PLAY PODCASTS
#250 - Intel Chat: PromptLock, "Shai-Hulud", EdisonWatch & FileFix campaign
Season 4 · Episode 250

#250 - Intel Chat: PromptLock, "Shai-Hulud", EdisonWatch & FileFix campaign

The Cybersecurity Defenders Podcast · Christopher

September 22, 202536m 30s

Audio is streamed directly from the publisher (podcast.wistia.com) as published in their RSS feed. Play Podcasts does not host this file. Rights-holders can request removal through the copyright & takedown page.

Show Notes

In this episode of The Cybersecurity Defenders Podcast, we discuss some intel being shared in the LimaCharlie community.

  • ESET Research has uncovered what it believes to be the first documented case of AI-powered ransomware, dubbed PromptLock.
  • Multiple CrowdStrike-branded npm packages were recently discovered to be compromised, marking a new wave in the ongoing “Shai-Hulud” supply chain attack campaign.
  • Researchers at AI security firm EdisonWatch have uncovered a new vulnerability in the ChatGPT calendar integration, revealing how it can be exploited to execute attacker-controlled commands.
  • The most mature and globally distributed FileFix campaign observed to date is now active in the wild, according to researchers at Acronis.

Support our show by sharing your favorite episodes with a friend, subscribe, give us a rating or leave a comment on your podcast platform.

This podcast is brought to you by LimaCharlie, maker of the SecOps Cloud Platform, infrastructure for SecOps where everything is built API first. Scale with confidence as your business grows. Start today for free at limacharlie.io.