The guy who stopped WannaCry was arrested right after DEF CON, a vulnerability on older amazon echo’s won’t be patched, and hackers are using online repos to get developer creds. All that coming up now on Threat Wire.
-------------------------------Shop: http://www.hakshop.com Support: http://www.patreon.com/threatwire Subscribe: http://www.youtube.com/hak5 Our Site: http://www.hak5.org Contact Us: http://www.twitter.com/hak5 Threat Wire RSS: https://shannonmorse.podbean.com/feed/ Threat Wire iTunes: https://itunes.apple.com/us/podcast/threat-wire/id1197048999 Help us with Translations! http://www.youtube.com/timedtext_cs_panel?tab=2&c=UC3s0BtrBJpwNDaflRSoiieQ ------------------------------
Links:https://www.wired.co.uk/article/what-is-kronos-trojan-malware-marcus-hutchins-hacker https://twitter.com/MalwareTechBlog/status/488373794168254464 https://motherboard.vice.com/en_us/article/ywp8k5/researcher-who-stopped-wannacry-ransomware-detained-in-us-after-def-con https://motherboard.vice.com/en_us/article/pagn7v/malwaretech-wannacry-indictment-kronos-malware https://www.documentcloud.org/documents/3912524-Kronos-Indictment-R.html http://uk.businessinsider.com/malwaretech-researcher-marcus-hutchins-has-been-granted-a-30000-bail-2017-8 https://twitter.com/tarah https://secure.lawpay.com/pages/torekeland/hutchinsldf http://www.bbc.co.uk/news/technology-40833951 https://www.wired.com/story/wannacry-malwaretech-arrest/ https://arstechnica.com/tech-policy/2017/08/researcher-who-stopped-wcry-worm-detained-under-mysterious-circumstances/ https://www.youtube.com/watch?v=X7DIjaQvZn0 https://www.engadget.com/2017/08/04/marcus-hutchins-kronos-malwaretech/ https://twitter.com/LOBOLAWPLLC https://twitter.com/MabbsSec/status/893624617142759425 https://twitter.com/MabbsSec https://www.wired.com/story/marcus-hutchins-arrest
https://labs.mwrinfosecurity.com/blog/alexa-are-you-listening https://motherboard.vice.com/en_us/article/evng4p/hack-that-turns-amazon-echo-into-a-spying-device-cant-be-fixed-by-software-patch https://arstechnica.com/information-technology/2017/08/how-hackers-could-turn-an-amazon-echo-into-a-secret-bugging-device/
https://threatpost.com/attackers-use-typo-squatting-to-steal-npm-credentials/127235/ http://blog.npmjs.org/post/163723642530/crossenv-malware-on-the-npm-registry
Youtube Thumbnail credit:Marcus Hutchins Frank Augstein / AP