Home Artists Posts Import Register

Content

Choose your favorite top security story that you want me to discuss on the next ThreatWire episode! 


SHA-1 deprecated:

https://arstechnica.com/information-technology/2020/05/dangerous-sha-1-crypto-function-is-about-to-die-in-ssh/

https://www.zdnet.com/article/openssh-to-deprecate-sha-1-logins-due-to-security-risk/

Cisco Security Breach:

https://arstechnica.com/information-technology/2020/05/cisco-security-breach-hits-corporate-servers-that-ran-unpatched-software/

https://threatpost.com/hackers-compromise-cisco-servers-saltstack/156091/

https://www.zdnet.com/article/cisco-discloses-security-breach-that-impacted-virl-pe-infrastructure/

ACLU Sues Clearview AI

https://www.cnet.com/news/clearview-ai-faces-lawsuit-over-gathering-peoples-images-without-consent/

https://threatpost.com/aclu-sues-clearview-ai-over-faceprint-collection-sale/156117/

https://www.zdnet.com/article/aclu-sues-clearview-ai-claiming-the-companys-tech-crosses-ethical-bounds/

https://www.theverge.com/2020/5/28/21273388/aclu-clearview-ai-lawsuit-facial-recognition-database-illinois-biometric-laws

Looking at lock screen requires a warrant

https://www.cnet.com/news/looking-at-a-phones-lock-screen-also-requires-a-warrant-judge-rules/

LiveJournal Hacked

https://threatpost.com/hackers-sell-data-livejournal-dark-web/156063/

https://www.zdnet.com/article/26-million-livejournal-credentials-leaked-online-sold-on-the-dark-web/

Comments

Anonymous

So many good choices

Anonymous

I don't know if this would be too much of a deep dive for one episode, but speaking of lock screens, I'd be fascinated to better understand GreyKey and GreyShift tools... Specifically, what the hell kind of smartphone platform allows for the installation of strange apps when the phone is on its lock screen?! Is this like a sort of weird side load only into active memory? if a phone has been exposed to this police malware and handed back to its owner, still locked of course, can the owner mitigate some of the risk by hard power cycling the phone before unlocking it?

veritanuda

Good talking points. Now we just need to add 230 to the list ;)

Shannon Morse

Good question! I think that would definitely require a full on deep dive. Maybe deep dives should be a new patreon goal? haha!