GRU eyes US election
The Risky Biz newsletter for September 15, 2020...Microsoft has outed attempts by GRU attackers to hack into the Office365 accounts of political campaigns.
Microsoft has outed attempts by GRU attackers to hack into the Office365 accounts of political campaigns.
On this week’s show Patrick and Adam discuss the week’s security news, including:
Plus DDoS extortion surge, Norwegian Parliament inboxes under attack, US weighs up cost of replacing Huawei and more…
This is a sponsored podcast.
Today we’re chatting with a very special guest, Haroon Meer.
Haroon is the founder of Thinkst Canary. Some call it a deception company, but he doesn’t, as you’ll hear. He says Canary is a detection company and the distinction is important.
On this week’s show Patrick and Alex discuss the week’s security news, including:
The US Government has stepped up its campaign to expose North Korea’s state-backed cybercrime operations, this week doxxing malware the DPRK uses to cash out attacks on banks and the techniques it uses to launder funds stolen from cryptocurrency exchanges.
On this week’s show Patrick and Adam discuss the week’s security news, including:
A criminal complaint filed against Uber’s former chief security officer this week was an extraordinary event because Uber’s response to its 2016 breach was anything but ordinary. There are nonetheless some hard lessons in it for every CSO.
On this week’s show Patrick, Adam and Sherrod DeGrippo discuss the week’s security news, including:
This week’s show is brought to you by Airlock Digital. They make allowlist/safelist software that is actually manageable at scale! David Cottingham, an Airlock co-founder, joins the show this week to talk through a few product updates.
If the SANS Institute can fall victim to OAuth phishing, what hope do most Microsoft customers have?
The Australian Government has unveiled plans for unprecedented interventions in the operations of critical infrastructure providers.
American technology companies must accept they have a role to play in national security, and that the return of Great Power competition requires them to choose sides.
On this week’s show Patrick and Adam discuss the week’s security news, including:
A US-China trade war and a global pandemic have in a few short months accelerated a drift into ‘network sovereignty’: a world in which the internet is no longer a truly open, global network.
Australia’s 2020 cyber security strategy is the latest national plan to propose that company directors be held accountable for meeting minimum information security baselines prescribed by the government.
In the absence of anything specific in the strategy document, Risky.Biz talked to some real experts on measuring cyber security maturity to suggest some ways forward.
On this week’s show Patrick and Adam discuss the week’s security news, including:
Donald Trump’s personal involvement in threats to ban TikTok is distracting from any legitimate national security concerns the video sharing app might present to the United States. What started as some half-hearted sabre rattling after he was thoroughly punk’d by TikTok teens at his Tulsa rally in late June has spiralled into a theatre of the absurd.
In the same week the EU imposed sanctions against Russian, Chinese and North Korean actors, hacking crews from all three countries were implicated in new mischief.
Soap Box is the wholly sponsored podcast series we do here at Risky.Biz. That means everyone you hear on this podcast paid to be here. In this podcast you’re going to hear my latest interview with Jerrod Chong, Yubico’s Chief Solutions Officer.
Hardware security keys like Yubikeys have come a long way, even over the last couple of years. The biggest change is that the support for hardware keys is borderline ubiquitous now. FIDO2 support is in all the major browsers. You can even use Yubikeys with Google apps on an iPhone. The plumbing is here, it’s arrived.
On this week’s show Patrick and Adam discuss the week’s security news, including: