meta_pixel
Tapesearch Logo
Log in
CyberWire Daily

SCARLETEEL zaps back again. [Research Saturday]

CyberWire Daily

N2K Networks, Inc.

Technology, Daily News, News, Tech News

4.81.1K Ratings

🗓️ 15 July 2023

⏱️ 17 minutes

🧾️ Download transcript

Summary

Michael Clark from Sysdig joins with Dave to discuss their research on SCARLETEEL 2.0: Fargate, Kubernetes, and Crypto. New research from Sysdig threat researchers found that the group continues to thrive with improved tactics. Most recently, they gained access to AWS Fargate, a more sophisticated environment to breach, thanks to their upgraded attack tools. The research states "In their most recent activities, we saw a similar strategy to what was reported in the previous blog: compromise AWS accounts through exploiting vulnerable compute services, gain persistence, and attempt to make money using cryptominers." Had Sysdig not thwarted SCARLETEEL's attack, they estimated that they would have mined $4,000 per day until they were stopped. The research can be found here: SCARLETEEL 2.0: Fargate,Kubernetes, and Crypto Learn more about your ad choices. Visit megaphone.fm/adchoices

Transcript

Click on a timestamp to play from that location

0:00.0

You're listening to the CyberWire Network, powered by N2K.

0:07.0

Today's episode is sponsored by SRM, your first call for cybersecurity and

0:18.1

investigations. Threats today are evolving faster than ever before and since 2005 SRM has pioneered

0:25.3

tailored security solutions for global corporations and their executives.

0:29.5

Whether it's defending against cyber attacks with their award-winning team of ethical hackers and incident response specialists,

0:36.4

or navigating the murky waters of compliance and ESG challenges,

0:40.9

SRMs, Insight and Straight straightforward advice will help you navigate complex risks

0:46.4

and emerge more resilient.

0:48.4

Their secret, a culture that nurtures the sharpest minds, giving them access to the newest technologies and the freedom

0:55.3

to solve problems in new ways, enabling them to craft simple effective solutions for your

1:01.4

unique cyber challenges.

1:03.7

Search your first call to discover how SRM can help your business. Hello everyone and welcome to the CyberWire's research Saturday.

1:27.0

I'm Dave Bitner and this is our weekly conversation with researchers and analysts tracking

1:32.2

down the threats and vulnerabilities,

1:34.3

solving some of the hard problems and protecting ourselves in a rapidly evolving cyberspace.

1:40.2

Thanks for joining us. Back in February of 2022, we first encountered this actor who we call in Starladeal, mainly because we are kind of an

1:55.6

nautical themed mascot that's a Kraken, so it seemed appropriate.

2:00.6

That's Michael Clark, Director of threat research at Sistig.

2:04.0

The research we're discussing today is titled Scarlet Teal 2.0, Fargate, Kubernetes, and crypto. One of our customers had a security issue and it led us down this path of finding this this cloud attacker who went from

2:25.8

runtime into the cloud and it's very interesting things that we don't see a lot. We see things like crypto miners and other financial motives quite a bit,

2:37.5

but this one was quite a bit different because not only did they did try to run a crypto miner but they also

2:43.6

stole code from a Lambda so they downloaded all the Lambda functions and they

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from N2K Networks, Inc., and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of N2K Networks, Inc. and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.