Podcasts

News, analysis and commentary

Srsly Risky Biz: Canada's expulsion from Five Eyes would be a disaster

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

Tom Uren
Tom Uren

Policy & Intelligence

Tom Uren and Patrick Gray talk about the White House apparently considering kicking Canada out of the Five Eyes intelligence alliance to apply pressure on the country. It’s a terrible idea and even thinking about it undermines the strength of the alliance.

They also discuss Sweden’s proposed legislation that would order apps like WhatsApp and Signal to store messages so they could be provided under warrant to authorities. The story is a vignette of the ongoing encryption debate, but we think apps like Signal will leave the country rather than comply.

Finally, they talk about how the illicit cryptocurrency ecosystem is evolving in response to government action such as takedowns and sanctions.

This episode is also available on Youtube.

Srsly Risky Biz: Canada's expulsion from Five Eyes would be a disaster
0:00 / 24:18

Risky Business #781 -- How Bybit oopsied $1.4bn

Presented by

Adam Boileau
Adam Boileau

Technology Editor

Patrick Gray
Patrick Gray

CEO and Publisher

On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news:

  • North Korea pulls off a 1.5 billion dollar crypto heist
  • Apple pulls Advanced Data Protection from the UK
  • Black Basta ransomware gang’s internal chats leak
  • Russians snoop on Signal with QR codes
  • And Myanmar ships thousands of freed scam compound workers to Thailand

Regular guest Lina Lau joins to discuss her work reading Chinese incident response reports on WeChat, and how that has people thinking that … she outed the NSA?

This week’s episode is sponsored by Airlock Digital, and allow-listing tragics Daniel Schell and David Cottingham are along with an amusing tale of using Windows’ own allow-listing software to block EDR from loading.

This episode is also available on Youtube.

Risky Business #781 -- How Bybit oopsied $1.4bn
0:00 / 62:40

Risky Bulletin: Signal threatens to leave Sweden over backdoor request

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

Signal threatens to leave Sweden over backdoor request, the EU sanctions a North Korean general linked to two APTs, Australia bans Kaspersky products on government systems and Google will use QR codes for Gmail authentication.

Risky Bulletin: Signal threatens to leave Sweden over backdoor request
0:00 / 6:59

Between Two Nerds: Hacking's first principles

Presented by

The Grugq
The Grugq

Independent Security Researcher

Tom Uren
Tom Uren

Policy & Intelligence

In this edition of Between Two Nerds Tom, Uren and The Grugq examine the fundamental principles of network exploitation as described in Matthew Monte’s ‘Network Attacks and Exploitation: A Framework’ book using recent hacks as case studies.

This episode is also available on Youtube.

Between Two Nerds: Hacking's first principles
0:00 / 29:52

Risky Bulletin: North Korean hackers steal $1.5 billion from Bybit

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

North Korean hackers steal one and a half billion dollars from Bybit, Apple disables iCloud backup encryption in the UK, stream-jacking hits the e-sports world and Palau faces its third ransomware attack in six years.

Risky Bulletin: North Korean hackers steal $1.5 billion from Bybit
0:00 / 6:56

Sponsored: Nucleus Security on asset correlation and asset linking

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

In this Risky Business News sponsor interview, Catalin Cimpanu talks with Aaron Attarzadeh, Enterprise Security Engineer at Nucleus. Aaron goes into new concepts for the vulnerability management scene, such as asset correlation and asset linking.

Sponsored: Nucleus Security on asset correlation and asset linking
0:00 / 12:23

Wide World of Cyber: DeepSeek lobs an AI hand grenade

Presented by

Alex Stamos
Alex Stamos

CISO, Sentinel One

Chris Krebs
Chris Krebs

Chief Intelligence and Public Policy Officer, Sentinel One

Patrick Gray
Patrick Gray

CEO and Publisher

In this episode of the Wide World of Cyber podcast Risky Business host Patrick Gray chats with SentinelOne’s Chris Krebs and Alex Stamos about AI, DeepSeek, and regulation.

From its bad transport security to its Chinese ownership and the economic implications of China “entering the chat”, everyone’s freaking out over this new model. But should they be?

Pat, Alex and Chris dissect the model’s significance, the politics of it all and how AI regulation in Europe, the US and China will shape the future of LLMs.

This episode is also available on [Youtube](

Wide World of Cyber: DeepSeek lobs an AI hand grenade
0:00 / 41:02

Risky Bulletin: BlackBasta implodes, internal chats leak online

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

The BlackBasta ransomware group implodes, Russian military hackers target Signal with QR codes, Microsoft patches a Power Pages zero-day, and Meta sues a man who hacked accounts and extorted users.

Risky Bulletin: BlackBasta implodes, internal chats leak online
0:00 / 6:00

Srsly Risky Biz: Why America needs its own Salt Typhoon

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

Tom Uren
Tom Uren

Policy & Intelligence

In this podcast Tom Uren and Patrick Gray talk about the idea of launching a retaliatory campaign to hack Chinese telcos in response to Salt Typhoon’s targeting of US ones. US Senator Mark Warner floated the idea as a way to persuade the Chinese government to pull back Salt Typhoon, but we think that kind of campaign has merit regardless.

They also discuss how Samoa’s CERT calling out APT40 is a big deal. It’s striking to see a small country of 200,000 people calling out Chinese hacking.

Srsly Risky Biz: Why America needs its own Salt Typhoon
0:00 / 21:01

Risky Business #780 -- ASD torched Zservers data while admins were drunk

Presented by

Adam Boileau
Adam Boileau

Technology Editor

Patrick Gray
Patrick Gray

CEO and Publisher

On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news, including:

  • Australian spooks scrubbed Medibank data off Zservers bulletproof hosting
  • Why device code phishing is the latest trick in confusing poor users about cloud authentication
  • Cloudflare gets blocked in Spain, but only on weekends and because of… football?
  • Palo Alto has yet another dumb bug
  • Adam gushes about Qualys’ latest OpenSSH vulns

Enterprise browser maker Island is this week’s sponsor and Chief Customer Officer Bradon Rogers joins the show to talk about how the adoption of AI everywhere is causing headaches.

Risky Business #780 -- ASD torched Zservers data while admins were drunk
0:00 / 60:35