ํŒŸ์บ์ŠคํŠธ

AI Double Agents to Blame, Scattered Spider Pivots to Planes

๐ŸŽ™๏ธ Scattered Spider's new target? Airlines.

Eden Koby Naftali & Amitai Cohen break down the latest in the cloud: 1๏ธโƒฃ A connectivity tool vuln & Open WebUI misconfig putting orgs at risk 2๏ธโƒฃ Why attackers are still tricking help desks (and how!) 3๏ธโƒฃ The "lethal trifecta" of AI agent danger, explained ๐Ÿง ๐Ÿค–

0:25 โ€“ Scattered Spider targets the aviation industry 1:38 โ€“ Help desk hacks: impersonation & real-world stories 4:52 โ€“ Teleport vulnerability explained 9:48 โ€“ AIโ€™s โ€œlethal trifectaโ€ and why it matters

CloudSecurity #ScatteredSpider #AIThreats #HelpDeskAttacks #CryingOutCloud #CybersecurityPodcast

Crying Out Cloud๋Š” ๋‰ด์Šค๋ ˆํ„ฐ์ด๊ธฐ๋„ ํ•ฉ๋‹ˆ๋‹ค!

์•ˆ์ „ ๋ฐ ์ •๋ณด ์œ ์ง€: ์ตœ์‹  ํด๋ผ์šฐ๋“œ ๋ณด์•ˆ ๋‰ด์Šค, ์‹ค์ œ ๊ณต๊ฒฉ ์ธ์‚ฌ์ดํŠธ ๋ฐ ์ „๋ฌธ๊ฐ€ ์ง€์นจ์„ ๋ฐ›์•„ ํ™˜๊ฒฝ์„ ๋ณดํ˜ธํ•˜์‹ญ์‹œ์˜ค.

  • ๊ฒŒ์ž„์˜ ํŒ๋„๋ฅผ ๋ฐ”๊พธ๋Š” ๋‰ด์Šค

    ์—…๊ณ„๋ฅผ ๋’คํ”๋“ค๊ณ  ์žˆ๊ณ  ์—ฌ๋Ÿฌ๋ถ„์˜ ๊ด€์‹ฌ์ด ํ•„์š”ํ•œ ์ตœ์‹  ํด๋ผ์šฐ๋“œ ๋ณด์•ˆ ์ทจ์•ฝ์„ฑ๊ณผ ํ˜์‹ ์— ๋Œ€ํ•œ ์š”์•ฝ์ž…๋‹ˆ๋‹ค.

  • ๊ณ ์œ ํ•œ Wiz ์ธ์‚ฌ์ดํŠธ

    ์—ฐ๊ตฌ ๋ฐ์ดํ„ฐ ๋‚ด๋ถ€ ์‚ดํŽด๋ณด๊ธฐ - ์‹ค์ œ ํด๋ผ์šฐ๋“œ ํ™˜๊ฒฝ์—์„œ ํƒ์ง€ํ•œ ์‹ค์ œ ๊ณต๊ฒฉ ๊ฒฝ๋กœ์˜ ํ†ต๊ณ„๋ฅผ ๊ธฐ๋ฐ˜์œผ๋กœ ํ•ฉ๋‹ˆ๋‹ค.

  • ์‹ค์ „ ํ…Œ์ŠคํŠธ๋ฅผ ๊ฑฐ์นœ ์กฐ์–ธ

    ํšŒ์‚ฌ์—์„œ ๋ฐ์ดํ„ฐ ์นจํ•ด๋ฅผ ๋ฐฉ์ง€ํ•˜๋Š” ๋ฐฉ๋ฒ•๊ณผ ์ „๋ฐ˜์ ์ธ ํด๋ผ์šฐ๋“œ ๋ณด์•ˆ ์ „๋žต์„ ๊ฐœ์„ ํ•˜๋Š” ๋ฐฉ๋ฒ•์— ๋Œ€ํ•œ ์œ„ํ˜‘ ์—ฐ๊ตฌ ํŒ€์˜ ํŒ์ž…๋‹ˆ๋‹ค.

ํด๋ผ์šฐ๋“œ ๋ณด์•ˆ์˜ ์ตœ์‹  ์—…๋ฐ์ดํŠธ๋ฅผ ๋ฐ›์€ ํŽธ์ง€ํ•จ์œผ๋กœ ์ง์ ‘ ๋ฐ›์œผ๋ ค๋ฉด ๋“ฑ๋กํ•˜์‹ญ์‹œ์˜ค.

Wiz๊ฐ€ ๊ท€ํ•˜์˜ ๊ฐœ์ธ ๋ฐ์ดํ„ฐ๋ฅผ ์ฒ˜๋ฆฌํ•˜๋Š” ๋ฐฉ๋ฒ•์— ๋Œ€ํ•œ ์ž์„ธํ•œ ๋‚ด์šฉ์€ ๋‹ค์Œ์„ ์ฐธ์กฐํ•˜์‹ญ์‹œ์˜ค. ๊ฐœ์ธ์ •๋ณด์ฒ˜๋ฆฌ๋ฐฉ์นจ.