Skip to main content

CyberWire Daily: Insider Threats, Data Breaches, and Maritime GPS Spoofing

N2K NetworksNovember 24, 202534 min459 views
27 connections·40 entities in this video→

Cybersecurity Breaches and Incidents

  • ⚠️ CrowdStrike fired an insider who allegedly shared screenshots of internal systems with hackers, though the company states its systems were never compromised.
  • 🎯 Google's threat intelligence reports that hackers stole data from over 200 Salesforce instances via third-party apps, exploiting integrations rather than the core platform.
  • πŸ”’ Cox Enterprises confirmed a breach of its Oracle EBS instance, leading to the theft of personal information for nearly 9,500 individuals.
  • ✈️ Spanish airline Iberia disclosed a breach affecting customer names, email addresses, and loyalty card numbers, attributed to a third-party vendor.
  • πŸŽ“ Harvard University reported a voice phishing attack compromised alumni affairs and development systems, exposing data like email addresses and phone numbers.

Exploited Vulnerabilities and Hacking Tactics

  • πŸ’» Attackers exploited a recently patched vulnerability in Windows Server Update Services (WSUS) to deploy the ShadowPad backdoor.
  • βš–οΈ Two alleged hackers pleaded not guilty to charges related to a cyber attack against Transport for London.
  • 🚒 Maritime GPS spoofing and jamming are increasing, with incidents reported in the Eastern Mediterranean, Black Sea, Western Pacific, and Red Sea.

Business Briefing and Funding

  • πŸ’° US-based Doppel raised $70 million in a Series C round to expand its digital risk protection portfolio.
  • πŸ“Š Bedrock Data, a US-based data security firm, raised $25 million in a Series A round to accelerate product development.
  • ☁️ Cloudflare announced its intention to acquire Replicate, a US-based AI model development company, to enhance its Cloudflare Workers offering.

Maritime GPS Jamming and Spoofing Deep Dive

  • πŸ›°οΈ GPS signals, originally designed for military precision, are now crucial for civilian navigation, enabling trillions in economic value.
  • 🌊 The maritime industry relies heavily on GPS for navigation, autonomous operations, and avoiding hazards, making it vulnerable to interference.
  • πŸ”Š Jamming involves overwhelming receivers with noise, while spoofing replicates GPS signals with a timing delay to manipulate a receiver's perceived location.
  • 🌍 Adversaries can use spoofing to lure ships into restricted waters or create false pretenses for boarding or attack, impacting exclusive economic zones and freedom of navigation operations.
  • πŸ›‘οΈ Mitigation strategies include developing next-generation GPS systems, implementing navigation message authentication, and exploring terrestrial or quantum-based navigation solutions.

Financial Crime and Money Laundering

  • 🏦 A Russia-linked crime network acquired a stake in a Kyrgyzstani bank to launder cybercrime profits and channel funds into Russia's war chest.
  • πŸ’° The operation involved low-paid couriers collecting cash, converting it to crypto, and funneling it through the acquired bank to support Russia's military lender.
Knowledge graph40 entities Β· 27 connections

How they connect

An interactive map of every person, idea, and reference from this conversation. Hover to trace connections, click to explore.

Hover Β· drag to explore
40 entities
Chapters15 moments

Key Moments

Transcript126 segments

Full Transcript

Topics20 themes

What’s Discussed

CrowdStrikeInsider ThreatData BreachSalesforceOracle EBSCox EnterprisesIberiaHarvard UniversityWSUSShadowPadTransport for LondonGPS SpoofingGPS JammingMaritime SecurityCybercrimeMoney LaunderingDoppelCloudflareReplicateAI
Smart Objects40 Β· 27 links
ProductsΒ· 5
EventsΒ· 3
CompaniesΒ· 17
PeopleΒ· 7
ConceptsΒ· 8