DiscoverThe Cybersecurity Defenders Podcast#224 - Intel Chat: OtterCookie, Flodrix, Water Curse & Scattered Spider
#224 - Intel Chat: OtterCookie, Flodrix, Water Curse & Scattered Spider

#224 - Intel Chat: OtterCookie, Flodrix, Water Curse & Scattered Spider

Update: 2025-06-24
Share

Description

In this episode of The Cybersecurity Defenders Podcast, we discuss some intel being shared in the LimaCharlie community.

  • A new malware strain known as OtterCookie, developed by the North Korean APT group Lazarus, has been dissected in a detailed technical analysis by offensive security expert Mauro Eldritch.
  • Attackers are currently exploiting a critical vulnerability in the Langflow platform — an open-source Python-based web app used to build AI workflows and agents — to deliver a new botnet called Flodrix.
  • A new campaign from an emerging threat group named Water Curse is targeting the software supply chain by leveraging GitHub repositories that masquerade as legitimate security tools.
  • The threat actor known as Scattered Spider, also tracked as UNC3944 by Google and Mandiant, has apparently shifted its operational focus from the retail sector to the US insurance industry, according to a new alert from Google’s Threat Intelligence Group.
Comments 
In Channel
loading
00:00
00:00
x

0.5x

0.8x

1.0x

1.25x

1.5x

2.0x

3.0x

Sleep Timer

Off

End of Episode

5 Minutes

10 Minutes

15 Minutes

30 Minutes

45 Minutes

60 Minutes

120 Minutes

#224 - Intel Chat: OtterCookie, Flodrix, Water Curse & Scattered Spider

#224 - Intel Chat: OtterCookie, Flodrix, Water Curse & Scattered Spider