Let's talk about the latest news in InfoSec.
Our goal is to bring you updates weekly on hot topics within information security.
Today we talked about!!!
Amazon insider threat
Joker malware google play store
Shopify breach
https://threatpost.com/joker-trojans-android/159595/
https://www.infosecurity-magazine.com/news/amazon-employee-14m-insider/
https://www.oodaloop.com/briefs/2020/09/30/former-amazon-employee-charged-with-1-4m-insider-trading-scheme/
https://vulners.com/threatpost/THREATPOST:73ED8EE5F93807BBD927F9D85FDD7D3B?utm_source=rss&utm_medium=rss&utm_campaign=rss
https://techcrunch.com/2020/09/23/shopify-data-merchant-breach/?guccounter=1&guce_referrer=aHR0cHM6Ly93d3cuZ29vZ2xlLmNvbS8&guce_referrer_sig=AQAAALIk-ei06l8EWw4LhS4BtxYs4KnIkLEIAdFj37le4tqZmWadMlUEGmj80JKiLjQoFopoDXVZ4AWDCXo3tdFscc_WqXoPbqUpc6d4X2nB7l8NoY9ucPLNgo-2Hy_beknOBnr9ZA-9BBvB9Qgj23UfuBkcTQduO2qS0kFCCNXdWPV-
https://www.infosecurity-magazine.com/news/kylie-jenners-makeup-company-warns/
Thanks for joining!!!!
InfoSecXNews
Today we talked about!!
Cryptobugs Found in Numerous Google Play Store Apps
DDoS Attacks on Virtual Education
Zero Trust
SASE
https://github.com/lucapiccolboni/crylogger --- Here it is the link you want for CRYLOGGER!
https://vulners.com/threatpost/THREATPOST:D808C8ADEAD21D0EDAFC91027AFA8641?utm_source=rss&utm_medium=rss&utm_campaign=rss
https://www.infosecurity-magazine.com/news/ddos-attacks-on-virtual-education/
https://www.sd-wan-experts.com/sase/#2
as always thank you for listening!
InfoSecXNews team!!
Today we talked about!!!
Tesla and 2FA
Verizon & ASDA grocery store
Zoom once again!!!
https://vulners.com/threatpost/THREATPOST:2118C48803E60F39B5E491F75F0481A3?utm_source=rss&utm_medium=rss&utm_campaign=rss
https://www.infosecurity-magazine.com/news/phishing-verizon-credentials/
https://www.infosecurity-magazine.com/news/phishing-scam-targets-asda-shoppers/
https://threatpost.com/instagram-retained-deleted-user-data-despite-gdpr-rules/158366/
https://techcrunch.com/2020/08/13/instagram-delete-photos-messages-servers/
https://www.forbes.com/sites/daveywinder/2020/08/15/elon-musk-confirms-overdue-move-to-make-tesla-cars-harder-to-hack/#48dcd0cc224a
Thanks,
InfoSecXNews
Today we talked about -
Twitter hack
TikTok again!!!
Drizly - The Amazon of liquor
CWT - Travel Agency
https://www.infosecurity-magazine.com/opinions/tiktok-cybersecurity-threat/
https://vulners.com/krebs/KREBS:95FCC912010D9B41FE2F3B9C4AA701A4?utm_source=rss&utm_medium=rss&utm_campaign=rss
https://www.infosecurity-magazine.com/news/drizly-breach-hits-25-million/
https://www.reuters.com/article/us-cyber-cwt-ransom-idUSKCN24W25W?&web_view=true
https://vulners.com/threatpost/THREATPOST:952B0B0C37CABB940C7457B0A62B23D1?utm_source=rss&utm_medium=rss&utm_campaign=rss
https://techcrunch.com/2020/07/28/drizly-data-breach/
Thanks,
InfoSecXNews
Today we talked about! https://www.atpcyberhealthtech.com/
Twitter hack with Crypto currency
Canadians victims of cybercrime
Amazon spoofing - very tricky
FBI issues warning for flyers
https://www.infosecurity-magazine.com/news/over-half-of-canadians-victimized/
https://www.atpcyberhealthtech.com/
https://vulners.com/threatpost/THREATPOST:2A69E9E0E997248F168D5B628658C396?utm_source=rss&utm_medium=rss&utm_campaign=rss
https://www.infosecurity-magazine.com/news/fbi-issues-cybersecurity-warning/
https://podcasts.apple.com/us/podcast/bears-birds-and-brews/id1444806424
https://fraudwatchinternational.com/vishing/what-is-vishing/#:~:text=The%20word%20'vishing'%20is%20a,internet%20telephone%20service%20(VoIP).
