Risky Bulletin: Russia arrests Meduza Stealer group
Russian police arrest the Meduza-Stealer trio, a Former L-3Harris manager pleads guilty to selling exploits to Russia, the US hacked Venezuela in 2020, and Windows 11 Administrator Protection goes live.
Show notes
Risky Bulletin: Russia arrests Meduza Stealer group
--------
7:44
--------
7:44
Srsly Risky Biz: Peter Williams, Ex-ASD, Pleads Guilty to Selling Eight Exploits to Russia
Tom Uren and Amberleigh Jack talk about Peter Williams, the general manager of vulnerability research firm Trenchant, who has pleaded guilty to selling exploits to the Russian 0day broker Operation Zero. It’s a terrible look, but it doesn’t mean the private sector can’t be trusted to develop exploits.
They also discuss a new report’s recommendations to empower the Office of the National Cyber Director. It’s a good idea, but it won’t make up for the cuts in funding and personnel across the Trump administration’s cyber portfolio.
This episode is also available on Youtube.
Show notes
--------
19:03
--------
19:03
Risky Bulletin: HackingTeam is back!
HackingTeam’s successor is targeting Russia and Belarus, X users must re-enroll their security keys, Chrome will put HTTP behind a warning dialogue, and 15 people are expected to plead guilty in an Italian hacking scandal.
Show notes
Risky Bulletin: HackingTeam successor linked to recent Chrome zero-days
--------
6:44
--------
6:44
Between Two Nerds: NSA gets its mojo back!
In this edition of Between Two Nerds Tom Uren and The Grugq dissect a recent Chinese CERT report that the NSA had hacked China’s national time keeping service.
This episode is also available on Youtube.
Show notes
MSS Weixin post
CN-CERT technical analysis
Global Times on X
BTN110: The NSA's nine to five hacking campaign
--------
27:04
--------
27:04
Risky Bulletin: WSUS bug under attack
A bug in Microsoft WSUS is under attack, Thailand revokes the citizenship of scam-linked businessman, the US charges high tech poker cheat, and Iran’s top hacking school is breached.
Show notes
Risky Bulletin: Russian bill would require researchers to report bugs to the FSB