Risky Business #361 -- ISIS pwns French TV, Russians pwn White House

You know, business as usual...
09 Apr 2015 » Risky Business

We've got a shorter than usual show for you this week. It's actually been a three day week here in Australia because we get Easter Friday and Easter Monday off. So there's no feature interview this week, sorry about that.

But nonetheless we've got a great podcast for you this week. We'll be checking the week's news headlines with Adam Boileau then moving right on into this week's sponsor interview.

This week's show is brought to you by Rapid7, makers of fine, fine information security software. And we're chatting with Rapid7's Wade Woolwine in this week's sponsor interview about how to get the most out of what you have. It can be as simple as rotating some of your smartest people through different areas of your businesses. Make your best pentester deal with the SIEM setup for a month and guess what? You're going to have a much better SIEM setup at the end of it!

Don't forget you can now support the Risky Business page via our Patreon campaign.

Oh, and do add Patrick and Adam on Twitter if that's your thing.

Show notes

French TV5Monde channel hit by pro-Islamic State hackers - Yahoo News
http://news.yahoo.com/french-tv5monde-hit-pro-islamic-state-hackers-2221...

French broadcaster TV5Monde hacked: Yahoo News | Reuters
http://www.reuters.com/article/2015/04/08/us-tv5monde-cybercrime-idUSKBN...

'ISIS hackers' overtake French TV station - RT News
http://rt.com/news/248073-islamic-state-hackers-french-tv/

How Russians hacked the White House - CNN.com
http://edition.cnn.com/2015/04/07/politics/how-russians-hacked-the-wh/in...

White House denies CNN report that Russian hackers penetrated sensitive computer systems - ABC News (Australian Broadcasting Corporation)
http://www.abc.net.au/news/2015-04-08/white-house-denies-russian-hacker-...

New lawsuit says DEA phone surveillance was illegal
http://www.usatoday.com/story/news/2015/04/08/eff-lawsuit-dea-telephone-...

On John Oliver, Edward Snowden Says Keep Taking Dick Pics | WIRED
http://www.wired.com/2015/04/john-oliver-edward-snowden-dick-pics/

Popular crypto app uses single-byte XOR and nowt else, hacker says \u2022 The Register
http://www.theregister.co.uk/2015/04/07/uberpopular_crypto_app_uses_xor_...

Anonabox Recalls 350 'Privacy' Routers for Security Flaws | WIRED
http://www.wired.com/2015/04/anonabox-recall/

Review: Anonabox or InvizBox, which Tor router better anonymizes online life? | Ars Technica
http://arstechnica.com/information-technology/2015/04/review-anonabox-or...

Vulnerability Forces Mozilla to Disable Opportunistic Encryption in Firefox | Threatpost | The first stop for security news
https://threatpost.com/vulnerability-forces-mozilla-to-disable-opportuni...

TrueCrypt alternatives VeraCrypt CipherShed Step Up | Threatpost | The first stop for security news
https://threatpost.com/post-cryptanalysis-truecrypt-alternatives-step-fo...

FBI Warns of Fake Govt Sites, ISIS Defacements - Krebs on Security
http://krebsonsecurity.com/2015/04/fbi-warns-of-fake-govt-sites-isis-def...

As many as 1 million sites imperiled by dangerous bug in WordPress plugin | Ars Technica
http://arstechnica.com/security/2015/04/as-many-as-1-million-sites-imper...

Change.org springs a leak, exposes private e-mail addresses [updated] | Ars Technica
http://arstechnica.com/security/2015/04/change-org-springs-a-leak-expose...

Linux Australia Breached by Hackers | Threatpost | The first stop for security news
https://threatpost.com/linux-australia-hit-with-server-breach/112025

In the time it takes you to watch The Hangover, AT&T will pay a $25m fine for privacy scandal \u2022 The Register
http://www.theregister.co.uk/2015/04/08/fcc_at_t_25_million_dollar_fine/

Schneier on Security: Australia Outlaws Warrant Canaries
https://www.schneier.com/blog/archives/2015/03/australia_outla.html

Most top corporates still Heartbleeding over the internet \u2022 The Register
http://www.theregister.co.uk/2015/04/08/still_bleeding_one_year_laterhea...

Police chief: "Paying the Bitcoin ransom was the last resort" | Ars Technica
http://arstechnica.com/tech-policy/2015/04/police-chief-paying-the-bitco...

Chrome extension collects browsing data, uses it for marketing | Ars Technica
http://arstechnica.com/security/2015/04/chrome-extension-collects-browsi...

Bugs in Tor network used in attacks against underground markets | Ars Technica
http://arstechnica.com/security/2015/04/bugs-in-tor-network-used-in-atta...

NTP Symmetric Key Authentication Security Vulnerabilities Patched | Threatpost | The first stop for security news
https://threatpost.com/two-ntp-key-authentication-vulnerabilities-patche...

Aw, snap! How huge HTML links can crash Chrome tabs in one click \u2022 The Register
http://www.theregister.co.uk/2015/04/07/chrome_awsnap_vuln/

Apple Releases Security Updates for OS X, iOS, Safari, and Apple TV | US-CERT
https://www.us-cert.gov/ncas/current-activity/2015/04/08/Apple-Releases-...

Strontium 90 (band) - Wikipedia, the free encyclopedia
http://en.wikipedia.org/wiki/Strontium_90_%28band%29