Risky Business Video
February 26, 2025
Risky Business Weekly (781): How Bybit oopsied $1.4bn
Presented by

CEO and Publisher

Technology Editor
On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news:
- North Korea pulls off a 1.5 billion dollar crypto heist
- Apple pulls Advanced Data Protection from the UK
- Black Basta ransomware gang’s internal chats leak
- Russians snoop on Signal with QR codes
- And Myanmar ships thousands of freed scam compound workers to Thailand
Regular guest Lina Lau joins to discuss her work reading Chinese incident response reports on WeChat, and how that has people thinking that… she outed the NSA?
This week’s episode is sponsored by Airlock Digital, and allow-listing tragics Daniel Schell and David Cottingham are along with an amusing tale of using Windows’ own allow-listing software to block EDR from loading.
Show notes:
Hackers drained $1.4 billion of cryptocurrency from Bybit exchange, CEO confirms | The Record from Recorded Future News https://therecord.media/hackers-drained-bybit-crypto-exchange-hack
CertiK - Bybit Incident Technical Analysis https://www.certik.com/resources/blog/3wI26AFKF1UtSDjJEXNEDM-bybit-incident-technical-analysis
Hackers use ‘sophisticated’ macOS malware to steal cryptocurrency, Microsoft says | The Record from Recorded Future News https://therecord.media/hackers-use-macos-malware-to-steal-crypto
EU sanctions North Korean tied to Lazarus group over involvement in Ukraine war | The Record from Recorded Future News https://therecord.media/eu-sanctions-north-korea-ukraine-war-lazarus-group
Sanctions: Iranians Flock to Crypto; Int’l Actions Target Russia - Chainalysis https://www.chainalysis.com/blog/crypto-crime-sanctions-2025/
Apple turns off iCloud encryption feature in UK following reported government legal order | The Record from Recorded Future News https://therecord.media/apple-encryption-feature-off-britain
Swedish authorities seek backdoor to encrypted messaging apps | The Record from Recorded Future News https://therecord.media/sweden-seeks-backdoor-access-to-messaging-apps
Leaked chat logs expose inner workings of secretive ransomware group - Ars Technica https://arstechnica.com/security/2025/02/leaked-chat-logs-expose-inner-workings-of-secretive-ransomware-group/
Russian state hackers spy on Ukrainian military through Signal app | The Record from Recorded Future News https://therecord.media/russian-state-hackers-spy-on-ukraine-military-signal
Meta Sues Alleged Violent Extortionist For Holding Instagram Accounts Hostage https://www.404media.co/meta-lawsuit-unlocked-4-life-idriss-qibaa-instagram-extortion/
Weathering the storm: In the midst of a Typhoon https://blog.talosintelligence.com/salt-typhoon-analysis/
Thailand to take in 7,000 rescued from illegal cyber scam hubs in Myanmar | The Record from Recorded Future News https://therecord.media/thailand-to-take-in-7000-rescued-from-scam-hubs-myanmar
Genea confirms cyber breach after ‘unauthorised third party’ accesses data | news.com.au — Australia’s leading news site https://www.news.com.au/technology/online/hacking/genea-confirms-cyber-breach-after-unauthorised-third-party-accesses-data/news-story/dc3bc4a86d2be3e4895bc75582e41dea
Managed healthcare defense contractor to pay $11 million over alleged cyber failings | The Record from Recorded Future News https://therecord.media/managed-health-tricare-false-claims
Botnet looks for quiet ways to try stolen logins in Microsoft 365 environments | The Record from Recorded Future News https://therecord.media/botnet-credentials-microsoft-spraying-attack
Director-General’s Annual Threat Assessment 2025 | ASIO https://www.asio.gov.au/director-generals-annual-threat-assessment-2025
An inside look at NSA (Equation Group) TTPs from China’s lense https://www.inversecos.com/2025/02/an-inside-look-at-nsa-equation-group.html