Operation Ghost Mail, Starlink Evasion, and the Stoat Waffle Threat

EPISODE · Mar 24, 2026 · 19 MIN

Operation Ghost Mail, Starlink Evasion, and the Stoat Waffle Threat

from Dragon Bytes · host Dragon Bytes

This week on Dragon News Bytes, Eli Woodward and Will Thomas dive into a packed week of vulnerability disclosures, APT campaigns, and geopolitical cyber fallout. From Iranian threat actors utilizing Starlink to bypass national internet blocks, to North Korean campaigns targeting developers with "Stoat Waffle" malware, the team unpacks the strategies adversaries are using to breach global enterprises. Plus, a look at Team Cymru's latest intel on tracking Beast ransomware infrastructure and an update on our upcoming global events.Topics & ReferencesPart 1: The Vulnerability LandscapeCisco Secure Firewall RCE (CVE-2026-20131): An insecure deserialization flaw was added to the CISA KEV catalog on March 19th, with active exploitation tracked back to late January. The Interlock ransomware gang has been identified as a threat actor exploiting this vulnerability.SharePoint On-Prem Pre-Auth RCE: Warlock Ransomware has targeted unpatched Microsoft SharePoint servers (2016 and 2019) in a major exfiltration and extortion campaign.Part 2: APT Operations & GeopoliticsHandala (Void Manticore) & Starlink: Following the disruptive attack on medical tech company Stryker via Intune, Checkpoint released research showing Handala operators utilizing Starlink terminals to bypass Iran's national internet blackouts.Operation Ghost Mail: Russia's APT 28 (Fancy Bear) is aggressively targeting Zimbra Webmail servers to compromise Ukrainian government operations.Waterplum's "Stoat Waffle": A North Korean group is targeting Web3 and cryptocurrency developers with malicious Python, NPM, and JavaScript packages under the guise of "contagious interview" job offers.Part 3: Supply Chain Threats & Intel InsightsInvisible Supply Chain Attacks: Aikido Security demonstrated how threat actors are using Unicode to hide disappearing text and malicious scripts in repositories.Beast Ransomware Operations: Team Cymru's latest research highlights how Open Directories data combined with NetFlow can unmask ransomware actor infrastructure and target lists.Events & Community:NCAA March Madness Watch Party:  March 27th in Atlanta, US🔗 to register: https://go.team-cymru.com/march-madness-atlanta-2026 RISE Ireland: April 14 -25 in Doublim, Ireland🔗 to register: https://go.team-cymru.com/rise-irelandRISEx Sydney: May 6 in Sydney, Australia🔗 to register:https://www.team-cymru.com/events/rise-sydney-2026RISEx Frankfurt: May 28th in Frankfurt, Germany🔗 to register: https://www.team-cymru.com/events/rise-frankfurt-2026RISEx New York: June 16 in New York City , US🔗 to register: https://www.team-cymru.com/events/rise-new-york-city-2026Underground Economy: To be hosted at the Council of Europe, expecting 600-700 attendees. Registration will open first week of AprilConnect with Us:Follow us on LinkedIn: https://www.linkedin.com/company/team-cymruSubscribe to the Dragon News Bytes feed: https://www.team-cymru.com/dnbDisclaimer: The views expressed in this podcast are those of the hosts and do not necessarily reflect the official policy or position of our employers.

NOW PLAYING

Operation Ghost Mail, Starlink Evasion, and the Stoat Waffle Threat

0:00 19:01

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

Epic: Silver Wing Realm EPIC is your new HQ for Realm’s exhilarating action and adventure stories, with new episodes dropping every Monday introduced by host Faith McQuinn.Embark on your greatest adventures yet, whether it’s crash landing on a desolate planet with only a cerebrally-embedded AI to guide you, or realizing that your latest game design is the only thing staving off total global annihilation. So unsheath those earbuds, clench that steering wheel, and buckle up because EPIC is about to take off.This month, we are featuring Silver Wing: On a desert planet in the far future, an old dragon hunter embarks on a desperate journey to save her estranged son. For centuries, the dragons have been sleeping. But in their rest, they provide a crucial energy source necessary to keep the planet Toon Flats habitable. Amphet Dahl is a diviner, gifted with the ability to sense the dragons’ dreams and memories and to the disappointment of her son, Afton, she uses this ability to House Podcastica | All the Shows Podcastica This podcast aggregates most of the Podcastica shows into a single feed, for your convenience. Join us as we cover some of our favorite shows, like The Walking Dead, A Knight of the Seven Kingdoms, Severance, Pluribus, The Last of Us, The White Lotus, Fallout, Buffy the Vampire Slayer, Welcome to Derry, The Great British Baking Show, Yellowjackets, House of the Dragon, The Rings of Power, Monarch, and many more! We're fans, and we aim to enhance your experience of these shows. P.S. You can be a part of the discussion: Send us a text or voice message at [email protected] or comment at facebook.com/podcastica, and we'll respond on the air. EDHRECast EDHRECast EDHRECast is your resource for the most popular Magic: The Gathering gameplay format - Elder Dragon Highlander (EDH); widely known as Commander. Made by the community for the community, EDHRECast is hosted by three well-seasoned MTG players, Joey Schultz, Matt Morgan, and Dana Roach. Each week they dive into the latest news and changes to the Commander format and breakdown the meta so that you can play your deck with confidence. Building off the articles found at EDHREC.com the team is here to use data-driven recommendations and analysis to help you make each and every one of your cards work for you. Whether you’re on a budget and still trying to get the most of our your builds, or if you’re trying to get a leg up with the best card combos, or you’re looking to figure out the best early, mid, and late game strategies, we’ll be sure to bring you all the latest information so that you’ll be the Commander of your local scene. Find the cast on Twitter! Dana: @danaroach Matt: @mathimus55 All Things DnD's Story Dungeon All Things DnD This is the official Podcast channel of All Things DnD which is dedicated bringing you the most entertaining Dungeons and Dragon stories this side of Faerun! Need ideas for your next campaign or are you interested in listening to epic tales and some epic fails? Well look no further, you've come to the right place. New stories are posted every three days! 
URL copied to clipboard!