CISO Talk by James Azar
CyberHub Podcast
🚨 Cyber News: Boeing Cyberattack, German Ransomware, AP News DDoS Hit, CVSS 4.0 Released, Iran Cyber Terror
1×
0:00
Current time: 0:00 / Total time: -16:10
-16:10

🚨 Cyber News: Boeing Cyberattack, German Ransomware, AP News DDoS Hit, CVSS 4.0 Released, Iran Cyber Terror

Boeing is now confirming a cyberattack, Over 70 German cities are offline due to a cyberattack, AP News hit by DDoS, a new CVSS score is off to the races

The video is a live episode of the CyberHub Podcast, hosted by James Azar, dated November 2nd, 2023. Here's a summary of the key points discussed in the video:

1. Boeing Cyber Attack: Boeing has confirmed a cyber attack by the ransomware group LockBit, which claimed to have breached the company's systems. The attack seems to have affected Boeing's parts and distribution business, but flight safety was not compromised.

2. Ransomware Attacks in Germany: Over 70 municipalities in Germany were hit by ransomware attacks, severely limiting local government services. The attack targeted a service provider, causing disruptions in internal and external communications, including email and phone services. The German police and cybersecurity agencies are investigating.

3. Iranian Cyber Threats: The U.S. government is preparing for potential Iranian cyber attacks in retaliation for Western support of Israel. There is concern about attacks on critical systems like water or electricity, and the possibility of Iran using proxies to conduct these attacks.

4. AP News Website Outage: The Associated Press News website experienced an outage consistent with a DDoS attack. A group called Anonymous Sudan, which is believed to be linked to Russia, claimed responsibility for the attack on Western news outlets.

5. CVSS 4.0 Announced: The Forum of Incident Response and Security Teams has announced the Common Vulnerability Scoring System (CVSS) version 4.0, aiming to provide a more accurate assessment of vulnerability severity. It includes new metrics and a revised scoring system.

6. Iranian Cyber Espionage: The Iranian cyber espionage group Muddy Water is conducting a spear-phishing campaign targeting Israeli entities. The campaign uses legitimate remote administration tools and has evolved tactics, techniques, and procedures (TTPs) from previous activities.

Throughout the podcast, James Azar emphasizes the importance of cybersecurity vigilance and the need for proactive measures against cyber threats. He also discusses the geopolitical implications of cyber warfare, particularly in the context of the Middle East.

Discussion about this podcast

CISO Talk by James Azar
CyberHub Podcast
Today’s top cybersecurity news and the latest from Practicing CISO James Azar, tune in to hear how practitioners read, view and work after hearing the latest headlines and how these stories help keep practitioners sharp and ready.