Action in the cybercriminal underworld. Russias FSB and SVR are both active, and so are their hacktivist auxiliaries. NSA offers advice on configuring next-generation firewalls.

Published: Aug. 3, 2023, 8:15 p.m.

Open Bullet malware is seen in the wild. Threat actors exploit a Salesforce vulnerability for phishing. BlueCharlie (that\u2019s Russia\u2019s FSB) shakes up its infrastructure. Midnight Blizzard (and that\u2019s Russia\u2019s SVR) uses targeted social engineering. How NoName057(16) moved on to Spanish targets. Robert M. Lee from Dragos shares his reaction to the White House\u2019s national cybersecurity strategy. Our guest Raj Ananthanpillai of Trua warns against oversharing with ChatGPT. And NSA releases guidance on hardening Cisco next-generation firewalls.\n\nFor links to all of today's stories check out our CyberWire daily news briefing:\nhttps://thecyberwire.com/newsletters/daily-briefing/12/147\n\nSelected reading.\nNo Honour Amongst Thieves: A New OpenBullet Malware Campaign (Kasada)\n\u201cPhishForce\u201d\u200a\u2014\u200aVulnerability Uncovered in Salesforce\u2019s Email Services Exploited for Phishing\u2026 (Medium)\nHackers exploited Salesforce zero-day in Facebook phishing attack (BleepingComputer)\nHackers exploit Salesforce email zero-day for Facebook phishing campaign (Computing)\xa0\nRussia-based hackers building new attack infrastructure to stay ahead of public reporting (Record)\xa0\nMidnight Blizzard conducts targeted social engineering over Microsoft Teams (Microsoft Security)\xa0\nUnraveling Russian Multi-Sector DDoS Attacks Across Spain (Radware)\nPro-Russian Hackers Claim Cyberattacks on Italian Banks (MarketWatch)\xa0\nNSA Releases Guide to Harden Cisco Next Generation Firewalls (National Security Agency/Central Security Service)\nCisco Firepower Hardening Guide (US National Security Agency)\nLearn more about your ad choices. Visit megaphone.fm/adchoices