logo
episode-header-image
Feb 2023
28m 49s

A look at the SideWinder APT. GoAnywhere...

N2K Networks
About this episode

SideWinder is an APT with possible origins in India. MortalKombat ransomware debuts. The GoAnywhere zero day was exploited in a data breach. Belarusian Cyber-Partisans release Russian data. Betsy Carmelite from Booz Allen Hamilton shares an overview of cyber deception. Our guest is Ashley Allocca from Flashpoint with a look at the Breaches and Malware Threat Landscape. And notes on Patch Tuesday.


For links to all of today's stories check out our CyberWire daily news briefing:

https://thecyberwire.com/newsletters/daily-briefing/12/31


Selected reading.

Molted skin: APT SideWinder 2021 campaign that targeted over 60 companies in the Asia-Pacific (Group-IB)

New MortalKombat ransomware and Laplas Clipper malware threats deployed in financially motivated campaign (Cisco Talos Blog)

Tonga is the latest Pacific Island nation hit with ransomware (The Record from Recorded Future News) 

LockBit demanded £66mn from Royal Mail (Computing) 

City of Oakland declares state of emergency after ransomware attack (BleepingComputer) 

City of Oakland Targeted by Ransomware Attack, Work Continues to Secure and Restore Services Safely (City of Oakland)

Huge data dump from Russia’s censorship agency posted online (Cybersecurity Connect)

Russian system to scan internet for undesired content and dissent (Reuters)

Patch Tuesday: Three zero-days and nine 'Critical' RCE flaws fixed (Computing) 

Microsoft February 2023 Patch Tuesday fixes 3 exploited zero-days, 77 flaws (BleepingComputer)

Apple Releases Security Updates for Multiple Products (CISA) 

SAP Security Patch Day for February 2023 (Onapsis) 

Citrix Releases Security Updates for Workspace Apps, Virtual Apps and Desktops (CISA)

Adobe Releases Security Updates for Multiple Products (CISA)

The first national cyber director's last day is today (Washington Post)

Learn more about your ad choices. Visit megaphone.fm/adchoices

Up next
Yesterday
Rolling the dice on cybersecurity.
A cyberattack disrupts state systems in Nevada. A China-linked threat actor targets Southeast Asian diplomats. A new attack method hides malicious prompts inside images processed by AI systems.Experts ponder preventing AI agents from going rogue. A new study finds AI is hitting e ... Show More
26m 30s
Aug 25
A farmers market of stolen data.
Farmers Insurance discloses a data breach affecting over a million people. Agentic AI tools fall for common scams. A new bill in Congress looks to revive letters of marque for the digital age. Cybercriminals target macOS users with the Shamos infostealer. New Android spyware masq ... Show More
22m 12s
Aug 24
Julian Waits: Find a way to help society. [Serial Entrepreneur] [Career Notes]
Please enjoy this encore of Career Notes. Senior Vice President and Executive in Residence with Rapid7 and Chairman for Cyversity, Julian Waits, grew up in the era of the Justice League and Superman and it shaped his career. Julian always wanted to do something where he could fin ... Show More
11m 4s
Recommended Episodes
Mar 2022
Russie : un malware inédit contre l’Ukraine ?
Si le conflit entre l’Ukraine et la Russie est un drame absolu pour les citoyens, force est de constater que le monde de la tech y joue un rôle de premier plan. Ces derniers jours, nous vous avons présenté différentes actions mises en place par les occidentaux pour tenter d’affai ... Show More
2m 31s