Colonial Pipeline
November 2024
November 2024
Vol. 7, Iss. 45
Robin’s Newsletter #334
Vol. 7, Iss. 45
Okta auth bypass for long usernames. Copyright infringement notices used to drop infostealers. Schneider Electric attacker wants payment in baguettes.
May 2022
May 2022
Vol. 5, Iss. 20
Robin’s Newsletter #204
Vol. 5, Iss. 20
Costa Rica declares state of emergency over ransomware incidents. Civil penalties proposed for Colonial Pipeline over safety breaches.
June 2021
June 2021
Vol. 4, Iss. 23
Robin’s Newsletter #155
Vol. 4, Iss. 23
The U.S. continues beef with Russian ransomware gangs. Colonial Pipeline was result of compromised creds. FireEye to divest name, products business.
May 2021
May 2021
Vol. 4, Iss. 20
Robin’s Newsletter #152
Vol. 4, Iss. 20
All the stats: it's DBIR time. Colonial Pipeline paid ransom, restored service and DarkSide disappeared. Being better at security engagement.
Vol. 4, Iss. 19
Robin’s Newsletter #151
Vol. 4, Iss. 19
Responsible cyber power. Colonial Pipline shut down due to ransomware. Injecting malware C2 into legitimate traffic. Authentication using a severed thumb.