Back

Explore every episode of the podcast ShadowTalk: Powered by ReliaQuest

Dive into the complete episode list for ShadowTalk: Powered by ReliaQuest. Each episode is cataloged with detailed descriptions, making it easy to find and explore specific topics. Keep track of all episodes from your favorite podcast and never miss a moment of insightful content.

Rows per page:

1–50 of 474

TitlePub. DateDuration
GRU Orchestrate Sabotage and Assassination, Sextortion Scams, Inc. Ransom's Novel Attack11 Sep 202400:36:43

In this episode of ShadowTalk, host Chris Morgan, along with Marken Teder, discuss the latest news in cyber security and threat research. Topics this week include:

  • Russia's Military Intelligence target CNI, identified using "Non-Lethal Acoustic Weapons" 
  • New Sextortion scam targets spouses
  • Privacy concerns with smart automobiles
  • ReliaQuest research into "Inc Ransom" Data Extortion Attack

 Resources:


Guest Episode: Building Security Teams, Ransomware and Lawsuits, Top Attacker Techniques04 Sep 202400:44:22

In this episode of ShadowTalk, hosts Chris and Kim, along with guest CISO Rob F, discuss the latest news in cyber security and threat research. Topics this week include:

  • City of Columbus Ohio sue security researcher following ransomware breach
  • Dutch Data Protection Authority fine AI/Facial recognition company
  • Building security teams and improving your cyber maturity
  • ReliaQuest research into top attacker techniques

Resources:

Weekly: TeamViewer Supply Chain Attack, MOVEit Horrors, Medusa Ransomware Case Study03 Jul 202400:36:48

In this episode of ShadowTalk, hosts Chris and Kim, along with Marken, discuss the latest news in cyber security and threat research. Topics this week include:

  • TeamViewer compromised by APT29 in supply chain attack
  • MOVEit in the headlines again, critical severity vulnerability disclosed
  • Popular Content Delivery Network (CDN) providers compromised in supply chain attacks
  • ReliaQuest research in a case study attributed to the Medusa ransomware group

Resources: 

First use of LockBit Builder, Ransomware Groups Destroying vs. Encrypting Data, Domain Shadowing30 Sep 202200:19:04
ShadowTalk host Nicole alongside guests Stefano and Ivan give you the latest in threat intelligence. This week they cover: -Potential first use of LockBit Builder leak-Ransomware Groups Destroying vs. Encrypting Data-Increase in Domain ShadowingLockBit Builder leakGet this week’s intelligence summary at: https://resources.digitalshadows.com/weekly-intelligence-summary/20220930-dsweeklyintsum ***Resources from this week’s podcast***Who’s Next In Lapsus$’ Crosshairs?https://www.digitalshadows.com/blog-and-research/whos-next-in-lapsus-crosshairs/ Dark Web Recruitment: How Ransomware Groups Hire Cybercriminal Talenthttps://www.digitalshadows.com/blog-and-research/dark-web-recruitment-how-ransomware-groups-hire-cybercriminal-talent/ Guide to Domain Shadowing Detectionhttps://ieeexplore.ieee.org/document/9148945
LockBit Builder leak, Lapsus$ breaches Rockstar and Uber, Emotet pushes Quantum and Alphv ransomware23 Sep 202200:23:52
ShadowTalk host Nicole alongside Stefano give you the latest in threat intelligence. This week they cover:-LockBit Builder leak,-Lapsus$ breaches Rockstar Games and Uber,-Emotet pushes Quantum and Alphv ransomwareGet this week’s intelligence summary at: resources.digitalshadows.com/weekly-int…ry-23-sept
Weekly: Intermittent Encryption Tactics, Geopolitical Developments in Cyber Crime16 Sep 202200:26:09
ShadowTalk host Chris alongside Danny give you the latest in threat intelligence. This week they cover: -Intermittent Encryption Tactics,-Geopolitical Developments in Cyber CrimeGet this week’s intelligence summary at: https://resources.digitalshadows.com/weekly-intelligence-summary/weekly-intelligence-summary-16-sept***Resources from this week’s podcast***There’s No Honor Among Thieves: Carding Forum Staff Defraud Users In An ESCROW Scamhttps://www.digitalshadows.com/blog-and-research/theres-no-honor-among-thieves-carding-forum-staff-defraud-users-in-an-escrow-scam/Ransomware Franchising: How Do Groups Get Startedhttps://www.digitalshadows.com/blog-and-research/ransomware-franchising-how-do-groups-get-started/Subscribe to our threat intelligence email: https://info.digitalshadows.com/SubscribetoEmail-Podcast_Reg.htmlAlso, don’t forget to reach out to - shadowtalk@digitalshadows.com - if you have any questions, comments, or suggestions for the next episodes.
Weekly: Revival of Hacktivism, Targeting the Education Sector, Terror NFTs09 Sep 202200:24:17
ShadowTalk host Nicole alongside Ivan and Chris give you the latest in threat intelligence. This week they cover: -Increase in hacktivism since the Russian invasion of Ukraine -Threat Actors Targeting the Education Sector-New NTF Trends in Cyber Attacks Get this week’s intelligence summary at: https://resources.digitalshadows.com/weekly-intelligence-summary/weekly-intelligence-summary-09-sept***Resources from this week’s podcast***APT Spotlight Series: APT41https://www.digitalshadows.com/blog-and-research/apt-spotlight-series-apt41/Subscribe to our threat intelligence email: https://info.digitalshadows.com/SubscribetoEmail-Podcast_Reg.htmlAlso, don’t forget to reach out to - shadowtalk@digitalshadows.com - if you have any questions, comments, or suggestions for the next episodes.
Weekly: LastPass Incident, Montenegro Attacks02 Sep 202200:22:16
ShadowTalk host Stefano alongside Kim and Digital Shadows CISO Rick you the latest in threat intelligence. This week they cover: Details of the August attack on LastPassCoordinated and Precise Infrastructure Attacks in MontenegroGet this week’s intelligence summary at: https://resources.digitalshadows.com/weekly-intelligence-summary/weekly-intelligence-summary-02-sept***Resources from this week’s podcast***“Looking For Pentesters”: How Forum Life Has Conformed To The Ransomware Banhttps://www.digitalshadows.com/blog-and-research/looking-for-pentesters-how-forum-life-has-conformed-to-the-ransomware-ban/“I’m Tired Of Living In Poverty” – Russian-Speaking Cyber Criminals Feeling The Economic Pinchhttps://www.digitalshadows.com/blog-and-research/im-tired-of-living-in-poverty-russian-speaking-cyber-criminals-feeling-the-economic-pinch/
Weekly: Cyber Threat Insurance, LockBit’s lockdown, Charming Kitten email attack26 Aug 202200:24:34
ShadowTalk host Chris alongside Kim and Ivan bring you the latest in threat intelligence. This week they cover: - Lloyd’s of London Ltd. confirms policies state what they will and won’t cover- The LockBit sites have been shut down due to a DDoS attack- Charming Kitten uses a new tool to gather targeted email accountsGet this week’s intelligence summary at: https://resources.digitalshadows.com/weekly-intelligence-summary/weekly-intelligence-summary-26-aug***Resources from this week’s podcast***Vulnerability Intelligence RoundUp: Cloudy With A Chance Of Zero Dayshttps://www.digitalshadows.com/blog-and-research/vulnerability-intelligence-roundup-cloudy-with-a-chance-of-zero-days/What We’re Reading This Month: August 2022https://www.digitalshadows.com/blog-and-research/what-were-reading-this-month-august-2022/
Weekly: BlackHat and Defcon Recap, Microsoft’s Patch Tuesday, North Korea Fake Coinbase Jobs19 Aug 202200:31:41
ShadowTalk host Nicole alongside CISO Rick Holland bring you the latest in threat intelligence. This week they cover: - BlackHat and Defcon recap- Microsoft’s Patch Tuesday- North Korea fake Coinbase jobsGet this week’s intelligence summary at: https://resources.digitalshadows.com/weekly-intelligence-summary/weekly-intelligence-summary-19-aug***Resources from this week’s podcast***Stop The Line: Cyber Threats Facing Manufacturinghttps://www.digitalshadows.com/blog-and-research/stop-the-line-cyber-threats-facing-manufacturing/Honker Union: Has The Grandfather Of Chinese Hacktivism Returned?https://www.digitalshadows.com/blog-and-research/honker-union-has-the-grandfather-of-chinese-hacktivism-returned/
Weekly: A History of Ransomware, deBridge Hack Details, Advice for Multiple Ransomware Attacks11 Aug 202200:32:49
ShadowTalk host Chris alongside Stefano bring you the latest in threat intelligence. This week they cover: - History of ransomware- Details of the deBridge hack- Thoughts and recommendations for organizations targeted multiple timesGet this week’s intelligence summary at: ***Resources from this week’s podcast***Tensions Between The PRC And Taiwan: What’s Happening?https://www.digitalshadows.com/blog-and-research/tensions-between-the-prc-and-taiwan-whats-happening/Meet DUMPS Forum: A Pro-Ukraine, Anti-Russia Cybercriminal Forumhttps://www.digitalshadows.com/blog-and-research/meet-dumps-forum-a-pro-ukraine-anti-russia-cybercriminal-forum/
Weekly: 911 Proxy Service Ends, ALPHV claims attack on pipeline and Recent news from Taiwan & China05 Aug 202200:33:05
ShadowTalk host Stefano alongside Chris bring you the latest in threat intelligence. This week they cover: - 911 proxy service ends protection for cybercriminals- ALPHV (aka BlackCat) ransomware claims attack on European gas pipeline- Cyber threat implications from recent news in Taiwan & China Get this week’s intelligence summary at: https://resources.digitalshadows.com/digitalshadows/weekly-intelligence-summary-05-aug***Resources from this week’s podcast***The Boy Who Cried Ransomware: The Trustworthiness Of Ransomware Groupshttps://www.digitalshadows.com/blog-and-research/the-boy-who-cried-ransomware-the-trustworthiness-of-ransomware-groups/ReliaQuest And Digital Shadows – The Next Stage Of The Journeyhttps://www.digitalshadows.com/blog-and-research/reliaquest-and-digital-shadows-the-next-stage-of-the-journey/
Weekly: Entrust Ransomware Attack, Coinbase Insider-Trading Case and Redeemer Ransomware Builder29 Jul 202200:24:38
ShadowTalk host Nicole alongside Ivan and CISO Rick Holland bring you the latest in threat intelligence. This week they cover: - Entrust suffered a ransomware attack- Ex-Coinbase manager charged in first crypto insider-trading case- Redeemer ransomware builderGet this week’s intelligence summary at: ***Resources from this week’s podcast***Holy Ghost’s Bargain Basement Approach To Ransomwarehttps://www.digitalshadows.com/blog-and-research/holy-ghosts-bargain-basement-approach-to-ransomware/July edition of What we are reading this monthhttps://www.digitalshadows.com/blog-and-research/what-were-reading-this-month-july-2022/How To Paint Your Best Cyber Threat Landscape: My Three Top Tips From ENISA’s Methodology Reporthttps://www.digitalshadows.com/blog-and-research/how-to-paint-your-best-cyber-threat-landscape-my-three-top-tips-from-enisas-methodology-report/
Weekly: Lockbit Claim US Federal Reserve Breach, Protocol Tunneling, Kaspersky Banned in US27 Jun 202400:31:50

