Tom Uren

@tomatospy@infosec.exchange
1.8K Followers
233 Following
126 Posts

@tomatospy @thegrugq 'why do cyber attacks have to be mean?'
It's as if The Grugq had his own Ueshiba epiphany. According to the stories, that's how he gave up fighting and created Aikido.

Interesting premise and great discussion btw

[Chinese] APTs Behaving Badly

"We'd describe 'acceptable behaviour' as being targeted at national security rather than economic interests, carrying out proportionate operations and avoiding unnecessary harm to third parties. Many cyber actors, including the US and allies, generally adhere to these behaviours, but others, including Chinese actors, do not." 

[...]

"Mass deployment of malware is unacceptable because it causes unnecessary collateral damage — not the done thing for a responsible state program. To make matters worse, once Sophos had cottoned on to the intrusions, Guan and his colleagues allegedly altered their malware to make it more damaging, in a kind of scorched earth policy. If victims attempted to remove the malware, it would deploy encryption from the Ragnarok ransomware variant. We have no idea why attackers would do this or what benefit they would get from torching their victims’ infrastructure.."

Via @tomatospy - https://news.risky.biz/fcc-to-demand-telcos-improve-security/

#cybersecurity #china #apt #malware

FCC to Demand Telcos Improve Security

Your weekly dose of Seriously Risky Business news is written by Tom Uren and edited by Patrick Gray. It's supported by Lawfare with help from the William and Flora Hewlett Foundation. This week's edition is sponsored by Proofpoint. You can hear a podcast discussion of this newsletter by searching for

Risky.Biz

This week's Seriously Risky Business is out:

- China v World in cyber security reports
- US Fedgov situation normal: gaping security holes
- DoJ outs Russian social media manipulation

Listen here:
https://podcasts.apple.com/au/podcast/srsly-risky-biz-world-vs-china-cyber-security-reporting/id1621305970?i=1000662589106

Or read here:
https://news.risky.biz/china-vs-world-cyber-security-reporting-duel/

‎Risky Business News: Srsly Risky Biz: World vs China cyber security reporting duel on Apple Podcasts

‎Show Risky Business News, Ep Srsly Risky Biz: World vs China cyber security reporting duel - 17 July 2024

Apple Podcasts

This week's Seriously Risky Business:

- When it is good business to hack your customers
- When state actors drop turds on the way out
- Drawing a line with indictments

Listen here:
https://podcasts.apple.com/au/podcast/srsly-risky-biz-when-hacking-customers-is-good-business/id1621305970?i=1000661106527

Or read here:
https://news.risky.biz/when-regulation-encourages-isps-to-hack-their-customers-2/

‎Risky Business News: Srsly Risky Biz: When hacking customers is good business on Apple Podcasts

‎Show Risky Business News, Ep Srsly Risky Biz: When hacking customers is good business - 3 July 2024

Apple Podcasts

This week's Seriously Risky Business:

- When it is good business to hack your customers
- When state actors drop turds on the way out
- Drawing a line with indictments

Listen here:
https://podcasts.apple.com/au/podcast/srsly-risky-biz-when-hacking-customers-is-good-business/id1621305970?i=1000661106527

Or read here:
https://news.risky.biz/when-regulation-encourages-isps-to-hack-their-customers-2/

‎Risky Business News: Srsly Risky Biz: When hacking customers is good business on Apple Podcasts

‎Show Risky Business News, Ep Srsly Risky Biz: When hacking customers is good business - 3 July 2024

Apple Podcasts

The latest Seriously Risky Business is out.

I write about:
- how cyber command is like a half-ripe melon
- how scattered spider is like Hollywood
- and why TikTok's influence report is too little, too late

Listen here:
https://podcasts.apple.com/au/podcast/srsly-risky-biz-cyber-command-is-a-half-ripe-melon/id1621305970?i=1000657246571

Or read here:
https://news.risky.biz/tiktok-manipulation-report-is-too-little-too-late/

‎Risky Business News: Srsly Risky Biz: Cyber Command is a half-ripe melon on Apple Podcasts

‎Show Risky Business News, Ep Srsly Risky Biz: Cyber Command is a half-ripe melon - 29 May 2024

Apple Podcasts

This week's Seriously Risky Business.

- The UK govt to think about introducing a licensing requirement before ransomware payments
- As threats get more aggressive and coercive, agencies need to step up their game

Listen here:
https://podcasts.apple.com/au/podcast/srsly-risky-biz-uk-to-consider-licensing-ransomware/id1621305970?i=1000656470285

Or read here:
https://news.risky.biz/uk-government-to-consider-licensing-ransomware-payments/

‎Risky Business News: Srsly Risky Biz: UK to consider licensing ransomware payments on Apple Podcasts

‎Show Risky Business News, Ep Srsly Risky Biz: UK to consider licensing ransomware payments - 22 May 2024

Apple Podcasts

This week's Seriously Risky Business is out:

- Amnesty International flags possible spyware abuse in Indonesia
- Hospitals fight back against punishing cybersecurity regulations

listen here:
https://podcasts.apple.com/au/podcast/srsly-risky-biz-the-proliferation-of-spyware/id1621305970?i=1000655748296

or read here:
https://news.risky.biz/amnesty-flags-possible-spyware-abuse-in-indonesia/

‎Risky Business News: Srsly Risky Biz: The proliferation of spyware in Southeast Asia on Apple Podcasts

‎Show Risky Business News, Ep Srsly Risky Biz: The proliferation of spyware in Southeast Asia - 15 May 2024

Apple Podcasts

This week's Seriously Risky Business:

- How Microsoft has made security the new black
- Ransomware kingping outed and friendless
- Digging deeper into the Change Healthcare disaster

listen here:
https://podcasts.apple.com/au/podcast/srsly-risky-biz-security-the-new-marketing-mantra/id1621305970?i=1000655004325

Or read here:
https://news.risky.biz/microsoft-makes-security-the-new-black/

‎Risky Business News: Srsly Risky Biz: 'Security' the new marketing mantra on Apple Podcasts

‎Show Risky Business News, Ep Srsly Risky Biz: 'Security' the new marketing mantra - 8 May 2024

Apple Podcasts

This week's Seriously Risky Business:

- The FTC is the tip of the spear
- Security is top priority for Microsoft, immediately behind after AI, cloud, and Teams...
- First drones, then cars

Listen here:
https://podcasts.apple.com/au/podcast/srsly-risky-biz-the-problem-with-big-tech/id1621305970?i=1000654244702

Or read here:
https://news.risky.biz/ftc-is-the-tip-of-the-spear/

‎Risky Business News: Srsly Risky Biz: The problem with big tech on Apple Podcasts

‎Show Risky Business News, Ep Srsly Risky Biz: The problem with big tech - 1 May 2024

Apple Podcasts