TL Blue

TL Blue

por Triskele Labs
Temporada 1
Episode 1 | 14 March 2024 | TL Blue
Tune in this first episode to hear news from Brad Morgan and Richard Grainger, who will provide updates about ransomware group activities, the US government's Cybersecurity and Infrastructure Security Agency (CISA) being impacted by a breach, 14m Australian emails and addresses for sale on clear web hacking forum,  vulnerability of the fortnight,  and what we're seeing in the SOC and DFIR. 
Episode 2 | 28 March 2024 | TL Blue
ACSC Publications Australians being notified about data breaches impacting them IT contractor sentenced for cybercrime and fraud offences after swindling more than $60k Vulnerability of the week - CVE-2023-48788 What we're seeing in the SOC and DFIR Resources for charities and not-for-profits: Educational pack for small businesses, including the Essential Eight and Exercise in a Box resources. These tools are valuable for conducting cyber assessments and implementing cyber security measures. Small business cyber security guide Cyber tips for business presentation [PPT 950KB] Have you been hacked? Questions for boards to ask about cyber security Practical cyber security tips for business leaders Securing customer personal data for small to medium businesses Small business cloud security guides
Episode 3 | 11 April 2024 | TL Blue
Intro New Ivanti Vulnerability Threat Actor claims to have stolen data belonging to the Five Eyes intelligence group after breaching a US national security technology contractor. Winnti's new UNAPIMON malware Possible data breach at Australian immigration consultancy Vulnerability of the fortnight: CVE-2024-3094 (aka xz Utils backdoor) What is happening in the SOC/DFIR this fortnight
Episode 4 | 25 April 2024 | TL Blue
Introduction Global Cybercrime Sting MITRE Network Breach via Ivanti Zero-Days Vulnerability of the fortnight CVE-2024-3400 Palo Alto PAN-OS What is happening in the SOC/DFIR this fortnight British Library cyber incident review
Episode 5 | 9 May 2024 | TL Blue
Intro Qantas app debacle - exposes other customer details Millions of records leaked in NSW clubs data breach Australian losses to scams decline, but we're still losing billions Vulnerability of the fortnight Fortnightly SOC and DFIR updates
Episode 6 | 23 May 2024 | TL Blue
Intro LockBit founder unmasked DFAT warns of DPRK IT workers New government app set to fight credential misuse Microsoft Secure Future Initiative CVE-2024-30040 - Windows MSHTML Platform Security Feature Bypass Vulnerability Updates from our SOC & DFIR teams
Episode 7 | 6 June 2024 | TL Blue
Intro Leaking Clouds Optus Forensic report is not protected by legal privilege Australian bank account details Guardian childcare hack Microsoft Recall Topic Vulnerability of the fortnight Check Point Security Breaking News MediSecure SOC and DFIR updates https://www.linkedin.com/feed/update/urn:li:activity:7202881429796466688/ https://www.bleepingcomputer.com/news/security/snowflake-account-hacks-linked-to-santander-ticketmaster-breaches/ https://community.snowflake.com/s/question/0D5VI00000Emyl00AB/detecting-and-preventing-unauthorized-user-access https://community.snowflake.com/s/article/Communication-ID-0108977-Additional-Information https://www.itnews.com.au/news/optus-loses-bid-to-hide-deloitte-report-on-data-breach-608336 https://www.clydeco.com/en/insights/2023/11/legal-protections-in-the-age-of-data-breaches-less https://hallandwilcox.com.au/thinking/court-guidance-on-privilege-and-cyber-forensic-reports-in-australia/ https://www.cyberdaily.au/security/10640-russian-hacker-opens-bidding-on-18-000-lines-of-australian-bank-account-details https://amp.9news.com.au/article/cdf9d285-4ece-413c-8f43-8413f6ff1825 https://www.triskelelabs.com/blog/cve-2024-24919-check-point https://www.triskelelabs.com/blog/microsoft-entra-conditional-access-policies
Episode 8 | 20 June 2024 | TL Blue
00:00 Intro 02:15 Microsoft delays release of Recall 05:14 ASD releases their Blueprint for secure cloud 10:47 Australian Information Commissioner v Medibank 25:03 Vulnerability of the week - Trio of Vcenter RCE 28:16 News from our SOC and DFIR teams Resources: https://www.itnews.com.au/news/microsoft-to-delay-release-of-recall-ai-feature-608832 https://blueprint.asd.gov.au/ https://www.bleepingcomputer.com/news/security/vmware-fixes-critical-vcenter-rce-vulnerability-patch-now/
Episode 9 | 15 Aug 2024 | TL Blue
- Intro - New Australian Cybersecurity Bill Mandating Ransomware Reporting - Rising Cost of Data Breaches in Australia - IBM and Rubrik Reports - Australian SMBs’ Willingness to Pay Ransomware Criminals - Cyber Extortion Up 61% in Australia - Phishing Attacks Adapting to Current Events - 2024 Midyear Threat Landscape Review
Episode 10 | 14 Nov 2024 | TL Blue
Sydney hospital loses $2m to alleged BEC fraud RedLine and META infostealers disrupted by global operation ASD releases guidance on Detecting and mitigating Active Directory compromises Bengal cat lovers targeted in GootLoader campaign Vulnerability of the month - CVE-2024-47575 affecting FortiManager and FortiManager Cloud
1 de 2