In this episode of ShadowTalk, hosts Chris and Kim, along with Ivan and Gjergji, discuss the latest news in cyber security and threat research. Topics this week include:

  • Lockbit claim breach of the US Federal Reserve, but are they telling the truth? 
  • ReliaQuest research into misuse of Protocol Tunneling
  • Fallout from the US Ban of Kaspersky

Resources:

Weekly: North Korea Makes Comeback with Ransomware, How Malware is Distributed, Russia Fines Google22 Jul 202200:46:24
ShadowTalk host Stefano alongside Chris and Dani bring you the latest in threat intelligence. This week they cover:* HolyGhost6 ransomware operation linked with North Korea* Explanation on how malware is created and distributed* Russia fines Google for failing to delete YouTube videos ***Resources from this week’s podcast***Q2 2022 Vulnerability Rounduphttps://www.digitalshadows.com/blog-and-research/q2-2022-vulnerability-roundup/Breach Forums – When Student Becomes The Teacherhttps://www.digitalshadows.com/blog-and-research/breach-forums-when-student-becomes-the-teacher/How To Paint Your Best Cyber Threat Landscape: My Three Top Tips From ENISA’s Methodology Reporthttps://www.digitalshadows.com/blog-and-research/how-to-paint-your-best-cyber-threat-landscape-my-three-top-tips-from-enisas-methodology-report/Microsoft links Holy Ghost ransomware operation to North Korean hackershttps://www.bleepingcomputer.com/news/security/microsoft-links-holy-ghost-ransomware-operation-to-north-korean-hackers/Russia fines Google $358 million for not removing banned infohttps://www.bleepingcomputer.com/news/security/russia-fines-google-358-million-for-not-removing-banned-info/Subscribe to our threat intelligence email: https://info.digitalshadows.com/SubscribetoEmail-Podcast_Reg.htmlAlso, don’t forget to reach out to - shadowtalk@digitalshadows.com - if you have any questions, comments, or suggestions for the next episodes.
Weekly: Microsoft Patch Tuesday, Russia Targeted, Hive Ransomware Upgrade, TrickBot Attacks Ukraine15 Jul 202200:32:13
ShadowTalk host Chris alongside Nicole, Ivan, and Rick bring you the latest in threat intelligence. This week they cover:* Microsoft Patch Tuesday* Chinese cyber espionage groups target Russia* Hive ransomware group takes LockBit information to upgrade to Rust* IBM Security X-Force finds evidence on TrickBot attacking Ukraine***Resources from this week’s podcast***Ransomware in Q2 2022: Ransomware is Back in Businesshttps://www.digitalshadows.com/blog-and-research/ransomware-in-q2-2022-ransomware-is-back-in-business/Offensive Nation-State Cyber Threats: Who Takes The Top Spot?https://www.digitalshadows.com/blog-and-research/offensive-nation-state-cyber-threats-who-takes-the-top-spot/Chinese Cyber Espionage Groups Increasingly Targeting Russiahttps://www.infosecurity-magazine.com/news/chinese-cyber-espionage-russia/Hive Ransomware Upgrades to Rust for More Sophisticated Encryption Methodhttps://thehackernews.com/2022/07/hive-ransomware-upgrades-to-rust-for.htmlUnprecedented Shift: The Trickbot Group is Systematically Attacking Ukrainehttps://securityintelligence.com/posts/trickbot-group-systematically-attacking-ukraine/Conti ransomware gang takes over TrickBot malware operationhttps://www.bleepingcomputer.com/news/security/conti-ransomware-gang-takes-over-trickbot-malware-operation/Subscribe to our threat intelligence email: https://info.digitalshadows.com/SubscribetoEmail-Podcast_Reg.htmlAlso, don’t forget to reach out to - shadowtalk@digitalshadows.com - if you have any questions, comments, or suggestions for the next episodes.
Weekly: Chinese Data Leaked, Crypto Scam Targets British Army, Bug Bounty Reports Insider Threat08 Jul 202200:35:38
ShadowTalk host Stefano alongside Dani bring you the latest in threat intelligence. This week they cover:* Roughly 1 billion Chinese citizens' data breached* British Army's Youtube and Twitter accounts hacked and used to promote cryptocurrency scams* HackerOne employee steals bug reports to sell ***Resources from this week’s podcast***What We’re Reading This Month: June 2022https://www.digitalshadows.com/blog-and-research/what-were-reading-this-month-june-2022/Hacker claims to have stolen 1 bln records of Chinese citizens from policehttps://www.reuters.com/world/china/hacker-claims-have-stolen-1-bln-records-chinese-citizens-police-2022-07-04/British Army’s YouTube and Twitter accounts were hacked to promote crypto scamshttps://www.theverge.com/2022/7/3/23193668/british-army-youtube-twitter-accounts-hacked-promote-crypto-scam-fraudRogue HackerOne employee steals bug reports to sell on the sidehttps://www.bleepingcomputer.com/news/security/rogue-hackerone-employee-steals-bug-reports-to-sell-on-the-side/Subscribe to our threat intelligence email: https://info.digitalshadows.com/SubscribetoEmail-Podcast_Reg.htmlAlso, don’t forget to reach out to - shadowtalk@digitalshadows.com - if you have any questions, comments, or suggestions for the next episodes.
Weekly: Cyber Threat Intelligence Aids Ukraine, Conti Stops Data Leak, LockBit's New Bounty Program01 Jul 202200:30:42
ShadowTalk host Chris alongside Stefano and Kim bring you the latest in threat intelligence. This week they cover:* Recent advances in cyber threat intelligence and end-point protection have helped Ukraine* Conti finally shuts down data leak and negotiates with victims* LockBit debuts ransomware bug bounty program***Resources from this week’s podcast***Market Differentiation: Cybercriminal Forums’ Unusual Features Designed To Attract Usershttps://www.digitalshadows.com/blog-and-research/market-differentiation-cybercriminal-forums-unusual-features-designed-to-attract-users/NATO Leaders Are Meeting At The Madrid Summit 2022: What Is Going To Happen?https://www.digitalshadows.com/blog-and-research/nato-leaders-are-meeting-at-the-madrid-summit-2022-what-is-going-to-happen/Defending Ukraine: Early Lessons from the Cyber Warhttps://blogs.microsoft.com/on-the-issues/2022/06/22/defending-ukraine-early-lessons-from-the-cyber-war/Conti ransomware finally shuts down data leak, negotiation siteshttps://www.bleepingcomputer.com/news/security/conti-ransomware-finally-shuts-down-data-leak-negotiation-sites/LockBit 3.0 Debuts With Ransomware Bug Bounty Programhttps://www.darkreading.com/threat-intelligence/lockbit-3-debut-bug-bounty-programSubscribe to our threat intelligence email: https://info.digitalshadows.com/SubscribetoEmail-Podcast_Reg.htmlAlso, don’t forget to reach out to - shadowtalk@digitalshadows.com - if you have any questions, comments, or suggestions for the next episodes.
Weekly: AlphV Publishes Victims' Data, 'BidenCash' Website Sells Credit Card Info, ATO Paper24 Jun 202200:36:05
