This is a weekly round-up of the most compelling cyber security intelligence originating from The Record and Recorded Future's research team — Insikt Group. Recorded Future is the global leader in security intelligence and every Friday we'll be highlighting the latest intelligence from criminal activity and nation state sponsored cyber campaigns to geo-political developments. Whether you're responsible for improving operational cyber security or strategically reducing risk, this podcast is for you! Even if you're just interested in learning more about cyber security and the intelligence that informs it, this is the right spot.
Listeners of Off the Record that love the show mention: great.
Adam goes over the latest cyber news headlines, including attacks on Ukrainian networks, and talks to Jan Kallberg, a Research Scientist at the Army Cyber Institute at West Point, about what to expect in 2022. Stick around for a preview of The Record's new podcast, Click Here.
Adam discusses the latest cyberattacks and discusses how 2021 will be remembered in the cybersecurity industry.
Adam interviews intelligence analyst Devin Thorne, who maps out what we know about the Chinese threat landscape.
Adam talks to Insikt Senior Threat Intelligence Analyst Di Wu about the ins and outs of China's dark web, including how the Chinese government interacts with online criminal marketplaces and how it's different from the dark web ecosystems in countries like Russia.
Insikt Group researchers uncovered evidence earlier this year that links several multi-year cyber espionage campaigns to a Chinese military unit operating out of the city of Ürümqi in China's western province of Xinjiang. Jon Condra, who leads the Strategic and Persistent Threats team at Recorded Future, explains to Adam how the People's Liberation Army Unit 69010 has been targeting defense-related organizations in Afghanistan, India, Kazakhstan, Kyrgyzstan, Pakistan, Tajikistan, and Uzbekistan since at least 2014.
Adam talks to Insikt expert threat intelligence analyst Charity Wright to discuss Beijing's roadmap to achieving its goal of becoming the world's leading cyber superpower, which relies on building extensive and intrusive digital infrastructure in developing nations
Levi and Adam talk about the latest cybersecurity news, including a surprise extradition that the U.S. granted Moscow, a noteworthy arrest of a cybersecurity executive in Russia, and allegations of the first death caused by ransomware. GitHub's new chief security officer Mike Hanley joins later in the episode to discuss his organization's cybersecurity expansion and much more.
A cybersecurity firm published a universal decryption tool to help victims of the REvil ransomware gang recover encrypted files. Anonymous breached a web hosting provider and domain registrar that gave shelter to right-wing websites. And the Department of Justice fined three former NSA employees who worked as hackers-for-hire for a United Arab Emirates firm. Plus, Verizon's Alex Pinto joins to talk about the cybersecurity industry's wittiest report.
The Cybersecurity and Infrastructure Security Agency, the Federal Bureau of Investigation, and the White House warned companies about the tendency of ransomware gangs to launch attacks over weekends and national holidays. Plus, a US farm lost a whopping $9 million due to a temporary shutdown of its farming operations following a ransomware attack, and Dmitry Smilyanets joins to discuss the latest ransomware trends.
T-Mobile said this week that hackers breached some of its internal servers. Tokyo-based cryptocurrency exchange Liquid said that cybercriminals stole $94 million of crypto assets. And Poly Network, a decentralized finance platform, offered a job to a hacker who decided to return hundreds of millions of dollars they stole from the company. Plus, Bruce Liska joins to discuss his efforts to track ransomware attacks against schools, hospitals, and state and local governments.
Adam walks through the biggest cybersecurity news stories of the week, including an interview with a representative from the new ransomware group known as BlackMatter. Reporter Andrea Peterson joins to talk about how Black Hat and DEF CON—two conferences affectionately known as Hacker Summer Camp—are shaping up.
Adam discusses the latest cybersecurity news headlines, including hacking accusations against China, new Department of Justice indictments, and an important update in the Kaseya ransomware incident. Nathan Beu and Christina Powers of West Monroe join to talk about the increasing importance of cyber due diligence.