https://www.infosecurity-magazine.com/news/twitter-tricked-celeb-account/
Thank you for listening and supporting.
InfoSecXNews - you know the vibes!
Hey welcome back listeners!!!
Today we talked about Androids, LinkedIn/iPhones, and the future cost of data breaches.
https://vulners.com/threatpost/THREATPOST:04C1838B046754A60BA2657C6D0EB8E6?utm_source=rss&utm_medium=rss&utm_campaign=rss
https://gizmodo.com/linkedin-and-reddit-are-the-latest-apps-found-to-be-sno-1844268155
https://www.infosecurity-magazine.com/news/volume-size-data-breaches-rise/
https://www.infosecurity-magazine.com/news/mobile-users-undeletable-malicious/
Thanks,
InfoSecXNews!
Nils Switch CODE:SW:7922-9385-6205
https://www.infosecurity-magazine.com/news/malicious-apps-contact-android/
https://www.forbes.com/sites/daveywinder/2020/06/12/300000-nintendo-users-hacked-what-gamers-need-to-know-switch-gamers-account-passwords/#19bdc654dcd0
https://www.freethink.com/articles/cyber-attacks
We're back and as always thanks for the support!
InfoSecXnews
Today we talked about
Zoom Trolls
Norwegian Cruise line
and Open Exchange rates
https://www.infosecurity-magazine.com/news/norwegian-cruise-line-suffers-data/
https://nakedsecurity.sophos.com/2020/03/20/trolls-zoombomb-work-from-home-videocall-with-filth/
https://nakedsecurity.sophos.com/2020/03/20/exchange-rate-services-customer-details-hacked-via-aws/
Thanks,
Enjoy - InfoSec X News
Today we kept it pretty open with everything happening in the world in regards to Coronavirus.
https://vulners.com/krebs/KREBS:3E0061FC7B371768EA67B7BBD8009838?utm_source=rss&utm_medium=rss&utm_campaign=rss
https://vulners.com/threatpost/THREATPOST:0E3D1930EBBC77714A9C3CE21AD64F6F?utm_source=rss&utm_medium=rss&utm_campaign=rss
Thanks,
InfoSecXNews - you know the vibes!
Today we talked about
Android again and their billion devices being vulnerable
University of KY Health Care
T-Mobile - Data breach
https://nakedsecurity.sophos.com/2020/03/09/one-billion-android-smartphones-racking-up-security-flaws/
https://www.engadget.com/2020/02/09/android-bluefrag-security-flaw/
https://www.infosecurity-magazine.com/news/university-of-kentucky-cyberattack/
Today we talked about:
Smart Baby Monitor
Billions of Wifi Devices
CISA and how ransomware is becoming more and more common.
https://vulners.com/threatpost/THREATPOST:37BF5ED79AFA91D628C8CA75FA1CBA7C?utm_source=rss&utm_medium=rss&utm_campaign=rss
https://threatpost.com/rsac-2020-another-smart-baby-monitor-vulnerable-to-remote-hackers/153272/
https://threatpost.com/ransomware-national-crisis-cisa-ics/153322/
https://threatpost.com/rsac-2020-another-smart-baby-monitor-vulnerable-to-remote-hackers/153272/
https://threatpost.com/billions-of-devices-wifi-encryption-hack/153267/
https://www.zdnet.com/article/new-kr00k-vulnerability-lets-attackers-decrypt-wifi-packets/
https://en.wikipedia.org/wiki/Internet_of_things
https://ibabylabs.com/
https://www.darkreading.com/threat-intelligence/ransomware-crisis-in-us-schools-more-than-1000-hit-so-far-in-2019/d/d-id/1336634
Enjoy,
Nil & Stew aka Infosec X News.
