listeners

                    Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec by Jerry Bell and Andrew Kalat

                    Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec

                    369 Listeners

                    Risky Business by Patrick Gray

                    Risky Business

                    374 Listeners

                    SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

                    SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

                    637 Listeners

                    CyberWire Daily by N2K Networks

                    CyberWire Daily

                    1,016 Listeners

                    Smashing Security by Graham Cluley

                    Smashing Security

                    322 Listeners

                    Click Here by Recorded Future News

                    Click Here

                    416 Listeners

                    Darknet Diaries by Jack Rhysider

                    Darknet Diaries

                    8,010 Listeners

                    Cybersecurity Today by Jim Love

                    Cybersecurity Today

                    175 Listeners

                    Hacking Humans by N2K Networks

                    Hacking Humans

                    314 Listeners

                    CISO Series Podcast by David Spark, Mike Johnson, and Andy Ellis

                    CISO Series Podcast

                    188 Listeners

                    Defense in Depth by David Spark, Steve Zalewski, Geoff Belknap

                    Defense in Depth

                    73 Listeners

                    Cyber Security Headlines by CISO Series

                    Cyber Security Headlines

                    134 Listeners

                    Risky Bulletin by risky.biz

                    Risky Bulletin

                    44 Listeners

                    Hacker And The Fed by Chris Tarbell & Hector Monsegur

                    Hacker And The Fed

                    168 Listeners