logo
episode-header-image
Mar 2022
22m 21s

Moscow poorly served by its intelligence...

N2K Networks
About this episode

Russian cyber operators collect against domestic targets. More details on the Viasat hack. Ukrainian hacktivists say they can interfere with Russian geolocation. Spring4shell is another remote-code-execution problem. The Remcos Trojan is seeing a resurgence. Malicious links distributed via Calendly. Johannes Ullrich from SANS on attack surface detection. Our guest is Fleming Shi from Barracuda on cybersecurity champions. Phishing with “emergency data requests.” Lapsus$ may be back from vacation.


For links to all of today's stories check out our CyberWire daily news briefing:

https://thecyberwire.com/newsletters/daily-briefing/11/62


Selected reading.

Vladimir Putin is being lied to by his advisers, says GCHQ (The Telegraph) 

U.S. intelligence suggests that Putin’s advisers misinformed him on Ukraine. (New York Times) 

White House: Intel shows Putin misled by advisers on Ukraine (AP NEWS) 

Russian troops sabotaging their own equipment and refusing orders in Ukraine, UK spy chief says (CNBC) 

Phishing campaign targets Russian govt dissidents with Cobalt Strike (BleepingComputer) 

KA-SAT Network cyber attack overview (Viasat.com) 

Tracking cyber activity in Eastern Europe (Google)

Ukrainian Hackers Take Aim at Russian Artillery, Navigation Signals (Defense One) 

Russian efforts in Ukraine have not yet spilled over into cyberattacks on US, says lawmaker (C4ISRNet)

New Spring Framework RCE Vulnerability Confirmed - What to do? (Sonatype) 

New Spring4Shell Zero-Day Vulnerability Confirmed: What it is and how to be prepared (Contrast Security)

Spring Core on JDK9+ is vulnerable to remote code execution (Praetorian) 

Spring4Shell: No need to panic, but mitigations are advised (Help Net Security) 

Remcos Trojan: Analyzing the Attack Chain (Morphisec) 

Apple and Meta Gave User Data to Hackers Who Used Forged Legal Requests (Bloomberg) 

Fresh Phish: Phishers Schedule Victims on Calendar App (INKY) 

Lapsus$ claims Globant as its latest breach victim (TechCrunch)

Learn more about your ad choices. Visit megaphone.fm/adchoices

Up next
Yesterday
Julian Waits: Find a way to help society. [Serial Entrepreneur] [Career Notes]
Please enjoy this encore of Career Notes. Senior Vice President and Executive in Residence with Rapid7 and Chairman for Cyversity, Julian Waits, grew up in the era of the Justice League and Superman and it shaped his career. Julian always wanted to do something where he could fin ... Show More
11m 4s
Aug 23
Beyond the smoke screen. [Research Saturday]
This week, we are joined by Dr. Renée Burton, VP of Infoblox Threat Intel, who is discussing their work on VexTrio, a notorious traffic distribution system (TDS) involved in digital fraud. The VexTrio investigation uncovers a massive global ad fraud and scam operation powered by ... Show More
22m 22s
Aug 22
A free speech showdown.
The FTC warns one country’s “online safety” may be another’s “censorship.” A new bipartisan bill aims to reduce barriers to federal cyber jobs. MURKY PANDA targets government, technology, academia, legal, and professional services in North America. MITRE updates their hardware we ... Show More
31m 48s
Recommended Episodes
Mar 2022
Russie : un malware inédit contre l’Ukraine ?
Si le conflit entre l’Ukraine et la Russie est un drame absolu pour les citoyens, force est de constater que le monde de la tech y joue un rôle de premier plan. Ces derniers jours, nous vous avons présenté différentes actions mises en place par les occidentaux pour tenter d’affai ... Show More
2m 31s
Mar 2022
War in Ukraine: the cyber frontier
How the conflict in Ukraine is playing out in cyberspace. With the conflict in Ukraine still raging following Russia’s invasion Ed Butler speaks to hackers from Ukraine including Vlad Styran of Berezha Security Group, one of the people tasked with fending off digital attacks on U ... Show More
18m 4s
Dec 2022
Babbage: The surprising ineffectiveness of Russia’s cyber-war
When Russia invaded Ukraine, for the first time ever, two mature cyber-powers began to fight over computer networks in wartime. But while Russia’s cyber-war may have been intense, its impact has been modest. Has the country’s cyber prowess been overrated? The Economist’s Benjamin ... Show More
36m 46s
Mar 2022
President Biden heads to what could be the most important NATO meeting in modern history -- How an Instagram famous, world-traveling dog got caught up in the Russian invasion of Ukraine -- Russian cyb
President Biden travels across the Atlantic to meet with NATO allies in Brussels to discuss the war in Ukraine. The president is floating the idea of more sanctions--and strengthening the sanctions already issued, to prevent Russia from wiggling around them.Also on the agenda: al ... Show More
22m 51s
Mar 2022
Tracking Russian disinformation and propaganda sites
NewsGuard – tracking Russian disinformation and propaganda sites False claims and misinformation about Ukraine and its allies have been rife online for months. Now a new tracking centre, which monitors Russian-Ukraine disinformation, has been set up and has published its first re ... Show More
38m 55s