Hijacking .gov backdoors, Ivanti 0days and a Samsung 0-click vuln

Three Buddy Problem - Episode 29: Another day, another Ivanti zero-day being exploited in the wild. Plus, China's strange response to Volt Typhoon attribution, Japan blames China for hacks, a Samsung 0-click vulnerability found by Project Zero, Kim Zetter's reporting on drone sightings and a nuclear scare. Plus, hijacking abandoned .gov backdoors and Ukrainian hacktivists wiping a major Russian ISP. Cast: Juan Andres Guerrero-Saade, Costin Raiu and Ryan Naraine.Links:Transcript (unedited, AI-generated)Ivanti Connect Secure zero-day advisoryMandiant report on new Ivanti zero-dayChina Daily responds to Volt Typhoon attributionJapan warns about Chinese 'MirrorFace' attacksWho is MirrorFace?Natalie Silvanovich on new Samsung 0-clickKim Zetter: Anatomy of a Nuclear ScareBackdooring .gov backdoors via $20 domainsAPT32 poisoning GitHub, targeting Chinese security prosUkraine wipes Russian ISPRussian internet provider confirms network ‘destroyed’ by Ukrainian hackersMullvad: Quantum-resistant tunnels on desktop VPNFundraiser for Marc RogersCNN: Amit Yoran has died at 54

Om Podcasten

The Three Buddy Problem is a popular Security Conversations podcast that goes beyond industry talking points to discuss what others won’t -- nation-state malware, attribution, cyberwar, ethics, privacy, and the messy realities of securing computers and corporate networks. Hosted by three veteran security pros -- journalist Ryan Naraine and malware paleontologists Costin Raiu and Juan Andres Guerrero-Saade -- the weekly show attracts a highly engaged audience of security researchers, corporate defenders, CISOs, and policymakers. Connect with Ryan on Twitter (Open DMs).