Levi and Adam discuss the latest cybersecurity news headlines, including a major cybersecurity probe in China and a reported attack on Ukraine. Dmitry Smilyanets joins later in the episode to chat about what is being referred to as the largest ransomware attack on record, and the Russian group believed to be behind it.
Adam discusses the biggest cybersecurity news stories, including the death of John McAfee, an attack against a South Korea submarine firm, and cyber insurance's moment of reckoning. Ondrej Krehel joins to talk about the ins and outs of digital forensics.
Adam discusses the latest cybersecurity news, such as the US Department of Justice's announcement that it seized the servers and domains of SlilPP, a well-known online marketplace where criminal groups assembled to trade stolen login credentials.
Adam discusses three cybersecurity incidents targeting nation states—including one disclosed by a Russian government agency and another targeting Belgium. Hande Guven and Kirill Boychenko join later in the episode to discuss their research on the Turkish dark web.
Levi and Adam discuss the latest news on the Colonial Pipeline attack, and what the future of ransomware might look like. Andy Ellis, the former CSO of Akamai, joins later in the episode to talk about advising and investing in cybersecurity companies.
Two ransomware incidents in the last week highlight just how bad the issue has gotten—and a new Ransomware Task Force is taking aim at the problem. Vishaal 'V8' Hariprasad joins to talk about the state of the cyberinsurance industry.
Adam and Levi discuss the Biden administration's response to Russia's widespread compromise of federal and private sector networks, which includes a host of sanctions. Chris Finan joins to chat about defending critical infrastructure.
The podcast celebrates its one-year anniversary. Levi and Adam reflect on how cyber threats have changed during the pandemic, and discuss the latest news, including an attack on a water facility and ransomware incidents.
This week we talk about several stories that suggest the threat of ransomware is getting worse, despite SolarWinds and Microsoft Exchange getting most of the attention. And Dmitry Smilyanets joins to discuss his recent interview with one of the most noteworrthy ransomware gangs, REvil.
Adam and Levi chat about the latest cybersecurity news, including new advanced persistent threat groups from China and updates on the SolarWinds breach. Cybersecurity reporter and author Nicole Perlroth joins to discuss her new book.
On this week's episode, we're joined by Evan Wolff, a former senior advisor for infrastructure protection at the Department of Homeland Security, who walks through the biggest cybersecurity challenges facing our outdated infrastructure sectors. Plus, we chat about the latest news, including "The Long Hack" and indictments against North Korean hackers.
New information on the SolarWinds hack, plus details about two global law enforcement takedowns. Threat intelligence analyst Dmitry Smilyanets joins to talk about how he gains the trust of hackers and the law enforcement officials who track them down.
Adam and Levi discuss President Joe Biden's first cybersecurity appointments, as well as why the SolarWinds breach is far from over. Eric Cole joins later in the show to discuss his experience hacking for the CIA and more.
The year kicks off with a protest that's bound for the history books. Adam discusses the profound infosec repercussions of the storming of the Capitol, as well as the latest news on the SolarWinds hack. Neil Daswani, the co-director of the Stanford Advanced Security Certification Program, joins to talk about the biggest breaches of 2020.
The attack against FireEye turns out to be an even bigger problem, with countless government agencies also compromised. And Vinny Troia, CEO of Night Lion Security, joins to talk about his efforts tracking down the hacking collective known as The Dark Overlord.
Adam and Levi break down a busy week in cybersecurity, which included a potentially game-changing Supreme Court case and a breach at one of the biggest cybersecurity firms. Steve Durbin of the Information Security Forum joins to say what makes him optimistic about cybersecurity during challenging times.
COVID-19 researchers are dealing with a flood of attacks from foreign hackers, and new research revealed a global spearphishing campaign aimed at companies involved in the storage and transport of vaccines. Jonathan Reiber, Senior Director for Cybersecurity Strategy and Policy at AttackIQ, joins to talk about crafting defense cyber policy during his time in the Obama administration.