ShadowTalk host Chris alongside Stefano and Kim bring you the latest in threat intelligence. This week they cover:* AlphV breaching victims' data in open source* 'BidenCash' website sells your credit card information for only 15 cents* Account Takeover paper***Resources from this week’s podcast***POLONIUM: Proxy Warfare And Iran’s Cyber Strategyhttps://www.digitalshadows.com/blog-and-research/polonium-proxy-warfare-and-irans-cyber-strategy/Vulnerability Intelligence Roundup: Leveraging The OODA Loop For Vulnerability Managementhttps://www.digitalshadows.com/blog-and-research/vulnerability-intelligence-roundup-leveraging-the-ooda-loop-for-vulnerability-management/Credential Stuffing: What Is It, Are You At Risk?https://www.digitalshadows.com/blog-and-research/credential-stuffing-what-is-it-are-you-at-risk/ALPHV/BlackCat ransomware gang starts publishing victims’ data on the clear webhttps://securityaffairs.co/wordpress/132339/malware/blackcat-ransomware-clear-web.htmlNew 'BidenCash' site sells your stolen credit card for just 15 centshttps://www.bleepingcomputer.com/news/security/new-bidencash-site-sells-your-stolen-credit-card-for-just-15-cents/The Anatomy of a Cyberattackhttps://www.wsj.com/articles/anatomy-cyberattack-11654543046Subscribe to our threat intelligence email: https://info.digitalshadows.com/SubscribetoEmail-Podcast_Reg.htmlAlso, don’t forget to reach out to - shadowtalk@digitalshadows.com - if you have any questions, comments, or suggestions for the next episodes.
Weekly: Follina Zero Day, Conti Shuts Down Affiliate Program, LockBit vs Mandiant Discussion17 Jun 202200:31:15
ShadowTalk host Stefano alongside Ivan, Nicole, and Rick bring you the latest in threat intelligence. This week they cover:* Cybersecurity researchers disclosed a new Windows zero-day vulnerability* Conti shuts down affiliate program* Cybercriminals discuss LockBit vs Mandiant***Resources from this week’s podcast***Weak Credentials Are Fueling A New Generation Of Cyber Threatshttps://www.digitalshadows.com/blog-and-research/weak-credentials-are-fueling-a-new-generation-of-cyber-threats/Subscribe to our threat intelligence email: https://info.digitalshadows.com/SubscribetoEmail-Podcast_Reg.htmlAlso, don’t forget to reach out to - shadowtalk@digitalshadows.com - if you have any questions, comments, or suggestions for the next episodes.
Weekly: LockBit PR Stunt Against Mandiant and Bohrium Targeted Users Via Spear-Phishing Operations10 Jun 202200:30:45
ShadowTalk host Stefano alongside Xue, and Kim bring you the latest in threat intelligence. This week they cover:- LockBit x Mandiant PR stunt- Bohrium targets victims in various geographiesGet this week’s intelligence summary at:https://resources.digitalshadows.com/weekly-intelligence-summary/weekly-intelligence-summary-10-jun/***Resources from this week’s podcast*** Killnet: The Hactivist Group That Started A Global Cyber War:https://www.digitalshadows.com/blog-and-research/killnet-the-hactivist-group-that-started-a-global-cyber-war/-Ransomware Gangs and PR Stunts: Why LockBit Faked a Ransomware Attack Against Mandianthttps://www.digitalshadows.com/blog-and-research/ransomware-gangs-and-pr-stunts-why-lockbit-faked-a-ransomware-attack-against-mandiant/
Special: Geoff White and the Lazarus Heist31 May 202200:28:58
ShadowTalk host Chris alongside Nicole and special guest Geoff White cover the cybercrime group Lazarus and their impact in cyber security.In this special episode, they discuss:* Geoff's new book 'The Lazarus Heist'* An overview of the Lazarus Group* How North Korea created one of the most sophisticated cyber crime groups in the world**Resources from this special podcast**Find Geoff on Twitter: https://twitter.com/geoffwhite247Find Geoff on LinkedIn: https://www.linkedin.com/in/geoffwhite247/Pre-order Geoff's book 'The Lazarus Heist' now:https://www.penguin.co.uk/books/447/447163/the-lazarus-heist/9780241554258.htmlSubscribe to our threat intelligence email: https://info.digitalshadows.com/SubscribetoEmail-Podcast_Reg.html Also, don’t forget to reach out to - shadowtalk@digitalshadows.com - if you have any questions, comments, or suggestions for the next episodes.
Special: David Thejl-Clayton Talks Rolling Your Own Verizon DBIR27 May 202201:30:32
Digital Shadows CISO Rick Holland hosts this edition of ShadowTalk. Rick is joined by repeat special guest David Thejl-Clayton, Senior Advisor in Cyber Defense at Combitech. They discuss:- Rick and David's thoughts on the 2022 DBIR report (Full disclosure, they are fanboys) - Research that shows how APT groups primarily go after known vulnerabilities and not 0days- David's experience helping customers create their custom version of the DBIR***Resources from this week’s podcast***Find David on Twitter: https://twitter.com/DCSecuritydkFind David on LinkedIn: https://www.linkedin.com/in/davidclayton454/2022 Data Breach Investigations Report: https://www.verizon.com/business/resources/reports/dbir/Vocabulary for Event Recording and Information Sharing (VERIS): http://veriscommunity.net/SANS CTI Summit - VERISIZE your way into CTI: https://www.youtube.com/watch?v=AwMC6INC5TESoftware Updates Strategies: a Quantitative Evaluation against Advanced Persistent Threats https://arxiv.org/abs/2205.07759VSec Community: https://vsec.dk/about/Checkout the “Roll your own DBIR” Templates on GitHub here: https://github.com/cvpl-fdca/rollyourown-DBIR
Weekly: Insider Threat Actor is Sentenced, Microsoft Patch Tuesday Mishap and NFT Scams20 May 202200:27:57
ShadowTalk host Chris alongside Ivan, and Nicole bring you the latest in threat intelligence. This week they cover: - Insider Threat Actor at Chinese real estate brokerage is sentenced to 7 years in prison- Microsoft Patch Tuesday mishap- NFT scamsGet this week’s intelligence summary at: https://resources.digitalshadows.com/weekly-intelligence-summary/weekly-intelligence-summary-20-may-2022***Resources from this week’s podcast***: Vulnerability Intelligence Round-Up: The Good, The Bad and The Risky:https://www.digitalshadows.com/blog-and-research/vulnerability-intelligence-round-up-the-good-the-bad-and-the-risky/ Mustang Panda: https://www.digitalshadows.com/blog-and-research/advanced-persistent-threat-group-feature-mustang-panda/ What we’re reading this month: https://www.digitalshadows.com/blog-and-research/what-were-reading-this-month-may-2022/ Angry IT Admin Wipes Employers Databases Gets 7 Years in Prisonhttps://www.bleepingcomputer.com/news/security/angry-it-admin-wipes-employer-s-databases-gets-7-years-in-prison/Microsoft May Patch Tuesday Updates Cause Windows Ad Authentication Errorshttps://threatpost.com/microsofts-may-patch-tuesday-updates-cause-windows-ad-authentication-errors/179631/Fake Binance NFT Mystery Box Bots Steal Victims Crypto Walletshttps://www.bleepingcomputer.com/news/security/fake-binance-nft-mystery-box-bots-steal-victims-crypto-wallets/
Weekly: Future of Scattered Spider, Supply Chain Compromise, Insider Threats20 Jun 202400:42:52

