{"podcast":{"title":"CyberWire Daily","slug":"cyberwire-daily-454880","podcast_index_feed_id":454880,"rss_url":"https://feeds.megaphone.fm/cyberwire-daily-podcast","website_url":"https://thecyberwire.com/podcasts/daily-podcast","image_url":"https://megaphone.imgix.net/podcasts/58ab7ae0-def8-11ea-b34c-b35b208b0539/image/8676ed612d7a335a98a9173d70cb11be.png?ixlib=rails-4.3.1&max-w=3000&max-h=3000&fit=crop&auto=format,compress","author":"N2K Networks, Inc.","episode_count":3697,"summary":"The daily cybersecurity news and analysis industry leaders depend on. Published each weekday, the program also includes interviews with a wide spectrum of experts from industry, academia, and research organizations all over the world.","last_synced_at":"2026-07-19T06:20:36.947551+00:00","page_url":"https://stenobird.com/podcast/cyberwire-daily-454880"},"episode":{"title":"When trusted sites turn. [Research Saturday]","slug":"when-trusted-sites-turn-research-saturday","published_at":"2026-07-18T07:00:00+00:00","page_url":"https://stenobird.com/podcast/cyberwire-daily-454880/when-trusted-sites-turn-research-saturday","show_page_url":"https://stenobird.com/podcast/cyberwire-daily-454880","url":"https://thecyberwire.com/podcasts/research-saturday/433/notes","audio_url":"https://pdst.fm/e/pdrl.fm/85df76/traffic.megaphone.fm/CYBW1134346214.mp3?updated=1743778764","summary":"Lauren Fievisohn, Ph.D, Senior Threat Researcher from Silent Push, is sharing their work on \"Meet DriveSurge: A New Threat Actor Using ClickFix and Fake Update Drive-By Attacks in Thousands of Compromised Sites.\" Silent Push researchers have identified a newly named threat actor, DriveSurge, which has compromised thousands of legitimate websites and uses ClickFix and fake browser update lures to distribute malware at scale through a pay-per-install operation. The group leverages a traffic distribution system called zTDS to silently redirect visitors from trusted websites to malicious payloads, while employing sophisticated infrastructure, obfuscation, and fingerprinting techniques to evade detection. The report also details how DriveSurge targets both Windows and macOS users and provides defenders with eight infrastructure fingerprints to help identify and disrupt the campaign. The research and executive brief can be found here: Meet DriveSurge: A New Threat Actor Using ClickFix and Fake Update Drive-By Attacks in Thousands of Compromised Sites Learn more about your ad choices. Visit megaphone.fm/adchoices","meta_description":"Lauren Fievisohn, Ph.D, Senior Threat Researcher from Silent Push, is sharing their work on \"Meet DriveSurge: A New Threat Actor Using ClickFix and Fake U…","key_points":[],"chapters":[],"topics":[],"duration_seconds":1066,"processing_state":"not_requested","actions":[{"name":"request_transcript","method":"POST","url":"https://stenobird.com/v1/public/podcasts/cyberwire-daily-454880/episodes/when-trusted-sites-turn-research-saturday/transcription-requests","description":"Idempotently request low-priority transcript generation for this episode."},{"name":"read_markdown","method":"GET","url":"https://stenobird.com/podcast/cyberwire-daily-454880/when-trusted-sites-turn-research-saturday.md","description":"Read the agent-friendly Markdown representation of this episode resource."}]}}