meta_pixel
Tapesearch Logo
CyberWire Daily

Tomcat got your server?

CyberWire Daily

N2K Networks, Inc.

Daily News, Tech News, News, Technology

4.61K Ratings

🗓️ 18 March 2025

⏱️ 27 minutes

🧾️ Download transcript

Summary

An Apache Tomcat vulnerability is under active exploitation. CISA rehires workers ousted by DOGE. Lawmakers look to protect rural water systems from cyber threats. Western Alliance Bank notifies 22,000 individuals of a data breach. A new cyberattack method called BitM allows hackers to bypass multi-factor authentication.  A Chinese cyberespionage group targets Central European diplomats. A new cyberattack uses ChatGPT infrastructure to target the financial sector and U.S. government agencies. Australia sues a major securities firm over inadequate protection of customer data. Our Threat Vector segment examines how unifying security capabilities strengthens cyber resilience. Cybercriminals say, “Get me Edward Snowden on the line!” Remember to leave us a 5-star rating and review in your favorite podcast app. Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn. Threat Vector Segment Security platformization is transforming the way organizations defend against cyber threats. In this episode of Threat Vector, host David Moulton speaks with Carlos Rivera, Senior Analyst at Forrester, about how unifying security capabilities strengthens cyber resilience. To listen to the full discussion, please check out the episode here or on your favorite podcast app, and tune in to new episodes of Threat Vector by Palo Alto Networks every Thursday.  Selected Reading Critical Apache Tomcat RCE Vulnerability Exploited in Just 30hrs of Public Exploit (Cyber Security News) CISA Rehires Fired Employees, Immediately Puts Them on Leave (GovInfo Security) Western Alliance Bank Discloses Data Breach Linked to Cleo Hack (SecurityWeek) New BitM Attack Lets Hackers Steal User Sessions Within Seconds (Cyber Security News) US Lawmakers Reintroduce Bill to Boost Rural Water Cybersecurity  (SecurityWeek) Chinese Hackers Target European Diplomats with Malware (GovInfo Security) Hackers Exploit ChatGPT with CVE-2024-27564, 10,000+ Attacks in a Week (Hackread) Australia Sues FIIG Investment Firm in Cyber 'Wake-Up Call' (GovInfo Security) Extortion crew threatened to inform Edward Snowden (?!) if victim didn't pay up (The Register) Share your feedback. We want to ensure that you are getting the most out of the podcast. Please take a few minutes to share your thoughts with us by completing our brief listener survey as we continually work to improve the show.  Want to hear your company in the show? You too can reach the most influential leaders and operators in the industry. Here’s our media kit. Contact us at [email protected] to request more info. The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc. Learn more about your ad choices. Visit megaphone.fm/adchoices

Transcript

Click on a timestamp to play from that location

0:00.0

You're listening to the Cyberwire Network, powered by N2K.

0:10.2

And now a brief message from our sponsor, Drop Zone AI.

0:17.0

Is your sock drowning in alerts, with legitimate threats sitting in queues for hours or even days?

0:23.6

The latest Sands SOC survey report reveals alert fatigue and limited automation are SOC team's greatest barriers.

0:31.6

Dropzone AI, recognized by Gartner as a cool vendor, directly addresses these challenges through autonomous recursive

0:39.4

reasoning investigations, quickly eliminating false positives, enriching context and enabling analysts

0:46.2

to prioritize real incidents faster. Take control of your alerts and investigations with

0:52.6

Dropzone AI. An Apache Tomcat vulnerability is under active exploitation.

1:14.7

Sisa rehires workers ousted by Doge.

1:18.1

Lawmakers look to protect rural water systems from cyber threats.

1:22.1

Western Alliance Bank notifies 22,000 individuals of a data breach.

1:26.2

A new cyber attack method called BitM allows hackers

1:29.7

to bypass multi-factor authentication. A Chinese cyber espionage group targets central European diplomats.

1:36.4

A new cyber attack uses chat GPT infrastructure to target the financial sector and U.S. government agencies.

1:43.0

Australia sues a major securities firm over inadequate protection of customer data.

1:47.4

Our threat vector segment examines how unifying security capabilities strengthens cyber

1:52.5

resilience. And cyber criminals say, get me Edward Snowden on the line.

2:12.2

It's Tuesday, March 18th, 2020.

2:15.9

I'm Dave Bittner, and this is your Cyberwire Intel briefing.

2:31.7

Thanks for joining us once again here.

2:33.2

It is great to have you with us.

2:40.5

A critical remote code execution vulnerability in Apache Tomcat is being actively exploited.

...

Transcript will be available on the free plan in -14 days. Upgrade to see the full transcript now.

Disclaimer: The podcast and artwork embedded on this page are from N2K Networks, Inc., and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of N2K Networks, Inc. and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2025.