Srsly Risky Biz: IC Reform Wanted, Decent Privacy Laws Needed

PLUS: How lawyers ruin incident response...

In this podcast Patrick Gray and Tom Uren talk about a new report examining how the US intelligence communities uses data it buys. It finds that data you can buy now rivals or exceeds what intelligence agencies can collect, but the IC overall doesn’t treat the data with the sensitivity and care that it deserves. Fixing IC policy is one thing, but that won’t help at all with foreign adversaries or even local US law enforcement. US needs good data privacy law that cleans up the whole field.

They also look at new research that examines how lawyers’ incentives to protect clients mean that incident response is hamstrung when it comes to discovering root causes and learning lessons.

Risky Business #710 -- Why your corporate VPN will get you owned

More like Very Problematic Networking, amirite?

On this week’s show Patrick Gray and Adam Boileau discuss the week’s security news. They cover:

  • Fortinet 0day Groundhog Day
  • CISA’s new binding directive on exposed management interfaces
  • Confirmed: US intelligence buying commercially available data
  • MOVEit drama rolls on
  • Much, much more

This week’s show is brought to you by Red Canary. Chris Rothe is this week’s sponsor guest and he joins us to talk about how MDR providers are helping customers deal with cloud monitoring.

Links to everything that we discussed are below and you can follow Patrick or Adam on Mastodon if that’s your thing.

Srsly Risky Biz: ASD's Charm Offensive

PLUS: Cyberespionage doxxing is the new black...

In this podcast Patrick Gray and Tom Uren talk about why China and Russia are increasingly outing US cyber espionage operations and what they hope to get out of it. They also discuss a new documentary that reveals more information about some of ASD’s offensive cyber operations and and also looks at how the organisation helped track down the Bali bombers.

Risky Business #709 -- Cl0p goes berserk with MOVEit 0day

Please oh please get rid of your file transfer servers...

On this week’s show Patrick Gray and Adam Boileau discuss the week’s security news. They cover:

  • Russia’s FSB uncovers “NSA malware” on iPhones
  • Cl0p mass harvests data from MOVEit file transfer servers
  • ASD discloses a bunch of operations against ISIS, criminals
  • Why China’s prepositioning is probably… prepositioning
  • Much, much more

This week’s show is brought to you by Thinkst Canary. Marco Slaviero is this week’s sponsor guest and he joins us to talk about indirect LLM prompt injection and the latest Canary release.

Links to everything that we discussed are below and you can follow Patrick or Adam on Mastodon if that’s your thing.

Srsly Risky Biz: Why Volt Typhoon is so worrying

PLUS: How Paragon succeeded where NSO Group failed…

In this edition of Seriously Risky Business Tom Uren and Patrick Gray talk about the recent Volt Typhoon report and why we need to take the IC’s assessment of China’s intent seriously.

They also talk about NSO Group’s restructure and the way its competitor, Paragon, managed to avoid similar problems.

Risky Business #708 – China's lolbin-powered adventures in US critical infrastructure

PLUS: Trend backs BlackBerry's Cuba call...

On this week’s show Patrick Gray and Adam Boileau discuss the week’s security news. They cover:

  • China’s lolbin-powered intrusions into critical infrastructure
  • Trend Micro backs BlackBerry’s Cuba call
  • Anonymous Sudan shakes down Scandanavian Airlines
  • Iranian opposition party MEK publishes gargantuan leak
  • Much, much more

This week’s show is brought to you by Kubernetes security company KSOC. Jimmy Mesta is this week’s sponsor guest and he joins us to talk about the big security challenges in Kubernetes.

Links to everything that we discussed are below and you can follow Patrick or Adam on Mastodon if that’s your thing.

Sponsored: Catalin Cimpanu talks CISA KEV with Nucleus Security

KEV is helpful when you can plug it in to your own data...

In this Risky Business News sponsor interview, Catalin Cimpanu talks with Patrick Garrity, VP of Marketing and security researcher at Nucleus Security, on how the company has been tapping into CISA’s KEV database for insights on vulnerability management and vulnerability prioritization.

Risky Biz News: NSO Group has new owners

PLUS: The Pentagon has a new Cyber Strategy; hacker backdoors Emby media servers around the world; and PyPI to enforce 2FA, reduce stored IP addresses.

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Claire Aird.

You can find the newsletter version of this podcast click here.

Risky Biz Soap Box: Why your EDR won't save you

There's no point having the D without the R…

In this Soap Box podcast Patrick Gray talks to George Glass, the threat intelligence operations leader in the Cyber Risk practice at Kroll.

They talk about all sorts of things, like:

  • How the ransomware ecosystem is evolving into “ma and pa” operations
  • Some killer detections they’ve figured out
  • What separates the good networks from the bad ones
  • Why EDR is of limited value if you’re not actually monitoring it
  • Why not letting MDRs do the R part of their job is really, really, really dumb

SUBSCRIBE NOW:
Risky Business main podcast feed:
Listen on Apple Podcasts Listen on Overcast Listen on Pocket Casts Listen on Spotify Subscribe with RSS
Our extra podcasts feed:
Listen on Apple Podcasts Listen on Overcast Listen on Pocket Casts Listen on Spotify Subscribe with RSS
Subscribe to our newsletters: