The Cyberlympics 2018 online elimination round begins tonight! We had 134 teams participate this year from around the world. Good luck to all the teams!
Hacker Halted has partnered with @GORUCK to bring a real-world challenge to Hacker Halted and Global CISO Forum participants. Register: https://t.co/V7J3BcHpAq
Humanitarian organizations targeted. Memcrash extortion. Spring Break bug. Equifax breach update. Russian influence operations (and American "yelling and hollering"). - In today's podcast, we hear about a new campaign that targets humanitarian organiz... https://t.co/AWE1nL5RxA
Lebal malware phishes for victims — Research Saturday - Researchers at Comodo Security Solutions have been tracking a recently discovered strain of malware named Lebal. The malware uses several clever techniques to attempt to hide itself, and once ins... https://t.co/SDNgEgrpOO
Memcrashing no longer just a theoretical possibility. Fancy Bear's pawprints in German networks and other peoples' embassies. Deterrence in cyberspace. High-profile fraud victims. - In today's podcast, we hear that a Memcrash amplification attack took... https://t.co/FSeV5SQ794
Fancy Bear finds Berlin just right. RedDrop Android blackmail malware. Another AWS S3 exposure. FTC settles; SEC investigates. Blockchain radix malorum? - In today's podcast, we hear that Fancy Bear has been busy in a sensitive German government netwo... https://t.co/MCM06ywjAf
Memcrash and amplification attacks. SAML vulnerabilities. Thanatos ransomware. Petya returns (so does Marcher). Deterrence and election security. - In today's podcast, we hear that Memcrash threatens big DDoS events. Problems with single-sign-on solut... https://t.co/tsGK2eKsZL
Cryptojacking through an AWS S3 bucket. Threats, risk, and unintentional mistakes. Crime and punishment. Industry notes. Alien hackers? - In today's podcast, we hear that CoinHive was installed via a misconfigured AWS S3 bucket. Unintentional password... https://t.co/fGwTTSxWaa
Olympic hacking—false flags and attack infrastructure. Cryptojacking. Smartphone security bans. Heraldic animals of hacking. - In today's podcast, we hear that anonymous US Intelligence sources call the Olympic hacks a Russian false flag operation. Mo... https://t.co/exVu8LfPLC
Phishing for holiday winnings — Research Saturday - Or Katz is principal lead security researcher for Akamai's Enterprise Security Business Unit, and the research he’s sharing today is a widespread phishing campaign targeting users using an advertisin... https://t.co/2Qo4SgR1ed
Mirai variant establishes proxies. Buggy smart contracts. Banking glitch. Studies from Verizon, Thales. FTC addresses credential stuffing. - In today's podcast we hear, OMG, that Mirai is out in a new and improved form. Researchers find buggy smart co... https://t.co/SgJuzRKeda
Code signing certificates for sale. Impact of cybercrime on the world economy. Reaper out from under Lazarus's shadow. Catphishing. Cyber intelligence against terror. Ransomware and other hacks. - In today's podcast, we hear that counterfeit certifica... https://t.co/J4WR422I1Y
SWIFT phishbait. DPRK hacking gets better; GRU hacking looks east. Coldroot RAT. Cryptojacking. Election cybersecurity. - In today's podcast, we hear that SWIFT phishbait is hitting inboxes. North Korean hackers show fresh sophistication and new ambit... https://t.co/4jaMBN1vjq
SWIFT fraud in India. DPRK hacking updates. Notes on Russian influence ops, both indictments and continuing activity. Alleged Florida gunman may have been an Internet known wolf. - In today's podcast we hear that SWIFT fraud has hit an Indian lender. ... https://t.co/V6LvXiACiJ
The uncanny HEX men — Research Saturday - The research we’re discussing today is called, “Beware the Hex Men”, and it tracks multiple attack campaigns conducted by a Chinese threat actor. The GuardiCore Labs team identified three attack variants that ... https://t.co/zpIRZWWO7X
The complexities of Olympic Destroyer. More blame for Russia in the matter of NotPetya. Congress mulls election security. New York cyber milestone. Ed Snowden as phishbait. - In today's podcast, we hear more about Olympic Destroyer: its relationship s... https://t.co/vylX108SVV
Olympic Destroyer took its time, compromised the IT supply chain. NotPetya attribution. Coin scams. Coin miners. Botnets old and new. - In today's podcast we hear that Olympic Destroyer may have started with a supply-chain compromise back in December.... https://t.co/BOBjTO96JH