Insider Threats at Apple, The Cost of Malicious Cyber Activity, and When MFA Goes Bad




InfoSec ICU show

Summary: The guys discuss a diversity of topics this week! An intern at Apple abused access resulting in the release of sensitive intellectual property. Discussion around the Executive Branch report “The Cost of Malicious Cyber Activity to the U.S. Economy” and what the challenges are around improving information security at a national level. Finally, MFA sounds great in theory but bad things can happen. The guys discuss process issues that can occur to undermine MFA.<br> <a href="https://podcast.musc.edu/podcast/infosec/e12-infosecicu/" target="_blank" rel="noopener">Show Notes</a><br> <br> Resources:<br> iPhone iBoot source code leaked:<br> <a href="https://motherboard.vice.com/en_us/article/xw5yd7/how-iphone-iboot-source-code-leaked-on-github" target="_blank" rel="noopener">https://motherboard.vice.com/en_us/article/xw5yd7/how-iphone-iboot-source-code-leaked-on-github</a><br> The Cost of Malicious Cyber Activity to the U.S. Economy:<br> <a href="https://www.whitehouse.gov/wp-content/uploads/2018/02/The-Cost-of-Malicious-Cyber-Activity-to-the-U.S.-Economy.pdf" target="_blank" rel="noopener">https://www.whitehouse.gov/wp-content/uploads/2018/02/The-Cost-of-Malicious-Cyber-Activity-to-the-U.S.-Economy.pdf</a><br> Director of National Intelligence report to Senate Intelligence Committee:<br> <a href="https://www.dni.gov/files/documents/Newsroom/Testimonies/SSCI%20Unclassified%20SFR%20-%20Final.pdf" target="_blank" rel="noopener">https://www.dni.gov/files/documents/Newsroom/Testimonies/SSCI%20Unclassified%20SFR%20-%20Final.pdf</a><br> <br> One Cool Things<br> Flight Sims Labs Hacks Back: <a href="https://motherboard.vice.com/en_us/article/pamzqk/fs-labs-flight-simulator-password-malware-drm" target="_blank" rel="noopener">https://motherboard.vice.com/en_us/article/pamzqk/fs-labs-flight-simulator-password-malware-drm</a><br> Best of Charleston: <a href="http://chscp.co/BestOfArts" target="_blank" rel="noopener">http://chscp.co/BestOfArts</a><br>  <br> Contact<br> Email <a href="mailto:infosecicu@musc.edu">infosecicu@musc.edu</a><br> Twitter:<br> <br> * <a href="https://twitter.com/Gerald_Auger" target="_blank" rel="noopener">Gerry Auger (@Gerald_Auger)</a><br> * <a href="https://twitter.com/sgcardinal" target="_blank" rel="noopener">Steven Cardinal (@sgcardinal)</a><br> <br>