Blizzard warning: Russias GRU unleashes new cyber saboteurs.

Published: Sept. 6, 2024, 8:10 p.m.

Cadet Blizzard is part of Russia\u2019s elite GRU Unit. Apache releases a security update for its open-source ERP system. SonicWall has issued an urgent advisory for a critical vulnerability. Researchers uncover a novel technique exploiting Linux\u2019s Pluggable Authentication Modules. Google\u2019s kCTF team has discloses a critical security vulnerability affecting the Linux kernel\u2019s netfilter component. Predator spyware has resurfaced.\xa0 US health care firm Confidant Health exposes 5.3 terabytes of sensitive health information. Dealing with the National Public Data breach. On our Solution Spotlight: Mary Haigh, Global CISO of BAE Systems, speaks with N2K's Simone Petrella about moving beyond the technical to build an effective cybersecurity team. An AI music streaming scheme strikes a sour note.\xa0\nRemember to leave us a 5-star rating and review in your favorite podcast app.\nMiss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you\u2019ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.\n\nCyberWire Guest\nOn our Solution Spotlight segment, Mary Haigh, Global CISO of BAE Systems, speaks with N2K President Simone Petrella about moving beyond the technical to build a cybersecurity team.\n\nSelected Reading\nRussia\u2019s Most Notorious Special Forces Unit Now Has Its Own Cyber Warfare Team (WIRED)\nApache Makes Another Attempt at Patching Exploited RCE in OFBiz (SecurityWeek)\nSonicWall Access Control Vulnerability Exploited in the Wild (GB Hackers)\nLinux Pluggable Authentication Modules Abused to Create Backdoors (Cyber Security News)\nPoC Exploit Released for Linux Kernel Vulnerability that Allows Root Access (Cyber Security News)\nPredator spyware resurfaces with signs of activity, Recorded Future says (CyberScoop)\nTherapy Sessions Exposed by Mental Health Care Firm\u2019s Unsecured Database (WIRED)\nFrustration Trying to Opt-Out After the National Public Data Breach (Security Boulevard)\nMusician charged with $10M streaming royalties fraud using AI and bots (Bleeping Computer)\n\nShare your feedback.\nWe want to ensure that you are getting the most out of the podcast. Please take a few minutes to share your thoughts with us by completing our brief listener survey as we continually work to improve the show.\xa0\n\nWant to hear your company in the show?\nYou too can reach the most influential leaders and operators in the industry. Here\u2019s our media kit. Contact us at cyberwire@n2k.com to request more info.\nThe CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. \xa9 N2K Networks, Inc.\nLearn more about your ad choices. Visit megaphone.fm/adchoices