Podcasts

News, analysis and commentary

Risky Business #696 -- Why Twitter had to kill SMS 2FA

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

Adam Boileau
Adam Boileau

Technology Editor

On this week’s show Patrick Gray and Adam Boileau discuss the week’s security news, including:

  • Why Twitter had to kill SMS 2FA
  • A look at Meta’s new verification service
  • How a ransomware attack disrupted the semiconductor supply chain
  • Why Anonymous Sudan is probably a Russian info op
  • Microsoft mixes up public and private keys in Azure B2C (for real)
  • Much, much more

This week’s show is brought to you by Proofpoint. Its Executive Vice President of Cybersecurity Strategy Ryan Kalember joins the show in the sponsor slot.

Links to everything that we discussed are below and you can follow Patrick or Adam on Mastodon if that’s your thing.

Risky Business #696 -- Why Twitter had to kill SMS 2FA
0:00 / 0:00

Between Two Nerds: Is cyberespionage actually signals intelligence?

Presented by

Tom Uren
Tom Uren

Policy & Intelligence

The Grugq
The Grugq

Independent Security Researcher

In this edition of Between Two Nerds Tom Uren and The Grugq look at the differences and similarities between signals intelligence and cyber operations. Why did Five Eyes Sigint organisations end up ‘owning’ cyber operations and does that make sense, or should there be a separate cyber intelligence organisation?

Between Two Nerds: Is cyberespionage actually signals intelligence?
0:00 / 0:00

Risky Biz News: Applied Materials to take $250m ransomware hit

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Claire Aird.

You can find the newsletter version of this podcast click here.

Risky Biz News: Applied Materials to take $250m ransomware hit
0:00 / 0:00

Risky Biz News: EU cybersecurity agencies warn of Chinese APT spying

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Patrick Gray, who’s filling in for Claire Aird.

You can find the newsletter version of this podcast click here.

Risky Biz News: EU cybersecurity agencies warn of Chinese APT spying
0:00 / 0:00

Risky Biz Soap Box: Greynoise has built the world's biggest, and smartest, honeypot

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

In this interview we’re chatting with the founder of Greynoise Intelligence, Andrew Morris.

Greynoise operates a global network of sensors that collect data on things like mass scanning, exploitation and reconnaissance. The idea is if your SOC gets an alert from a particular IP you can see if it’s associated with mass scanning or exploitation, or if it’s something that’s just targeting you.

And as you’ll hear, there are other use cases also, but we’re talking about a few things with Andrew today. He talks about being able to selectively port forward attacks targeting his sensor network to a data centre running the services being targeted, about the ESXiArgs ransomware attack and more.

Enjoy!

Risky Biz Soap Box: Greynoise has built the world's biggest, and smartest, honeypot
0:00 / 0:00

Srsly Risky Biz: North Korean ransomware, Biden flags US privacy reform

Presented by

Tom Uren
Tom Uren

Policy & Intelligence

Patrick Gray
Patrick Gray

CEO and Publisher

In this podcast Patrick Gray talks to Tom Uren about North Korea’s foray into state-sponsored ransomware targeting healthcare organisations. There’s reasons to be concerned — North Korea has pulled off some sophisticated hacks and the responses that maybe “work” against cybercriminals might not work at all against the DPRK. Tom thinks that the international community can do a lot more around sanctions that will help.

They also look at President Biden’s talk about privacy at his recent State of the Union speech. Does this mean that the US will finally get meaningful federal privacy and data security legislation? We hope so.

Finally, Tom and Patrick revisit the Chinese spy balloon saga. Even though a single balloon is not a huge threat, an uncontested balloon surveillance program would be and the US is responding strongly. It’s sanctioned six Chinese firms and the US is looking for balloons and finding them. Three more have been shot down since last week, but it looks like they are all just errant balloons rather than more surveillance craft.

Srsly Risky Biz: North Korean ransomware, Biden flags US privacy reform
0:00 / 0:00

Risky Biz News: FTC orders MoneyGram to return $115 million to scammed victims

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Claire Aird.

You can find the newsletter version of this podcast click here.

Risky Biz News: FTC orders MoneyGram to return $115 million to scammed victims
0:00 / 0:00

Risky Business #695 -- North Korea is ransomwaring hospitals, Russia to make "patriotic" hacking legal

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

Adam Boileau
Adam Boileau

Technology Editor

On this week’s show Patrick Gray and Adam Boileau discuss the week’s security news, including:

  • North Korea is ransomwaring hospitals with homegrown and Russian strains
  • Russia proposes law greenlighting “patriotic hacks”
  • It’s 702 renewal time… again
  • CISA releases ESXiArgs recovery script (yay!)
  • UK mulls crimephone ban
  • Much, much more

This week’s show is brought to you by Thinkst Canary. Haroon Meer is this week’s sponsor guest and joins us to talk about Thinkst’s latest release: the credit card canary.

Links to everything that we discussed are below and you can follow Patrick or Adam on Mastodon if that’s your thing.

Risky Business #695 -- North Korea is ransomwaring hospitals, Russia to make "patriotic" hacking legal
0:00 / 0:00

Between Two Nerds: Deny! Degrade! Discombobulate?

Presented by

Tom Uren
Tom Uren

Policy & Intelligence

The Grugq
The Grugq

Independent Security Researcher

In this edition of Between Two Nerds Tom Uren and The Grugq compare and contrast the way Russia and the West project power with cyber operations.

Between Two Nerds: Deny! Degrade! Discombobulate?
0:00 / 0:00

Risky Biz News: Russia wants to absolve patriotic hackers of criminal liability

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

A short podcast updating listeners on the security news of the last few days, as prepared by Catalin Cimpanu and read by Claire Aird.

You can find the newsletter version of this podcast click here.

Risky Biz News: Russia wants to absolve patriotic hackers of criminal liability
0:00 / 0:00