CyberWire Daily

Major breach at the US Treasury’s OCC.

Apr 9, 2025
Jack Rhysider, the creator and host of Darknet Diaries, joins to discuss a significant email breach at the OCC, exposing 150,000 emails and suspected ties to Chinese hackers. They delve into the urgency of patching critical vulnerabilities in various sectors and the alarming insider threats plaguing healthcare. Rhysider also shares insights on the art of storytelling in cybersecurity podcasting and the importance of personal data protection as digital privacy risks grow. They examine the need for real-time compliance in the face of evolving threats.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
ANECDOTE

OCC Email Breach

  • The OCC experienced a significant email breach affecting 103 accounts, including executive accounts.
  • Hackers accessed roughly 150,000 emails dating back to May 2023, potentially containing sensitive bank oversight information.
ADVICE

Patch Tuesday and Software Updates

  • Patch Tuesday updates address critical vulnerabilities across various platforms.
  • Update Microsoft, Fortinet, Avanti, VMware, Zoom, and industrial control systems software promptly.
INSIGHT

AWS Vulnerability

  • A critical AWS Systems Manager agent vulnerability allowed arbitrary code execution with root privileges.
  • This highlights the importance of input validation and system monitoring in cloud environments.
Get the Snipd Podcast app to discover more snips from this episode
Get the app