The CyberWire Daily Podcast 8.30.22
Ep 1652 | 8.30.22

Cyberespionage around the South China Sea. Oktapus and the Twilio compromise. Notes from Russia’s hybrid war. And the LockBit gang looks beyond double extortion.

Show Notes

Cyberespionage around the South China Sea. Oktapus and the Twilio compromise. Montenegro works to recover from a Russian cyber offensive. A big Russian streaming platform sustains a data leak. Ann Johnson of the Afternoon Cyber Tea podcast speaks with Dave DeWalt of NightDragon and Jay Leek of both Syn Ventures and Clear Sky Security about cyber capital investment. Mr. Security Answer Person John Pescatore examines the allure of the healthcare industry for ransomware operators. And the LockBit gang looks beyond double extortion.

Selected reading.

Rising Tide: Chasing the Currents of Espionage in the South China Sea (Proofpoint) 

Why the Twilio Breach Cuts So Deep (WIRED)

Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms (Threatpost)

Hackers used Twilio breach to intercept Okta onetime passwords (SiliconANGLE)

Okta Impersonation Technique Could be Utilized by Attackers (SecurityWeek)

Ukraine launches counter-offensive to retake Kherson from Russia (The Telegraph)

Russia-Ukraine war: Kremlin insists invasion going to plan despite counterattacks; first grain ship docks in Africa – live (the Guardian)

Montenegro says Russian cyberattacks threaten key state functions (BleepingComputer)

Montenegro struggles to recover from cyberattack that officials blame on Russia (The Record by Recorded Future)

Leading Russian streaming platform suffers data leak allegedly impacting 44 million users (The Record by Recorded Future) 

LockBit ransomware mulls triple extortion following DDoS attack (SC Media)