logo
episode-header-image
Jan 2024
32m 50s

Vulnerabilities and security risks.

N2K Networks
About this episode

Ivanti products are under active zero-day exploitation. Phemedrone is a new open-source info-stealer. Bishop Fox finds exposed SonicWall firewalls. GitLab and VMware patch critical vulnerabilities. The Secret Service foils a phishing scam. Europol shuts down a cryptojacking campaign. Ransomware hits a Majorca municipality. RUSI looks at ransomware. Ben Yelin explains the New York Times going after OpenAI over the data scraping. And the sad case of an Ohio lottery winner. 

Remember to leave us a 5-star rating and review in your favorite podcast app.

Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.


CyberWire Guest

Guest and partner Ben Yelin joins us today to discuss “The Most Critical Elements of the FTC’s Health Breach Rulemaking.” Ben is the Program Director for Public Policy & External Affairs at the University of Maryland Center for Health and Homeland Security and Co-Host of N2K’s Caveat Podcast.


Selected Reading

Ivanti Connect Secure zero-days now under mass exploitation (Bleeping Computer)

Windows SmartScreen flaw exploited to drop Phemedrone malware (Bleeping Computer)

Over 178,000 SonicWall next-generation firewalls (NGFW) online exposed to hack (Security Affairs)

GitLab Fixes Password Reset Bug That Allows Account Takeover (Security Boulevard)

Patches Available for a Critical Vulnerability in VMware Aria Automation: CVE-2023-34063 (Malware News)

US court docs expose fake antivirus renewal phishing tactics (Bleeping Computer)

Hacker spins up 1 million virtual servers to illegally mine crypto (Bleeping Computer)

Ransomware gang demands €10 million after attacking Spanish council (The Record)

Ransomware: Victim Insights on Harms to Individuals, Organisations and Society (Royal United Services Institute)

Cybersecurity incident delays payouts for big Ohio Lottery winners (Beacon Journal)


Share your feedback.

We want to ensure that you are getting the most out of the podcast. Please take a few minutes to share your thoughts with us by completing our brief listener survey as we continually work to improve the show. 


Want to hear your company in the show?

You too can reach the most influential leaders and operators in the industry. Here’s our media kit. Contact us at cyberwire@n2k.com to request more info.

The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © 2023 N2K Networks, Inc.

Learn more about your ad choices. Visit megaphone.fm/adchoices

Up next
Today
Cyber defenders pulled into deportation duty.
DHS reassigns cyberstaff to immigration duties. A massive DDoS attack disrupts several major gaming platforms. Discord refuses ransom after a third-party support system breach. Researchers examine Chaos ransomware and creative log-poisoning web intrusions. The FCC reconsiders its ... Show More
29m 49s
Yesterday
Chinese hackers serve up espionage.
Chinese hackers infiltrate a major U.S. law firm. The EU Commission President warns Russia is waging a hybrid war against Europe. Researchers say LoJax is the latest malware from Russia’s Fancy Bear. Salesforce refuses ransom demands. London Police arrest two teens over an allege ... Show More
32m 4s
Oct 7
Critical GoAnywhere bug fuels ransomware wave.
Microsoft tags a critical vulnerability in Fortra’s GoAnywhere software. A critical Redis vulnerability could allow remote code execution. Researchers tie BIETA to China’s MSS technology enablement. Competing narratives cloud the Oracle E-Business Suite breach. An Ohio-based visi ... Show More
32m 23s
Recommended Episodes
Mar 2020
355- Defending Against COVID-19 Cyber Scams with Kaspersky Technical Manager Emad Haffar (08.03.20)
Victims around the world have lost more than 3 billion Dhs to coronavirus-linked scams since last month. Scammers had sent phishing emails from research organisations linked to the World Health Organisation. In this episode, regional technical manager at Kaspersky Middle East, Em ... Show More
36m 4s
Jun 2021
Cozy Bear, dildo scams, and robo hires and fires
Microsoft warns about a hacking gang that is far from cuddly, algorithms rather than managers are firing people, and our guest receives a surprising email from "Amazon"...And you will NOT want to miss checking out a very special "Pick of the week"! All this and much much more is ... Show More
56m 26s