Podcasts

News, analysis and commentary

Risky Bulletin: Russia tells data centers to deploy drone defenses

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

Russia tells data centers to deploy drone defenses, Dropbox discloses a security breach, a new spyware wave hits Serbia, and CISA scraps six free cybersecurity assessment programs.

Risky Bulletin: Russia tells data centers to deploy drone defenses
0:00 / 10:04

Who gets to hack the hackers?

Presented by

James Wilson
James Wilson

Technology Editor

In this podcast episode, Brad Arkin joins James Wilson to chat about the Trump administration’s call to let private entities conduct cyber operations against criminal groups.

Brad’s firsthand experience responding to cyber incidents alongside US law enforcement gives him a unique perspective on how government and private sector relationships work, and how this program could improve the ability of both sides to tackle cybercrime.

James and Brad also explore who might participate in these campaigns and whether the government will be able to effectively oversee them.

Who gets to hack the hackers?
0:00 / 40:46

Srsly Risky Biz: China's botnets are worth disrupting

Presented by

James Wilson
James Wilson

Technology Editor

Tom Uren
Tom Uren

Policy & Intelligence

Tom Uren and James Wilson talk about China’s long-term shift to getting private companies to build botnets for cyberespionage. A disruption effort from the US this week is good news, but China has been using these networks for a surprisingly long time and will rebuild.

They also discuss a hack at the Bureau of Alcohol, Tobacco, Firearms and Explosives (ATF). It looks like the Qilin ransomware group might have stolen data from the ATF’s CALEA, or lawful intercept system. That’s a big deal!

Finally, they discuss efforts to fix US water sector security. Sprinkling free tools on the problem will have limited impact.

This episode is also available on YouTube

Srsly Risky Biz: China's botnets are worth disrupting
0:00 / 22:15

Risky Bulletin: BGP hijack delivers malicious Virtualizor updates

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

A BGP hijack delivered malicious Virtualizor updates, the White House launches Project Watershed 250, Indian authorities take down a Telegram doxing bot, and Composer packages deliver iOS badness.

Risky Bulletin: BGP hijack delivers malicious Virtualizor updates
0:00 / 9:14

Risky Business #851 -- Agents are just ones and zeros, and tigers are just atoms

Presented by

James Wilson
James Wilson

Technology Editor

Patrick Gray
Patrick Gray

CEO and Publisher

On this week’s show Patrick Gray and James Wilson are joined by guest co-host The Grugq to talk through the week’s news, including:

  • Two alleged TeamPCP hackers got arrested in Australia
  • The White House has a plan to boost security for water facilities, but we can’t see it working
  • OpenAI keeps the ol’ Hugging Face discourse going for another week with an incident debrief
  • Tech companies write another open letter about AI… we’re getting CISA Shields Up flashbacks, but for robots
  • Much, much more…

This week’s show is brought to you by Ent AI. Co-founder Brandon Dixon joins Pat to talk through some of the absolutely wild fraud and abuse the company’s endpoint security tool is finding when it’s deployed inside large organisations.

This episode is also available on YouTube

Risky Business #851 -- Agents are just ones and zeros, and tigers are just atoms
0:00 / 58:38

Between Two Nerds: The perfect hacker

Presented by

The Grugq
The Grugq

Independent Security Researcher

Tom Uren
Tom Uren

Policy & Intelligence

In this edition of Between Two Nerds Tom Uren and The Grugq talk about how AI is the perfect hacker, but what makes it perfect for states is the opposite of what makes it perfect for criminals.

This episode is also available on YouTube.

Between Two Nerds: The perfect hacker
0:00 / 29:26

Risky Bulletin: New powers for Dutch intelligence services

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

Dutch intelligence services will get new powers, a security expert has been arrested in Israel for hacking, the BTS hacker gets a 20 year sentence in South Korea, and an AfD politician in Germany has been linked to a Russian cybercrime hosting service.

Risky Bulletin: New powers for Dutch intelligence services
0:00 / 7:07

Sponsored: Attackers need to be right more than once

Presented by

James Wilson
James Wilson

Technology Editor

In this Risky Business sponsored interview, James Wilson chats with Dropzone AI’s founder and CEO Edward Wu to debunk the adage, “an attacker only has to be right once”. Modern intruders need to be successful across multiple steps before actually reaching an organisation’s “crown jewels”.

The pair chat about where AI helps attackers, why autonomous post-compromise agents aren’t quite here yet, and how AI can bolster the capacity of security teams when investigating alerts and reducing response times.

Sponsored: Attackers need to be right more than once
0:00 / 21:12

How Brian Krebs doxxed TeamPCP

Presented by

James Wilson
James Wilson

Technology Editor

In this podcast episode, James Wilson chats with Brian Krebs about the investigation that led him from recycled cybercrime handles and old forum records to the true identity of TeamPCP’s alleged leader in Perth.

TeamPCP is the hacker group that has gone berserk in the software supply chain over the last year or so, stealing credentials to compromise developers, their software packages, and their repositories.

In this interview Brian talks about his Signal conversations with the group’s ringleader, the strange Cybercats community surrounding TeamPCP, and the passive DNS breakthrough that helped him unmask what he thinks are the ringleader’s true identities.

How Brian Krebs doxxed TeamPCP
0:00 / 29:22

Risky Bulletin: Two TeamPCP members arrested in Australia

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

Two members of TeamPCP arrested in Australia, Qilin hits the US firearms agency, America seizes two more Chinese botnets, CISA says most cyber activity is opportunistic.

Risky Bulletin: Two TeamPCP members arrested in Australia
0:00 / 10:30