Risky Bulletin Podcast feed

Daily podcasts featuring news bulletins and discussion shows...

Risky Bulletin: Android switches to risk-based security updates

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

Android will only issue monthly updates for high-risk vulnerabilities A self-replicating attack hits the npm registry; BreachForums’ admin resentenced on appeal; …and hackers breach Gucci’s parent company.

Risky Bulletin: Android switches to risk-based security updates
0:00 / 7:11

Between Two Nerds: The limits of cyber power

Presented by

The Grugq
The Grugq

Independent Security Researcher

Tom Uren
Tom Uren

Policy & Intelligence

In this edition of Between Two Nerds Tom Uren and The Grugq talk about the limits of a state’s cyber power.

This episode is also available on YouTube

Between Two Nerds: The limits of cyber power
0:00 / 30:47

Risky Bulletin: DC sues crypto ATM operator for profiting from scams

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

The US sues a crypto ATM operator for profiting from scams, SMS blasters make their way into Switzerland, the US and Portugal tussle over the extradition of the RaidForums admin, and Samsung patches a zero-day in its phones.

Risky Bulletin: DC sues crypto ATM operator for profiting from scams
0:00 / 6:41

Sponsored: The challenge of managing browser extensions

Presented by

Casey Ellis
Casey Ellis

Founder, Bugcrowd

In this sponsored interview, Casey Ellis chats to David Cottingham and Daniel Schell from Airlock Digital. They discuss the challenge of browser extension management for enterprises, why it’s a priority and how Airlock can help.

Sponsored: The challenge of managing browser extensions
0:00 / 19:50

Risky Bulletin: Apple notifies French users of spyware attacks

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

Apple notifies French users of spyware attacks, China will increase fines for data breaches Google pays $1.6mil for cloud bugs at a hackathon event, and no more hacked free laundry for Dutch students

Risky Bulletin: Apple notifies French users of spyware attacks
0:00 / 7:08

Srsly Risky Biz: Exploiting authorisation sprawl is the new black

Presented by

Amberleigh Jack
Amberleigh Jack

Producer and Editor

Tom Uren
Tom Uren

Policy & Intelligence

Tom Uren and Amberleigh Jack talk about the Salesloft Drift incident. It is a great example of the sprawling impact that the breach of a single service provider can have. We expect these single-compromise-large-blast-radius attacks will become the new norm.

They also talk about Apple’s Memory Integrity Enforcement, which promises to be a big step forward for memory safety on Apple devices.

This episode is also available on Youtube.

Srsly Risky Biz: Exploiting authorisation sprawl is the new black
0:00 / 17:54

Risky Bulletin: White House to keep CyberCom and NSA dual role

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

The White House will keep the CyberCom and NSA dual-hat leadership arrangement, the US charges a major ransomware figure, Apple ships a memory safety protection feature and yet another supply chain attack hits the npm world.

Risky Bulletin: White House to keep CyberCom and NSA dual role
0:00 / 8:38

Between Two Nerds: The death of the exploit

Presented by

The Grugq
The Grugq

Independent Security Researcher

Tom Uren
Tom Uren

Policy & Intelligence

In this edition of Between Two Nerds Tom Uren and The Grugq talk about the trend toward outrageously complicated exploits and what it means for hacking and cyber espionage.

This episode is also available on YouTube

Between Two Nerds: The death of the exploit
0:00 / 25:47

Risky Bulletin: New APT group turns out to be a phishing test

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

A new APT group turns out to be a phishing test, Qantas cuts executives’ bonuses after a recent breach, Anthropic stops selling AI tools to Chinese firms, and Nepal blocks 26 social media sites.

Risky Bulletin: New APT group turns out to be a phishing test
0:00 / 7:51

Sponsored: Why prompt injection is an intractable problem

Presented by

Casey Ellis
Casey Ellis

Founder, Bugcrowd

In this sponsored interview Casey Ellis chats with Keith Hoodlet from Trail of Bits. Keith is Trail of Bits’ director of engineering for AI, machine learning and application security and he joined Casey to talk about why prompt injection attack techniques that target AI are an unsolvable problem.

Sponsored: Why prompt injection is an intractable problem
0:00 / 16:30