Vigilance isnt purely receptive. Without criticism, it will become blind with detail.

Published: Oct. 19, 2023, 8:15 p.m.

Nation-states exploit the WinRAR vulnerability. Criminals leak more stolen 23andMe data. QR codes as a risk. NSA and partners offer anti-phishing guidance. A Ukrainian hacktivist auxiliary takes down Trigona privateers. Hacktivism and influence operations remain the major cyber features of the Hamas-Israeli war. On today\u2019s Threat Vector, David Moulton speaks with Kate Naunheim, Cyber Risk Management Director at Unit 42, about the new cybersecurity regulations introduced by the SEC. Our own Rick Howard talks with Jen Miller Osborn about the 10th anniversary of ATT&CKcon. And the epistemology of open source intelligence: tweets, TikToks, Instagrams\u2013they\u2019re not necessarily ground truth.\nThreat Vector\nTo delve further into this topic, check out this upcoming webinar by Palo Alto's Unit 42 team on November 9, 2023, "The Ransomware Landscape: Threats Driving the SEC Rule and Other Regulations."\n\nPlease share your thoughts with us for future Threat Vector segments by taking our brief survey.\n\nTo learn what is top of mind each month from the experts at Unit 42 sign up for their Threat Intel Bulletin.\xa0\n\nFor links to all of today's stories check out our CyberWire daily news briefing:\nhttps://thecyberwire.com/newsletters/daily-briefing/12/200\n\nSelected reading.\nGovernment-backed actors exploiting WinRAR vulnerability (Google)\xa0\nThe forgotten malvertising campaign (Malwarebytes)\nHacker leaks millions of new 23andMe genetic data profiles (BleepingComputer)\xa0\nExploring The Malicious Usage of QR Codes (SlashNext |)\xa0\nHow to Protect Against Evolving Phishing Attacks (National Security Agency/Central Security Service)\nGuidePoint Research and Intelligence Team\u2019s (GRIT) 2023 Q3 Ransomware Report Examines the Continued Surge of Ransomware Activity (GuidePoint)\nUkrainian activists hack Trigona ransomware gang, wipe servers (BleepingComputer)\xa0\nNavigating the Mis- and Disinformation Minefield in the Current Israel-Hamas War (ZeroFox)\nWar Tests Israeli Cyber Defenses as Hack Attempts Soar (Bloomberg)\nU.S. says Israel \u2018not responsible\u2019 for Gaza hospital blast; Biden announces \u2018unprecedented\u2019 aid package in speech (Washington Post)\nThree clues the Ahli Arab Hospital strike came from Gaza (The Telegraph)\xa0\nWho\u2019s Responsible for the Gaza Hospital Explosion? Here\u2019s Why It\u2019s Hard to Know What\u2019s Real (WIRED)\xa0\n\u2018Verified\u2019 OSINT Accounts Are Destroying the Israel-Palestine Information Ecosystem (404 Media)\nLearn more about your ad choices. Visit megaphone.fm/adchoices