CISA's calls for a JCDC makeover.
CSAC recommends key changes to the Joint Cyber Defense Collaborative. Cloud vendor Snowflake says single-factor authentication is to blame in their recent breach. Publishers sue Google over pirated ebooks. The FBI shares LockBit decryption keys. V3B is a phishing as a service campaign targeting banking customers. Commando Cat targets Docker servers to deploy crypto miners. Our guest is Danny Allan, Snyk's CTO, discussing how in the rush to implement GenAI, some companies are bypassing best practices and security policies. Club Penguin fans stumble upon a cache of secrets in the house of mouse.
Our 2024 N2K CyberWire Audience Survey is underway, make your voice heard and get in the running for a $100 Amazon gift card. Remember to leave us a 5-star rating and review in your favorite podcast app.
Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.
CyberWire Guest
Guest is Danny Allan, Snyk's CTO, discussing how in the rush to implement GenAI, companies bypass best practices and security policies. This highlights a clear gap between those in leadership looking to adopt AI tools and the teams who are utilizing them. Learn more in Snyk Organizational AI Readiness Report.
Selected Reading
CISA advisors urge changes to JCDC's goals, operations, membership criteria (The Record)
CISA says 'patch now' to 7-year-old Oracle WebLogic bug (The Register)
Snowflake says users with single-factor authentication targeted in attack (SC Media)
Advance Auto Parts stolen data for sale after Snowflake attack (Bleeping Computer)
Major Publishers Sue Google Over Ads for Pirated Ebooks (Publishing Perspectives)
FBI unveils 7,000 decryption keys to aid LockBit victims (Silicon Republic)
Hackers Attacking Banking Customers Using Phishing-As-A-Service V3B Toolkit (GB Hackers)
Commando Cat: A Novel Cryptojacking Attack Abusing Docker Remote API Servers (Trend Micro)
Club Penguin fans breached Disney Confluence server, stole 2.5GB of data (Bleeping Computer)
Share your feedback.
We want to ensure that you are getting the most out of the podcast. Please take a few minutes to share your thoughts with us by completing our brief listener survey as we continually work to improve the show.
Want to hear your company in the show?
You too can reach the most influential leaders and operators in the industry. Here’s our media kit. Contact us at cyberwire@n2k.com to request more info.
The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.