Series One Roundup
In this bonus episode, Ciaran and James ring in the new year with a look back at the standout guests and thought-provoking topics from series one. They also take a sneak peek at what 2025 holds for the ever-evolving world of tech security.
And to top it off, there’s a special announcement to chase away those January blues.
Highlights:
Typhoon Variants
Ciaran and James take a look at developing cyber threats from China, including:
• Volt Typhoon: a persistent botnet with wide-reaching impacts
• Volt Typhoon back with vengeance (https://www.theregister.com/2024/11/13/china_volt_typhoon_back/) | Blowing out the bots (https://www.theregister.com/2024/01/31/volt_typhoon_botnet/)
• Salt Typhoon: a new wave of cyber espionage
• Wall Street Journal article: How Chinese Hackers Graduated From Clumsy Corporate Thieves to Military Weapons (https://www.wsj.com/tech/cybersecurity/typhoon-china-hackers-military-weapons-97d4ef95) | Department of Treasury Press
Release (https://home.treasury.gov/news/press-releases/jy2792)
New year, new legislation
As the U.S. pulls back on regulation, other nations are strengthening their
cybersecurity laws.
• Australia’s new law mandates ransomware attack reporting
• Mandatory ransomware payment reporting (https://www.homeaffairs.gov.au/cyber-security-subsite/files/factsheet-ransomware-payment-reporting.pdf) | Cyber Sanctions (https://www.dfat.gov.au/international-relations/guidance-note-cyber-sanctions)
• UK: Cybersecurity and resilience bill focused on ransomware mitigation
• Cyber Security and Resilience Bill (https://www.gov.uk/government/collections/cyber-security-and-resilience-bill) | Ransomware Legislative Proposals: Government Consultation (https://www.homeofficesurveys.homeoffice.gov.uk/s/E6ROXH/)
Additional Resources:
Cyber Leaders Series One Episodes (https://www.sans.org/cyber-leaders-podcast/)
The myth of the 8-character password (https://www.weforum.org/stories/2021/12/passwords-safety-cybercrime/)
Lazarus Heist: The intercontinental ATM theft that netted $14m in two hours (https://www.bbc.co.uk/news/world-65130220)
Cyber Threat Conference (https://cyberthreat.io/)
Contact:
Have questions or comments? Email us at ciso-network@sans.org (mailto:ciso-network@sans.org)