Adam and Levi discuss big personnel changes at the Cybersecurity and Infrastructure Security Agency, and new threat research around attacks on COVID-19 vaccine developers. Carole Theriault joins later in the episode to talk about her award-winning cybersecurity podcast, Smashing Security.
Adam and Levi chat about a $1 billion cryptocurrency wallet that changed hands recently, as well as the latest news on election security. Sunil Yu, the former chief security scientist at Bank of America, stops by to discuss cyber investing.
Cybersecurity experts and election officials have been bracing for foreign cyberattacks aimed at crippling election infrastructure, but so far there have been few reports of such incidents. Stu Solomon joins later in the podcast to chat about how the Air Force and law school have helped him as a cybersecurity executive, as well as the emerging technologies that he most looks forward to.
Adam and Levi discuss a new ransomware threat that is specifically targeting hospitals. Recorded Future's Roman Sannikov stops by to chat about the groups that are behind notable ransomware attacks, as well as emerging threats in cyberspace.
Adam and Levi discuss actions taken against Russia and Iran in the lead-up to the presidential election. Our guest Adam Hickey from the U.S. Department of Justice joins to chat about some of these efforts, and how unsealing indictments can disrupt state-sponsored hackers—even if they don't lead to arrests.
Adam and Levi discuss takedown attempts against TrickBot operators, as well as the latest efforts from social media companies to deal with potential disinformation. Ed Marrow and Katie Schwalen from Highmark Health join to chat about healthcare security in the time of COVID-19.
Levi and Adam discuss an unusual internet-of-things security flaw, as well as a sophisticated type of malware that's both hard to detect and remove. Charity Wright stops by to talk about the latest developments with China's cybersecurity posture.
Adam and Levi discuss two major ransomware attacks—one that crippled hospitals around the U.S. and another that exposed data belonging to students in a Nevada school district. Chris Holden talks about the biggest milestones in Recorded Future's history, and why bigger companies aren't always better at cybersecurity.
Adam and Levi discuss a deadly ransomware attack that hit a German hospital and what businesses should know about an evolving malware variant. Nick Von Bokern stops by to talk competition, ice hockey, and data privacy.
Adam and Levi discuss the recent waves of DOJ indictments and unauthorized access auctions respectively. Chris Saltys talks Recorded Future adventures, why China is like the Houston Astros, and the art of writing.
Levi and Adam discuss election interference and ransomware threats. Levi talks to Dan Kropp about advanced persistent threats.
Levi and Adam talk acetic anhydride, business email compromise (BEC), and information operations. Jason Hines, Recorded Future's former CRO, discusses early stage start-up success and hackathon mischief.
Levi and Adam discuss the latest ransomware and Sino-American events. Insikt Group updates include large amounts of unauthorized access auctions. Caroline Pugliese stops by to talk company mission, selling, and all things Boston.
Insikt Weekly will soon be "Off the Record". Levi opines on California's CCPA legislation, and Dr. Paul Vixie stops by to talk DNS, privacy, and the open road.
In a cold war all technology matters. Insikt Group updates new offensive cyber tools and unauthorized access, plus Scott Small is on the mic to talk adversary tools/tactics and the MITRE ATT&CK framework.
James Lopez on the mic
Levi opines on the CCC, the point of security intelligence, and a conversation with John Wetzel on training and community.
Digital tools for attribution, future AR and AI, criminal actor of the week claims access to select FortiMail servers, UNKN is doxxed, and former FBI agent Keith Mularski stops by to talk shop.
Law enforcement collaboration wins, Insikt Group updates, and a fun conversation with Insikt Group's Jon Condra on the future of China and nation state sponsored cyber activity.
Ransomware, small business considerations, and the market for stolen credentials.
The meaning of "actionable", Insikt updates, and conversations with Sherry Huang and Priscilla Moriuchi on disinformation and online influence operations.
The issue with daily threat reports, Insikt updates, and Dmitry Smilyanets stops by to discuss his carding exploits and love for esports.