Week in Review: CDK Blacksuit developments, Criminal nuclear failures. U.S. Kaspersky ban
Jun 28, 2024
auto_awesome
CISO Jim Bowie from Tampa General Hospital discusses recent cybersecurity news, including criminal nuclear failures and a US ban on Kaspersky. Topics cover data breaches, challenges in critical infrastructure, outdated systems, software vulnerabilities, cyber talent recruitment, ransomware attacks, and insights into cybersecurity incidents.
US government bans Kaspersky amid Russian affiliation concerns, urging switch to alternative security solutions.
Cellafield nuclear site faces criminal charges for cybersecurity deficiencies, highlighting need for enhanced infrastructure security measures.
Deep dives
US Government Bans Kaspersky and Sanctions Executives
The US government has banned Kaspersky antivirus software and imposed sanctions on 12 of its executives due to its Russian affiliation. This decision follows previous concerns from 2017 about Russian government ties and NSA tools. Although individuals and businesses can continue to use existing Kaspersky products without legal violations, it's suggested to seek security alternatives amidst election season.
Evolve Bank Confirms Data Breach Linked to Lockbit
Evolve Bank and Trust disclosed a data breach involving customer information posted on the dark web, linked to the Lockbit group. Attackers posed as associated with Lockbit who previously claimed to breach the US Federal Reserve. The breach has implications for startups and fintech companies. The incident highlights challenges faced by organizations dealing with cybersecurity threats and potential risks from such attacks.
UK's Largest Nuclear Site Pleads Guilty over Cybersecurity Failures
The management of the Cellafield nuclear site in the UK pleaded guilty to criminal charges related to cybersecurity deficiencies between 2019 and 2023. Despite being one of the most complex and hazardous sites, it now faces allegations of possible hacking by groups from China and Russia. The incident emphasizes the critical need for enhanced cybersecurity measures in vital infrastructure sectors like energy and utilities to prevent future breaches and ensure national security.
When executives ask the question, are we vulnerable to this threat? How long does it take you to get a confident answer? Prelude automatically transforms threat intelligence into validated detections, so you can know with certainty in just a manner of minutes. Visit preludesecurity.com/threats to upload your own threat intelligence and see for yourself.
All links and the video of this episode can be found on CISO Series.com
Get the Snipd podcast app
Unlock the knowledge in podcasts with the podcast player of the future.
AI-powered podcast player
Listen to all your favourite podcasts with AI-powered features
Discover highlights
Listen to the best highlights from the podcasts you love and dive into the full episode
Save any moment
Hear something you like? Tap your headphones to save it with AI-generated key takeaways
Share & Export
Send highlights to Twitter, WhatsApp or export them to Notion, Readwise & more
AI-powered podcast player
Listen to all your favourite podcasts with AI-powered features
Discover highlights
Listen to the best highlights from the podcasts you love and dive into the full episode