Newsletter

02.22.2022 | 5'' read

A Coinbase ‘market-nuking’ security bug

by Ryan Naraine

* The most clicked link from the last newsletter was SentinelOne’s report on ModifiedElephant, an India-linked APT caught planting malware on the phones of activists. The PortSwigger list of the top-10 web hacking techniques for 2021 was also popular.

Note.

  • I’ll be doing an exclusive interview with McDonald’s CISO Shaun Marion at tomorrow’s Attack Surface Management Summit.  Register here to catch a fun conversation on securing our chicken nuggets.
News headlines. 

Viewpoints.


SPONSORED.

  • Join us on tomorrow (Wed, Feb 23) for SecurityWeek’s Attack Surface Management Summit, presented by Randori. Learn from experienced CISOs, cloud software engineers, network architects, and security response engineers about  best practices, defense frameworks and actionable data and to reduce risk from exposed attack surfaces. Registration is open.

Must-see research projects.

Hacking things.


SPONSORED.

  • Using Symmetry DataGuard, cloud-security teams tighten IAM policies around data, incident response teams know precisely what data objects are involved in a breach, and governance teams audit every access across every data store. Schedule a demo.

Actually useful vendor things.

Israel’s spyware story update.

Tangentially.

P.S. Full podcast episodes are available on the SecurityConversations.com home page, and on all major platforms. Subscribe directly: Apple/iPhoneGoogle/AndroidSpotify and Amazon/Audible.
|

This site uses cookies and may process personal data based on our Privacy Policy