meta_pixel
Tapesearch Logo
Log in
CyberWire Daily

COATHANGER isn’t hanging up just quite yet.

CyberWire Daily

N2K Networks, Inc.

Daily News, Tech News, News, Technology

4.61K Ratings

🗓️ 12 June 2024

⏱️ 26 minutes

🧾️ Download transcript

Summary

Dutch military intelligence warns of the Chinese Coathanger RAT. Pure Storage joins the growing list of Snowflake victims. JetBrains patches a GitHub IDE vulnerability. A data broker hits the brakes on selling driver location data. Flaws in VLC Media player allow remote code execution. Patch Tuesday updates. On our Learning Layer segment, host Sam Meisenberg and Joe Carrigan continue their discussion of Joe's ISC2 CISSP certification journey, taking on Domain 8, Software Development Security. Farewell, computer engineering legend Lynn Conway. Our 2024 N2K CyberWire Audience Survey is underway, make your voice heard and get in the running for a $100 Amazon gift card. Remember to leave us a 5-star rating and review in your favorite podcast app. Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn. Learning Layer On our Learning Layer segment, host Sam Meisenberg and Joe Carrigan continue their discussion of Joe's ISC2 CISSP certification journey using N2K’s comprehensive CISSP training course, CISSP practice test, and CISSP practice labs. Sam and Joe take on Domain 8, Software Development Security, and tackle the following question: At which step of the SDLC should security considerations be first integrated? Functional requirements defining Project initiation and planning Testing and evaluation control System design specification Selected Reading Dutch intelligence says Chinese hacking campaign ‘more extensive’ than previously known (The Record) Pure Storage confirms data breach after Snowflake account hack (Bleeping Computer) Users of JetBrains IDEs at risk of GitHub access token compromise (CVE-2024-37051) (Help Net Security) GitHub phishing campaign wipes repos, extorts victims (SC Magazine) Data broker shuts down product related to driver behavior patterns (The Record) VLC Media Player Vulnerabilities Allow Remote Code Execution (Cyber Security News) Microsoft June 2024 Patch Tuesday fixes 51 flaws, 18 RCEs (Bleeping Computer) ICS Patch Tuesday: Advisories Published by Siemens, Schneider Electric, Aveva, CISA (SecurityWeek) Column: Lynn Conway, leading computer scientist and transgender pioneer, dies at 85 (LA Times) Share your feedback. We want to ensure that you are getting the most out of the podcast. Please take a few minutes to share your thoughts with us by completing our brief listener survey as we continually work to improve the show. Want to hear your company in the show? You too can reach the most influential leaders and operators in the industry. Here’s our media kit. Contact us at [email protected] to request more info. The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc. Learn more about your ad choices. Visit megaphone.fm/adchoices

Transcript

Click on a timestamp to play from that location

0:00.0

You're listening to the CyberWire Network, powered by N2K.

0:07.0

When it comes to ensuring your company has top-notch security practices, things can get complicated fast.

0:21.0

Vanta automates compliance for SOC2, ISO 2701, HIPAA and more, saving you time and money.

0:29.7

With Vanta you can streamline security reviews by automating questionnaires and

0:34.2

demonstrating your security posture with a customer-facing trust center.

0:38.4

Over 7,000 global companies like Atlassian, Flow Health, and Quora use Vanta to manage risk and prove security

0:46.5

in real time.

0:48.4

Our listeners can claim a special offer of $1,000 off Vanta at vanta.com slash cyber.

0:55.8

That's VANTA.com slash cyber for $1,000 off Banta. Dutch military intelligence warns of the Chinese coat hanger rat.

1:19.0

Your storage joins the growing list of snowflake victims, Jet Brains, patches a GitHub IDE vulnerability,

1:27.0

a data broker hits the brakes on selling driver location data, flaws in VLC media player, allow remote code execution.

1:34.9

We got some Patch Tuesday updates.

1:36.9

On our Learning Laird segment,

1:38.4

Host Sam Meisenberg and Joe Kerrigan

1:40.5

continue their discussion of Joe's ISC2 SISP certification journey, taking

1:45.4

on domain 8 software development security.

1:49.0

And Farewell Computer Engineering legend Lynn Conway.

1:53.0

It's Wednesday, June 12, 2024. I'm Dave Bittner and this is your cyberwire intel briefing. The Dutch military Intelligence and Security Service has issued a warning about an extensive

2:27.4

Chinese cyber espionage campaign.

2:30.6

According to the National Cybersecurity Center, state-sponsored hackers exploited a vulnerability in

2:36.4

fortigate devices for two months before it was disclosed.

2:40.9

This zero-day attack infected 14,000 devices targeting Western governments,

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from N2K Networks, Inc., and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of N2K Networks, Inc. and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2025.