In this episode of ShadowTalk, host Chris, along with Marken, discuss the latest news in cyber security and threat research. Topics this week include:

  • Scattered Spider leader reportedly arrested, as group pivot to target SaaS solutions
  • ReliaQuest research into supply chain compromise. Detections to improve your resilience
  • Classifying insider threats and the difficulties of proving intent

Resources:

Weekly: Costa Rica Declares State of Emergency, EU Accuses Russia of Attack, 5 Years Since WannaCry13 May 202200:35:21
ShadowTalk host Stefano alongside Kim bring you the latest in threat intelligence. This week they cover:* Costa Rica declares state of emergency because of Conti* The European Council formally attributes VIASAT attack to Russia* Five years since the WannaCry incident***Resources from this week’s podcast***Five Years After The WannaCry Dumpster Fire, Ransomware Remains A Global Threathttps://www.digitalshadows.com/blog-and-research/five-years-after-the-wannacry-dumpster-fire-ransomware-remains-a-global-threat/US offers $15 million reward for info on Conti ransomware ganghttps://www.bleepingcomputer.com/news/security/us-offers-15-million-reward-for-info-on-conti-ransomware-gang/Viasat shares details on KA-SAT satellite service cyberattackhttps://www.bleepingcomputer.com/news/security/viasat-shares-details-on-ka-sat-satellite-service-cyberattack/Satellite outage knocks out thousands of Enercon's wind turbineshttps://www.reuters.com/business/energy/satellite-outage-knocks-out-control-enercon-wind-turbines-2022-02-28/Viasat confirms satellite modems were wiped with AcidRain malwarehttps://www.bleepingcomputer.com/news/security/viasat-confirms-satellite-modems-were-wiped-with-acidrain-malware/Subscribe to our threat intelligence email: https://info.digitalshadows.com/SubscribetoEmail-Podcast_Reg.htmlAlso, don’t forget to reach out to - shadowtalk@digitalshadows.com - if you have any questions, comments, or suggestions for the next episodes.
Weekly: The Return of REvil, China APT Activity, Russia-Ukraine RoundUp06 May 202200:20:09
ShadowTalk host Chris alongside Ivan and Nicole bring you the latest in threat intelligence. This week they cover:* REvil ransomware returns with new malware* Moshen Dragon targeting telecommunication service providers in Central Asia* Russian hackers utilize embassy emails to target governments***Resources from this week’s podcast***ALPHV: THE FIRST RUST-BASED RANSOMWAREhttps://www.digitalshadows.com/blog-and-research/alphv-the-first-rust-based-ransomware/Colonial Pipeline One Year Later: What’s Changed?https://www.digitalshadows.com/blog-and-research/colonial-pipeline-one-year-later-whats-changed/REvil ransomware returns: New malware sample confirms gang is backhttps://www.bleepingcomputer.com/news/security/revil-ransomware-returns-new-malware-sample-confirms-gang-is-back/Chinese cyber-espionage group Moshen Dragon targets Asian telcoshttps://www.bleepingcomputer.com/news/security/chinese-cyber-espionage-group-moshen-dragon-targets-asian-telcos/Russian hackers compromise embassy emails to target governmentshttps://www.bleepingcomputer.com/news/security/russian-hackers-compromise-embassy-emails-to-target-governments/Subscribe to our threat intelligence email: https://info.digitalshadows.com/SubscribetoEmail-Podcast_Reg.htmlAlso, don’t forget to reach out to - shadowtalk@digitalshadows.com - if you have any questions, comments, or suggestions for the next episodes.
Weekly: The Return of Lapsus$, 2 Months of Russia-Ukraine War29 Apr 202200:33:06
ShadowTalk host Stefano alongside Xue, Kim, & Rory bring you the latest in threat intelligence. This week they cover:* Cybercrime group Lapsus$ is back* Cyber activity in the Russia-Ukraine war so far***Resources from this week’s podcast***The Russia – Ukraine War: Two Months Inhttps://www.digitalshadows.com/blog-and-research/the-russia-ukraine-war-two-months-in/Opportunity In The Midst Of Chaos: Russian-Speaking Cybercriminals Grapple With Sanctions And Forum Takedownshttps://www.digitalshadows.com/blog-and-research/russian-speaking-cybercriminals-grapple-with-sanctions-and-forum-takedowns/Leaked Chats Show LAPSUS$ Stole T-Mobile Source Codehttps://krebsonsecurity.com/2022/04/leaked-chats-show-lapsus-stole-t-mobile-source-code/Subscribe to our threat intelligence email: https://info.digitalshadows.com/SubscribetoEmail-Podcast_Reg.htmlAlso, don’t forget to reach out to - shadowtalk@digitalshadows.com - if you have any questions, comments, or suggestions for the next episodes.
Weekly: Connection Found Between Conti and Karakurt, ICS Networks Targeted, Lazarus Uses Crypto Apps22 Apr 202200:32:05
ShadowTalk host Chris alongside Ivan, Rick, and Nicole bring you the latest in threat intelligence. This week they cover:* Security researchers find connection between Conti and Karakurt* Chernovite’s Pipedream malware targets ICS networks* Lazarus hacking group is targeting organizations in the cryptocurrency and blockchain industries***Resources from this week’s podcast***The Power Of Data Analysis In Threat Intelligence – Part 2: Machine Learninghttps://www.digitalshadows.com/blog-and-research/the-power-of-data-analysis-in-threat-intelligence-part-2-machine-learning//What We’re Reading This Month: April 2022https://www.digitalshadows.com/blog-and-research/what-were-reading-this-month-april-2022/The Role Of Non-Fungible Tokens (NFTs) In Facilitating Cybercrimehttps://www.digitalshadows.com/blog-and-research/the-role-of-non-fungible-tokens-in-facilitating-cybercrime/Karakurt revealed as data extortion arm of Conti cybercrime syndicatehttps://www.bleepingcomputer.com/news/security/karakurt-revealed-as-data-extortion-arm-of-conti-cybercrime-syndicate/Dragos estimates that Chernovite’s Pipedream malware targets ICS networkshttps://industrialcyber.co/threats-attacks/dragos-estimates-that-chernovites-pipedream-malware-targets-ics-networks/US warns of Lazarus hackers using malicious cryptocurrency appshttps://www.bleepingcomputer.com/news/security/us-warns-of-lazarus-hackers-using-malicious-cryptocurrency-apps/Subscribe to our threat intelligence email: https://info.digitalshadows.com/SubscribetoEmail-Podcast_Reg.htmlAlso, don’t forget to reach out to - shadowtalk@digitalshadows.com - if you have any questions, comments, or suggestions for the next episodes.
Weekly: Cybercriminal Forums Go Down & Cyber Activity in the Russia-Ukraine War Go Up14 Apr 202200:36:31
