news.mlab.sh
Back to the feed
threat-intel

Smashing Security podcast #484: How websites are tracking you with silence

Medium
Summary

This Smashing Security podcast episode explores how companies are avoiding discussing cyberattacks with generic PR statements, and how the silence surrounding these events can actually be used to track attackers online. Danny Palmer and Graham Cluley play a game identifying sounds associated with the internet’s history, highlighting how seemingly innocuous sounds can be used to track online activity. The episode also touches on the increasing sophistication of ransomware and the need for robust security solutions like ThreatLocker to prevent automated attacks.

This episode of Smashing Security, hosted by Graham Cluley and featuring Danny Palmer, delves into a concerning trend: companies’ reluctance to detail cyberattacks with specific information, opting instead for vague PR statements. The podcast argues that this silence can actually be exploited by attackers to track their movements online.

Danny and Graham play a game called "Name That Chime," where they identify various sounds associated with the internet’s history, from the Windows 98 startup sound to the Nokia 3310 ringtone and the AOL/ICQ startup screens. The game highlights how seemingly simple sounds can be used to track online activity and identify attackers.

The episode also discusses the growing threat of Agentic AI ransomware, which operates autonomously and can rapidly spread through networks. It emphasizes the need for proactive security measures to prevent these attacks. ThreatLocker is presented as a solution, utilizing default deny and least privilege to block unauthorized applications and prevent privileged access, effectively stopping automated attacks before they can cause damage.

The podcast touches on the evolution of online communication, referencing the early days of ICQ and AOL, and the concept of online identity – or lack thereof – in the 1990s and early 2000s. The discussion ultimately underscores the importance of vigilance and robust security practices in a constantly evolving threat landscape.

Read the full article at Graham Cluley