
Risky Business #635 -- Owned via telnet? Must be "highly sophisticated attackers"!
Lord Sky
Description
<p>On this week’s show Patrick Gray and Adam Boileau discuss recent security news, including:</p> <ul> <li>T-Mobile owned hard</li> <li>USA no fly list winds up on unsecured ElasticSearch in Bahrain… because reasons</li> <li>Facebook scrambles to secure Afghani accounts</li> <li>Hacker steals and returns $600 from de-fi platform</li> <li>Healthcare sector struggles with ransomware attacks</li> <li>A very sweet TCP-based amplification technique that will be A Problem</li> <li>Much, much more</li> </ul> <p>Evan Sultanik and Dan Guido will be joining us to talk about Fickling – a tool developed by Trail of Bits to do unnatural things to the Python Pickle files that are heavily used as a means to share machine learning models. The machine learning supply chain is really quite wobbly, and they’ll be joining us later to talk about that.</p> <p>Links to everything that we discussed are below and you can follow <a href="https://twitter.com/riskybusiness">Patrick</a> or <a href="https://twitter.com/metlstorm">Adam</a> on Twitter if that’s your thing.</p> <div class="panel panel-default"> <div class="panel-heading"> <h3 class="panel-title">Show notes</h3> </div> <div class="panel-body"> <dl> <dt><a href="https://www.cyberscoop.com/t-mobile-breach-50-million-accounts/ ">T-Mobile breach climbs to over 50 million people </a></dt> <dd> </dd> <dt><a href="https://krebsonsecurity.com/2021/08/t-mobile-breach-exposed-ssn-dob-of-40m-people/ ">T-Mobile: Breach Exposed SSN/DOB of 40M+ People – Krebs on Security </a></dt> <dd> </dd> <dt><a href="https://therecord.media/1-9-million-records-from-the-fbis-terroris-watchlist-leaked-on
Uploader
Episodes
Risky Business #635 -- Owned via telnet? Must be "highly sophisticated attackers"!
Lord Sky