Risky Business cover image

Risky Business

Risky Business #728 -- The Citrixbleed ransomware disaster

Nov 28, 2023
Guests David Cottingham and Daniel Schell discuss the Citrixbleed ransomware crisis, DPRK supply chain threats, Microsoft's HSM purchase, and the intersection of civil war and pig butchering. The FBI's arrest struggles and recent cyberattacks on major entities are also highlighted.
01:04:48

Podcast summary created with Snipd AI

Quick takeaways

  • Citrix Bleed vulnerability led to ransomware attacks bypassing multi-factor authentication systems.
  • North Korean hackers exploit supply chain weaknesses for financial gains and operational disruptions.

Deep dives

Ransomware Attacks Stemming from Citrix Bleed Bug

Exploitation of a Citrix Edge product vulnerability, known as the Citrix Bleed Bug, allowed for session takeover post-authentication. This flaw led to widespread exploitation, enabling attackers to circumvent multi-factor authentication systems. Major incidents, such as impacting critical infrastructure like key port operators in Australia and ICBC, China's largest lender, highlight the severity of the ransomware campaigns.

Get the Snipd
podcast app

Unlock the knowledge in podcasts with the podcast player of the future.
App store bannerPlay store banner

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode

Save any
moment

Hear something you like? Tap your headphones to save it with AI-generated key takeaways

Share
& Export

Send highlights to Twitter, WhatsApp or export them to Notion, Readwise & more

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode