Assertion Supported AI assessment confidence: 95% certainty 4/5 debate potential 1/5

RSA was breached after an employee opened an email in spam

Kim Zetter · a16z Podcast | How Hacks Happen (Let’s Just Say Mistakes Have Been Made) · Jan 2, 2019 · at 8:51

Cybersecurity journalist Kim Zetter recounts the mechanism of the historic cyber attack against security firm RSA.

0:00 / 0:30exact quote · 30.2s
▶ Watch the full episode on YouTube → 720p mp4 · rendered on demand · StarZero watermark
“This was a security company, one of the top security companies, RSA, that's having its conference next week. They got hit in a phishing attack in, ah, Around the same time that Google got hit. And in that case, they sent only a handful of emails to some specific employees at the company. And the email filtering system actually caught it and sent it to the spam folder. But one of these employees went through a spam folder and saw the email, thought it was interesting, pulled it back out into his inbox and opened it. And that's how the attackers got in.”

quote is from the automated transcript, cleaned for reading: filler sounds and stutters are removed, nothing is rephrased. names can be misheard (the analysis reads context, assessments check outside sources). how →

More from Kim Zetter

Assertion Not checkable as stated
Zetter: US government evidence attributing the Sony hack to North Korea is flimsy
“So the idea that the government would say definitively this is North Korea already is a little shaky. And what they've provided as evidence is an IP address that they say is, which they haven't even disclosed the IP address. All they've said is that an IP addr…”
Kim Zetter Jan 2, 2019 ▶ 14:37 a16z Podcast | How Hacks Happen (Let’s Just Say Mistakes Have Been Made)
Assertion Supported
Zetter: Hackers behind 2014 Sony breach never mentioned 'The Interview'
“But it was only after media reports started surfacing, quoting anonymous government officials about the Sony movie, that everyone then jumped on this bandwagon and said this was about the movie. But the hackers themselves never mentioned the movie.”
Kim Zetter Jan 2, 2019 ▶ 16:25 a16z Podcast | How Hacks Happen (Let’s Just Say Mistakes Have Been Made)
Disclosure
Cybersecurity expert Kim Zetter avoids online banking and digital health records
“I don't do my, I don't do online banking. Okay. So I don't have a lot of trust in in those kinds of systems. I don't have a lot of I do very little. I don't put my health records online, that kind of thing. So I keep it as much to the minimum as I can.”
Kim Zetter Jan 2, 2019 ▶ 27:00 a16z Podcast | How Hacks Happen (Let’s Just Say Mistakes Have Been Made)
Assertion Not checkable as stated
Zetter: Chinese Hackers Do Not Conceal Tactics Due to State Support
“The Chinese don't necessarily try to hide their tactics because they are supported by their government, so they don't really have anything to worry about there.”
Kim Zetter Jan 2, 2019 ▶ 11:02 a16z Podcast | How Hacks Happen (Let’s Just Say Mistakes Have Been Made)
Assertion Not checkable as stated
Zetter: Obama administration's cybersecurity focus drove private sector investment
“The government's focus on cybersecurity, and by government I mean the Obama administration specifically has made cybersecurity one of its primary focuses. And that has then trickled down and caused everyone else to focus on this more, because that means money …”
Kim Zetter Jan 2, 2019 ▶ 0:43 a16z Podcast | How Hacks Happen (Let’s Just Say Mistakes Have Been Made)
Prediction Held up
Zetter: Third-party vendors will increasingly become conduits for cyberattacks
“And that's something that I think we will see more of. We sort of see you know, victims get hacked, obviously, and their systems are insecure, but a growing problem are the issues with third-party vendors, contractors, other people that you work with that are …”
Kim Zetter Jan 2, 2019 ▶ 2:59 a16z Podcast | How Hacks Happen (Let’s Just Say Mistakes Have Been Made)
Made with StarZero

Turn any episode into a week of clips.

This entire site, over 1,000 episodes transcribed, diarized, checked and made playable, runs on the StarZero media pipeline. Drop in your own episode and the podcast clipper finds the moments worth sharing, cuts them, captions them, and reframes them for every feed.