Podcasts

News, analysis and commentary

Risky Biz Soap Box: Bugcrowd CEO Ashish Gupta

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

This is not an edition of the weekly news show, scroll back one episode in your podcast feed if you’re looking for that. Rhis is a wholly sponsored podcast brought to you by Bugcrowd.

Bugcrowd’s CEO Ashish Gupta joins us in this edition of the Soap Box. He’s been the CEO over there for about three years, taking the reins from our friend Casey Ellis who moved into the CTO position.

As you’re about to hear, the bug bounty companies have moved on from the days when they just provided the simple service of running bug bounty competitions for their clients. What’s emerging is a much more nuanced product mix designed to extract as much usefulness as possible out of the testers registered on their platforms.

Risky Biz Soap Box: Bugcrowd CEO Ashish Gupta
0:00 / 0:00

Risky Business #605 -- Trump fires CISA director Chris Krebs

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

Adam Boileau
Adam Boileau

Technology Editor

On this week’s show Patrick and Adam discuss the week’s security news, including:

  • CISA director Chris Krebs fired
  • Trump ramps up his disinformation campaign
  • TikTok ban stalls
  • BlackBerry discovers new hacker-for-hire crew
  • DNS cache poisoning is back. But do we really care?
  • Much, much more
Risky Business #605 -- Trump fires CISA director Chris Krebs
0:00 / 0:00

Australia eyes payment card data for contact tracing

Presented by

Brett Winterford
Brett Winterford

Payment data is being pitched as another tool to help contact tracing professionals squash outbreaks of COVID-19.

Risky Business #604 -- Election-related cyber shenanigans fail to materialise

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

Adam Boileau
Adam Boileau

Technology Editor

On this week’s show Patrick and Adam discuss the week’s security news, including:

  • Zoom settles with FTC over misleading E2EE claim
  • Some poor sod had to give up $1bn in Bitcoin
  • Solaris SSH 0day? Let’s party like it’s 1999
  • Samy Kamkar’s latest trick: NAT Slipstreaming
  • Australia’s hardcore critical infrastructure protection bill
  • Much, much more
Risky Business #604 -- Election-related cyber shenanigans fail to materialise
0:00 / 0:00

China flaunts its exploit prowess

Presented by

Brett Winterford
Brett Winterford

Judging by what gets put on show, we can no longer safely assume US superiority in exploit development.

Australia's hardcore critical infrastructure laws open to challenge

Presented by

Brett Winterford
Brett Winterford

Australia’s Department of Home Affairs has yielded to pressure from industry and state governments to publish an exposure draft of the bill that underpins its plan to directly intervene in the cyber security of the country’s critical infrastructure.

The many personalities of Lazarus

Presented by

Daniel Gordon and Brett Winterford
Daniel Gordon and Brett Winterford

North Korea’s “Lazarus Group” gets through an impossibly prodigious amount of activity. That’s because this “group” is better understood as several distinct, connected clusters that together add up to North Korea’s formidable hacking operation.

Risky Business #603 -- YOU get sanctions, and YOU get sanctions

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

Adam Boileau
Adam Boileau

Technology Editor

On this week’s show Patrick and Adam discuss the week’s security news, including:

  • “Proud Boys” email campaign attributed to Iran in record time
  • Sanctions for everyone!
  • US doxes more adversary TTPs
  • Katie Nickels and Chris Krebs join the show

This week’s show is brought to you by attack simulation platform company AttackIQ. Carl Wright from AttackIQ joins us this week to talk about the distinct possibility that large organisations are going to start slashing their security budgets in response to the changing economy.

Risky Business #603 -- YOU get sanctions, and YOU get sanctions
0:00 / 0:00

CISA, FBI roll the dice on transparency

Presented by

Brett Winterford
Brett Winterford

CISA and the FBI are calling out Russian intrusions as they see them, while US Treasury imposes sanctions on the developers of Triton ICS malware and Iranian disinformation shops.

Snake Oilers 12 part 2: Gravwell seeks to shake up SIEM market, Plextrac pitches its pentest reporting platform

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

In this (wholly sponsored) edition of the Snake Oilers podcast, three vendors will drop by to pitch their sweet, sweet snake oil:

  • Gravwell pitches its “structure on read” approach to SIEM
  • Plextrac describes its red team/pentest reporting platform
  • ITProTV’s Don Pezet talks about trends in online training
Snake Oilers 12 part 2: Gravwell seeks to shake up SIEM market, Plextrac pitches its pentest reporting platform
0:00 / 0:00