The art of information gathering. [Research Saturday]
CyberWire Daily20 Huhti 2024

The art of information gathering. [Research Saturday]

Greg Lesnewich, senior threat researcher at Proofpoint, sits down to discuss "From Social Engineering to DMARC Abuse: TA427’s Art of Information Gathering." Since 2023, TA427 has directly solicited foreign policy experts for their opinions on nuclear disarmament, US-ROK policies, and sanction topics via benign conversation starting emails. The research states "While our researchers have consistently observed TA427 rely on social engineering tactics and regularly rotating its email infrastructure, in December 2023 the threat actor began to abuse lax Domain-based Message Authentication, Reporting and Conformance (DMARC) policies to spoof various personas and, in February 2024, began incorporating web beacons for target profiling." The research can be found here: From Social Engineering to DMARC Abuse: TA427’s Art of Information Gathering

Tämä jakso on lisätty Podme-palveluun avoimen RSS-syötteen kautta eikä se ole Podmen omaa tuotantoa. Siksi jakso saattaa sisältää mainontaa.

Jaksot(3763)

CyberWire Daily at 10: Critical infrastructure attacks over the last 10 years. [Special Edition]

CyberWire Daily at 10: Critical infrastructure attacks over the last 10 years. [Special Edition]

In this Special Edition episode, Maria Varmazis⁠ and ⁠Dave Bittner⁠ from N2K Cyberwire get back together to reflect on the past decade of critical infrastructure attacks, evolving threats, and lessons...

20 Syys 43min

Defending Space as Critical Infrastructure. [T-Minus: Space-Cyber Briefing]

Defending Space as Critical Infrastructure. [T-Minus: Space-Cyber Briefing]

Space infrastructure has become an increasingly important part of everyday life, which has also made it an increasingly attractive target for exploitation. Host Maria Varmazis and Sean MacKirdy, Are...

20 Syys 26min

All about that proxy. [Research Saturday]

All about that proxy. [Research Saturday]

Today we are joined by Dr. Renée Burton, VP of Threat Intelligence at Infoblox, discussing their work on Lurking Lizard, "Fake Installers, Fake Reviews, Fake Services – Real Proxies, Real." The resear...

19 Syys 25min

The Cisco root route.

The Cisco root route.

Cisco patches a maximum-severity vulnerability in its Identity Services Engine. Court documents describe AI as “an astonishing theft of unprecedented proportions.” Researchers chain vulnerabilities to...

18 Syys 28min

AI is calling the shots.

AI is calling the shots.

AI goes to war. Iranian strikes leave AWS data unrecoverable. OpenAI discloses more model misbehavior. Researchers uncover 16 Wireshark vulnerabilities. TrustSink turns Entra authentication into a pas...

17 Syys 29min

Cybercrime finds its sea legs.

Cybercrime finds its sea legs.

Officials investigate suspected cyberattacks on U.S.-bound oil tankers. Iranian operators deploy Chosen Brick surveillance malware. Ukraine cracks down on scam call centers. Researchers uncover two TP...

16 Syys 29min

Pedal to the AI metal.

Pedal to the AI metal.

The President pushes back on calls to slow AI. Microsoft lays out potential AI safety rules. Lawmakers consider the crypto Clarity Act. Florida’s Department of Highway Safety and Motor Vehicles and Ja...

15 Syys 28min

Bigfoot in the neural network.

Bigfoot in the neural network.

NSA preps a major restructuring. Anthropic’s CEO calls for an AI slowdown. China acknowledges AI risks. RubyGems got swarmed by AI agents. A maximum-severity GitLab vulnerability is under active expl...

14 Syys 27min

Suosittua kategoriassa Politiikka ja uutiset

uutiscast
vallattomat
aikalisa
politiikan-puskaradio
rss-viihde-media
ootsa-kuullut-tasta-2
rss-vaalirankkurit-podcast
rss-ootsa-kuullut-tasta
rss-voi-venaja
rss-asiastudio
rikosmyytit
rss-raha-talous-ja-politiikka
et-sa-noin-voi-sanoo-esittaa
tervo-halme
rss-kaikki-uusiksi
rss-pinnalla
rss-ulkopoditiikkaa
the-ulkopolitist
rss-seksicast
otetaan-yhdet