Artwork

Content provided by Assura, Inc.. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Assura, Inc. or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.
Player FM - Podcast App
Go offline with the Player FM app!

Fake Ads, Insider Threats, and a Big Data Dump

38:56
 
Share
 

Manage episode 377509063 series 3493659
Content provided by Assura, Inc.. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Assura, Inc. or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.

In this thrilling episode of Unmasked, our cybersecurity superheroes plunge headfirst into the late August headlines to uncover the most cutting-edge and formidable cyberattacks. Fasten your seatbelts and ensure your hands remain securely inside the vehicle as we embark on an exhilarating journey through the world of cybersecurity.

Along our path, we'll make intriguing stops, including a detour through the realm of deceptive Amazon ads on Google, an exploration of Tesla's security breach stemming from an insider threat, and a stealthy incursion targeting the renowned international snack-maker, Mondelez, by way of a third-party partner. You might recognize Mondelez from their household snack brands like Ritz and Honey Maid. All this and much more await you in this week's gripping episode.
You can subscribe to Unmasked on Spotify, Amazon, or wherever you get your podcasts.
Show notes:
August Headlines
Sneaky Amazon Google ad leads to Microsoft support scam (bleepingcomputer.com)

  • Classic Tech Support scam
  • But done in clever way

Tesla data Breach Exposes Personal Info of over 75,000 Indiviuals: Inside Job By Former Employees Confirmed

  • Data leaked to German media
  • Former employees behind the breach
  • Employees misappropriated the information

Hackers ask $120,000 for access to multi-billion auction house (bleepingcomputer.com)

  • IABs
  • initial access through VPN or RDP
  • privileges associated with the access accounts ranged from cloud administrator (14 cases) to local admin (5 cases) and domain user (2 cases)
  • positive side effects, such as uncovering areas that need stronger security or identifying devices, services, and accounts that could pose a risk.

Mondelez says crooks stole staff data in security breach • The Register

  • Mondelez International – Parent company for Oreo and Ritz Crackers and many others
  • 51,000 of its past and present employees that their personal information has been stolen from a law firm hired by the Oreo and Ritz cracker
  • Mondelez was among the global companies hit in the NotPetya outbreak — and it recently settled its lawsuit against Zurich American Insurance Company, which it brought because the insurer refused to cover Mondelez's $100-million-plus cleanup bill
  • data may have been compromised for 24 months.



  continue reading

Chapters

1. Tech Scams via Amazon Google Ads (00:00:10)

2. Security and Access Controls in Companies (00:12:50)

3. Importance of Monitoring Login Locations (00:20:34)

4. Security Breach and Third-Party Vulnerability (00:30:38)

5. Farewell and Appreciation for Viewers (00:38:33)

15 episodes

Artwork
iconShare
 
Manage episode 377509063 series 3493659
Content provided by Assura, Inc.. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Assura, Inc. or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.

In this thrilling episode of Unmasked, our cybersecurity superheroes plunge headfirst into the late August headlines to uncover the most cutting-edge and formidable cyberattacks. Fasten your seatbelts and ensure your hands remain securely inside the vehicle as we embark on an exhilarating journey through the world of cybersecurity.

Along our path, we'll make intriguing stops, including a detour through the realm of deceptive Amazon ads on Google, an exploration of Tesla's security breach stemming from an insider threat, and a stealthy incursion targeting the renowned international snack-maker, Mondelez, by way of a third-party partner. You might recognize Mondelez from their household snack brands like Ritz and Honey Maid. All this and much more await you in this week's gripping episode.
You can subscribe to Unmasked on Spotify, Amazon, or wherever you get your podcasts.
Show notes:
August Headlines
Sneaky Amazon Google ad leads to Microsoft support scam (bleepingcomputer.com)

  • Classic Tech Support scam
  • But done in clever way

Tesla data Breach Exposes Personal Info of over 75,000 Indiviuals: Inside Job By Former Employees Confirmed

  • Data leaked to German media
  • Former employees behind the breach
  • Employees misappropriated the information

Hackers ask $120,000 for access to multi-billion auction house (bleepingcomputer.com)

  • IABs
  • initial access through VPN or RDP
  • privileges associated with the access accounts ranged from cloud administrator (14 cases) to local admin (5 cases) and domain user (2 cases)
  • positive side effects, such as uncovering areas that need stronger security or identifying devices, services, and accounts that could pose a risk.

Mondelez says crooks stole staff data in security breach • The Register

  • Mondelez International – Parent company for Oreo and Ritz Crackers and many others
  • 51,000 of its past and present employees that their personal information has been stolen from a law firm hired by the Oreo and Ritz cracker
  • Mondelez was among the global companies hit in the NotPetya outbreak — and it recently settled its lawsuit against Zurich American Insurance Company, which it brought because the insurer refused to cover Mondelez's $100-million-plus cleanup bill
  • data may have been compromised for 24 months.



  continue reading

Chapters

1. Tech Scams via Amazon Google Ads (00:00:10)

2. Security and Access Controls in Companies (00:12:50)

3. Importance of Monitoring Login Locations (00:20:34)

4. Security Breach and Third-Party Vulnerability (00:30:38)

5. Farewell and Appreciation for Viewers (00:38:33)

15 episodes

All episodes

×
 
Loading …

Welcome to Player FM!

Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.

 

Quick Reference Guide