CISO Talk by James Azar
CyberHub Podcast
The Latest Ubisoft Breach, First American Financial Breach, Iran Targeting DIB & More
0:00
Current time: 0:00 / Total time: -15:18
-15:18

The Latest Ubisoft Breach, First American Financial Breach, Iran Targeting DIB & More

A Deep Dive into the Latest Cybersecurity Trends, Breaches, and Threats from an eventful holiday weekend. Catch the latest and tune in to the latest news here.

The latest CyberHub podcast episode from December 26, 2023, host James Azar provides a detailed analysis of recent cybersecurity incidents and trends. The episode covers a range of topics, emphasizing the ongoing challenges and developments in the field of cybersecurity.

1. Ubisoft Security Breach: Ubisoft, a major video game publisher, is investigating a security breach after internal software and developer tools were leaked online. An unknown threat actor claimed to have breached Ubisoft and planned to exfiltrate around 900 gigabytes of data.

2. First American Financial Incident: Following a recent cybersecurity incident, First American Financial took its systems offline. This comes after a 2019 breach that exposed 885 million customer records, for which they settled for a million dollars.

3. GTA 5 Source Code Leak: Over a year after Rockstar Games was hacked by the Lapsus group, the source code for Grand Theft Auto V was leaked online.

4. Windows CLFS Vulnerabilities: Kaspersky reports that attackers have exploited vulnerabilities in the Windows Common Log File System (CLFS), highlighting a systematic issue in its current implementation.

5. Chameleon Android Banking Trojan: A new variant of the Chameleon Trojan is targeting mobile banking and cryptocurrency apps, exploiting Android biometric features.

Leave a comment

6. ICS Advisories for Vulnerabilities: CISA released advisories for vulnerabilities affecting Future X Communications routers and QNAP Network Video Recorder Devices, which are being exploited in the wild.

7. Europol's Warning on Online Shops: Europol warned 443 online merchants about credit card stealers using JavaScript code to intercept payment information.

8. Iranian State-Sponsored Attacks: Microsoft raised an alarm about Iranian state-sponsored attacks targeting U.S. defense-industrial-based organizations, using a backdoor named FalseFont.

9. Attack on U.S. Military Base in Syria: The episode also mentions an attack on a U.S. military base in Erbil, Syria, marking a significant incident since October 7th.

Throughout the episode, Azar emphasizes the importance of staying vigilant in the face of these evolving cyber threats and the need for robust cybersecurity measures. The episode serves as a comprehensive update on the current state of cybersecurity, highlighting the complexity and dynamic nature of cyber threats in today's digital landscape.


Show Notes and Story Links:

https://www.bleepingcomputer.com/news/security/ubisoft-says-its-investigating-reports-of-a-new-security-breach/

https://www.cybersecuritydive.com/news/first-american-financial-offline-cyber-incident/703262/

https://www.bleepingcomputer.com/news/security/gta-5-source-code-reportedly-leaked-online-a-year-after-rockstar-hack/

https://www.darkreading.com/vulnerabilities-threats/ransomware-attackers-abuse-windows-clfs-driver-zero-days

https://www.securityweek.com/chameleon-android-malware-can-bypass-biometric-security/

https://www.securityweek.com/cisa-warns-of-fxc-router-qnap-nvr-vulnerabilities-exploited-in-the-wild/

https://www.bleepingcomputer.com/news/security/europol-warns-443-online-shops-infected-with-credit-card-stealers/

https://www.securityweek.com/iranian-hackers-targeting-us-defense-industrial-base-entities-with-new-backdoor/

Thank you for watching and Please Don't forget to Like this video and Subscribe to my Channel!

Apply now to be a featured partner on the show: https://www.cyberhubpodcast.com/contact

******

Listen here: https://linktr.ee/cyberhubpodcast

SubStack:

******

Website: https://www.cyberhubpodcast.com

Youtube: https://www.youtube.com/c/TheCyberHubPodcast

Rumble: https://rumble.com/c/c-1353861

Facebook: https://www.facebook.com/CyberHubpodcast/

Linkedin: https://www.linkedin.com/company/cyberhubpodcast/

Twitter: https://twitter.com/cyberhubpodcast

Instagram: https://www.instagram.com/cyberhubpodcast

The Hub of the Infosec Community.

Our mission is to provide substantive and quality content that’s more than headlines or sales pitches. We want to be a valuable source to assist those cybersecurity practitioners in their mission to keep their organizations secure.

Share

Discussion about this podcast

CISO Talk by James Azar
CyberHub Podcast
Today’s top cybersecurity news and the latest from Practicing CISO James Azar, tune in to hear how practitioners read, view and work after hearing the latest headlines and how these stories help keep practitioners sharp and ready.