Podcasts

News, analysis and commentary

Risky Business #743 -- A chat about the xz backdoor with the guy who found it

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

Adam Boileau
Adam Boileau

Technology Editor

On this week’s show Patrick and Adam discuss the week’s security news, including:

  • The SSH backdoor that dreams (or nightmares) are made of
  • Microsoft gets a solid spanking from the CSRB
  • Ukraine uses an old Russian WinRAR bug to hack Russia
  • Push-notifications and social-engineering combined-arms vs Apple
  • And much, much more.

We have a special guest in this week’s show, Andres Freund, the Postgres developer who discovered the backdoor in the xz Linux compression library.

This week’s show is brought to you by Island, a company that makes a security-focussed enterprise browser. Island’s Bradon Rogers is this week’s sponsor guest and he’ll be joining us to talk about how people are swapping out their Virtual Desktop Infrastructure for enterprise-focussed browsers like theirs.

Risky Business #743 -- A chat about the xz backdoor with the guy who found it
0:00 / 57:41

Risky Biz News: CSRB drops scathing Microsoft report

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

Description: A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Claire Aird.

You can find the newsletter version of this podcast here.

Risky Biz News: CSRB drops scathing Microsoft report
0:00 / 6:37

Between Two Nerds: The asymmetry of 'information warfare'

Presented by

Tom Uren
Tom Uren

Policy & Intelligence

The Grugq
The Grugq

Independent Security Researcher

In this edition of Between Two Nerds Tom Uren and The Grugq look at how states have very different views about manipulating the information environment aka ‘information warfare’.

Between Two Nerds: The asymmetry of 'information warfare'
0:00 / 28:33

Sponsored: Resourcely on how it manages its secure templates

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

In this Risky Business News sponsor interview, Catalin Cimpanu talks with Resourcely co-founder and CEO Travis McPeak about how the DevOps ecosystem has evolved and ushered the need for DevSecOps, and how the company provides and manages its secure-by-default templates.

Sponsored: Resourcely on how it manages its secure templates
0:00 / 13:55

Risky Biz News: Epic supply chain attack on Linux SSH

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Claire Aird.

You can find the newsletter version of this podcast here.

Risky Biz News: Epic supply chain attack on Linux SSH
0:00 / 5:31

Risky Biz News: Spyware vendors behind 24 zero-days last year

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Claire Aird.

You can find the newsletter version of this podcast here.

Risky Biz News: Spyware vendors behind 24 zero-days last year
0:00 / 7:48

Srsly Risky Biz: China hacking for more than just IP

Presented by

Tom Uren
Tom Uren

Policy & Intelligence

Patrick Gray
Patrick Gray

CEO and Publisher

In this podcast Patrick Gray and Tom Uren talk about recent US and UK action including indictments and sanctions levied on PRC Ministry of State Security related hackers. In contrast to previous indictments, this one focuses a lot on the hacking of government officials and parliamentarians. That’s new.

They also look at a new report that lays out the case for a US Cyber Force.

Srsly Risky Biz: China hacking for more than just IP
0:00 / 17:30

Risky Biz News: China called out over hacks, again

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Claire Aird.

You can find the newsletter version of this podcast here.

Risky Biz News: China called out over hacks, again
0:00 / 6:41

Risky Business #742 -- China bans AMD and Intel, pivots to Linux on the desktop

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

Adam Boileau
Adam Boileau

Technology Editor

On this week’s show Patrick and Adam discuss the week’s security news, including:

  • FVEY protests China’s widespread hacking of western politicians
  • China bans western CPUs, Windows and databases
  • Apple’s leaky M-chip prefetcher
  • Nigeria holds ex-IRS investigator hostage in Binance stoush
  • Researchers bring Rowhammer to AMD Zen and DDR5
  • And much, much more.

This week’s show is brought to you by Thinkst Canary. Its founder Haroon Meer joins this week’s show to make a passionate case that security vendors don’t all have to go for explosive growth. Slow and steady with a focus on excellent and relevant products will win the race, he says.

Risky Business #742 -- China bans AMD and Intel, pivots to Linux on the desktop
0:00 / 65:21

Sponsored: Sublime Security on attack surface reduction for email

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

In this Risky Business News sponsor interview, Catalin Cimpanu talks with Josh Kamdjou, co-founder and CEO of Sublime Security. Josh describes how Sublime implemented the concept of attack surface reduction to email security last year, how it works, and what customers are saying about it.

Sponsored: Sublime Security on attack surface reduction for email
0:00 / 16:45