Technado
Technado

Technado

ACI Learning

Overview
Episodes

Details

The Technado crew covers a whirlwind of tech topics each week from interviews with industry experts and up-and-coming companies to commentary on topics like security, vendor certifications, networking, and just about anything IT related.

Recent Episodes

356: Russian Spies Stole US Emails?! (Microsoft Breach Update!)
APR 18, 2024
356: Russian Spies Stole US Emails?! (Microsoft Breach Update!)
This week on Technado, we start off strong with some breaking news: geospatial intelligence firm Space-Eyes has allegedly been breached by IntelBroker. From there, we cover TWO 10.0 command injection vulnerabilities - one affecting Windows, one affecting Palo Alto. Apple has issued warnings to more than 90 countries concerning Mercenary spyware attacks. We've got updates on the most recent Microsoft and AT&T breaches, as well as a new breach involving Sisense. And of course, we can't forget this week's Behind Bars subject: an ex-Amazon engineer who stole millions in cryptocurrency is facing prison time. In our deep dive segment, it's a double whammy: we return to one of our Rapid Fire articles to get into the details of Palo Alto's 10.0 vulnerability. Then, we unpack Blackjack's newest venture, Fuxnet malware. Want to know more? Check out the stories we covered this week: https://www.hackread.com/windows-batbadbut-vulnerability-comment-injection/https://blog.rust-lang.org/2024/04/09/cve-2024-24576.htmlhttps://www.theregister.com/2024/04/12/microsoft_cisa_order/https://www.bleepingcomputer.com/news/security/att-now-says-data-breach-impacted-51-million-customers/amp/https://www.hackread.com/iphone-users-mercenary-spyware-attacks/https://www.securityweek.com/former-security-engineer-sentenced-to-prison-for-hacking-crypto-exchanges/https://www.infosecurity-magazine.com/news/cisa-urges-reset-sisense-breach/https://thehackernews.com/2024/04/palo-alto-networks-releases-urgent.htmlhttps://www.volexity.com/blog/2024/04/12/zero-day-exploitation-of-unauthenticated-remote-code-execution-vulnerability-in-globalprotect-cve-2024-3400/https://unit42.paloaltonetworks.com/cve-2024-3400/https://claroty.com/team82/research/unpacking-the-blackjack-groups-fuxnet-malware
play-circle
69 MIN
iPhone Users Beware: MFA Bombs Imminent!
APR 4, 2024
iPhone Users Beware: MFA Bombs Imminent!
It's a packed week on Technado! First up in Rapid Fire, we talk about the Linux backdoor that's got everyone fired up - but all is not as it seems. Then, our Pork Chop Sandwiches segment stars Hot Topic in their latest credential stuffing dilemma (and a brief cybergoth appearance thanks to Christian). Activision is looking into some password-stealing malware affecting some of its players (read: cheaters). We wrap up Rapid Fire by discussing the recent MFA bombing attacks plaguing iPhone users, along with a special Deja News double feature: we have updates on the PyPI and AT&T situations! After a quick break, it's time for our deep dive! Daniel gets into the details of the new and improved (?) Android malware Vultur. Finally, we finish up this week's episode with a mini-dive into Imperva Secure Sphere's WAF bypass. Want more details? Check out this week's references: https://thehackernews.com/2024/03/urgent-secret-backdoor-found-in-xz.htmlhttps://www.bleepingcomputer.com/news/security/retail-chain-hot-topic-hit-by-new-credential-stuffing-attacks/https://techcrunch.com/2024/03/28/activision-says-its-investigating-password-stealing-malware-targeting-game-players/https://www.techopedia.com/news/call-of-duty-hack-alert-malware-drains-bitcoin-from-gamers-walletshttps://www.bleepingcomputer.com/news/security/owasp-discloses-data-breach-caused-by-wiki-misconfiguration/https://www.darkreading.com/cloud-security/mfa-bombing-attacks-target-apple-iphone-usershttps://securityboulevard.com/2024/03/pypi-suspended-500-fakes-richixbw/https://techcrunch.com/2024/03/30/att-reset-account-passcodes-customer-data/https://blog.fox-it.com/2024/03/28/android-malware-vultur-expands-its-wingspan/https://www.hoyahaxa.com/2024/03/imperva-waf-bypass-cve-2023-50969.html
play-circle
