The Gate 15 Podcast Channel

Gate 15

The Gate 15 Company is a leader in helping organizations by providing threat-informed, risk-based approaches to analysis, preparedness and operations.

  1. Weekly Security Sprint EP 125. Hostile Events, AI driven Ransomware, and more!

    1 NGÀY TRƯỚC

    Weekly Security Sprint EP 125. Hostile Events, AI driven Ransomware, and more!

    In this week's Security Sprint, Dave and Andy covered the following topics: Main Topics: Annunciation Catholic Church Attack • Minneapolis Suspect Knew Her Target, but Motive Is a Mystery • Shooter who opened fire on Minneapolis Catholic school posted rambling videos • Robin Westman: Minneapolis gunman was son of church employee • Robin Westman posted a manifesto on YouTube prior to Annunciation Church shooting • Minneapolis school shooter wrote “I am terrorist” and “Kill yourself” in Russian on weapon magazines and listened to Russian rappers • Minneapolis Catholic Church shooter mocked Christ in video before attack • Minneapolis school shooter 'obsessed with idea of killing children', authorities say • Minnesota Mass Shooter Steeped in Far-Right Lore, White Nationalist Murderers • In Secret Diaries, the Church Shooter’s Plans for Mass Murder • Minneapolis church shooting search warrants reveal new details and evidence • 'There is no message': The search for ideological motives in the Minneapolis shooting • Minneapolis Church Shooting: Understanding the Suspect’s Video • More Of Minnesota Shooter’s Writings Uncovered: ‘Gender And Weed F***ed Up My Head’ • Classmates say Minnesota school shooter gave Nazi salutes and idolized school shootings back in middle school Hoax Active Shooter Reports • More than a dozen universities have been targeted by false active shooter reports • This Is the Group That's Been Swatting US Universities • FBI urges students to be vigilant amid wave of swatting hoaxes AI & Cyber Threats • The Era of AI-Generated Ransomware Has Arrived • Researchers flag code that uses AI systems to carry out ransomware attacks & First known AI-powered ransomware uncovered by ESET Research • Anthropic: Detecting and countering misuse of AI: August 2025 • A quick look at sextortion at scale: 1,900 messages and 205 Bitcoin addresses spanning four years Countering Chinese State-Sponsored Actors Compromise of Networks Worldwide to Feed Global Espionage System • FBI warns Chinese hacking campaign has expanded, reaching 80 countries • Allied spy agencies blame 3 Chinese tech companies for Salt Typhoon attacks • UK NCSC: UK and allies expose China-based technology companies for enabling global cyber campaign against critical networks Quick Hits: • Storm-0501’s evolving techniques lead to cloud-based ransomware • Why Hypervisors Are the New-ish Ransomware Target • FBI Releases Use-of-Force Data Update • Denmark summons US envoy over report on covert American ‘influence operations’ in Greenland • Falsos Amigos • Surge in coordinated scans targets Microsoft RDP auth servers • Vulnerabilities impacting Citrix NetScaler ADC and NetScaler Gateway - CVE-2025-7775, CVE-2025-7776 and CVE-2025-8424 • Citrix patches trio of NetScaler bugs – after attackers beat them to it • U.S., Japan, and ROK Join Mandiant to Counter North Korean IT Worker Threats • US sanctions fraud network used by North Korean ‘remote IT workers’ to seek jobs and steal money • H1 2025 Malware and Vulnerability Trends • The FDA just overhauled its COVID vaccine guidance. Here’s what it means for you • 25 August 2025 NCSC, AFOSI, ACIC, NCIS, DCSA, FBI, ED, NIST, NSF bulletin • DOGE Put Critical Social Security Data at Risk, Whistle-Blower Says • Blistering Wyden letter seeks review of federal court cybersecurity, citing ‘incompetence,’ ‘negligence’ • Email Phishing Scams Increasingly Target Churches

    19 phút
  2. Weekly Security Sprint EP 124. Targeting Critical Infrastructure, MDM again, and other security risks

    26 THG 8

    Weekly Security Sprint EP 124. Targeting Critical Infrastructure, MDM again, and other security risks

