SS-NEWS-081: Malicious OAuth Apps and Poor Crypto Returns

Episode 81 October 10, 2022 00:29:18
SS-NEWS-081: Malicious OAuth Apps and Poor Crypto Returns
Security Serengeti
SS-NEWS-081: Malicious OAuth Apps and Poor Crypto Returns

Oct 10 2022 | 00:29:18

/

Show Notes

Malicious OAuth apps are coming for your Exchange admins!  Oh noes!  Also, Powerpoint gets in the malware delivery game and it turns out that hackers are not considering the efficiency of spinning up AWS boxes to run cryptominers.  Not very considerate of them.  David has a particularly nasty twist on the Powerpoint one.  

Article 1 - Exchange servers abused for spam through malicious OAuth applications
Supporting Article:
OAuth app policies

Article 2 - Hackers Using PowerPoint Mouseover Trick to Infect Systems with Malware

Article 3 - Cryptominers hijack $53 worth of system resources to earn $1
Supporting Article:
Configure Amazon EC2 Dedicated Hosts

If you found this interesting or useful, please follow us on Twitter @serengetisec and subscribe and review on your favorite podcast app!

Other Episodes

Episode 47

February 07, 2022 00:31:30
Episode Cover

SS-SUBJ-047: Active Defense!

In this episode, we discuss Active Defense!  What is it, how do you do it, and what should you pay for. Supporting Links:What is...

Listen

Episode 87

November 21, 2022 00:31:34
Episode Cover

SS-NEWS-087: Interplanetary File System serving Malware from Mars

The Interplanetary File System serving malware from the stars!  Also included are some bonus discussions around automatically exfiltrating information from your own organization using...

Listen

Episode 54

March 28, 2022 00:36:59
Episode Cover

SS-DYST-054: Cyber Dystopia - Facial Recognition used in Ukraine War

Welcome to our first episode of a new sub-series - The Coming Tech Dystopia.  We had so much fun ranting about the state a...

Listen