Stealth, command, exfiltrate: The three-headed cyber dragon of Crimson Palace.

Published: Sept. 10, 2024, 8:10 p.m.

Crimson Palace targets Asian organizations on behalf of the PRC. Europe\u2019s AI Convention has lofty goals and legal loopholes. The NoName ransomware gang may be working as a RansomHub affiliate. Wisconsin Physicians Service Insurance Corporation, SLIM CD, and Acadian Ambulance Service each suffer significant data breaches. CISA adds three vulnerabilities to its Known Exploited Vulnerabilities Catalog. Researchers from Ben-Gurion University in Israel develop new techniques to exfiltrate data from air-gapped computers. In our latest Threat Vector segment, David Moulton, Director of Thought Leadership at Unit 42, sits down with Ryan Barger, Director of Offensive Security Services, to explore how AI is revolutionizing offensive security. Sextortion scammers have gone to the dogs.\xa0\nRemember to leave us a 5-star rating and review in your favorite podcast app.\nMiss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you\u2019ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.\n\nThreat Vector Segment\nIn this segment of Threat Vector, David Moulton, Director of Thought Leadership at Unit 42, sits down with Ryan Barger, Director of Offensive Security Services, to explore how AI is revolutionizing offensive security. Ryan delves into the practical applications of AI in tasks such as OSINT analysis, payload development, and evading endpoint detection systems. To listen to their full conversation, check out the episode here. You can catch new episodes of Threat Vector every Thursday on the N2K CyberWire network.\xa0\n\nSelected Reading\nChinese Tag Team APTs Keep Stealing Asian Gov't Secrets (Dark Reading)\nThe AI Convention: Lofty Goals, Legal Loopholes, and National Security Caveats (SecurityWeek)\nNoName ransomware gang deploying RansomHub malware in recent attacks (Bleeping Computer)\nWisconsin Insurer Discloses Data Breach Impacting 950,000 Individuals (SecurityWeek)\nPayment Gateway SLIM CD Data Breach: 1.7 Million Users Impacted (HACKREAD)\nAcadian Ambulance service is reporting data breach, exposing almost 3 Million people (Beyond Machines)\nCISA Warns of Three Vulnerabilities That Are Actively Exploited in the Wild (Cyber Security News)\nResearchers Detail Attacks on Air-Gapped Computers to Steal Data (Cyber Security News)\nSextortion scams now use your "cheating" spouse\u2019s name as a lure (Bleeping Computer)\xa0\n\nShare your feedback.\nWe want to ensure that you are getting the most out of the podcast. Please take a few minutes to share your thoughts with us by completing our brief listener survey as we continually work to improve the show.\xa0\n\nWant to hear your company in the show?\nYou too can reach the most influential leaders and operators in the industry. Here\u2019s our media kit. Contact us at cyberwire@n2k.com to request more info.\nThe CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. \xa9 N2K Networks, Inc.\nLearn more about your ad choices. Visit megaphone.fm/adchoices