Today we talked about
Citrix aka Shitrix
Emotet via SMS
MGM and their breach!!!
https://threatpost.com/sms-attack-spreads-emotet-bank-credentials/153015/
https://vulners.com/krebs/KREBS:62E2D32C0ABD1C4B8EA91C60B425255B?utm_source=rss&utm_medium=rss&utm_campaign=rss
https://vulners.com/threatpost/THREATPOST:CDD479681D16E5E813A006B44143393D?utm_source=rss&utm_medium=rss&utm_campaign=rss
https://vulners.com/threatpost/THREATPOST:2604EC3476A010150B9EB1228C9C6968?utm_source=rss&utm_medium=rss&utm_campaign=rss
https://www.mgmresorts.com/en.html
https://blog.malwarebytes.com/glossary/malspam/
https://doubleoctopus.com/security-wiki/threats-and-tools/password-spraying/
bye have a good time!!!
InfoSec X news
Today we talked about
Bluetooth
Canada!!!
https://amp.thehackernews.com/thn/2020/02/hacking-bluetooth-vulnerabilities.html
https://www.mi.com/global
https://www.zdnet.com/article/unknown-number-of-bluetooth-le-devices-impacted-by-sweyntooth-vulnerabilities/
https://nakedsecurity.sophos.com/2020/02/14/bluetooth-bugs-researchers-find-10-sweyntooth-security-holes/
https://www.infosecurity-magazine.com/news/personal-data-of-144k-canadians/
https://www.zdnet.com/article/report-shows-personal-info-on-144k-canadians-breached-by-federal-entities/
https://nakedsecurity.sophos.com/2020/02/17/google-pulls-500-malicious-chrome-extensions-after-researcher-tip-off/
Thanks for listening.
InfoSec X News
Today we talked about Estée Lauder Windows Patches Soundcloud https://threatpost.com/estee-lauder-440m-records-email-network-info/152789/ https://www.terabitweb.com/2020/02/12/estee-lauder-data-leak-html/ https://threatpost.com/microsoft-active-attacks-air-gap-99-patches/152807/ https://govanguard.com/threat-center/cat/info-sec-feeds/info-sec-news/?utm_source=Menu-ThreatCenter https://govanguard.com/threat-center/2020/02/12/soundcloud-tackles-dos-account-takeover-issues/ https://threatpost.com/soundcloud-dos-account-takeover/152838/
Today we talked about
Paypal
Iran
Android
https://www.infosecurity-magazine.com/news/facebook-encryption-slammed/
https://www.dawn.com/news/1532960/facebook-plan-to-encrypt-platforms-risks-child-abuse
https://tech.co/news/new-paypal-text-message-scam-2018-07
https://cyware.com/news/dont-fall-for-the-paypal-sms-scam-that-steals-your-personal-details-06071073
https://www.forbes.com/sites/daveywinder/2020/02/09/powerful-iran-cyber-attack-takes-down-25-of-national-internet/#1de9070020dc
https://www.somagnews.com/internet-access-iran-drops-75-strong-cyber-attack/
https://www.cloudflare.com/learning/ddos/what-is-a-ddos-attack/
BONUS
https://www.ibtimes.sg/android-vulnerability-delete-these-newly-detected-cleaner-apps-your-smartphone-39123
Delete these if you have them on your phone.
Thanks,
See you next week InfoSec X News
Today we talked about the following. Also the funniest episode yet!
