Artwork

Content provided by Robin Johns and Bill Carter. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Robin Johns and Bill Carter or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.
Player FM - Podcast App
Go offline with the Player FM app!

Holding Dole to Ransom

19:00
 
Share
 

Manage episode 364421133 series 3478620
Content provided by Robin Johns and Bill Carter. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Robin Johns and Bill Carter or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.

XMRig – APPetite for Crypto
XMRig, a legitimate program for cryptocurrency mining, is being added to systems via illegally downloaded applications as a trojan payload. Victims are observed to be downloading the modified application from The Pirate Bay, with a focus on Final Cut Pro. This comparison has revealed this is the third generation of the campaign, which uses evasion techniques to hide the presence of XMRig. MAC OS Ventura does stop modifying web server Final Cut Pro, but XMRig still installs. How can you ensure that your end-users aren't sailing the digital high seas of piracy?

Food for Thought - Holding Dole to Ransom
Dole plc, headquartered in Dublin, Ireland, is one of the world’s largest producers of fruits and vegetables, with third-quarter income in 2022 reported at $2.3 billion. They recently became victim to a ransomware attack that halted their production plants in North America, which is believed to have come as part of CVE-2022-39952, an unauthenticated file path manipulation vulnerability in the FortiNAC web server that can be abused for remote command execution. How could this have been avoided?

  continue reading

34 episodes

Artwork
iconShare
 
Manage episode 364421133 series 3478620
Content provided by Robin Johns and Bill Carter. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Robin Johns and Bill Carter or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.

XMRig – APPetite for Crypto
XMRig, a legitimate program for cryptocurrency mining, is being added to systems via illegally downloaded applications as a trojan payload. Victims are observed to be downloading the modified application from The Pirate Bay, with a focus on Final Cut Pro. This comparison has revealed this is the third generation of the campaign, which uses evasion techniques to hide the presence of XMRig. MAC OS Ventura does stop modifying web server Final Cut Pro, but XMRig still installs. How can you ensure that your end-users aren't sailing the digital high seas of piracy?

Food for Thought - Holding Dole to Ransom
Dole plc, headquartered in Dublin, Ireland, is one of the world’s largest producers of fruits and vegetables, with third-quarter income in 2022 reported at $2.3 billion. They recently became victim to a ransomware attack that halted their production plants in North America, which is believed to have come as part of CVE-2022-39952, an unauthenticated file path manipulation vulnerability in the FortiNAC web server that can be abused for remote command execution. How could this have been avoided?

  continue reading

34 episodes

All episodes

×
 
Loading …

Welcome to Player FM!

Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.

 

Quick Reference Guide