The Cybersecurity Culture War, Memcache, and Deputizing the Geek Squad




InfoSec ICU show

Summary: We all think it, but now we know it. The guys discuss statistical evidence that supports employees are a weak link in healthcare cybersecurity defenses. Also attackers have discovered that they can unleash unprecedented Distributed Denial of Service (DDoS) attacks using open memcached servers. The guys cover both these topics and dive into how the FBI has been using the Geek Squad to identify illegal content and report them. Is this a warrantless search and in violation of the 4th Amendment?<br> <a href="https://podcast.musc.edu/podcast/infosec/e15-infosecicu/" target="_blank" rel="noopener">Show Notes</a><br> <br> Resources:<br> Losing Cybersecurity Culture War: <a href="https://newsroom.accenture.com/news/one-in-five-health-employees-willing-to-sell-confidential-data-to-unauthorized-parties-accenture-survey-finds.htm" target="_blank" rel="noopener">https://newsroom.accenture.com/news/one-in-five-health-employees-willing-to-sell-confidential-data-to-unauthorized-parties-accenture-survey-finds.htm</a><br> DDoS Memcache: <a href="https://www.wired.com/story/github-ddos-memcached/" target="_blank" rel="noopener">https://www.wired.com/story/github-ddos-memcached/</a> <a href="https://www.corero.com/company/newsroom/press-releases/corero-network-security-discovers-memcached-ddos-attack-kill-switch-and-also-reveals-memcached-exploit-can-be-used-to-steal-or-corrupt-data/" target="_blank" rel="noopener">https://www.corero.com/company/newsroom/press-releases/corero-network-security-discovers-memcached-ddos-attack-kill-switch-and-also-reveals-memcached-exploit-can-be-used-to-steal-or-corrupt-data/</a><br> Deputizing Geek Squad: <a href="https://www.eff.org/deeplinks/2018/03/geek-squads-relationship-fbi-cozier-we-thought" target="_blank" rel="noopener">https://www.eff.org/deeplinks/2018/03/geek-squads-relationship-fbi-cozier-we-thought</a><br> One Cool Things<br> Oculus Rift Fail: <a href="https://www.polygon.com/2018/3/7/17091938/oculus-runtime-error-outage-rift-vr-facebook" target="_blank" rel="noopener">https://www.polygon.com/2018/3/7/17091938/oculus-runtime-error-outage-rift-vr-facebook</a><br> Zero Trust Network: <a href="http://shop.oreilly.com/product/0636920052265.do" target="_blank" rel="noopener">http://shop.oreilly.com/product/0636920052265.do</a><br> Contact<br> Email <a href="mailto:infosecicu@musc.edu">infosecicu@musc.edu</a><br> Twitter:<br> <br> * <a href="https://twitter.com/Gerald_Auger" target="_blank" rel="noopener">Gerry Auger (@Gerald_Auger)</a><br> * <a href="https://twitter.com/sgcardinal" target="_blank" rel="noopener">Steven Cardinal (@sgcardinal)</a><br> <br>