Detecting sandbox emulations. VEC supply chain attacks. Updates from the hybrid war. CISA and NSA offer IAM guidance. Other CISA advisories. Baphomet gets cold feet after all.

Published: March 22, 2023, 8:15 p.m.

Malware could detect sandbox emulations. A VEC supply chain attack. A new APT is active in Russian-occupied sections of Ukraine.\xa0An alleged Russian patriot claims responsibility for the D.C. Health Link attack. CISA and NSA offer guidance on identity and access management (IAM). Tim Starks from the Washington Post has analysis on the BreachForums takedown. Our guest is Ryan Heidorn from C3 Integrated Solutions with a look at the CMMC compliance timeline. And Baphomet backs out.\n\nFor links to all of today's stories check out our CyberWire daily news briefing:\nhttps://thecyberwire.com/newsletters/daily-briefing/12/55\n\nSelected reading.\nZenGo uncovers security vulnerabilities in popular Web3 Transaction Simulation solutions: The red pill attack (ZenGo)\nStopping a $36 Million Vendor Fraud Attack (Abnormal Intelligence)\xa0\nBad magic: new APT found in the area of Russo-Ukrainian conflict (Securelist)\nUnknown actors target orgs in Russia-occupied Ukraine (Register)\nNew 'Bad Magic' Cyber Threat Disrupt Ukraine's Key Sectors Amid War (The Hacker News)\nPartisan suspects turn on the cyber-magic in Ukraine (Cybernews)\nHacker tied to D.C. Health Link breach says attack 'born out of Russian patriotism' (CyberScoop)\xa0\nCISA and NSA Release Enduring Security Framework Guidance on Identity and Access Management | CISA (Cybersecurity and Infrastructure Security Agency CISA)\xa0\nESF Partners, NSA, and CISA Release Identity and Access Management Recommended Best Practi (National Security Agency/Central Security Service)\nIdentity and Access Management: Recommended Best Practices for Administrators (NSA and CISA)\xa0\nCISA Releases Updated Cybersecurity Performance Goals (Cybersecurity and Infrastructure Security Agency CISA)\xa0\nCISA Releases Eight Industrial Control Systems Advisories | CISA (Cybersecurity and Infrastructure Security Agency CISA)\nEnd of BreachForums could take a bite out of cybercrime (Washington Post)\nBreachForums says it is closing after suspected law enforcement access to backend (Record)\nLearn more about your ad choices. Visit megaphone.fm/adchoices