72 MIN
353: Apple Chip Flaw Leaks Encryption Keys! (UNPATCHABLE?!)
MAR 28, 2024
353: Apple Chip Flaw Leaks Encryption Keys! (UNPATCHABLE?!)
This week on Technado, Daniel and Sophie kick off Rapid Fire with some highlights from Pwn2Own Vancouver. Then, we jump into a novel cred-harvesting phishing campaign, CozyBear's latest attack on German politicos, and a special Pork Chop Sandwiches segment: millions of hotel door locks are impacted by a 36-year-old flaw. We wrap up the Rapid Fire with the Nemesis Market takedown, yet another update on CISA's Ivanti troubles, and the "unpatchable" exploit affecting Apple M-series chips. In another Python-focused Deep Dive, Daniel takes us through a supply chain cyberattack that's impacting thousands of GitHub users and developers. To close the segment, we take a quick look at a new Loop DoS attack that targets app-layer protocols. Want to keep reading? Check out the articles the Technado crew covered this week! Rapid Fire: Pwn2Own https://www.zerodayinitiative.com/blog/2024/3/21/pwn2own-vancouver-2024-day-two-resultsConversation Overflow Attack https://www.darkreading.com/cloud-security/conversation-overflow-cyberattacks-bypass-ai-securityCozyBear Phishing for Dinner https://www.theregister.com/2024/03/23/russia_cozy_bear_german_politicians_phishing/Unsaflok Flaw https://www.bleepingcomputer.com/news/security/unsaflok-flaw-can-let-hackers-unlock-millions-of-hotel-doors/Nemesis Takedown https://www.bitdefender.com/blog/hotforsecurity/german-authorities-take-down-darknet-marketplace-nemesis-market/CISA Ivanti Notice https://www.crn.com/news/security/2024/cisa-urges-patching-for-critical-ivanti-vulnerability?itc=refreshApple M-Series Vulnerability https://www.itpro.com/security/a-vulnerability-in-apple-m-series-chips-could-expose-encryption-keys-and-harm-performance-and-the-flaw-is-unpatchable Deep Dive: GitHub Python Supply Chain Attack https://checkmarx.com/blog/over-170k-users-affected-by-attack-using-fake-python-infrastructure/Loop DoS Summary https://cispa.de/en/loop-dosLoop DoS Advisory https://cispa.saarland/group/rossow/Loop-DoS
play-circle
69 MIN
352: Hacker Leaks AT&T Data! (71 Million Customers Affected!)
MAR 21, 2024
352: Hacker Leaks AT&T Data! (71 Million Customers Affected!)
It's all about RCE this week on Technado! First up, in our Rapid Fire segment, the new "GhostRace" attack can bypass security checks to access sensitive info. In the ongoing WordPress saga, some miniOrange plugins have a critical flaw - including its malware scanner. Over 130k Fortinent boxes are still susceptible to a month old (already patched!) flaw, and AT&T suffered a breach exposing 70 million customers' data - or did they? For fans of Esports and Apex Legends, an RCE flaw forced ALGS finals to shut down - but no one seems to know whose fault it really is. And in our Behind Bars segment, a Moldovan national will serve 42 months in a US prison for selling 350k+ stolen creds. After a quick break to discuss Robocop (Sophie's latest movie assignment), it's time for a Deep Dive! Daniel takes us through a breakdown of an attack campaign designed to use Captchas, HTML, and other legitimate services to steal information. Finally, Fortra FileCatalyst has a flaw in its file uploading feature. Patch now! Want to read further? Check out the articles Soph and Dan covered today: https://www.darkreading.com/cyber-risk/ghostrace-speculative-execution-attack-cpu-os-vendorshttps://thehackernews.com/2024/03/wordpress-admins-urged-to-remove.htmlhttps://www.theregister.com/2024/03/18/more_than_133000_fortinet_appliances/https://www.bleepingcomputer.com/news/security/att-says-leaked-data-of-70-million-people-is-not-from-its-systems/https://www.bleepingcomputer.com/news/security/apex-legends-players-worried-about-rce-flaw-after-algs-hacks/https://thehackernews.com/2024/03/e-root-marketplace-admin-sentenced-to.htmlhttps://www.netskope.com/blog/from-delivery-to-execution-an-evasive-azorult-campaign-smuggled-through-google-siteshttps://labs.nettitude.com/blog/cve-2024-25153-remote-code-execution-in-fortra-filecatalyst/https://www.imdb.com/title/tt0093870/
play-circle
72 MIN