Sponsored: Airlock Digital's co-founders on securing PowerShell

With VBScript's deprecation, the focus moves to securing PowerShell...

In this Risky Business News sponsor interview, Catalin Cimpanu talks with Airlock Digital founders Daniel Schell and David Cottingham about the recent Microsoft Digital Defense Report and the problems that come with trying to properly secure PowerShell.

Risky Biz Soap Box: Preventing MFA reset attacks

A chat with Yubico's President and COO Jerrod Chong...

Patrick Gray speaks to Yubico’s Jerrod Chong about how organisations can better verify the identities of users when performing MFA resets. In other words, how to not get MGM’d.

He also talks about the chain-of-trust issues inherent to synchronisable passkey implementations.

Risky Biz News: Microsoft takes NTLM behind the shed

PLUS: Chinese APT behind recent Confluence zero-day; 35 vulnerabilities remain unpatched in Squid; SEC launches MOVEit investigation.

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Kaitlyn Sawrey.

You can find the newsletter version of this podcast here.

Srsly Risky Biz: The EU needs to grow a political spine on spyware

PLUS: The Chinese spies are in the mail...

In this podcast guest host Patrick Gray and Tom Uren talk about research that discovered that EU-based spyware was being used to target EU and US officials. Will that encourage EU governments to take action against spyware?

They also discuss Belgian concerns that the PRC will take advantage of a Chinese logistics firm with a hub in Liège for espionage.

Finally, they discuss whether hacktivists will follow International Humanitarian Law (IHL or the Rules of Law) rules about hactivism in wartime. Almost certainly not, but Tom still thinks its worth talking about and promoting responsible behaviour.

Risky Biz News: Microsoft kills VBScript

PLUS: Google makes passkeys default sign-in option; Vietnam targeted EU and US officials with Predator spyware; and new DDOS vector discovered.

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Kaitlyn Sawrey.

You can find the newsletter version of this podcast here.

Risky Business #725 -- Microsoft knifes VBScript, passkeys the new default for Google accounts

PLUS: Why a bug in cURL could be messy...

On this week’s show Patrick Gray and Lina Lau discuss the week’s security news. They cover:

  • Microsoft has killed VBScript
  • Google to make passkeys the new default sign-in method
  • MGM losses to exceed $100m
  • Clorox has a bad quarter
  • Why a bug in cURL could be really bad news
  • Much, much more

This week’s show is brought to you by KSOC. Jimmy Mesta, KSOC’s co-founder and CTO, is this week’s sponsor guest. He talks to us about how we can start applying real, actual IAM to Kubernetes environments.

Risky Biz News: Human-operated ransomware attacks double in a year

PLUS: MGM to lose $100 million from ransomware attack; Google VRP will pay for n-day exploits; and North Korean hackers expected to pivot to shipbuilding sector.

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Kaitlyn Sawrey.

You can find the newsletter version of this podcast here.

Sponsored: PAM vs teenagers... FIGHT!

Netwrix's Martin Cannard on managing privileged sessions...

In this Risky Business News sponsor interview Tom Uren asks Martin Cannard, VP of Product Strategy at Netwrix, how privileged access management can help defend organisations. ‘Advanced Persistent Teenagers’ regularly use social engineering techniques to compromise highly privileged accounts, but that doesn’t mean it’s instantly game over for defenders.

Risky Biz News: Ransomware dwell times plummet

PLUS: Apple and Atlassian patch zero-days; Supermicro patches BMC bugs; PEACHPIT ad fraud botnet goes down.

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Kaitlyn Sawrey.

You can find the newsletter version of this podcast here.

Srsly Risky Biz: NSA wants to protect America's AI edge

PLUS: There's rich pickings at the network edge...

In this podcast Patrick Gray and Tom Uren talk about the NSA’s creation of a new AI Security Center. One of it’s roles is to help protect AI intellectual property and so maintain the US’s AI advantage.

They also look at a new Mandiant report that looks at vulnerabilities that are exploited in the wild. This research finds a shift away from the top three vendors (Microsoft, Apple and Google) and there are rich pickings for threat actors at the network edge.

Risky Business #724 -- Exploitation moves away from Microsoft, Google and Apple products

Bugs in enterprise crapware cemented as the new black...

On this week’s show Patrick Gray and Adam Boileau discuss the week’s security news. They cover:

  • Ransomware crews target WS_FTP and Jetbrains servers
  • Global energy supply shapes up as big target
  • The Dossier Center drops another banger
  • Indian nationalists DDoS Canadian targets
  • A look at the Exim drama
  • Much, much more

This week’s show is brought to you by Kroll Cyber. George Glass is this week’s sponsor guest.

Links to everything that we discussed are below and you can follow Patrick or Adam on Mastodon if that’s your thing.

Risky Biz News: Ransomware gangs hit TeamCity and WS_FTP servers

PLUS: Website leak exposes Russian military and intelligence centers; mandatory MFA for AWS root accounts; and Arm, Google, and Qualcomm patch zero-days.

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Kaitlyn Sawrey.

You can find the newsletter version of this podcast here.

Risky Biz News: Critical Exim bugs remains unpatched

PLUS: New major bug hits Progress (MOVEit) customers; Greek government sabotages spyware investigation; and IronNet ceases all operations.

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Kaitlyn Sawrey.

You can find the newsletter version of this podcast here.

Risky Biz Sponsor Interview: The e-crime ecosystem is changing

Proofpoint's Selena Larson is this week's sponsor guest...

In this Risky Business News sponsor interview Tom Uren talks to Selena Larson, Senior Threat Intelligence Analyst at Proofpoint, about the state of play in the cybercrime ecosystem. People and organisations are getting better at protecting themselves from scams and compromises, but criminals will use every possible avenue to reach people and scam them.

Risky Biz News: More in-the-wild 0day for Firefox, Chrome

PLUS: Chinese APTs target American and Japanese companies via their subsidiaries; Cisco patches a zero-day; and new DarkRiver APT targets Russian defense sector.

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Kaitlyn Sawrey.

You can find the newsletter version of this podcast here.

Srsly Risky Biz: The cyber-yoofs must be stopped!

Why diverting wayward youths from cybercrime may prove challenging...

In this edition of Seriously Risky Business Patrick Gray and Tom Uren talk about the possibility of diverting youths from a life of serious cybercrime. It’ll be tough.

They also talk about a Ukrainian government report into changes in Russian cyber activity.

Risky Business #723 -- MGM and Caesars: Western youths are working with ransomware gangs

It's an unholy alliance and a genuine headache...

On this week’s show Patrick Gray and Dmitri Alperovitch discuss the week’s security news. They cover:

  • How western youths are working with Russian ransomware crews
  • Russia has changed its targeting in Ukraine
  • A massive breach of historical Russian flight information is god’s gift to OSINT orgs
  • Cisco buys Splunk for $28bn
  • Much, much more

This week’s show is brought to you by Panther. Its field CISO Ken Westin is this week’s sponsor guest.

Links to everything that we discussed are below.

Risky Biz News: CISA publishes HBOM framework

PLUS: Crypto platform Mixin hacked for $200 million; the UK is also conducting hunt-forward missions; and Google open-sources BinDiff.

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Kaitlyn Sawrey.

You can find the newsletter version of this podcast here.


SUBSCRIBE NOW:
Risky Business main podcast feed:
Listen on Apple Podcasts Listen on Overcast Listen on Pocket Casts Listen on Spotify Subscribe with RSS
Our extra podcasts feed:
Listen on Apple Podcasts Listen on Overcast Listen on Pocket Casts Listen on Spotify Subscribe with RSS
Subscribe to our newsletters: