Srsly Risky Biz: Russia's cyber war fantasy

PLUS: Predatory Sparrow strikes again

In this podcast Adam Boileau and Tom Uren talk about how cyber operations are being used in conflicts in both Ukraine and the Middle East. Some of these operations make sense but others seem pointless or even counterproductive.

Risky Biz News: Ransomware wrecks Paraguay's largest telco

PLUS: Stuxnet saboteur identified after 15 years; China cracks Apple's AirDrop; and ransomware keys recovered when developer arrested in the Netherlands

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Claire Aird.

You can find the newsletter version of this podcast click here.

Risky Business #731 -- SEC Twitter hack moves Bitcoin price

PLUS: Kaspersky admires Triangulation hackers' fine work

On this week’s show Patrick Gray and Adam Boileau discuss the week’s security news. They cover:

  • SEC Twitter account hack moves bitcoin price
  • Kaspersky admires Triangulation hackers’ fine work
  • Telcos hacked all over
  • Israel hacks Iranian gasoline pumps again
  • Iran up in Albania, Sudan, Egypt and Tanzania
  • and much, much more…

This week’s show is brought to you by Nucleus Security. Co-founder Scott Kuffer joins us to talk about why patch management is more nuanced than just “patch fast!”

Risky Biz News: Merck settles NotPetya lawsuit

PLUS: Turkish APT group Sea Turtle returns; Pompompurin re-arrested after breaking parole; and $1.8 billion worth of crypto was stolen in 2023.

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Claire Aird.

You can find the newsletter version of this podcast click here.

Risky Business #730 -- Apple, Facebook go all in on e2ee

PLUS: A look back at 2023...

In this week’s edition of the show Patrick Gray and guest co-host Dmitri Alperovitch discuss:

  • Major telco in Ukraine taken down by Russia
  • Apple and Facebook go all in on e2ee
  • Why 702 reauthorisation is looking a bit sketchy
  • The USG wants your push notifications
  • The year in review, plus some predictions for 2024

This week’s show is brought to you by Thinkst Canary. Haroon Meer, Thinkst’s founder, is this week’s sponsor guest. He joins us to talk about APT groups pivoting to living-off-the-land techniques.

Risky Biz Soap Box: Why enterprise browsers are good, actually

Seems crazy. Isn't.

In this Soap Box edition of the Risky Business podcast Patrick Gray talks to Island’s Bradon Rogers about security-focussed, enterprise browsers.

You can use Island to do stuff like grant third parties access to corporate applications on unmanaged devices in a not insane way – that’s a huge pain point for a lot of CISOs, and something that is bringing a lot of new customers through Island’s doors. Obviously for devices you do manage, you can roll Island out as your default enterprise browser. There are a lot of security benefits to doing that.

Srsly Risky Biz: Why election interference is inevitable

PLUS: ChatGPT in harassment campaigns

In this podcast Patrick Grey and Tom Uren talk about whether election interference will take place in the Taiwanese, US and Russian elections that are all taking place in 2024. They also look at a ChatGPT-powered online harassment campaign.

Risky Business #729 -- Why patching faster won't save us

PLUS: Why the ownCloud bug won't cause a MOVEit-scale disaster...

On this week’s show Patrick Gray and Adam Boileau discuss the week’s security news. They cover:

  • Iran-linked attacks on US water infrastructure
  • Why the ownCloud bug isn’t the end of the world
  • The D-Link 0day that… never existed?
  • In defence of Okta
  • Much, much more

This week’s show is brought to you by Proofpoint. Ryan Kalember, Proofpoint’s EVP of Cybersecurity Strategy, is this week’s sponsor guest.

Links to everything that we discussed are below and you can follow Patrick or Adam on Mastodon if that’s your thing.

Risky Biz News: US government agencies officially suck at logging

PLUS: Windows 10 gets three years of paid security updates; Andariel steals South Korea's laser weapons secrets; and there are still 23,000 backdoored Cisco IOS XE devices online.

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu.

You can find the newsletter version of this podcast here.

Srsly Risky Biz: Living off the land is the new normal

PLUS: Why more service providers are critical than you think...

In this podcast Patrick Grey and Tom Uren talk about how threat actors abusing legitimate tools (aka living off the land) is the new normal. Everyone is doing it, from activists to cybercriminals to nation states. It’s a worry because defender’s standard practices really aren’t set up to detect and deal with that kind of behaviour.

They also discuss how cyber incidents in the US and UK amongst providers of key real estate services are disrupting house sales.

Risky Business #728 -- The Citrixbleed ransomware disaster

PLUS: Why we secretly stan DPRK APTs...

On this week’s show Patrick Gray and Adam Boileau discuss the week’s security news. They cover:

  • The Citrixbleed ransomware crisis
  • Why the FBI hasn’t arrested Scattered Spider members
  • DPRK is in your supply chains
  • Microsoft has a brainwave and buys a HSM
  • When civil war meets pig butchering
  • Much, much more

This week’s show is brought to you by Airlock Digital. David Cottingham and Daniel Schell are this week’s sponsor guests.

Links to everything that we discussed are below and you can follow Patrick or Adam on Mastodon if that’s your thing.

Risky Biz News: Chipmaker NXT hacked by Chinese APT group

PLUS: Russians issue arrest warrant for Facebook executive; EU holds election cybersecurity exercise; and three cryptocurrency exchanges lose a total of $161 million.

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu.

You can find the newsletter version of this podcast here.


SUBSCRIBE NOW:
Risky Business main podcast feed:
Listen on Apple Podcasts Listen on Overcast Listen on Pocket Casts Listen on Spotify Subscribe with RSS
Our extra podcasts feed:
Listen on Apple Podcasts Listen on Overcast Listen on Pocket Casts Listen on Spotify Subscribe with RSS
Subscribe to our newsletters: