CyberWire Daily

ShadyPanda’s patient poisoning.

Dec 2, 2025
Joining the discussion is Stav Setti, Principal Researcher at Palo Alto Networks, who investigates cloud-based cyber threats. He dives into the Jingle Thief campaign, revealing how a Moroccan group exploited Microsoft 365 for gift card fraud. Stav highlights their patient, malware-free tactics and the importance of monitoring for security breaches, beyond just relying on MFA. Additionally, he explores the growing concerns around cybersecurity regulations and the implications of recent breaches across different countries.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
INSIGHT

Long-Game Extension Supply-Chain Abuse

  • Shady Panda used legitimate browser extensions as long-term reservoirs before flipping them malicious.
  • Extension stores review submissions but often fail to monitor updates after approval, enabling supply-chain abuse.
INSIGHT

Nationwide Phone Tracking Expands To Used Devices

  • India is extending mandatory device tracking and IMEI verification to used phones and resellers.
  • Critics warn mandatory apps like Sanchar Sathi expand state access to personal devices without adequate safeguards.
INSIGHT

Korea Mulls Punitive Penalties For Big Breach

  • South Korea is considering punitive damages after a massive five-month undetected data breach at Coupang.
  • Officials view record penalties as a potential deterrent beyond traditional compensatory models.
Get the Snipd Podcast app to discover more snips from this episode
Get the app