CyberTalk with Bill and Robin: 22nd March 2023

CyberTalk with Bill and Robin: 22nd March 2023

1.Hold your horses: Ferrari extorted by RansomEXX

The italian sportscar manufacturer carmaker was contacted by a threat actor (RansomEXX) with a demand related to certain client contact details. Upon receipt of the ransom demand, Ferrari immediately started an investigation, however extortion is underway and 7GB of sensitive data has been allegedly leaked. How could this have been prevented?

  1. Mispadu - Making Bank
  2. Mispadu is a banking trojan that exfiltrates credentials, screenshots, and keystrokes to compromised legitimate websites repurposed as C2 servers. The current campaign is targeting Latin American countries, and current estimates are that more than 90,000 banking credentials have been stolen. Would DNS protection or remote browser isolation have saved the day?