Cisco
Tinder
Valentines day scam!
https://www.forbes.com/sites/daveywinder/2020/02/05/cisco-confirms-5-serious-security-threats-to-tens-of-millions-of-network-devices/#2db637c813e8
https://threatpost.com/whatsapp-bug-malicious-code-injection-rce/152578/
https://news.yahoo.com/tinders-handling-user-data-now-135542537.html
https://www.infosecurity-magazine.com/news/fbi-issues-valentine-romance-scam/
https://cve.mitre.org/
https://www.armis.com/
Today we talked about
E-Skimming
SpiceJet
CoronaVirus Emotet
https://www.consumeraffairs.com/news/fbi-warns-consumers-about-new-levels-of-e-skimming-013120.html
https://www.cnbc.com/2020/01/31/e-skimming-cyberattack-is-growing-along-with-online-shopping.html
https://www.scmagazine.com/home/security-news/indian-airline-hacked-vulnerability-exposed-by-ethical-hacker/
https://www.google.com/search?q=sacrosanct&rlz=1C5CHFA_enUS740US740&oq=sacrosanct&aqs=chrome..69i57&sourceid=chrome&ie=UTF-8
https://www.infosecurity-magazine.com/news/breach-at-indian-airline-affects/
https://www.scmagazine.com/home/security-news/malware/hackers-play-on-coronavirus-fears-to-spread-emotet/
https://www.scmagazine.com/home/security-news/malware/hackers-play-on-coronavirus-fears-to-spread-emotet/
https://threatpost.com/coronavirus-propagate-emotet/152404/
https://niccs.us-cert.gov/sites/default/files/documents/pdf/ncsam_eskimming_508.pdf?trackDocs=ncsam_eskimming_508.pdf
https://www.nytimes.com/2020/02/02/world/asia/china-coronavirus.html
Enjoy,
InfoSec X News.
Today we talked about
Taxpayers and getting phished, Wawa in their massive breach, and the UN being shady!!!!!!
https://cyware.com/news/taxpayers-look-out-for-these-phishy-tax-scams-5b2c1dc7
https://www.ozarkradionews.com/local-news/bbb-advises-against-tax-scams
https://www.infosecurity-magazine.com/news/hackers-uploading-30-m-cards-wawa/
https://www.infosecurity-magazine.com/news/human-rights-fears-as-un-admits/
https://www.forbes.com/sites/daveywinder/2020/01/30/united-nations-confirms-serious-cyberattack-with-42-core-servers-compromised/#7f773b32633d
https://www.infosecurity-magazine.com/news/human-rights-fears-as-un-admits/
https://en.wikipedia.org/wiki/Wawa_(company)
Today we talked about
Data on 30,000 Cannabis Users Exposed in Cloud Leak
Russian Pleads Guilty to Running Online Criminal Marketplace
US County Suffers Two Cyber-attacks in Three Weeks
Ransomware Payments Doubled and Downtime Grew in Q4
https://www.infosecurity-magazine.com/news/data-30000-cannabis-users-exposed/
https://www.infosecurity-magazine.com/news/us-county-suffers-two-cyberattacks/
https://www.infosecurity-magazine.com/news/russian-admits-running-online/
https://www.nbcnews.com/news/us-news/russian-hacker-who-operated-online-criminal-marketplace-pleads-guilty-n1121836
https://www.infosecurity-magazine.com/news/ransomware-payments-doubled/
https://securityboulevard.com/2020/01/ransomware-costs-double-in-q4-as-ryuk-sodinokibi-proliferate/
Thanks for listening.
InfoSecXNews1 - IG and Twitter follow us give us feedback.
Today we talked about the following.
- NEW BILL PROPOSES CYBER LEADERS FOR EACH U.S. STATE
-CYBERCRIMINALS ARE SELLING ACCESS TO COMPANY NETWORKS
-SEATTLE-AREA VOTERS TO VOTE BY SMARTPHONE
Bonus* Jeff Bezos!
https://www.infosecurity-magazine.com/news/us-state-cybersecurity-leader-act/
https://www.npr.org/2020/01/22/798126153/exclusive-seattle-area-voters-to-vote-by-smartphone-in-1st-for-u-s-elections
https://cyware.com/news/cybercriminals-are-selling-access-to-company-networks-to-make-quick-money-d87c986e
https://www.npr.org/2020/01/22/798126153/exclusive-seattle-area-voters-to-vote-by-smartphone-in-1st-for-u-s-elections
https://searchitchannel.techtarget.com/definition/managed-service-provider
Today we talked about the following.
