SamSam and Zyklon, Global Risk Report, and Social Engineering the CIA Director




InfoSec ICU show

Summary: If it isn’t broke, don’t fix it! SamSam, an old standby ransomware-focused malware, returns for an encore performance. Steve and Gerry cover the (macro-level) Global Risk Report from World Economic Forum, shining a light on cyberattacks escalation to the “magic quadrant”, and a 15 year old hacktivist manages to social engineer his way into “pwning” the Director of the CIAs personal accounts.<br> <a href="https://podcast.musc.edu/podcast/infosec/ep08-infosecicu/" target="_blank" rel="noopener">Show Notes</a><br> <br> Resources:<br> SamSam: <a href="http://blog.talosintelligence.com/2018/01/samsam-evolution-continues-netting-over.html" target="_blank" rel="noopener">http://blog.talosintelligence.com/2018/01/samsam-evolution-continues-netting-over.html </a><br> Zyklon: <a href="https://threatpost.com/attackers-use-microsoft-office-vulnerabilities-to-spread-zyklon-malware/129503/" target="_blank" rel="noopener">https://threatpost.com/attackers-use-microsoft-office-vulnerabilities-to-spread-zyklon-malware/129503/</a><br> WEF Global Risk Report: <a href="http://www3.weforum.org/docs/WEF_GRR18_Report.pdf" target="_blank" rel="noopener">http://www3.weforum.org/docs/WEF_GRR18_Report.pdf</a><br> Social engineering hack: <a href="https://www.helpnetsecurity.com/2018/01/22/hack-social-engineering" target="_blank" rel="noopener">https://www.helpnetsecurity.com/2018/01/22/hack-social-engineering</a><br>  <br> One Cool Things<br> See where that Bitly link goes:<br> <a href="https://support.bitly.com/hc/en-us/articles/230905028-What-is-the-Bitly-info-plus-page-" target="_blank" rel="noopener">https://support.bitly.com/hc/en-us/articles/230905028-What-is-the-Bitly-info-plus-page-</a><br> Ecco Shoes:<br> <a href="https://us.shop.ecco.com/" target="_blank" rel="noopener">https://us.shop.ecco.com/</a><br>  <br> Contact<br> Email <a href="mailto:infosecicu@musc.edu">infosecicu@musc.edu</a><br> Twitter:<br> <br> * <a href="https://twitter.com/Gerald_Auger" target="_blank" rel="noopener">Gerry Auger (@Gerald_Auger)</a><br> * <a href="https://twitter.com/sgcardinal" target="_blank" rel="noopener">Steven Cardinal (@sgcardinal)</a><br> <br>