Podcasts

News, analysis and commentary

Risky Biz Soap Box: BEC actors embrace LLMs to attack Japan

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

This Soap Box edition of the podcast is sponsored by Proofpoint.

Proofpoint offers email security and DLP products and services, and they’re probably best known for being the biggest email security company on the planet.

That means they process a LOT of emails in the hopes of throttling the number of malicious emails that organisations have to deal with, whether that’s malware, phishing or BEC.

So, with that in mind, what role could large language models play in email security?

Now that the initial ChatGPT hype has died off a little, we spoke with Proofpoint’s VP of cybersecurity strategy Ryan Kalember about large language models and how they’re going to help defenders and attackers alike.

Risky Biz Soap Box: BEC actors embrace LLMs to attack Japan
0:00 / 0:00

Risky Biz News: Microsoft capitulates on cloud security logs

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Claire Aird.

You can find the newsletter version of this podcast here.

Risky Biz News: Microsoft capitulates on cloud security logs
0:00 / 0:00

Srsly Risky Biz: Time for Cloud Transparency

Presented by

Tom Uren
Tom Uren

Policy & Intelligence

Patrick Gray
Patrick Gray

CEO and Publisher

In this podcast Patrick Gray and Tom Uren talk about recent breaches of JumpCloud and Microsoft cloud services. It’s great they disclosed these incidents voluntarily, but cloud companies are so important that detailed postmortems shouldn’t be voluntary.

They also discuss the Biden administration’s cyber security strategy implementation plan and the opportunity to collect email destined for the US military by typo-squatting on the ‘.ml’ domain.

Srsly Risky Biz: Time for Cloud Transparency
0:00 / 0:00

Risky Biz News: A Citrix 0day RCE is being actively exploited

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Claire Aird.

You can find the newsletter version of this podcast here.

Risky Biz News: A Citrix 0day RCE is being actively exploited
0:00 / 0:00

Risky Business #713 -- Microsoft activates PR weasels after State Department hack

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

Adam Boileau
Adam Boileau

Technology Editor

On this week’s show Patrick Gray and Adam Boileau discuss the week’s security news. They cover:

  • Microsoft’s weasel-word response to the State Department email hack
  • JumpCloud got owned, maybe by DPRK
  • Citrix 0day is getting stuff rekt
  • Two more spyware firms sanctioned by USA
  • Scammers list fake phone numbers for major airlines on Google Maps
  • Much, much more

This week’s show is brought to you by security focussed enterprise browser maker Island. Dan Amiga, Island’s CTO and co-founder, is this week’s sponsor guest. He talks about why widespread enterprise browser deployment is inevitable.

Links to everything that we discussed are below and you can follow Patrick or Adam on Mastodon if that’s your thing.

Risky Business #713 -- Microsoft activates PR weasels after State Department hack
0:00 / 0:00

Between Two Nerds: Shaping ransomware group behaviour

Presented by

Tom Uren
Tom Uren

Policy & Intelligence

The Grugq
The Grugq

Independent Security Researcher

In this edition of Between Two Nerds Tom Uren and The Grugq look at the idea of actively shaping ransomware group behaviour to get the type of behaviour we’d prefer.

Between Two Nerds: Shaping ransomware group behaviour
0:00 / 0:00

Risky Biz News: JumpCloud compromised by APT group

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Kaitlyn Sawrey.

You can find the newsletter version of this podcast here.

Risky Biz News: JumpCloud compromised by APT group
0:00 / 0:00

Risky Biz News: Microsoft likely compromised in US Government hack

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Kaitlyn Sawrey.

You can find the newsletter version of this podcast here.

Risky Biz News: Microsoft likely compromised in US Government hack
0:00 / 0:00

Srsly Risky Biz: WeChat's Privacy Policy Is Useless

Presented by

Tom Uren
Tom Uren

Policy & Intelligence

Patrick Gray
Patrick Gray

CEO and Publisher

In this podcast Patrick Gray and Tom Uren talk about Citizen Lab’s analysis of WeChat’s behaviour and its privacy policy. That report misses the point: WeChat is an integral part of the PRC’s architecture of censorship and repression, and the Chinese government isn’t constrained by WeChat’s privacy policy.

They also discuss a new report that proposes a human-centred framework for assessing client-side Child Sexual Abuse Material (CSAM) detection technologies. It’s a step forward because it makes clearer the tradeoffs that are being made when these technologies are suggested.

Srsly Risky Biz: WeChat's Privacy Policy Is Useless
0:00 / 0:00

Risky Biz News: Microsoft nukes 100 malicious drivers

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Claire Aird.

You can find the newsletter version of this podcast here.

Risky Biz News: Microsoft nukes 100 malicious drivers
0:00 / 0:00