Risky Biz News: Ransomware victims stop paying up

PLUS: Tens of thousands of Citrix devices still unpatched against recent zero-day; and Target reveals its EasySweep card skimmer detector.

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Claire Aird.

You can find the newsletter version of this podcast here.

Risky Biz Soap Box: BEC actors embrace LLMs to attack Japan

Now the hype has died off, let's look at how attackers and defenders are using AI…

This Soap Box edition of the podcast is sponsored by Proofpoint.

Proofpoint offers email security and DLP products and services, and they’re probably best known for being the biggest email security company on the planet.

That means they process a LOT of emails in the hopes of throttling the number of malicious emails that organisations have to deal with, whether that’s malware, phishing or BEC.

So, with that in mind, what role could large language models play in email security?

Now that the initial ChatGPT hype has died off a little, we spoke with Proofpoint’s VP of cybersecurity strategy Ryan Kalember about large language models and how they’re going to help defenders and attackers alike.

Srsly Risky Biz: Time for Cloud Transparency

PLUS: The Operation Typo collection opportunity

In this podcast Patrick Gray and Tom Uren talk about recent breaches of JumpCloud and Microsoft cloud services. It’s great they disclosed these incidents voluntarily, but cloud companies are so important that detailed postmortems shouldn’t be voluntary.

They also discuss the Biden administration’s cyber security strategy implementation plan and the opportunity to collect email destined for the US military by typo-squatting on the ‘.ml’ domain.

Risky Biz News: A Citrix 0day RCE is being actively exploited

PLUS: Cytrox and Intellexa sanctioned in the US; typos keep sending military emails to Mali domains; USA to apply cybersecurity label IoT devices

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Claire Aird.

You can find the newsletter version of this podcast here.

Risky Business #713 -- Microsoft activates PR weasels after State Department hack

We deserve better than a vaguely worded blog post...

On this week’s show Patrick Gray and Adam Boileau discuss the week’s security news. They cover:

  • Microsoft’s weasel-word response to the State Department email hack
  • JumpCloud got owned, maybe by DPRK
  • Citrix 0day is getting stuff rekt
  • Two more spyware firms sanctioned by USA
  • Scammers list fake phone numbers for major airlines on Google Maps
  • Much, much more

This week’s show is brought to you by security focussed enterprise browser maker Island. Dan Amiga, Island’s CTO and co-founder, is this week’s sponsor guest. He talks about why widespread enterprise browser deployment is inevitable.

Links to everything that we discussed are below and you can follow Patrick or Adam on Mastodon if that’s your thing.

Risky Biz News: JumpCloud compromised by APT group

PLUS: Supply chain attack hits Pakistani government; WordPress security plugin logged user passwords in plaintext; UK IT worker sentenced to prison for trying to hijack ransomware payment.

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Kaitlyn Sawrey.

You can find the newsletter version of this podcast here.

Srsly Risky Biz: WeChat's Privacy Policy Is Useless

PLUS: Wading through the CSAM scanning quagmire...

In this podcast Patrick Gray and Tom Uren talk about Citizen Lab’s analysis of WeChat’s behaviour and its privacy policy. That report misses the point: WeChat is an integral part of the PRC’s architecture of censorship and repression, and the Chinese government isn’t constrained by WeChat’s privacy policy.

They also discuss a new report that proposes a human-centred framework for assessing client-side Child Sexual Abuse Material (CSAM) detection technologies. It’s a step forward because it makes clearer the tradeoffs that are being made when these technologies are suggested.

Risky Biz News: Microsoft nukes 100 malicious drivers

PLUS: The EU and US sign a new trans-Atlantic data transfer pact; US healthcare giant HCA confirms a data breach; and Patch Tuesday comes with Apple and Windows zero-day fixes.

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Claire Aird.

You can find the newsletter version of this podcast here.

Risky Business #712 -- The 336,000 undead Fortigates of DOOM

PLUS: What FSB doing?

On this week’s show Patrick Gray and Adam Boileau discuss the week’s security news. They cover:

  • The SEC is targeting SolarWinds executives
  • UK to make banks liable for fraud
  • NSA issues advice on UEFI trojan
  • Microsoft blocks 100+ dodgy drivers
  • The US IC knew what Prihozhin was up to. But what FSB doing?
  • Much, much more

This week’s show is brought to you by Netwrix. Martin Cannard, Netwrix’s VP of Product Strategy, is this week’s sponsor guest. He talks about why zero standing privilege is a worthy goal.

Links to everything that we discussed are below and you can follow Patrick or Adam on Mastodon if that’s your thing.

Risky Biz News: Mastodon plugs a horror-show bug

PLUS: $126 million goes missing from Multichain; and a hacker mass-defaces Hikvision cameras.

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Claire Aird.

You can find the newsletter version of this podcast here.

Risky Biz News: Ransomware cripples Japan's largest cargo port

PLUS: A new Truebot version unleashed; OPERA1ER member arrested in the Ivory Coast; and new StackRot vulnerability fixed in the Linux kernel.

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Claire Aird.

You can find the newsletter version of this podcast here.

Srsly Risky Biz: The Russia vs US Extradition Tug of War

PLUS: Ukraine's hacktivist operations are all bark and no bite...

In this podcast Patrick Gray and Tom Uren talk about the regular extradition battles that occur between the US and Russia whenever a Russian cybercriminal is arrested in a third country. It’s less about protecting cybercriminals and more about Russia trying to poke the USA in the eye.

They also discuss recent Ukrainian hacktivist operations that have been extremely successful, but also don’t seem to have had any really meaningful impact.

Risky Biz News: $922 million worth of crypto stolen in H1 2023

PLUS: CISA launches CyberSentry platform; Sweden becomes fifth EU state to advise against the use of Google Analytics; and hackers leak data on 1,100 French Ministry of Justice employees.

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Claire Aird.

You can find the newsletter version of this podcast here.

Sponsor Interview: RunZero adds passive scanning for OT networks

An interview with RunZero's CEO Chris Kirsch...

In this Risky Business News sponsor interview Tom Uren talks to RunZero’s CEO Chris Kirsch about how RunZero has evolved from an IT network active scanning product to one that can now discover assets on OT and cloud environments using both active and passive scanning approaches.


SUBSCRIBE NOW:
Risky Business main podcast feed:
Listen on Apple Podcasts Listen on Overcast Listen on Pocket Casts Listen on Spotify Subscribe with RSS
Our extra podcasts feed:
Listen on Apple Podcasts Listen on Overcast Listen on Pocket Casts Listen on Spotify Subscribe with RSS
Subscribe to our newsletters: