Seriously Risky Biz: Chaos Is the New Normal

PLUS: China's vulnerability disclosure rules haven't changed much...

In this week’s edition of Seriously Risky Biz Patrick Gray and Tom Uren talk about the new chaotic normal. Should policymakers abandon efforts to wind back the cyber chaos or should they start focussing more on how to adapt to it? They also talk about some research from the Atlantic Council into Chinese vulnerability disclosure rules and their effect on the pipeline of vuln information from China to other countries.

Risky Business #679 -- A look at Uber's very bad week

PLUS: Microsoft Teams Electron app research is legitimately ooph...

On this week’s show Patrick Gray and Adam Boileau discuss the week’s security news, including:

  • A look at how Uber got owned so hard
  • Why cleartext cookie storage in Microsoft Teams’ Electron-based app is actually a big deal
  • Russian official: Starlink is a legitimate military target
  • Wagner mercs get doxxed
  • Kiwi Farms having a bad time
  • Much, much more

In this week’s sponsor interview we’ll be chatting to Nucleus’s CEO Steve Carter about CISA’s KEV list. He has feelings about the KEV list – they’re mostly positive, but he also has a few reasonable gripes and he joins me to talk about them.

Between Two Nerds: On culture and SIGINT agencies

How and why do the SIGINT agency cultures vary between the USA, UK and China?

In this edition of Between Two Nerds Tom Uren and The Grugq talk about how SIGINT agencies in different regions have different cultures, and how these differences are rooted in the military traditions and hacker cultures of various countries.

Risky Business #678 -- Iranians Gone Wild

PLUS: Sh-tposting dogs on the bird app make vatniks seethe and cope…

On this week’s show Patrick Gray and Adam Boileau discuss the week’s security news, including:

  • Albania suffers under another crippling Iranian attack
  • Iran’s APT42 using clever, multi-persona phishing
  • State Department cyber snitching program paying off
  • Former NSA director Gen. Keith Alexander sued over alleged IronNet pump and dump
  • Mudge fronts US Senate Judiciary Committee
  • Much, much more…

This week’s show is brought to you by Stairwell. Mike Wiacek, Stairwell’s founder and CEO is this week’s sponsor guest and he talks about why they’ve pushed their Inception platform beyond YARA hunting. You can see a demo of Inception on our YouTube product demo page.

Risky Biz News: Albania-Iran cyber drama far from over

PLUS: Another Predator victim found in Greece; Kaseya ransomware suspect pleads guilty; and Dutch phisher continues phishing from prison cell.

A short podcast updating listeners on the security news of the last few days, as prepared and presented by Catalin Cimpanu.

You can find the newsletter version of this podcast here.

Seriously Risky Biz #9 -- Albania suspends diplomatic ties with Iran over hack

PLUS: Why Cloudflare's non-policy on hate speech makes little sense…

In this edition of Seriously Risky Business Patrick Gray and Tom Uren talk about the Albanian government’s decision to break off diplomatic ties with Iran in the wake of a wiper attack in July. They also weigh in on the Fog Reveal tool that sells mobile location data to law enforcement agencies via a pretty interface. They also discuss Cloudflare’s ridiculous hate speech policies.

Risky Business #677 -- A day late and a dollar short: China doxxes NSA op

PLUS: The TikTok breach that wasn't...

On this week’s show Patrick Gray and Adam Boileau discuss the week’s security news, including:

  • China’s super spies figure out Rob Joyce ran TAO ops
  • FBI, French authorities fly to Montenegro to investigate ransomware attack
  • NEWSFLASH: Cloudflare are still a bunch of Nazi cuddlers
  • SIM swap drama spills into real world shootings, firebombings
  • Yandex Taxi hack clogs Moscow streets
  • The TikTok breach that wasn’t
  • Project Raven veterans get wings clipped
  • Why recent BGP hijacks are getting a bit concerning
  • Much, much more

This week’s show is brought to you by Corelight, the company that maintains Zeek. Corleight’s Federal CTO Jean Schaffer joins us in this week’s sponsor interview to talk about whether or not the White House’s executive order on Zero Trust is actually changing anything.

Seriously Risky Biz #8 -- Why Western propaganda is good, actually

PLUS: Why the IC needs to take a leaf out of Bellingcat's book...

In this edition of Seriously Risky Business Patrick Gray and Tom Uren talk about why overt western propaganda is good, actually. They also talk about why western intelligence agencies should embrace the investigative methodologies pioneered by OSINT organisations like Bellingcat.


SUBSCRIBE NOW:
Risky Business main podcast feed:
Listen on Apple Podcasts Listen on Overcast Listen on Pocket Casts Listen on Spotify Subscribe with RSS
Our extra podcasts feed:
Listen on Apple Podcasts Listen on Overcast Listen on Pocket Casts Listen on Spotify Subscribe with RSS
Subscribe to our newsletters: