Three Buddy Problem cover image

Three Buddy Problem

Careto returns, IDA Pro pricing controversy, crypto's North Korea problem

Oct 4, 2024
Juan Andres Guerrero-Saade, a security researcher at SentinelLabs specializing in malware analysis, and Costin Raiu, director at Kaspersky, dive into fascinating discussions. They unveil the reemergence of the Careto APT, exploring its unique methods and victimology. The controversial shift of IDA Pro to a subscription model raises concerns, while the duo delves into North Korea's cyber threats targeting crypto companies. They also tackle the pricing issues surrounding VirusTotal and the ethical dilemmas of commercial spyware use by the U.S. government.
01:30:38

Podcast summary created with Snipd AI

Quick takeaways

  • The resurgence of the Careto APT underscores the importance of analyzing cultural context and historical targeting methods in cybersecurity.
  • The transition of IDA Pro to a subscription model has sparked debate over accessibility issues for cybersecurity professionals amid budget constraints.

Deep dives

Return of Careto and Its Significance

The recent announcement of Careto 2 marks an important resurgence in cybersecurity discussions, particularly regarding advanced persistent threats (APTs). This group, which had previously gone quiet, is now showing renewed activity, stirring interest due to its historical context and unique methods of operation. Notably, this APT has been linked to uncommon languages and cultural references, which make its threat profile distinctive compared to typical cyber adversaries. Observations suggest that its past targeting, including entities in Gibraltar, indicates a sophisticated approach to victim selection, raising alarms among cybersecurity professionals as they reassess potential vulnerabilities.

Remember Everything You Learn from Podcasts

Save insights instantly, chat with episodes, and build lasting knowledge - all powered by AI.
App store bannerPlay store banner