Podcasts

News, analysis and commentary

Sponsored: Breaking the deadlock between IT and security teams

Presented by

Tom Uren
Tom Uren

Policy & Intelligence

In this Risky Business News sponsored interview, Tom Uren talks to Mike Wiacek, CEO and founder of Stairwell, about the occasionally dysfunctional relationship between IT and security teams. Mike talks about how security vendors need to reach out to turn IT teams into allies.

Sponsored: Breaking the deadlock between IT and security teams
0:00 / 0:00

Risky Biz News: US charges five Scattered Spider members

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Claire Aird.

You can find the newsletter version of this podcast here.

Risky Biz News: US charges five Scattered Spider members
0:00 / 0:00

Srsly Risky Biz: The PLA's cyber operations go dark

Presented by

Tom Uren
Tom Uren

Policy & Intelligence

Patrick Gray
Patrick Gray

CEO and Publisher

In this podcast Tom Uren and Patrick Gray talk about what the People’s Liberation Army cyber operators have been up to. They used to be China’s most visible cyber operators but have since disappeared.

They also discuss the shift towards widespread exploitation of 0days, particularly in enterprise perimeter devices.

This episode is also available on Youtube.

Srsly Risky Biz: The PLA's cyber operations go dark
0:00 / 0:00

Risky Business #771 -- Palo Alto's firewall 0days are very, very stupid

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

Adam Boileau
Adam Boileau

Technology Editor

On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news, including:

  • Microsoft introduces some sensible sounding post-Crowdstrike changes
  • Palo Alto patches hella-stupid bugs in its firewall management webapp
  • CISA head Jen Easterly to depart as Trump arrives
  • AI grandma tarpits phone scammers in family-tech-support hell
  • Academic research supports your gut-reaction; phishing training doesn’t work
  • And much, much more.

This week’s episode is sponsored by Greynoise. The always excitable Andrew Morris joins to remind us that the edge-device vulnerabilities Pat and Adam complain about on the show are in fact actually even worse than we make them out to be. Andrew also tells us about a zero-day Greynoise’ AI system truffle-pigged out of their data set.

This episode is also available on Youtube.

Risky Business #771 -- Palo Alto's firewall 0days are very, very stupid
0:00 / 0:00

Risky Biz News: Remote fix feature for unbootable PCs coming to Windows

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Claire Aird.

You can find the newsletter version of this podcast here.

Risky Biz News: Remote fix feature for unbootable PCs coming to Windows
0:00 / 0:00

Between Two Nerds: Cyber weapons

Presented by

Tom Uren
Tom Uren

Policy & Intelligence

The Grugq
The Grugq

Independent Security Researcher

In this edition of Between Two Nerds Tom Uren and The Grugq talk about what cyber weapons really are and why use of the term is counterproductive.

They reference Defining Offensive Cyber Capabilities, a paper authored by Tom.

Between Two Nerds: Cyber weapons
0:00 / 0:00

Risky Biz News: Unpatched zero-day in Palo Alto Networks is in the wild

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Claire Aird.

You can find the newsletter version of this podcast here.

Risky Biz News: Unpatched zero-day in Palo Alto Networks is in the wild
0:00 / 0:00

Risky Biz News: MSS now dominates China's cyber activity

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Claire Aird.

You can find the newsletter version of this podcast here.

Risky Biz News: MSS now dominates China's cyber activity
0:00 / 0:00

Srsly Risky Biz: How Trump will drive covert operations

Presented by

Tom Uren
Tom Uren

Policy & Intelligence

Patrick Gray
Patrick Gray

CEO and Publisher

In this podcast Tom Uren and Patrick Gray talk about what to expect from President Trump’s second term. Trump is an activist president who believes in using state power, so intelligence agencies will be pushed to conduct more audacious or even outrageous covert operations.

They also discuss concerns about a new UN cybercrime treaty that is set for a vote at the General Assembly and the Canadian government’s curious decision to force the closure of TikTok’s local offices.

This episode is also available on Youtube.

Srsly Risky Biz: How Trump will drive covert operations
0:00 / 0:00

Risky Business #770 -- A Russian IR guy discovers extremely cool spookware

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

Adam Boileau
Adam Boileau

Technology Editor

On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news, including:

  • Apple frustrates law enforcement with iOS auto-reboot
  • CISA says most KEV vulnerabilities in 2023 were first used as zero days
  • Russians roll incident response on some sweet Linux spookware
  • Regular users can create mailboxes in M365?
  • Tor tracks down the source of its joe-job abuse complaints
  • And much, much more.

This week’s feature guest is former FBI agent Chris Tarbell, who arrested Silk Road operator Ross Ulbricht way back in 2013. As suggestions swirl that an incoming Trump administration might release Ulbricht, Chris talks about the reality of the Dread Pirate Roberts.

This episode is sponsored by software supply chain security firm Socket.dev. Founder Feross Aboukhadijeh thinks that we need a CVE-like catalogue for supply-chain attacks, and he makes a solid argument.

The show is also available on Youtube.

Risky Business #770 -- A Russian IR guy discovers extremely cool spookware
0:00 / 0:00