ShadowTalk host Stefano alongside Rory bring you the latest in threat intelligence. This week they cover:* 'RaidForums' has been shut down and seized* SandWorm targets electrical substations in Ukraine* The resurgence of hacktivism in the Russia-Ukraine conflict***Resources from this week’s podcast***Q1 2022 Vulnerability Rounduphttps://www.digitalshadows.com/blog-and-research/q1-2022-vulnerability-roundup/Q1 2022 Ransomware Rounduphttps://www.digitalshadows.com/blog-and-research/q1-2022-ransomware-roundup/One of the world’s biggest hacker forums taken downhttps://www.europol.europa.eu/media-press/newsroom/news/one-of-world%E2%80%99s-biggest-hacker-forums-taken-downSubscribe to our threat intelligence email: https://info.digitalshadows.com/SubscribetoEmail-Podcast_Reg.htmlAlso, don’t forget to reach out to - shadowtalk@digitalshadows.com - if you have any questions, comments, or suggestions for the next episodes.
Weekly: Spring4Shell, Borat RAT, FIN7 Evolves Toolset08 Apr 202200:20:27
ShadowTalk host Chris alongside Ivan and Austin bring you the latest in threat intelligence. This week they cover:* Spring4Shell: The Internet security disaster that wasn’t* New Borat remote access malware is no laughing matter* FIN7 hackers evolve toolset, work with multiple ransomware gangs***Resources from this week’s podcast***Intelligence Collection Plans: Preparation Breeds Successhttps://www.digitalshadows.com/blog-and-research/intelligence-collection-plans-preparation-breeds-success/Team A Vs Team B: What Is Motivating Lapsus$?https://www.digitalshadows.com/blog-and-research/team-a-vs-team-b-what-is-motivating-lapsus/Five Things We Learned From The Conti Chat Logshttps://www.digitalshadows.com/blog-and-research/five-things-we-learned-from-the-conti-chat-logs/Explaining Spring4Shell: The Internet security disaster that wasn’thttps://arstechnica.com/information-technology/2022/04/explaining-spring4shell-the-internet-security-disaster-that-wasnt/New Borat remote access malware is no laughing matterhttps://www.bleepingcomputer.com/news/security/new-borat-remote-access-malware-is-no-laughing-matter/FIN7 hackers evolve toolset, work with multiple ransomware gangshttps://www.bleepingcomputer.com/news/security/fin7-hackers-evolve-toolset-work-with-multiple-ransomware-gangs/Subscribe to our threat intelligence email: https://info.digitalshadows.com/SubscribetoEmail-Podcast_Reg.htmlAlso, don’t forget to reach out to - shadowtalk@digitalshadows.com - if you have any questions, comments, or suggestions for the next episodes.
Special: Structured Analytical Techniques and Office Banter04 Apr 202200:30:23
ShadowTalk host Stefano alongside Chris and Rick bring you the latest on structured analytical techniques. This episode they cover: *Why they use SATs in their intel team*How they came up with the idea to analyze Lapsus$*How they chose Team A/Team B and how they prepared it*How the exercise performed*Future research direction***Resources from this special podcast***Meet Lapsus$: An Unusual Group In The Cyber Extortion Business https://www.digitalshadows.com/blog-and-research/meet-lapsus-an-unusual-group-in-the-cyber-extortion-business/The Okta Breach: What We Know So Farhttps://www.digitalshadows.com/blog-and-research/the-okta-breach-what-we-know-so-far/A Tradecraft Primer: Structured Analytic Techniques for Improving Intelligence Analysis https://www.stat.berkeley.edu/~aldous/157/Papers/Tradecraft%20Primer-apr09.pdfSubscribe to our threat intelligence email: https://info.digitalshadows.com/SubscribetoEmail-Podcast_Reg.html Also, don’t forget to reach out to - shadowtalk@digitalshadows.com - if you have any questions, comments, or suggestions for the next episodes.
Especial: Desvendando o Grupo de Hackers Lapsus$04 Apr 202200:34:06
Bem-vindo ao Shadow Talk em Português! Neste episódio, Ivan, Matheus, e Daniel falam sobre:- A história do grupo Lapsus$ e como eles são diferentes- Conexões do Lapsus$ no Brasil- Reações de outros hackers sobre este grupo- Recomendações de como se proteger do Lapsus$***Recursos deste podcast***Meet Lapsus$: An Unusual Group In The Cyber Extortion Businesshttps://www.digitalshadows.com/blog-and-research/meet-lapsus-an-unusual-group-in-the-cyber-extortion-business/Weekly Intelligence Summary 25th Marhttps://resources.digitalshadows.com/digitalshadows/weekly-intelligence-summary-25th-marAssine nosso e-mail de inteligência de ameaças:https://info.digitalshadows.com/SubscribetoEmail-Podcast_Reg.html
Weekly: Q1 Review Including Russia-Ukraine War, REvil Arrests, Emergence of Lapsus$ & More!01 Apr 202200:30:20
ShadowTalk host Stefano alongside Kim, Xue, and Rick bring you the latest in threat intelligence. This week they cover a recap of a highly dynamic quarter including:* Log4j complex mitigation and remediation* REvil arrests* Cybercrime and Russia-Ukraine War* Extortion and the emergence of Lapsus$***Resources from this week’s podcast***Log4j: What’s Happened Sincehttps://www.digitalshadows.com/blog-and-research/log4j-whats-happened-since/The Log4j Zero-Day: What We Know So Farhttps://www.digitalshadows.com/blog-and-research/the-log4j-zero-day-what-we-know-so-far/Meet Lapsus$: An Unusual Group In The Cyber Extortion Businesshttps://www.digitalshadows.com/blog-and-research/meet-lapsus-an-unusual-group-in-the-cyber-extortion-business/How Cybercriminals Are Using Messaging Platformshttps://www.digitalshadows.com/blog-and-research/how-cybercriminals-are-using-messaging-platforms/Ransomware Q4 Overviewhttps://www.digitalshadows.com/blog-and-research/ransomware-q4-overview/Subscribe to our threat intelligence email: https://info.digitalshadows.com/SubscribetoEmail-Podcast_Reg.htmlAlso, don’t forget to reach out to - shadowtalk@digitalshadows.com - if you have any questions, comments, or suggestions for the next episodes.
Especial: Lapsus$, Sus Ataques, y La Brecha de Okta31 Mar 202200:29:36
Bienvenido a ShadowTalk en Español! En este episodio, Stefano y Dani van a discutir:* Lapsus$: Un grupo inusual en el negocio de la extorsión cibernética* Cómo Lapsus$ conducen sus ataques* Ataques de alto perfil y la brecha de Okta*** Si hoy has escuchado algo que te resulte curioso, no olvides consultar el contenido disponible en la sección de archivos adjuntos más abajo ***Los blogs de Digital Shadows en Lapsus$:Meet Lapsus$: An Unusual Group In The Cyber Extortion Businesshttps://www.digitalshadows.com/blog-and-research/meet-lapsus-an-unusual-group-in-the-cyber-extortion-business/The Okta Breach: What We Know So Farhttps://www.digitalshadows.com/blog-and-research/the-okta-breach-what-we-know-so-far/Come siempre, si teneis algún comentario sobre este episodio o si queréis saber mas de algún tema, escribenos a shadowtalk@digitalshadows.com y estaremos muy felices para tomar sus preguntas!
Guest Episode: Cyber Threats Facing Healthcare, Optum Impact, Ransomware, AI and Automation12 Jun 202400:42:58

