#98 - Intel Chat: Midnight Blizzard, GKE vulnerability, NetSupport RAT & Cactus ransomware
In this episode of The Cybersecurity Defenders Podcast, we discuss some cutting-edge intel coming out of LimaCharlie's community Slack channel (slack.limacharlie.io).
- Microsoft updated the public on their findings - apparently, the threat actors were able to gain persistent access to the privileged email accounts by abusing the OAuth authorization protocol.
- Cybersecurity researchers have discovered a loophole impacting Google Kubernetes Engine that could be potentially exploited by threat actors to take control of a Kubernetes cluster.
- A new campaign is using phishing emails to distribute malware and legitimate services to bypass email protection systems to install NetSupport RAT.
- On January 20th the Cactus ransomware group attacked a number of victims across varying industries.