Ep5: CrowdStrike's faulty update shuts down global networks
Jul 19, 2024
auto_awesome
Discussion on CrowdStrike's faulty update causing global network shutdowns and potential ties to Microsoft 365 outage. AT&T mega breach and ransom paid, FBI accessing password-protected phone, rising prices of zero-click exploits, and APT 41's expanding targets. Plus, teaser on upcoming keynote speakers at LabsCon 2024.
CrowdStrike's faulty update caused global chaos, linking to Microsoft 365 outage.
Risks of ransomware highlighted by AT&T's data breach and the uncertainties of stolen data deletion.
Mention of APT 41 resurgence showcases evolving cyber threats and expanding targets.
Deep dives
APT 41: Financially-Motivated or Hacktivist?
APT 41, known for cybercrime and espionage, poses an interesting challenge as it blurs the lines between financial gain and hacktivism. Mandiant's amalgamation of this group simplifies its classification but does not capture the nuances of its multifaceted activities.
Null Bulge: A Cyber Threat with a Dual Role
Null Bulge's emergence, evidenced by leaked Disney data, showcases a unique blend of financial motivation and rebellion against AI. Their usage of Lua scripts, typically found in gaming mods, adds a novel twist to their malevolent activities bridging the divide between extortion and activism.
Lua Scripting in Malware Operations
Lua scripting, notably employed by entities like Null Bulge in malicious activities, serves as an intriguing choice due to its origins in gaming mods. The intricate use of Lua by nation-states, seen in projects like Flame and Project Zoron, underscores the versatility and complexity of modern cyber threats.
LAPSCON Keynotes Highlights
The LAPSCON keynotes promise engaging insights from Max Meets delving into ransomware evolution and Ben Nemo showcasing OpenAI's innovative disinformation tools. With off-the-record discussions hinting at exceptional content, LAPSCON 2022 anticipates a lineup that could evoke strong FOMO among cybersecurity enthusiasts.
LAPSCON Program Committee and Speaker Announcements
Following the completion of the program committee voting for LAPSCON's call for papers, early next week promises exciting speaker announcements. The upcoming lineup, including unrevealed topics, is poised to offer cutting-edge insights and unprecedented discussions at the conference.
Three Buddy Problem - Episode 5: Hot off the press, we dive into the news of the CrowdStrike software update that caused blue screens on computers worldwide, the resulting chaos and potential connections to the Microsoft 365 outage, the fragility of modern computing and the risks of new software paradigms.
We also discuss the AT&T mega-breach and the ransom paid to delete the stolen data; the challenges of ransomware and the uncertainty surrounding the deletion of stolen data; the FBI gaining access to a password-protected phone, the prices for zero-click exploits; and the resurgence of APT 41 with expanding targets.
Plus, some news on upcoming keynote speakers at LabsCon 2024.
Hosts: Costin Raiu (Art of Noh), Juan Andres Guerrero-Saade (SentinelLabs), Ryan Naraine (SecurityWeek)