In this Special Guest Episode of ShadowTalk, host Chris and one of ReliaQuest's CISOs Rick Holland are joined by University of Kansas Health System (UKHS) CISO Michael Meis to discuss the latest news in cyber security and threat research. Topics this week include:

  • Significant threats facing healthcare: Ransomware, accidental insiders
  • The influence of COVID on ransomware activity
  • The immediate and long term impact of the Optum breach
  • The importance of understanding your revenue cycle to weather the storm of a breach
  • Methods of maintaining engagement and retaining staff
  • AI and automation: Improving timeliness and efficiency of incident response
Weekly: Lapsus$ Targets Large Companies, Russia/Ukraine Ongoing War, TransUnion Data Breach25 Mar 202200:30:42
ShadowTalk host Chris alongside Kim, Ivan, and Rick bring you the latest in threat intelligence. This week they cover:* Lapsus$ threat group targets several large companies* Russia/Ukraine war shows no sign of slowing down* TransUnion unveils enhanced data breach***Resources from this week’s podcast***Vulnerability Intelligence Round-Up: Russia-Ukraine Warhttps://www.digitalshadows.com/blog-and-research/vulnerability-intelligence-round-up-russia-ukraine-war/The Okta Breach: What We Know So Farhttps://www.digitalshadows.com/blog-and-research/the-okta-breach-what-we-know-so-far/Russia’s Second Front: The War On Informationhttps://www.digitalshadows.com/blog-and-research/russias-second-front-the-war-on-information/Okta hack puts thousands of businesses on high alerthttps://www.theverge.com/2022/3/22/22990637/okta-breach-single-sign-on-lapsus-hacker-group?utm_campaign=theverge&utm_content=chorus&utm_medium=social&utm_source=twitterStatement by President Biden on our Nation’s Cybersecurityhttps://www.whitehouse.gov/briefing-room/statements-releases/2022/03/21/statement-by-president-biden-on-our-nations-cybersecurity/TransUnion Unveils Enhanced Data Breach Support Service in the UKhttps://newsroom.transunion.co.uk/transunion-unveils-enhanced-data-breach-support-service-in-the-uk/Subscribe to our threat intelligence email: https://info.digitalshadows.com/SubscribetoEmail-Podcast_Reg.htmlAlso, don’t forget to reach out to - shadowtalk@digitalshadows.com - if you have any questions, comments, or suggestions for the next episodes.
Special: Russia-Ukraine War Update 22 March 202222 Mar 202200:45:03
ShadowTalk host Chris alongside Austin, Stefano, and Rick bring you the latest on the war between Russia and Ukraine. This episode they cover:* Putin and the Russian military forces * The cybersecurity realm in the midst of war* Continuation and timeline of the ongoing conflict ***Resources from this special podcast***Statement by President Biden on Our Nation's Cybersecurityhttps://www.whitehouse.gov/briefing-room/statements-releases/2022/03/21/statement-by-president-biden-on-our-nations-cybersecurity/News and Updates Related to the Russian Invasion of Ukrainehttps://resources.digitalshadows.com/russian-news-and-updatesDonate to the Ukraine crisis via Red Crosshttps://donate.redcross.org.uk/appeal/ukraine-crisis-appealDigital Forensic Research Labmedium.com/dfrlab
Weekly: New Malware "CaddyWiper", Crypto ATM, Russia to Use TLS Certificates18 Mar 202200:35:48
ShadowTalk host Stefano alongside Kim and Dani bring you the latest in threat intelligence. This week they cover:* New Malware against Ukrainian targets: CaddyWiper* Crypto ATM and cybercriminals' reactions* Russia to start using homegrown TLS certificates***Resources from this week’s podcast***Meet Lapsus$: An Unusual Group In The Cyber Extortion Businesshttps://www.digitalshadows.com/blog-and-research/meet-lapsus-an-unusual-group-in-the-cyber-extortion-business/The Russia-Ukraine War And The Revival Of Hacktivismhttps://www.digitalshadows.com/blog-and-research/the-russia-ukraine-war-and-the-revival-of-hacktivism/Biden’s Executive Order On Crypto: What You Need To Knowhttps://www.digitalshadows.com/blog-and-research/bidens-executive-order-on-crypto-what-you-need-to-know/Subscribe to our threat intelligence email: https://info.digitalshadows.com/SubscribetoEmail-Podcast_Reg.htmlAlso, don’t forget to reach out to - shadowtalk@digitalshadows.com - if you have any questions, comments, or suggestions for the next episodes.
Weekly: Linux Vulnerability "Dirty Pipe", 2022 Ransomware Landscape So Far, Coinbase Blocks Russia11 Mar 202200:22:08
ShadowTalk host Chris alongside Ivan and Austin bring you the latest in threat intelligence. This week they cover:* New Linux Vulnerability "Dirty Pipe"* Ransomware Landscape in 2022 So Far* Coinbase Blocks More than 25,000 Addresses Linked to Russia***Resources from this week’s podcast***Exploring SIM Swapping Services On Cybercriminal Forumshttps://www.digitalshadows.com/blog-and-research/exploring-sim-swapping-services-on-cybercriminal-forums/Can Cryptocurrency Be Used To Bypass The Impact Of Sanctions Being Applied Against Russia?https://www.digitalshadows.com/blog-and-research/can-cryptocurrency-be-used-to-bypass-the-impact-of-sanctions-being-applied-against-russia/New Linux bug gives root on all major distros, exploit releasedhttps://www.bleepingcomputer.com/news/security/new-linux-bug-gives-root-on-all-major-distros-exploit-released/FBI: Ragnar Locker ransomware breached 52 US critical infrastructure orgshttps://www.itpro.co.uk/security/ransomware/365375/fbi-ragnar-locker-ransomware-us-critical-infrastructureCoinbase blocks over 25,000 Russian-linked crypto addresseshttps://www.bleepingcomputer.com/news/security/coinbase-blocks-over-25-000-russian-linked-crypto-addresses/Subscribe to our threat intelligence email: https://info.digitalshadows.com/SubscribetoEmail-Podcast_Reg.html Also, don’t forget to reach out to - shadowtalk@digitalshadows.com - if you have any questions, comments, or suggestions for the next episodes.
Special: Russia-Ukraine War Update 07 March 202207 Mar 202200:24:03
ShadowTalk host Chris alongside Stefano and Rory bring you the latest on the escalating tension between Russia and Ukraine. This episode they cover:* IDNS rejects Ukraine's request to block Russian Internet content* Anonymous claimed to have hacked Russian channels to broadcast footage from Ukraine***Resources from this special podcast***News and Updates Related to the Russian Invasion of Ukrainehttps://resources.digitalshadows.com/russian-news-and-updatesDonate to the Ukraine crisis via Red Crosshttps://donate.redcross.org.uk/appeal/ukraine-crisis-appealDigital Forensic Research Labmedium.com/dfrlab
Especial: Rusia y Ucrania Guerra, SWIFT, y Consejos de Mitigación y Reducción del Riesgo04 Mar 202200:32:20
Bienvenido a ShadowTalk en Español! En este episodio, Stefano y Dani van a discutir:* Rusia y Ucrania crisis* Las reacciones de los cibercriminales a estos eventos* La Sociedad para las Comunicaciones Interbancarias y Financieras Mundiales (SWIFT)* Consejos de mitigación y reducción del riesgoCome siempre, si teneis algún comentario sobre este episodio o si queréis saber mas de algún tema, escribenos a shadowtalk@digitalshadows.com y estaremos muy felices para tomar sus preguntas!
Weekly: Conti Leaks, Reactions from Cybercriminals, & Priority Intelligence Requirements03 Mar 202200:31:42
ShadowTalk host Stefano alongside Kim and Xue bring you the latest in threat intelligence. This week they cover:* Conti Leaks* Reactions from Cybercriminals* Priority Intelligence Requirements***Resources from this week’s podcast***Russian Cyber Threats: Practical Advice For Security Leadershttps://www.digitalshadows.com/blog-and-research/russian-cyber-threats-practical-advice-for-security-leaders/Cybercriminals React To Ukraine-Russia Conflicthttps://www.digitalshadows.com/blog-and-research/cybercriminals-react-to-ukraine-russia-conflict/Intelligence Requirements: Planning Your Cyber Response To The Russia-Ukraine Warhttps://www.digitalshadows.com/blog-and-research/planning-your-cyber-response-to-the-russia-ukraine-war/ Conti Ransomware Group Diaries, Part I: Evasionhttps://krebsonsecurity.com/2022/03/conti-ransomware-group-diaries-part-i-evasion/Subscribe to our threat intelligence email: https://info.digitalshadows.com/SubscribetoEmail-Podcast_Reg.html Also, don’t forget to reach out to - shadowtalk@digitalshadows.com - if you have any questions, comments, or suggestions for the next episodes.
Special: Russia-Ukraine War Update 02 March 202203 Mar 202200:36:04
ShadowTalk host Chris alongside Stefano, Rory, and Rick bring you the latest on the escalating tension between Russia and Ukraine. This episode they cover:* Recent cyber developments* Malware targeting Ukrainian organizations* New sanctions against Russia***Resources from this special podcast***Donate to the Ukraine crisis via Red Crosshttps://donate.redcross.org.uk/appeal/ukraine-crisis-appealDigital Forensic Research Labmedium.com/dfrlabPhoton BriefingSHAPING YOUR RESPONSE TO THE RUSSIA - UKRAINE WAR SESSION DETAILS: 03 Mar 2022Session 1: 12pm GMT | Session 2: 8:30am PThttps://info.digitalshadows.com/PhotonIntelBriefing-RussiaUkraine.html
Special: Russia and Ukraine - What We Know So Far - 28 February 202228 Feb 202200:34:18
ShadowTalk host Chris alongside Stefano, Rory, and Rick bring you the latest on the escalating tension between Russia and Ukraine. This episode they cover:* Continuing attacks between Russia and Ukraine* New sanctions against Russian banks* Cybercriminal developments * Nuclear forces on high alert/peace talks***Resources from this special podcast***Donate to the Ukraine crisis via Red Crosshttps://donate.redcross.org.uk/appeal/ukraine-crisis-appealDigital Forensic Research Labhttps://medium.com/dfrlabWar via TikTok: Russia's new tool for propaganda machinehttps://apnews.com/article/russia-ukraine-technology-europe-media-nationalism-2186dbc533560cb666f59655ecf1ee8e
Weekly: Russian Offensive Cyber-Team, Conti-Trickbot, OpenSea NFT Breach, & More!25 Feb 202200:36:23
ShadowTalk host Chris alongside Ivan, Austin, and Rick bring you the latest in threat intelligence. This week they cover:* Russian Offensive Cyber-Team* Conti-Trickbot* OpenSea NFT Breach***Resources from this week’s podcast***Russia Invades Ukraine: What Happens Next?https://www.digitalshadows.com/blog-and-research/russia-invades-ukraine-what-happens-next/Recruitment Fraud In 2022https://www.digitalshadows.com/blog-and-research/recruitment-fraud-in-2022/Of Death And Taxes: File Early To Beat The Scammershttps://www.digitalshadows.com/blog-and-research/of-death-and-taxes-file-early-to-beat-the-scammers/Russia unleashed data-wiper malware on Ukraine, say cyber expertshttps://www.theguardian.com/world/2022/feb/24/russia-unleashed-data-wiper-virus-on-ukraine-say-cyber-expertsConti ransomware gang takes over TrickBot malware operationhttps://www.bleepingcomputer.com/news/security/conti-ransomware-gang-takes-over-trickbot-malware-operation/OpenSea users lose $2 million worth of NFTs in phishing attackhttps://www.bleepingcomputer.com/news/security/opensea-users-lose-2-million-worth-of-nfts-in-phishing-attack/Subscribe to our threat intelligence email: https://info.digitalshadows.com/SubscribetoEmail-Podcast_Reg.html Also, don’t forget to reach out to - shadowtalk@digitalshadows.com - if you have any questions, comments, or suggestions for the next episodes.
Special: Live from InfoSec Europe 2024, Snowflake Breach, Cybercriminal AI reflections05 Jun 202400:27:29

