Episode

94: Mariposa
listen on Spotify
47:08
Published: Tue Jun 08 2021
Description

Chris Davis has been stopping IT security threats for decades. He’s currently running the company Hyas that he started. In this episode he tells a few tales of some threats that he helped stop. Sponsors Support for this show comes from Exabeam. Exabeam lets security teams see what traditional tools can’t, with automated threat detection and triage, complete visibility across the entire IT environment and advanced behavioral analytics that distinguishes real threats from perceived ones, so security teams stay ahead and businesses keep moving — without fear of the unknown. Learn more by visiting exabeam.com/dd. Support for this show comes from Blinkist. They offer thousands of condensed non-fiction books, so you can get through books in about 15 minutes. Check out Blinkist.com/DARKNET to start your 7 day free trial and get 25% off when you sign up. View all active sponsors. Sources https://www.zdnet.com/article/hacker-curador-pleads-guilty-to-credit-card-theft/ https://www.pbs.org/wgbh/pages/frontline/shows/hackers/ https://archive.org/details/frontline_202009/Frontline-+Hackers/VIDEO_TS/VTS_01_1.VOB https://defintel.com/docs/Mariposa_Analysis.pdf https://krebsonsecurity.com/2020/03/french-firms-rocked-by-kasbah-hacker/ Learn more about your ad choices. Visit podcastchoices.com/adchoices

Chapters
An online scammer from 2016, who was arrested, could retrieve his stolen Bitcoin worth almost $1 million if he can find the notebook containing his private key.
00:00 - 02:02 (02:02)
listen on Spotify
Bitcoin
Summary

An online scammer from 2016, who was arrested, could retrieve his stolen Bitcoin worth almost $1 million if he can find the notebook containing his private key.

Episode
94: Mariposa
Podcast
Darknet Diaries
The speaker shares how his early experience in odd jobs of working on people's computers and networking small offices eventually turned into a successful career path in cybersecurity, leading to him securing contracts with major government departments in Canada.
02:02 - 08:55 (06:53)
listen on Spotify
Cybersecurity
Summary

The speaker shares how his early experience in odd jobs of working on people's computers and networking small offices eventually turned into a successful career path in cybersecurity, leading to him securing contracts with major government departments in Canada.

Episode
94: Mariposa
Podcast
Darknet Diaries
The transcript discusses how a group of cybersecurity experts helped to uncover the identity of a cybercriminal who was publishing people's personal credit card information online.
08:55 - 13:25 (04:29)
listen on Spotify
Cybersecurity
Summary

The transcript discusses how a group of cybersecurity experts helped to uncover the identity of a cybercriminal who was publishing people's personal credit card information online. They identified a suspicious IP address from Wales, which led them to the perpetrator who was bragging about their crimes.

Episode
94: Mariposa
Podcast
Darknet Diaries
The interviewee suggests that cyber crime is often a product of a lack of career options and socioeconomic issues in some parts of the world, as seen in the case of a charming but nerdy teenager who engaged in cyber crime.
13:25 - 18:50 (05:25)
listen on Spotify
Cyber Crime
Summary

The interviewee suggests that cyber crime is often a product of a lack of career options and socioeconomic issues in some parts of the world, as seen in the case of a charming but nerdy teenager who engaged in cyber crime.

Episode
94: Mariposa
Podcast
Darknet Diaries
The Mariposa Botnet gets its name from the butterfly in Spanish.
18:50 - 26:52 (08:01)
listen on Spotify
Mariposa Botnet
Summary

The Mariposa Botnet gets its name from the butterfly in Spanish. It was discovered by Chris when he noticed a spike where hundreds of thousands of computers were all calling a certain website but only for a second and then stopping.

Episode
94: Mariposa
Podcast
Darknet Diaries
Sinkholing was used to take away all the Mariposa botnet domain names, providing law enforcement with information to arrest the culprits behind the attack.
26:52 - 32:40 (05:47)
listen on Spotify
Cybersecurity
Summary

Sinkholing was used to take away all the Mariposa botnet domain names, providing law enforcement with information to arrest the culprits behind the attack.

Episode
94: Mariposa
Podcast
Darknet Diaries
Hias focuses on cyber threat intelligence to identify infrastructure utilized by adversaries for attacks.
32:40 - 39:21 (06:41)
listen on Spotify
Cybersecurity
Summary

Hias focuses on cyber threat intelligence to identify infrastructure utilized by adversaries for attacks. By analyzing domains and identifying the relationships between attackers and infrastructure providers, they aim to prevent cyberattacks before they occur.

Episode
94: Mariposa
Podcast
Darknet Diaries
Chris speaks about his experience investigating a French bank breach, including collaborating with the FBI and contacting a dynamic DNS provider for more information.
39:21 - 46:02 (06:40)
listen on Spotify
cybersecurity
Summary

Chris speaks about his experience investigating a French bank breach, including collaborating with the FBI and contacting a dynamic DNS provider for more information.

Episode
94: Mariposa
Podcast
Darknet Diaries
In this episode, Chris Davis shares the story of how his team discovered a highly advanced hacking group working out of Russia that had been stealing shipping manifests and intellectual property from major companies.
46:02 - 47:17 (01:14)
listen on Spotify
Hacking
Summary

In this episode, Chris Davis shares the story of how his team discovered a highly advanced hacking group working out of Russia that had been stealing shipping manifests and intellectual property from major companies. He discusses the challenges they faced in tracking down the hackers and the measures they took to prevent future attacks.

Episode
94: Mariposa
Podcast
Darknet Diaries