    In this week's Security Sprint, Dave and Andy covered the following topics: Warm Open: • Nerd Out EP 61. The 2/3 of the Year Awards! Main Topics: FBI PSA - Russian Government Cyber Actors Targeting Networking Devices, Critical Infrastructure. The Federal Bureau of Investigation (FBI) is warning the public, private sector, and international community of the threat posed to computer networks and critical infrastructure by cyber actors attributed to the Russian Federal Security Service's (FSB) Center 16. The FBI detected Russian FSB cyber actors exploiting Simple Network Management Protocol (SNMP) and end-of-life networking devices running an unpatched vulnerability (CVE-2018-0171) in Cisco Smart Install (SMI) to broadly target entities in the United States and globally. Info Ops: • Most Adults in 25 Countries Say Spread of False Information Is a Top National Threat. The findings come from Pew’s seventh iteration of its Global Attitudes Survey: International Opinion on Global Threats, which was last published in 2022. • Foreign disinformation enters AI-powered era. At least one China-based technology company, GoLaxy, seems to be using generative AI to build influence operations in Taiwan and Hong Kong… Documents also show that GoLaxy has created profiles for at least 117 members of Congress and over 2,000 American political figures and thought leaders. • Toxic politics and TikTok engagement in the 2024 U.S. election • Why wind farms attract so much misinformation and conspiracy theory UN - Terror threat posed by ISIL ‘remains volatile and complex,’ Security Council hears. The threat posed by the terrorist group ISIL – known more widely in the Middle East as Da’esh – remains dynamic and diverse, with Africa currently experiencing the highest level of activity worldwide. • PDF: Remarks by Mr. Vladimir Voronkov, Under-Secretary-General for Counter-Terrorism, United Nations Office of Counter-Terrorism. • PDF: Remarks by Mr. Vladimir Voronkov, Under-Secretary-General, United Nations Office of Counter-Terrorism. • UN Report: ISIS Fighters’ Migration to Afghanistan and the Taliban’s Failure • ISIS-K poses major threat with 2,000 fighters in Afghanistan, UN says FEMA Employees Warn That Trump Is Gutting Disaster Response. After Hurricane Katrina, Congress passed a law to strengthen the nation’s disaster response. FEMA employees say the Trump administration has reversed that progress. Employees at the Federal Emergency Management Agency wrote to Congress on Monday warning that the Trump administration had reversed much of the progress made in disaster response and recovery since Hurricane Katrina pummeled the Gulf Coast two decades ago. The letter to Congress, titled the “Katrina Declaration,” rebuked President Trump’s plan to drastically scale down FEMA and shift more responsibility for disaster response — and more costs — to the states. It came days before the 20th anniversary of Hurricane Katrina, one of the deadliest and costliest storms to ever strike the United States. Quick Hits: • 25% of security leaders replaced after ransomware attack • Gate 15: Hack Yourself First: Pen Testing for Prevention • FB-ISAO: Ransomware Incident Review January to June 2025 • Dissecting PipeMagic: Inside the architecture of a modular backdoor framework • Maryland Transit Administration says cybersecurity incident is affecting some of its servicesNevada state government offices closed after network security incident • Audit of Antisemitic Incidents 2024 • MIT report: 95% of generative AI pilots at companies are failing • Report: Russian Sabotage Operations In Europe Have Quadrupled Since 2023 • CISA Requests Public Comment for Updated Guidance on Software Bill of Materials • Risky Bulletin: NIST releases face-morphing detection guideline • CVE-2025–41688: Bypassing Restrictions in an OT Remote Access Device • Think before you Click(Fix): Analyzing the ClickFix social engineering technique

    20 phút
  3. Weekly Security Sprint EP 123. Drone analysis, Hurricane Erin, and perimeter fences

    19 THG 8

    Weekly Security Sprint EP 123. Drone analysis, Hurricane Erin, and perimeter fences

