エピソード

  • YubiKey Vulnerability Allows for Device Cloning
    2024/09/16

    YubiKeys are physical authentication devices that have a lot of flexibility and are compatible with just about every service, but as it turns out if you know a lot about math and electronics you can uncover the private keys and clone the device!

    Sources: https://pastebin.com/WacbUmA1

    続きを読む 一部表示
    6 分
  • Columbus Ohio Sues Researcher for Exposing Severity of Data Breach
    2024/09/02

    The city of Columbus, Ohio had a data breach occur in July. According to the mayor, the information leaked was nothing important to hackers. A security researcher proved that this was not the case, that the data was incredibly sensitive. In response, the city sued him.

    Sources: https://pastebin.com/C632hthD

    続きを読む 一部表示
    8 分
  • GPO Used to Steal Credentials from Chrome Browser
    2024/08/26

    Using native Windows tools rather than custom malware is becoming a better technique of pulling off attacks while remaining under the radar. Qilin was caught doing just this to steal credentials right from the Chrome web browser.

    Sources: https://pastebin.com/Ccvhs7Pd

    続きを読む 一部表示
    8 分
  • Malware That Uses a Driver to Kill EDR Software
    2024/08/19

    Antimalware solutions like EDR are meant to keep a careful watch on our systems to ensure they are protected from even sneaky threats. But what happens when malware can take out an EDR solution before it is spotted?

    Sources: https://pastebin.com/6uRVy4Yd

    続きを読む 一部表示
    6 分
  • 3 Billion Impacted in Background Check Company Breach
    2024/08/12

    Often times we can reduce our risk to cyber crime by being careful about the websites we sign up for, but what if someone has our data that we never consented to giving them and ends up being breached? Just that happened, with a company you've probably never heard of.

    Sources: https://pastebin.com/Yms285F5

    続きを読む 一部表示
    7 分
  • Dark Angels Recieved the Biggest Ever Ransomware Payout
    2024/08/05

    Ransomware threat actors are one of the biggest modern threats, and things will only ramp up when threat actors see just how much an organization is willing to pay to have their data back. Recently it was uncovered that a covert ransomware group quietly received the largest payout ever recorded in ransomware history.

    Sources: https://pastebin.com/uLQ9sFh0

    続きを読む 一部表示
    7 分
  • KnowBe4 Accidentally Hired a North Korean Hacker
    2024/07/29

    KnowBe4 has employed hacker Kevin Mitnick as a spokesperson in their security training materials. But what happens when you employ a hacker by accident and they immediately try loading malware on the company provided laptop?

    Sources: https://pastebin.com/XrMa4bsS

    続きを読む 一部表示
    9 分
  • How CrowdStrike Broke the Internet
    2024/07/22

    The biggest IT outage across the world just happened. Planes were grounded, hospitals and 911 dispatch centers were down, people couldn't turn their computers on, all on a massive global scale never seen before. So what is CrowdStrike, and how did this happen?

    Sources: https://pastebin.com/vxfyMcd4

    続きを読む 一部表示
    12 分