Juice Jackers
Sim Swaps
Peekaboo app
New Orleans
https://securityintelligence.com/articles/is-juice-jacking-a-legitimate-threat-or-nothing-to-worry-about/
https://www.cnet.com/how-to/sim-swap-fraud-what-it-is-why-you-should-care-and-how-to-protect-yourself/
https://www.infosecurity-magazine.com/news/peekaboo-moments-data-breach/
https://www.infosecurity-magazine.com/news/bill-for-new-orleans-cyberattack/
https://cyware.com/news/juice-jacking-the-threat-that-travelers-need-to-know-about-f39aed8c
Today we talked about
Microsoft patches, Texas ransom, and Cable Haunt in EU.
Spoofing is a type of scam in which criminals attempt to obtain someone's personal information by pretending to be a legitimate business, a neighbor, or some other innocent party.Apr 18, 2019
www.investopedia.com › terms › spoofing
Spoofing Definition - Investopedia In cryptography and computer security, a man-in-the-middle attack (MITM) is an attack where the attacker secretly relays and possibly alters the communications between two parties who believe that they are directly communicating with each other.
en.wikipedia.org › wiki › Man-in-the-middle_attack
Man-in-the-middle attack - Wikipedia https://www.zdnet.com/article/texas-school-district-falls-for-scam-email-hands-over-2-3-million/
https://wtvr.com/2020/01/13/texas-school-district-lost-2-3-million-to-phishing-scam-authorities-say/
https://www.cisomag.com/cable-haunt-vulnerability-exposes-200-million-modem-cables-to-mitm-attacks/
https://www.forbes.com/sites/daveywinder/2020/01/15/us-government-issues-critical-windows-10-update-now-alert/#16d82c5bf625
Thank you please subscribe and listen for the next one!
Today we talked about the following.
Tik tok - Vulnerabilities
Travelex - Ransom ware
Amazon - Ring employees fired
Dunwoody - Saved themselves form a ransomware attack
Cited sources below -
https://www.infosecurity-magazine.com/news/tiktok-patches-critical-account/
https://www.bbc.com/news/business-51017852 - travelex
https://www.usatoday.com/story/tech/2020/01/10/amazons-ring-fired-employees-snooping-customers-camera-feeds/4429399002/
https://www.govtech.com/security/Another-Local-Gov-in-Metro-Atlanta-Suffers-Cyberattack.html
https://www.forbes.com/sites/zakdoffman/2020/01/08/tiktok-confirms-severe-sms-security-threat-critical-new-fix-for-billion-user-app/
Today we talked about a few topics.
1.1Million Scammers , Vegas $$, and Iran cyberattacks!!!
Scammers -
https://hotforsecurity.bitdefender.com/blog/scammer-easily-defrauds-town-of-erie-of-1-1-million-21999.html
Microsoft Phishing -
https://www.bleepingcomputer.com/news/security/microsoft-phishing-scam-exploits-iran-cyberattack-scare/
Vegas
https://news3lv.com/news/local/las-vegas-data-breach-comes-amid-homeland-security-warning-on-iranian-cyber-threat
Enjoy!!!
Stew & Nil
Today we covered the following topics: 2-step, RDP, and DHS warning!!
2 Step https://www.zdnet.com/article/chinese-hacker-group-caught-bypassing-2fa/ RDP https://www.zdnet.com/article/microsoft-rdp-brute-force-attacks-last-2-3-days-on-average/
DHS
https://www.dhs.gov/news/2019/06/22/cisa-statement-iranian-cybersecurity-threats https://securityaffairs.co/wordpress/96039/breaking-news/dhs-warns-iran-attacks.html
Our very 1st Podcast thanks for taking the time to visit us today!!!
We will be covering 3 hot topics for Information Security.
https://www.usatoday.com/story/tech/2020/01/01/phishing-attempts-look-real-but-theres-always-giveaway/2775646001/
USA TODAY
https://thehackernews.com/2020/01/landry-pos-malware-attack.html
January 02, 2020Mohit Kumar
https://threatpost.com/california-adopts-strictest-privacy-law-in-u-s/151497/
Tom Spring
January 2, 2020 12:38 pm
Please let us know if you have any questions.