    In this week's Security Sprint, Dave and Andy are joined by Alec Davison and they covered the following topics: Warm Open: • Crypto ISAC • Odin.fun Exploited for $7 Million as 58.2 BTC Stolen in Security Breach • BtcTurk under attack again: withdrawals suspended after alleged $50 million hack & Major Turkish Crypto Exchange BtcTurk Allegedly Hacked for Nearly $50 Million • Treasury Sanctions Cryptocurrency Exchange and Network Enabling Sanctions Evasion and Cyber Criminals • More everyday in the SUN. Join the GRIP! Get the SUN! Main Topics: EPA, WaterISAC caution utilities on drone threats and cyber risks in evolving security landscape. The U.S. Environmental Protection Agency (EPA) and WaterISAC recognized that UASs (unmanned aerial systems), or drones, can pose significant threats to critical infrastructure, due to their accessibility, versatility, and potential for misuse. These threats can range from unauthorized surveillance, physical attacks, and even cyber attacks. Drones have revolutionized the critical infrastructure sector by enabling efficient and cost-effective inspections, reducing the need for manual labor and minimizing safety risks associated with hazardous environments, while providing real-time data and high-resolution imagery, allowing for more accurate monitoring and maintenance of infrastructure assets, leading to improved operational efficiency and reduced downtime. UK NPSA: Security Fences and Gates. Fences, along with integrated gates, play a key role in delivering security solutions both for perimeters and protecting important assets. This guidance is intended to aid those responsible for delivering security solutions including fences and gates to identify the factors that need to be considered. NPSA wish to advise that fences and gates are no longer tested to the Manual Forced Entry Standard (MFES). As a result, all fences and gates which were previously given an MFES rating have been removed from the Catalogue of Security Equipment. This document provides advice on the requirements for security fences and gates and signpost alternative security standards that should be considered. Please use the NPSA Forced Entry Standards Guidance1 to assist you. NPSA Forced Entry Standard 2024 Hurricane Erin: • NHC issuing advisories for the Atlantic on Hurricane Erin • Key messages regarding Hurricane Erin • Hurricane Erin to grow, will next threaten US coast with dangerous conditions Quick Hits: • NOAA - July 2025 was planet's 3rd warmest on record • Dragos Industrial Ransomware Analysis: Q2 2025 • CISA: Foundations for OT Cybersecurity: Asset Inventory Guidance for Owners and Operators • Canada’s Guide on Biometric Management Is a Useful Resource for All Corporate Security Directors • Canadian Centre for Cyber Security o Steps to address data spillage in the cloud (ITSAP.50.112) o Introduction to cloud computing (ITSAP.50.110) o Models of cloud computing (ITSAP.50.111) • Norway spy chief blames Russian hackers for hijacking dam • Colt Telecom attack claimed by WarLock ransomware, data up for sale • SNI5GECT: Sniffing and Injecting 5G Traffic Without Rogue Base Stations & Risky Bulletin: Academics pull off novel 5G attack • Hundreds of N-able N-central Instances Affected by Exploited Vulnerabilities • ReliaQuest Uncovers New Critical Vulnerability in SAP NetWeaver • Plex warns users to patch security vulnerability immediately • ClickFix phishing links increased nearly 400% in 12 months, report says

    21 phút
  4. Weekly Security Sprint EP 122. FBI Crime Report, Cyber Threats and be ready for the weather

    12 THG 8

    Weekly Security Sprint EP 122. FBI Crime Report, Cyber Threats and be ready for the weather

