SS-NEWS-094: Russia Meddling and Weak Federal Passwords

Episode 94 January 16, 2023 00:47:07
SS-NEWS-094: Russia Meddling and Weak Federal Passwords
Security Serengeti
SS-NEWS-094: Russia Meddling and Weak Federal Passwords

Jan 16 2023 | 00:47:07

/

Show Notes

Russia Meddling was not quite as bad as originally thought, Federal agency passwords are weak, digital license plates are a terrible but cool idea, and INSURANCE!

We should be sponsored by a cyber insurance company, for as often as we discuss it...

Article 1 - Russian meddling in 2016 US presidential election was weak sauce

Article 2 - A fifth of passwords used by federal agency cracked in security audit
Supporting Links:
XKCD - Password Strength
Gibson Research Corporation - How Big is Your Haystack?
Perfect Passwords - GRC's Ultra High Security Password Generator

Article 3 - Researchers Could Track the GPS Location of All of California’s New Digital License Plates
Supporting Links:
How to track equipped cars via exploitable e-ink platemaker

Article 4 - Insurance Company Launches First-Ever 'Cyber Catastrophe Bond,' Which Seems About Right
Supporting Links:
The Lawfare Podcast: Bryan Cunningham on a Federally Funded Backstop for the Cyber Insurance Ecosystem
CONNECTICUT INSURANCE LAW JOURNAL VOL. 28
Economic effects of the September 11 attacks

If you found this interesting or useful, please follow us on Twitter @serengetisec and subscribe and review on your favorite podcast app!

Other Episodes

Episode 106

April 10, 2023 00:56:29
Episode Cover

SS-NEWS-106 - Microsoft Security Copilot

All AI, All the Time.  Today we talk about AI coworkers, Security Copilot from MS, the 3CX compromise, and a lowball offer from HM...

Listen

Episode 109

May 01, 2023 00:38:14
Episode Cover

SS-SUBJ-109: Threat Intel with Victor

David and Matthew have talked poorly about Threat Intel for years now.  It's only fair to give Threat Intel it's own time in the...

Listen

Episode 24

August 29, 2021 00:35:44
Episode Cover

SS-NEWS-24: Amazon monitoring keystrokes, CAPTCHA's hiding Cred stealing

In this week's episode, we discuss Amazon tracking keystrokes, attacker's using CAPTCHA's to hide credential stealing sites, and a bonus article that we decided...

Listen