Talkin’ About Infosec News – 2/22/2023




Black Hills Information Security show

Summary: <br> <br> <br> <br> <br> <br> 00:00 – PreShow Banter™ — Pop Tart Pizza04:15 – BHIS – Talkin’ Bout [infosec] News 2023-02-2005:39 – Story # 1: Employee data from a major cybersecurity firm posted for sale on a hacker forum<a href="https://twitter.com/FalconFeedsio/status/1626861442786893824" target="_blank" rel="noreferrer noopener">https://twitter.com/FalconFeedsio/status/1626861442786893824</a>13:43 – Story # 2: FBI is investigating a cybersecurity incident on its network<a href="https://www.bleepingcomputer.com/news/security/godaddy-hackers-stole-source-code-installed-malware-in-multi-year-breach/" target="_blank" rel="noreferrer noopener">https://www.bleepingcomputer.com/news/security/godaddy-hackers-stole-source-code-installed-malware-in-multi-year-breach/</a>16:44 – Story # 3: GoDaddy: Hackers stole source code, installed malware in multi-year breach<a href="https://www.bleepingcomputer.com/news/security/godaddy-hackers-stole-source-code-installed-malware-in-multi-year-breach/" target="_blank" rel="noreferrer noopener">https://www.bleepingcomputer.com/news/security/godaddy-hackers-stole-source-code-installed-malware-in-multi-year-breach/</a>21:44 – Story # 4: Hyundai, Kia pushing updates so you can’t just steal their cars with USB cables<a href="https://arstechnica.com/cars/2023/02/hyundai-kia-pushing-updates-so-you-cant-just-steal-their-cars-with-usb-cables/" target="_blank" rel="noreferrer noopener">https://arstechnica.com/cars/2023/02/hyundai-kia-pushing-updates-so-you-cant-just-steal-their-cars-with-usb-cables/</a>30:21 – Story # 5: Eurostar forces ‘password resets’ — then fails and locks users out<a href="https://www.bleepingcomputer.com/news/security/eurostar-forces-password-resets-then-fails-and-locks-users-out/" target="_blank" rel="noreferrer noopener">https://www.bleepingcomputer.com/news/security/eurostar-forces-password-resets-then-fails-and-locks-users-out/</a>33:37 – Story # 6: Hacker Uncovers How to Turn Traffic Lights Green With Flipper Zero<a href="https://www.thedrive.com/news/hacker-uncovers-how-to-turn-traffic-lights-green-with-flipper-zero" target="_blank" rel="noreferrer noopener">https://www.thedrive.com/news/hacker-uncovers-how-to-turn-traffic-lights-green-with-flipper-zero</a>39:30 – Story # 7: Namecheap denies system breach after email service used to spread phishing scams<a href="https://therecord.media/namecheap-denies-system-breach-after-email-service-used-to-spread-phishing-scams/" target="_blank" rel="noreferrer noopener">https://therecord.media/namecheap-denies-system-breach-after-email-service-used-to-spread-phishing-scams/</a>43:11 – Story # 8: Official: Twitter will now charge for SMS two-factor authentication<a href="https://www.theverge.com/2023/2/17/23605073/twitter-blue-charge-sms-2fa" target="_blank" rel="noreferrer noopener">https://www.theverge.com/2023/2/17/23605073/twitter-blue-charge-sms-2fa</a>48:24 – Story # 9: Software suite of Israeli security firm Cellebrite leaks online<a href="https://www.cybersecurityconnect.com.au/commercial/8607-entire-software-suite-of-israeli-security-firm-cellebrite-leaks-online" target="_blank" rel="noreferrer noopener">https://www.cybersecurityconnect.com.au/commercial/8607-entire-software-suite-of-israeli-security-firm-cellebrite-leaks-online</a>51:22 – Story # 10: The US Air Force may have shot down an Amateur Radio Pico Balloon over Canada<a href="https://www.rtl-sdr.com/the-us-airforce-may-have-shot-down-an-amateur-radio-pico-balloon-over-canada/" target="_blank" rel="noreferrer noopener">https://www.rtl-sdr.com/the-us-airforce-may-have-shot-down-an-amateur-radio-pico-balloon-over-canada/</a>55:48 – Story # 11: ChatGPT Is Ingesting Corporate Secrets<a href="https://www.schneier.com/blog/archives/2023/02/chatgpt-is-ingesting-corporate-secrets.html" target="_blank" rel="noreferrer noopener">https://www.schneier.</a>