Three Buddy Problem - Episode 15: Juanito checks in from Virus Bulletin with news on the return of Careto/Mask, a ‘milk-carton’ APT linked to Spain. We also cover the latest controversy surrounding IDA Pro's subscription model, a major new YARA update, and ongoing issues with VirusTotal's value and pricing. The conversation shifts to North Korean cyber operations, particularly the infiltration of prominent crypto companies, Tom Rid's essay on Russian disinformation results, and the US government's ICE department using commercial spyware from an Israeli vendor.
Cast: Juan Andres Guerrero-Saade (SentinelLabs), Costin Raiu (Art of Noh) and Ryan Naraine (SecurityWeek).
Links:
- Transcript (unedited, AI-generated)
- VB abstract: The Mask has been unmasked again
- Discover IDA 9.0
- Binary Ninja
- Vertex Synapse
- YARA-X
- Microsoft on Star Blizzard disruption
- Tom Rid: The lies Russia tells itself
- North Korea caught targeting German missile manufacturer
- How North Korea infiltrated the crypto industry
- ICE signs $2M contract with spyware maker Paragon