Artwork

Content provided by Assura, Inc.. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Assura, Inc. or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.
Player FM - Podcast App
Go offline with the Player FM app!

Breach Class-Action, Help Desk Trickery, and Sextortion Scams

49:20
 
Share
 

Manage episode 377509062 series 3493659
Content provided by Assura, Inc.. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Assura, Inc. or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.

Welcome back for episode six of Unmasked! This week, we take a deep dive into the headlines of September, providing you with valuable context and insights into the latest cybersecurity events. The reverberations of the MOVEit disaster are still keenly felt, and this time, they've led to a class-action lawsuit against Progress Software, with over 600 organizations seeking answers. The pivotal question we dissect is, who bears the ultimate responsibility when software vulnerabilities trigger catastrophic data breaches? This legal battle against Progress Software isn't merely another courtroom drama; it has the potential to reshape the entire landscape of software liability.

But that's not all! We swiftly shift gears to explore the world of secure practices for managing password changes and account requests. In a digital age where even well-intentioned service desk personnel can inadvertently pose security risks, we delve into a treasure trove of strategies organizations can adopt to fortify their defenses.

Our journey continues, though. We fearlessly navigate the uncharted waters of the digital realm, unveiling the myriad cyber threats that lurk in the internet's darkest corners. From exploiting software vulnerabilities to orchestrating extortion and romance scams, we shine a powerful spotlight on the cunning tactics employed by cybercriminals as they attempt to infiltrate personal data and seize valuable assets.

All this and more await for your cyber-listening pleasure!

You can subscribe to Unmasked on Spotify, Amazon, or wherever you get your podcasts.

Show notes

Headlines for early September


Software Makers May Face Greater Liability in Wake of MOVEit Lawsuit (darkreading.com
)

  • A nationwide class-action suit filed against Progress Software in the wake of the massive MOVEit breach could point to additional litigation against software companies whose vulnerable applications are exploited in large-scale supply chain attacks, a legal expert says.
  • filed by consumer-rights law firm Hagens Berman
  • compromised the sensitive personal information of more than 40 million people, and promises that more class actions are on the way as more of the 600 affected organizations come forward.

Okta: Hackers target IT help desks to gain Super Admin, disable MFA

  • Okta released a warning about social engineering attacks targeting IT service desk agents at U.S.-based customers in an attempt to trick them into resetting multi-factor authentication (MFA) for high-privileged users.
  • attackers' goal was to hijack highly-privileged Okta Super Administrator accounts
  • The hackers used their admin access to elevate privileges for other accounts, reset enrolled authenticators, and they also removed the two-factor authentication (2FA) protection for some accounts.

Children's snack recalled after its website caught serving porn

  • Supermarket chain Lidl has been recalling four types of PAW Patrol-themed snacks across the UK.
  • Last month, Lidl stores across the UK started recalling four types of PAW Patrol snacks because of an issue with its packaging. According to the retailer, a URL printed on the snack's packaging was compromised and, to everyone's
  continue reading

Chapters

1. Software Liability and Class Action Lawsuits (00:00:10)

2. Handling Password Changes and Account Requests (00:14:37)

3. Digital Vulnerabilities and Extortion Scams (00:20:06)

4. Romance and Extortion Scams (00:28:58)

5. Cybercrime and Sim Swapping (00:39:08)

6. Basic Hacking Techniques and Vulnerability Discovery (00:48:32)

15 episodes

Artwork
iconShare
 
Manage episode 377509062 series 3493659
Content provided by Assura, Inc.. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Assura, Inc. or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.

Welcome back for episode six of Unmasked! This week, we take a deep dive into the headlines of September, providing you with valuable context and insights into the latest cybersecurity events. The reverberations of the MOVEit disaster are still keenly felt, and this time, they've led to a class-action lawsuit against Progress Software, with over 600 organizations seeking answers. The pivotal question we dissect is, who bears the ultimate responsibility when software vulnerabilities trigger catastrophic data breaches? This legal battle against Progress Software isn't merely another courtroom drama; it has the potential to reshape the entire landscape of software liability.

But that's not all! We swiftly shift gears to explore the world of secure practices for managing password changes and account requests. In a digital age where even well-intentioned service desk personnel can inadvertently pose security risks, we delve into a treasure trove of strategies organizations can adopt to fortify their defenses.

Our journey continues, though. We fearlessly navigate the uncharted waters of the digital realm, unveiling the myriad cyber threats that lurk in the internet's darkest corners. From exploiting software vulnerabilities to orchestrating extortion and romance scams, we shine a powerful spotlight on the cunning tactics employed by cybercriminals as they attempt to infiltrate personal data and seize valuable assets.

All this and more await for your cyber-listening pleasure!

You can subscribe to Unmasked on Spotify, Amazon, or wherever you get your podcasts.

Show notes

Headlines for early September


Software Makers May Face Greater Liability in Wake of MOVEit Lawsuit (darkreading.com
)

  • A nationwide class-action suit filed against Progress Software in the wake of the massive MOVEit breach could point to additional litigation against software companies whose vulnerable applications are exploited in large-scale supply chain attacks, a legal expert says.
  • filed by consumer-rights law firm Hagens Berman
  • compromised the sensitive personal information of more than 40 million people, and promises that more class actions are on the way as more of the 600 affected organizations come forward.

Okta: Hackers target IT help desks to gain Super Admin, disable MFA

  • Okta released a warning about social engineering attacks targeting IT service desk agents at U.S.-based customers in an attempt to trick them into resetting multi-factor authentication (MFA) for high-privileged users.
  • attackers' goal was to hijack highly-privileged Okta Super Administrator accounts
  • The hackers used their admin access to elevate privileges for other accounts, reset enrolled authenticators, and they also removed the two-factor authentication (2FA) protection for some accounts.

Children's snack recalled after its website caught serving porn

  • Supermarket chain Lidl has been recalling four types of PAW Patrol-themed snacks across the UK.
  • Last month, Lidl stores across the UK started recalling four types of PAW Patrol snacks because of an issue with its packaging. According to the retailer, a URL printed on the snack's packaging was compromised and, to everyone's
  continue reading

Chapters

1. Software Liability and Class Action Lawsuits (00:00:10)

2. Handling Password Changes and Account Requests (00:14:37)

3. Digital Vulnerabilities and Extortion Scams (00:20:06)

4. Romance and Extortion Scams (00:28:58)

5. Cybercrime and Sim Swapping (00:39:08)

6. Basic Hacking Techniques and Vulnerability Discovery (00:48:32)

15 episodes

All episodes

×
 
Loading …

Welcome to Player FM!

Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.

 

Quick Reference Guide