SWN #287 – Naughty Tesla, Flipper Zero, Rilide, Styx, Genesis, Sophos, Cisco, Meta, and More
Full Audio
View Show IndexSegments
1. Naughty Tesla, Flipper Zero, Rilide, Styx, Genesis, Sophos, Cisco, Meta, and More – SWN #287
Naughty Tesla, Flipper Zero, Rilide, Styx, Genesis, Sophos, Cisco, Meta, Aaran Leyland, and More on this episode of the Security Weekly News.
Hosts
Doug White
Professor at Roger Williams University
- 1. Flipper Zero banned by Amazon for being a ‘card skimming device’
- 2. Hackers use Rilide browser extension to bypass 2FA, steal crypto
- 3. New dark web market STYX focuses on financial fraud services
- 4. FBI Seizes Bot Shop ‘Genesis Market’ Amid Arrests Targeting Operators, Suppliers – Krebs on Security
- 5. Sophos Patches Critical Code Execution Vulnerability in Web Security Appliance
- 6. Cisco Patches Code and Command Execution Vulnerabilities in Several Products
- 7. Salary packages approached $1 million as Meta paid to play in metaverse
- 8. Tesla workers shared images from car cameras, including “scenes of intimacy”
Aaran Leyland
Cyber security lead EMEA at Defence
- 1. Rorschach ransomware deployed by misusing a security tool
An unbranded ransomware strain that recently hit a US-based company is being deployed by attackers who are misusing a tool included in a commercial security product, Check Point researchers have found.
The solution in question is Palo Alto Networks’ Cortex XDR, whose Dump Service Tool the attackers appropriated and are now misusing to side-load the DLL that decrypts and injects the (newly labeled) Rorschach ransomware.
https://thehackernews.com/2023/04/rorschach-ransomware-emerges-experts.html