Some movement in the cyber underworld. Vishing impersonates the US Social Security Administration. More SVB-themed phishing. And compromise without user interaction.

Published: March 17, 2023, 8:15 p.m.

BianLian gang\u2019s pivot. HinataBot is a Go-based threat. The US Social Security Administration is impersonated in attempted vishing attacks. BlackSnake in the RaaS criminal market. More Silicon Valley Bank-themed phishing. Caleb Barlow from Cylete on security implications you need to consider now about Chat GPT. Our guest is Isaac Roth from LeakSignal with advice on securing the microservices application layer. And Russian operators exploit an Outlook vulnerability.\n\nFor links to all of today's stories check out our CyberWire daily news briefing:\nhttps://thecyberwire.com/newsletters/daily-briefing/12/52\n\nSelected reading.\nBianLian Ransomware Gang Continues to Evolve ([redacted])\nUncovering HinataBot: A Deep Dive into a Go-Based Threat (Akamai)\nSocial InSecurity: Armorblox Stops Attack Impersonating Social Security Administration (Armorblox)\nNetskope Threat Coverage: BlackSnake Ransomware (Netskope)\xa0\nFresh Phish: Silicon Valley Bank Phishing Scams in High Gear (INKY)\nOutlook zero day linked to critical infrastructure attacks (Cybersecurity Dive)\nCVE-2023-23397: Exploitations in the Wild \u2013 What You Need to Know (Deep Instinct)\xa0\nEverything We Know About CVE-2023-23397 (Huntress)\nMicrosoft Mitigates Outlook Elevation of Privilege Vulnerability (Microsoft Security Response Center)\nLearn more about your ad choices. Visit megaphone.fm/adchoices