The CyberWire Daily Podcast 9.8.22
Ep 1658 | 9.8.22

Bronze President shows both enduring interests and adaptability. Iranian threat actor activity reported. Cybersecurity and small-to-medium businesses.

Show Notes

Bronze President shows both enduring interests and adaptability. Iranian threat actor activity is reported. Cybersecurity and small-to-medium businesses. An initial access broker repurposes Conti's old playbook for use against Ukraine. Johannes Ullrich from SANS on Scanning for VoIP Servers. Our guest is Ian Smith from Chronosphere on observability. And Kyivstar as a case study in telco resiliency.

Selected reading.

BRONZE PRESIDENT Targets Government Officials (Secureworks)

APT42: Crooked Charms, Cons, and Compromises (Mandiant)

Profiling DEV-0270: PHOSPHORUS’ ransomware operations (Microsoft)

Albania cuts diplomatic ties with Iran over July cyberattack (The Washington Post)

Initial access broker repurposing techniques in targeted attacks against Ukraine (Google)

Unprecedented Shift: The Trickbot Group is Systematically Attacking Ukraine (IBM SecurityIntelligence)

Ransomware gang's Cobalt Strike servers DDoSed with anti-Russia messages (BleepingComputer)

Ukraine’s largest telecom stands against Russian cyberattacks (POLITICO)