In this episode of ShadowTalk, host Chris Morgan is joined by ReliaQuest Chief Strategy Officer Jason Pfeiffer LIVE on the InfoSec Europe show floor in London, UK to discuss:

  • How InfoSec stacks up against the US cyber conferences
  • Snowflake data breach affecting TicketMaster and others
  • Cybercriminal reflections on generative AI

Resources:

Special: Russia and Ukraine Conflict23 Feb 202200:32:15
ShadowTalk host Chris alongside Stefano, Rory, and Austin bring you the latest on the escalating tension between Russia and Ukraine. This episode they cover:* The current situation between Russia and Ukraine* Reasons for Russia’s invasions* International reactions to the escalation* Future projections and likely cybersecurity outcomes
Weekly: US DoJ Indictment, Grey Hat & ETH's Bounty, Crypto Ads18 Feb 202200:42:57
ShadowTalk host Stefano alongside Saul, Rory, and Dylan bring you the latest in threat intelligence. This week they cover:* US DoJ Indictment Against Weird-Acting BTC Laundering Couple* Grey Hat and ETH's Phat Bug Bounty* Crypto Superbowl Ads***Resources from this week’s podcast***Automate Alert Investigation And Response With XSOAR And SearchLighthttps://www.digitalshadows.com/blog-and-research/automate-alert-investigation-and-response-with-xsoar-and-searchlight/Initial Access Brokers In 2021: An Ever Expanding Threathttps://www.digitalshadows.com/blog-and-research/initial-access-brokers-in-2021-an-ever-expanding-threat/“No Cards = No Work = No Money”: Russian Law Enforcement’s Assault On Carding Platformshttps://www.digitalshadows.com/blog-and-research/russian-law-enforcements-assault-on-carding-platforms/Two Arrested for Alleged Conspiracy to Launder $4.5 Billion in Stolen Cryptocurrencyhttps://www.justice.gov/opa/pr/two-arrested-alleged-conspiracy-launder-45-billion-stolen-cryptocurrencyDeFi Takes on Bigger Role in Money Laundering But Small Group of Centralized Services Still Dominatehttps://blog.chainalysis.com/reports/2022-crypto-crime-report-preview-cryptocurrency-money-laundering/Hacker could’ve printed unlimited ‘Ether’ but chose $2M bug bounty insteadhttps://protos.com/ether-hacker-optimism-ethereum-layer2-scaling-bug-bounty/Coinbase’s bouncing QR code Super Bowl ad was so popular it crashed the apphttps://www.theverge.com/2022/2/13/22932397/coinbases-qr-code-super-bowl-ad-app-crashSubscribe to our threat intelligence email: https://info.digitalshadows.com/SubscribetoEmail-Podcast_Reg.html Also, don’t forget to reach out to - shadowtalk@digitalshadows.com - if you have any questions, comments, or suggestions for the next episodes.
Weekly: Microsoft to Enable Macros in Office, Russia Arrests Hacking Group, Valentine's Day Concerns11 Feb 202200:20:51
ShadowTalk host Chris alongside Ivan and Austin bring you the latest in threat intelligence. This week they cover:* Microsoft Announces Plans to Enable Macros in Office Applications* Russia Arrests Six People Linking to Hacking Group* Things To Be Aware of This Valentine's Day ***Resources from this week’s podcast***Valentine's Day: Share Your Love, Not Your Credentialshttps://www.digitalshadows.com/blog-and-research/valentines-day-share-your-love-not-your-credentials/Growing Tension Between Russia And Ukraine: Should You Be Concerned?https://www.digitalshadows.com/blog-and-research/growing-tension-between-russia-and-ukraine/CVEs You Might Have Missed While Log4j Stole The Headlineshttps://www.digitalshadows.com/blog-and-research/cves-you-might-have-missed-whilst-log4j-stole-the-headlines/Microsoft plans to kill malware delivery via Office macroshttps://www.bleepingcomputer.com/news/microsoft/microsoft-plans-to-kill-malware-delivery-via-office-macros/Russia arrests third hacking group, seizes carding forumshttps://www.bleepingcomputer.com/news/security/russia-arrests-third-hacking-group-seizes-carding-forums/FBI Warns of Romance Scams Ahead of Valentine’s Dayhttps://www.fbi.gov/contact-us/field-offices/columbia/news/press-releases/fbi-warns-of-romance-scams-ahead-of-valentines-dayWest Mercia Police issue romance fraud warning to online daters in the run up to Valentine's Dayhttps://worcesterobserver.co.uk/news/west-mercia-police-issue-romance-fraud-warning-to-online-daters-in-the-run-up-to-valentines-day-35613/Subscribe to our threat intelligence email: https://info.digitalshadows.com/SubscribetoEmail-Podcast_Reg.html Also, don’t forget to reach out to - shadowtalk@digitalshadows.com - if you have any questions, comments, or suggestions for the next episodes.
© My Podcast Data