Stopping Cobalt Strike abuse. Leaks are mingled with disinformation. Google offers advice for board members. Securing cars and their garages. CISA releases ICS advisories.

Published: April 7, 2023, 8:15 p.m.

Preventing abuse of the Cobalt Strike pentesting tool. US investigates a leak of sensitive documents related to the war in Ukraine. Hacktivist activity continues. Google's advice for boards. Electronic lockpicks for electronic locks. Nexx security devices may have security flaws. Tesla employees reportedly shared images and videos from Teslas in the wild. Matt O'Neill from US Secret Service discussing investment crypto scams. Our guest is James Campbell of Cado Security on the challenges of a cloud transition. And CISA releases seven ICS advisories.\n\nFor links to all of today's stories check out our CyberWire daily news briefing:\nhttps://thecyberwire.com/newsletters/daily-briefing/12/67\n\nSelected reading.\nStopping cybercriminals from abusing security tools (Microsoft On the Issues)\xa0\nMicrosoft leads effort to disrupt illicit use of Cobalt Strike, a dangerous hacking tool in the wrong hands (CyberScoop)\nUkraine War Plans Leak Prompts Pentagon Investigation (New York Times)\nDDoS attacks rise as pro-Russia groups attack Finland, Israel (TechRepublic)\nPerspectives on Security for the Board (Google Cloud)\nThieves Use CAN Injection Hack to Steal Cars (SecurityWeek)\nHow thieves steal cars using vehicle CAN bus (Register)\xa0\nOwn a Nexx \u201csmart\u201d alarm or garage door opener? Get rid of it, or regret it (Graham Cluley).\nHack and enter! The \u201csecure\u201d garage doors that anyone can open from anywhere \u2013 what you need to know (Naked Security)\nSpecial Report: Tesla workers shared sensitive images recorded by customer cars (Reuters)\nCISA Releases Seven Industrial Control Systems Advisories (Cybersecurity and Infrastructure Security Agency CISA)\nLearn more about your ad choices. Visit megaphone.fm/adchoices