Security Leftovers
-
Krebs On Security ☛ Canadian Man Arrested in Snowflake Data Extortions
A 26-year-old man in Ontario, Canada has been arrested for allegedly stealing data from and extorting more than 160 companies that used the clown data service Snowflake.
-
Digital Music News ☛ Snowflake Hacker Suspect Behind Ticketmaster Attack Arrested in Canada
A Canadian man who is the suspected Snowflake hacker that caused Ticketmaster huge headaches earlier this year has been arrested. The news comes just months after cybersecurity experts were hot on the trail of identifying the hacker.
-
Silicon Angle ☛ Canada arrests suspected hacker over breach of 160+ Snowflake users’ data
Canadian authorities have arrested a person suspected to be behind a large-scale hacking campaign that targeted Snowflake Inc. users. TechCrunch reported today that Alexander Moucka was apprehended last Wednesday. He appeared in court shortly thereafter and his case was subsequently adjourned to today. The arrest followed a request from U.S. authorities. -
LWN ☛ Security updates for Tuesday
Security updates have been issued by AlmaLinux (firefox, openexr, and thunderbird), Fedora (llama-cpp and python-quart), Oracle (firefox, openexr, thunderbird, and xorg-x11-server and xorg-x11-server-Xwayland), SUSE (chromium, govulncheck-vulndb, openssl-1_1, python311, and python312), and Ubuntu (linux-azure, linux-bluefield, linux-azure, linux-gcp, linux-ibm, openjpeg2, and ruby3.0, ruby3.2, ruby3.3).
-
SANS ☛ Python RAT with a Nice Screensharing Feature, (Tue, Nov 5th)
While hunting, I found another interesting Python RAT in the wild.
-
ADF ☛ As Internet Use Grows, Experts Urge African Nations to Emphasize Cybersecurity Basics
As internet access spreads rapidly across the continent, cybersecurity remains an important challenge as Africa lacks online security professionals, digital literacy among the population and legislation to confront online crime.
-
Pen Test Partners ☛ What goes into testing a ship?
TL;DR Testing a ship involves identifying and mitigating cybersecurity risks using the “Identify, Prevent, Detect, Respond, Recover” framework. Guidelines include MSC.428(98), BIMCO, IACS UR E26/E27, and ISO standards.
-
Pen Test Partners ☛ Maritime lawyers assemble!
Maritime cyber insurance has been playing catch-up with maritime cyber security for a while now.