Mac Malware, GnuPG Flaws & Docker Hub Issues π
ThreatWire covers malware on Macs, GnuPG vulnerabilities, and Docker Hub problems, highlighting cybersecurity challenges.

Hak5
16.4K views β’ Jun 19, 2018

About this video
Hak5 -- Cyber Security Education, Inspiration, News & Community since 2005:
____________________________________________
Malware on macs? Yeah, itβs a thing. Apple blocks cops from using lightning ports to steal data, spoofed signatures are a problem in GnuPG, and a slew of backdoored images were found on docker hub.. All that coming up now on ThreatWire.
-----β-----β-----β-----β-----β-----β-----β-----β-----β-----β
Shop β http://www.hakshop.com
Subscribe β http://www.youtube.com/hak5
RSS Feeds β https://www.hak5.org/subscribe
Support β http://www.patreon.com/threatwire
Amazon Associates β https://amzn.to/2pHgf8T
Our Site β http://www.hak5.org
Contact Us β http://www.twitter.com/hak5
Threat Wire RSS β https://shannonmorse.podbean.com/feed/
Threat Wire iTunes β https://itunes.apple.com/us/podcast/threat-wire/id1197048999
Help us with Translations! β http://www.youtube.com/timedtext_cs_panel?tab=2&c=UC3s0BtrBJpwNDaflRSoiieQ
For Business Inquiries, please use our contact forms β https://www.hak5.org/contact
Producer: Shannon Morse β https://www.youtube.com/shannonmorse
Editor: Colleen Cavolo
Host: Shannon Morse β https://www.twitter.com/snubs
Host: Darren Kitchen β https://www.twitter.com/hak5darren
Host: Mubix β http://www.twitter.com/mubix
-----β-----β-----β-----β-----β-----β-----β-----β-----β-----β
MAC:
https://www.okta.com/security-blog/2018/06/issues-around-third-party-apple-code-signing-checks/
https://www.cnet.com/news/cybersecurity-tools-could-have-let-nasty-files-live-on-your-mac/
https://threatpost.com/bypass-glitch-allows-malware-to-masquerade-as-legit-apple-files/132758/
https://motherboard.vice.com/en_us/article/evkq3m/apple-macos-malware-okta-research
https://www.cnet.com/news/apple-iphones-usb-restricted-mode-cuts-off-police-criminal-access/
https://www.theverge.com/2018/6/13/17461464/apple-update-graykey-ios-police-hacking
https://motherboard.vice.com/en_us/article/pavwzv/cops-are-confident-iphone-hackers-have-found-a-workaround-to-apples-new-security-feature
GnuPG Flaw:
https://neopg.io/blog/gpg-signature-spoof/
https://thehackernews.com/2018/06/gnupg-encryption-signature.html
https://arstechnica.com/information-technology/2018/06/decades-old-pgp-bug-allowed-hackers-to-spoof-just-about-anyones-signature/
https://neopg.io/blog/enigmail-signature-spoof/
https://neopg.io/blog/pass-signature-spoof/
Docker:
https://threatpost.com/malicious-docker-containers-earn-crypto-miners-90000/132816/
https://arstechnica.com/information-technology/2018/06/backdoored-images-downloaded-5-million-times-finally-removed-from-docker-hub/
https://www.bleepingcomputer.com/news/security/17-backdoored-docker-images-removed-from-docker-hub/
https://sysdig.com/blog/detecting-cryptojacking/
https://kromtech.com/blog/security-center/cryptojacking-invades-cloud-how-modern-containerization-trend-is-exploited-by-attackers
Photo credit:
http://gizmobic.com/wp-content/uploads/2013/08/iPhone-5S-iPhone-5C-06.jpg
____________________________________________
Founded in 2005, Hak5's mission is to advance the InfoSec industry. We do this through our award winning educational podcasts, leading pentest gear, and inclusive community β where all hackers belong.
____________________________________________
Malware on macs? Yeah, itβs a thing. Apple blocks cops from using lightning ports to steal data, spoofed signatures are a problem in GnuPG, and a slew of backdoored images were found on docker hub.. All that coming up now on ThreatWire.
-----β-----β-----β-----β-----β-----β-----β-----β-----β-----β
Shop β http://www.hakshop.com
Subscribe β http://www.youtube.com/hak5
RSS Feeds β https://www.hak5.org/subscribe
Support β http://www.patreon.com/threatwire
Amazon Associates β https://amzn.to/2pHgf8T
Our Site β http://www.hak5.org
Contact Us β http://www.twitter.com/hak5
Threat Wire RSS β https://shannonmorse.podbean.com/feed/
Threat Wire iTunes β https://itunes.apple.com/us/podcast/threat-wire/id1197048999
Help us with Translations! β http://www.youtube.com/timedtext_cs_panel?tab=2&c=UC3s0BtrBJpwNDaflRSoiieQ
For Business Inquiries, please use our contact forms β https://www.hak5.org/contact
Producer: Shannon Morse β https://www.youtube.com/shannonmorse
Editor: Colleen Cavolo
Host: Shannon Morse β https://www.twitter.com/snubs
Host: Darren Kitchen β https://www.twitter.com/hak5darren
Host: Mubix β http://www.twitter.com/mubix
-----β-----β-----β-----β-----β-----β-----β-----β-----β-----β
MAC:
https://www.okta.com/security-blog/2018/06/issues-around-third-party-apple-code-signing-checks/
https://www.cnet.com/news/cybersecurity-tools-could-have-let-nasty-files-live-on-your-mac/
https://threatpost.com/bypass-glitch-allows-malware-to-masquerade-as-legit-apple-files/132758/
https://motherboard.vice.com/en_us/article/evkq3m/apple-macos-malware-okta-research
https://www.cnet.com/news/apple-iphones-usb-restricted-mode-cuts-off-police-criminal-access/
https://www.theverge.com/2018/6/13/17461464/apple-update-graykey-ios-police-hacking
https://motherboard.vice.com/en_us/article/pavwzv/cops-are-confident-iphone-hackers-have-found-a-workaround-to-apples-new-security-feature
GnuPG Flaw:
https://neopg.io/blog/gpg-signature-spoof/
https://thehackernews.com/2018/06/gnupg-encryption-signature.html
https://arstechnica.com/information-technology/2018/06/decades-old-pgp-bug-allowed-hackers-to-spoof-just-about-anyones-signature/
https://neopg.io/blog/enigmail-signature-spoof/
https://neopg.io/blog/pass-signature-spoof/
Docker:
https://threatpost.com/malicious-docker-containers-earn-crypto-miners-90000/132816/
https://arstechnica.com/information-technology/2018/06/backdoored-images-downloaded-5-million-times-finally-removed-from-docker-hub/
https://www.bleepingcomputer.com/news/security/17-backdoored-docker-images-removed-from-docker-hub/
https://sysdig.com/blog/detecting-cryptojacking/
https://kromtech.com/blog/security-center/cryptojacking-invades-cloud-how-modern-containerization-trend-is-exploited-by-attackers
Photo credit:
http://gizmobic.com/wp-content/uploads/2013/08/iPhone-5S-iPhone-5C-06.jpg
____________________________________________
Founded in 2005, Hak5's mission is to advance the InfoSec industry. We do this through our award winning educational podcasts, leading pentest gear, and inclusive community β where all hackers belong.
Tags and Topics
Browse our collection to discover more content in these categories.
Video Information
Views
16.4K
Likes
657
Duration
10:54
Published
Jun 19, 2018
User Reviews
4.6
(3) Related Trending Topics
LIVE TRENDSRelated trending topics. Click any trend to explore more videos.