CyberWire Daily

FamousSparrow’s sneaky resurgence.

Mar 27, 2025
Tal Skverer, Research Team Lead from Astrix, sheds light on the resurgence of China's FamousSparrow hacking group and its impact on cybersecurity. The conversation dives into the dangers of exposed data from misconfigured Amazon S3 buckets and a sophisticated Linux backdoor aimed at industrial systems. Tal discusses the significance of the OWASP NHI Top 10 framework for securing non-human identities, offering crucial insights on best practices and the risks of improper off-boarding. The episode also touches on automated credential stuffing and the evolving cyber threat landscape.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
INSIGHT

FamousSparrow’s Resurgence

  • FamousSparrow, a China-linked hacking group, has resurfaced and broadened its targets.
  • They now target governments, research institutions, and law firms, using upgraded tools.
INSIGHT

Vroom Data Exposure

  • Australian fintech firm Vroom by UX exposed 27,000 sensitive records due to a misconfigured Amazon S3 bucket.
  • The exposed data included driver's licenses, medical records, and bank details, highlighting data handling risks.
INSIGHT

Orpacrab Malware

  • Orpacrab, a Linux-based backdoor, targets Orpac industrial systems in the fuel services sector.
  • Using MQTT for command and control, it evades detection by blending with legitimate traffic.
Get the Snipd Podcast app to discover more snips from this episode
Get the app