CyberWire Daily

Ukraine’s fight to restore critical data.

6 snips
Dec 20, 2024
Rick Howard, retiring CSO and host of CSO Perspectives, shares insightful reflections on his cybersecurity career. The discussion focuses on the devastating cyber attacks against Ukraine, particularly targeting state databases. NotLockBit, a new ransomware strain, raises alarms, as do significant vulnerabilities in security products. Howard emphasizes the importance of enhancing security training and effective integration of InfoSec tools. As colleagues honor his legacy, heartfelt anecdotes highlight his impactful journey, blending wisdom with humor.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
ANECDOTE

Ukraine State Register Attack

  • Pro-Russian group ZAKNET claimed responsibility for the attack, stating they stole and deleted data from Ukrainian state registers.
  • Ukrainian officials confirmed data backups exist and will be restored, but the process may take weeks.
INSIGHT

NotLockBit Ransomware

  • NotLockBit ransomware mimics Lockbit's tactics but expands its target to both macOS and Windows.
  • It uses advanced techniques like targeted encryption and self-deletion, making recovery difficult.
ADVICE

Sophos Firewall Vulnerabilities

  • Sophos firewall users should immediately apply hotfixes for three critical vulnerabilities.
  • These vulnerabilities allow remote code execution and privileged account exposure.
Get the Snipd Podcast app to discover more snips from this episode
Get the app