    In this week's Security Sprint, Dave and Andy covered the following topics: Main Topics: Physical Security: • FBI Releases 2024 Reported Crimes in the Nation Statistics o Hate crimes hit second largest record in 2024: FBI o Crime down in every category in 2024, FBI report says o Jews targeted in 69% of religion hate crimes in 2024, 71% since October 2023, per FBI data o FBI Report: Anti-Jewish Hate Crimes Across U.S. Nearly 10x Higher Than Any Other Group o NYC Sees Drop in Antisemitic Hate Crimes, Yet Jews Still Targeted Most, Police Say • CDC shooter blamed COVID vaccine for depression; union demands statement against misinformation o CDC Shooter Believed Covid Vaccine Made Him Suicidal, His Father Tells Police o Suspect identified in Atlanta shooting outside CDC: What to know • Shooter kills three in a Target parking lot in Austin before being captured, police say o Child among 3 killed in north Austin shooting, suspect detained o 'I was running for my life' | 3 dead in shooting at North Austin Target The Cost of a Call: From Voice Phishing to Data Extortion - Update (August 5) & Google says hackers stole its customers’ data by breaching its Salesforce database Hackers Hijacked Google’s Gemini AI With a Poisoned Calendar Invite to Take Over a Smart Home; For likely the first time ever, security researchers have shown how AI can be hacked to create real-world havoc, allowing them to turn off lights, open smart shutters, and more. In a new apartment in Tel Aviv, the internet-connected lights go out. The smart shutters covering its four living room and kitchen windows start to roll up simultaneously. And a connected boiler is remotely turned on, ready to start warming up the stylish flat. The apartment’s residents didn’t trigger any of these actions. They didn’t put their smart devices on a schedule. They are, in fact, under attack. Each unexpected action is orchestrated by three security researchers demonstrating a sophisticated hijack of Gemini, Google’s flagship artificial intelligence bot. Quick Hits: • NOAA - Prediction remains on track for above-normal Atlantic hurricane season • New state, local cyber grant rules prohibit spending on MS-ISAC • Joint Counterterrorism Assessment Team (JCAT): Hybrid and Electric Vehicle Emergency Planning and Postattack Response Considerations • Canadian Centre for Cyber Security - Potential SSL VPN Zero-Day vulnerability impacting Gen 7 SonicWall Firewalls • SonicWall Hunts for Zero-Day Amid Surge in Firewall Exploitation • Microsoft Releases Guidance on High-Severity Vulnerability (CVE-2025-53786) in Hybrid Exchange Deployments • CISA Releases Malware Analysis Report Associated with Microsoft SharePoint Vulnerabilities • CISA Issues ED 25-02: Mitigate Microsoft Exchange Vulnerability • Leak Reveals the Workaday Lives of North Korean IT Scammers • US companies spending record amounts to protect executives as threats rise • Mysterious Crime Spree Targeted National Guard Equipment Stashes • American Nazis: The Aryan Freedom Network is riding high in Trump era • Florida Man Sentenced to 20 Years for Conspiring to Destroy Baltimore Region Power Grid & Neo-Nazi leader sentenced to 20 years for plotting Baltimore power grid attack • Leader of Transnational Terrorist Group Pleads Guilty to Soliciting Hate Crimes, Soliciting the Murder of Federal Officials, and Conspiring to Provide Material Support to Terrorists

    20 phút
  5. Weekly Security Sprint EP 121. Hostile events and grievances, Cyber reports, and government funding

    5 THG 8

    Weekly Security Sprint EP 121. Hostile events and grievances, Cyber reports, and government funding

    In this week's Security Sprint, Dave and Andy covered the following topics: Warm Open: • Decrypted: FunkSec Ransomware; Avast releases free decryptor for AI-assisted FunkSec ransomware & Skip directly to the decryptor download. Main Topics: Hostile Events: • NYC shooting at heavily secured office building raises questions about what more can be done • FBI Arrests Dayton Man for Making Social Media Post Threatening to Kill Tens of Thousands & Man accused of threatening to kill 30K Black people in Cincinnati days after megaviral attack video • Tennessee man threatened to kill public officials, kept explosive devices in his home, authorities say Cyber Threat Reports: • CrowdStrike 2025 Threat Hunting Report: AI Becomes a Weapon and a Target • Censys: 2025 State of the Internet: Malware Investigations • Forescout - Midyear Threat Report: Numbers Grow in Nearly All the Wrong Places • Cside: Client-Side Attack Report Q2 2025 DHS Launches Over $100 Million in Funding to Strengthen Communities’ Cyber Defenses Quick Hits: • FBI PSA - Unsolicited Packages Containing QR Codes Used to Initiate Fraud Schemes • Leading phone repair and insurance firm collapses after paying crippling ransomware demand — Cutting 100+ employees to just eight wasn’t enough • Canadian Centre for Cyber Security - Security considerations for critical infrastructure (ITSAP.10.100) • Iran hiring criminal networks in Europe to attack Jews, US religious freedom report finds • UNC2891 Bank Heist: Physical ATM Backdoor & Linux Forensic Evasion Evasion • Swedish crypto exchange Trijo hacked for 7.8 MSEK

    21 phút

Xếp Hạng & Nhận Xét

5
/5
4 Xếp hạng

Giới Thiệu

The Gate 15 Company is a leader in helping organizations by providing threat-informed, risk-based approaches to analysis, preparedness and operations.

Có Thể Bạn Cũng Thích