Srsly Risky Biz: Neutering Volt Typhoon to deter China
Sep 26, 2024
auto_awesome
Tom Uren, a cybersecurity and strategic policy expert, joins host Patrick Gray to tackle the complex dynamics of deterring the Chinese cyber group Volt Typhoon. They discuss the challenges and implications of the US’s cybersecurity efforts and whether neutering this threat could ease tensions. The conversation also highlights Microsoft’s impressive turnaround in security measures and the significant pressures that government actions exert on tech companies like X and Telegram in the ever-evolving landscape of regulation.
The U.S. should focus on neutralizing Volt Typhoon's capabilities to potentially deter China's aggressive military actions and cyber strategies.
The responses of companies like Microsoft, X, and Telegram highlight the increasing governmental pressure on tech firms to comply with regulatory demands.
Deep dives
Deterring Military Actions with Cyber Capabilities
There is a discussion about the United States' inability to deter China from undertaking activities related to Vault Typhoon, which involves strategic cyberattacks that could disrupt critical infrastructure. However, it is suggested that the U.S. could use its own capabilities as a deterrent to mitigate the potential effects of such attacks. The argument posits that if the U.S. demonstrates effectiveness against Vault Typhoon, it could instill doubt in Chinese leadership about the reliability of their cyber advantage. Ultimately, the focus should be on discouraging aggressive military actions rather than merely deterring the use of cyber tools.
Government Pressure on Tech Companies
The episode examines how companies like X and Telegram have faced significant government pressure, resulting in compliance that contradicts their previously stated positions. In the case of Telegram, the founder's recent legal issues in France have led to a more cooperative stance with law enforcement. Similarly, X capitulated to demands after a brief ban in Brazil, indicating a growing trend of governments asserting their authority over technology platforms beyond their jurisdiction. This sets a precedent that could encourage other nations to adopt similar tactics to rein in tech companies, potentially signaling a shift in how governments interact with digital platforms.
Microsoft's Security Initiative Update
Microsoft has reported significant progress on its Secure Future Initiative, responding to criticism highlighted in a CSRB report regarding security oversights. The company has eliminated a large number of unused apps and inactive tenant accounts, demonstrating a willingness to address vulnerabilities that had previously posed risks. However, this cleanup reflects how much risk had been allowed to accumulate, as a notable breach occurred due to lax security practices related to legacy accounts. The situation illustrates a common challenge for companies in balancing resource allocation to prevent future issues versus the immediate pressure to drive revenue and growth.
In this podcast Tom Uren and Patrick Gray talk about the possibility of deterring Volt Typhoon, the Chinese group that is compromising US critical infrastructure to enable future disruption operations in the event of a conflict with US. Tom thinks it is not possible to deter Volt Typhoon, but things might work the other way. If the US can neuter Volt Typhoon and take away the PRC’s magic cyber bullet, it could make conflict less likely.
They also discuss the lessons for all companies in Microsoft’s security turnaround and how X and Telegram have folded in the face of government pressure.
The video version of this episode is also available on Youtube.
Get the Snipd podcast app
Unlock the knowledge in podcasts with the podcast player of the future.
AI-powered podcast player
Listen to all your favourite podcasts with AI-powered features
Discover highlights
Listen to the best highlights from the podcasts you love and dive into the full episode
Save any moment
Hear something you like? Tap your headphones to save it with AI-generated key takeaways
Share & Export
Send highlights to Twitter, WhatsApp or export them to Notion, Readwise & more
AI-powered podcast player
Listen to all your favourite podcasts with AI-powered features
Discover highlights
Listen to the best highlights from the podcasts you love and dive into the full episode