logo
episode-header-image
Feb 2023
29m 55s

An ICS update from CISA. Ransomware note...

N2K Networks
About this episode

CISA releases an ICS security advisory affecting a smart facility system. LockBit threatens to release Royal Mail data tomorrow. Cl0p ransomware expands to Linux-based systems. A vulnerability is identified in Toyota's GSPIMS. There’s an ESXiArgs update: new trackers and mitigation tools are available. Russia is running two new cyberespionage campaigns against Ukraine. Our guest is Roya Gordon from Nozomi Networks discusses the ICS Threat Landscape. And The Washington Post’s Tim Starks provides analysis on last night’s State of the Union.


For links to all of today's stories check out our CyberWire daily news briefing:

https://thecyberwire.com/newsletters/daily-briefing/12/26


Selected reading.

CISA Releases One Industrial Control Systems Advisory (CISA) 

LockBit group threatens to publish stolen Royal Mail data tomorrow (Computing) 

Cl0p Ransomware Targets Linux Systems with Flawed Encryption | Decryptor Available (SentinelOne)

Hacking into Toyota’s global supplier management network (Eaton Works)

Researcher breaches Toyota supplier portal with info on 14,000 partners (BleepingComputer)

Vulnerability Provided Access to Toyota Supplier Management Network (SecurityWeek)

CISA Releases ESXiArgs Ransomware Recovery Script (CISA)

ESXiArgs Ransomware Campaign Targets VMWare ESXi Vulnerability (SecurityScorecard)

Graphiron: New Russian Information Stealing Malware Deployed Against Ukraine (Symantec)

Remcos software deployed in spying attempt on Ukraine’s government, CERT says (The Record from Recorded Future News)

The State of the Union was light on cybersecurity (Washington Post)

Biden calls for action on privacy rights in State of the Union (CyberScoop)

Learn more about your ad choices. Visit megaphone.fm/adchoices

Up next
Yesterday
Plug-ins gone rogue.
Patch Tuesday. An Iranian ransomware group puts a premium on U.S. and Israeli targets. Batavia spyware targets Russia’s industrial sector. HHS fines a Texas Behavioral Health firm for failed risk analysis. The Anatsa banking trojan targets financial institutions in the U.S. and C ... Show More
29m 52s
Jul 8
Memory leaks and login sneaks.
Researchers release proof-of-concept exploits for CitrixBleed2. Grafana patches four high-severity vulnerabilities. A hacker claims to have breached Spanish telecom giant Telefónica. Italian police arrest a Chinese man wanted by U.S. authorities for alleged industrial espionage. ... Show More
30m 50s
Jul 7
SafePay, unsafe day.
Ingram Micro suffers a ransomware attack by the SafePay gang. Spanish police dismantle a large-scale investment fraud ring. The SatanLock ransomware group says it is shutting down. Brazilian police arrest a man accused of stealing over $100 million from the country’s banking syst ... Show More
37m 27s
Recommended Episodes
Mar 2022
Russie : un malware inédit contre l’Ukraine ?
Si le conflit entre l’Ukraine et la Russie est un drame absolu pour les citoyens, force est de constater que le monde de la tech y joue un rôle de premier plan. Ces derniers jours, nous vous avons présenté différentes actions mises en place par les occidentaux pour tenter d’affai ... Show More
2m 31s
Oct 2019
E992: The Next Unicorns: Expanse CEO & Co-founder Tim Junio reduces exposure to online threats by providing “attack surface visibility”, shares insights into current threats from China & Russia, poten
0:50 Jason intros Tim Junio 1:44 Tim explains what Expanse does and how "attack surface inventory" is the first step in their cybersecurity platform 5:20 Tim explains the Dyn cyber attack 13:20 How many Fortune 500 companies have been blackmailed via cyber attack? 19:32 "White-ha ... Show More
1h 37m