Risky Business Podcast

Analysis and news podcasts published weekly

Risky Business #771 -- Palo Alto's firewall 0days are very, very stupid

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

Adam Boileau
Adam Boileau

Technology Editor

On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news, including:

  • Microsoft introduces some sensible sounding post-Crowdstrike changes
  • Palo Alto patches hella-stupid bugs in its firewall management webapp
  • CISA head Jen Easterly to depart as Trump arrives
  • AI grandma tarpits phone scammers in family-tech-support hell
  • Academic research supports your gut-reaction; phishing training doesn’t work
  • And much, much more.

This week’s episode is sponsored by Greynoise. The always excitable Andrew Morris joins to remind us that the edge-device vulnerabilities Pat and Adam complain about on the show are in fact actually even worse than we make them out to be. Andrew also tells us about a zero-day Greynoise’ AI system truffle-pigged out of their data set.

This episode is also available on Youtube.

Risky Business #771 -- Palo Alto's firewall 0days are very, very stupid
0:00 / 61:12

Risky Business #770 -- A Russian IR guy discovers extremely cool spookware

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

Adam Boileau
Adam Boileau

Technology Editor

On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news, including:

  • Apple frustrates law enforcement with iOS auto-reboot
  • CISA says most KEV vulnerabilities in 2023 were first used as zero days
  • Russians roll incident response on some sweet Linux spookware
  • Regular users can create mailboxes in M365?
  • Tor tracks down the source of its joe-job abuse complaints
  • And much, much more.

This week’s feature guest is former FBI agent Chris Tarbell, who arrested Silk Road operator Ross Ulbricht way back in 2013. As suggestions swirl that an incoming Trump administration might release Ulbricht, Chris talks about the reality of the Dread Pirate Roberts.

This episode is sponsored by software supply chain security firm Socket.dev. Founder Feross Aboukhadijeh thinks that we need a CVE-like catalogue for supply-chain attacks, and he makes a solid argument.

The show is also available on Youtube.

Risky Business #770 -- A Russian IR guy discovers extremely cool spookware
0:00 / 63:29

Risky Biz Soap Box: Why black box email security is dead

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

In this edition of the Risky Business Soap Box we’re talking all about email security with Sublime Security co-founder Josh Kamdjou.

Email security is one of the oldest product categories in security, but as you’ll hear, Josh thinks the incumbents are just doing it wrong. He joins Risky Business host Patrick Gray for this interview about Sublime’s origin story and its new approach to email security.

Risky Biz Soap Box: Why black box email security is dead
0:00 / 36:12

Risky Business #769 -- Sophos drops implants on Chinese exploit devs

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

Adam Boileau
Adam Boileau

Technology Editor

On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news, including:

  • Sophos drops implants on Chinese firewall exploit devs
  • Microsoft workshops better just-in-time Windows admin privileges
  • Snowflake hacker arrested in Canada
  • Okta has a fun, but not very impactful auth-bypass bug
  • Russians bring dumb-but-smart RDP client attacks
  • And much, much more.

Special guest Sophos CISO Ross McKerchar joined us to talk about its “hacking back” campaign. The full interview is available on Youtube for those who want to really live vicariously through Sophos doing what every vendor probably wants to do.

This week’s episode is sponsored by attack surface mapping vendor runZero. Founder and CEO HD Moore joins to talk about marrying up the outside and inside views of your network.

You can also watch this episode on Youtube

Risky Business #769 -- Sophos drops implants on Chinese exploit devs
0:00 / 56:51

Risky Business #768 -- CSRB will investigate China's Wiretap Hacks

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

Adam Boileau
Adam Boileau

Technology Editor

On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news, including:

  • CSRB to investigate China’s telco-wiretapping hacks
  • Euro law enforcement takes down the Redline infostealer
  • Someone steals Fed crypto… and then tries to quietly sneak it back in
  • Russia sentences REvil guys to … jail? Really?
  • Apple private cloud compute gets a proper bug bounty program
  • And much, much more.

This week’s episode is sponsored by Material Security, who help navigate the mess of cloud productivity data security. Daniel Ayala - Chief Security and Trust Officer at Dotmatics - is a Material customer, and joins Pat and Material Security’s Rajan Kapoor to talk about how to wrangle securing data that ends up in corporate cloud email and file stores.

This episode is also available on Youtube.

Risky Business #768 -- CSRB will investigate China's Wiretap Hacks
0:00 / 51:37

Risky Biz Soap Box: Thinkst Canary's decade of deception

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

In this Soap Box edition of the podcast Patrick Gray chats with Thinkst Canary founder Haroon Meer about his “decade of deception”, including:

  • A history of Thinkst Canary including a recap of what they actually do
  • A look at why they’re still really the only major player in the deception game
  • A look at what companies like Microsoft are doing with deception
  • Why security startups should have conference booths
Risky Biz Soap Box: Thinkst Canary's decade of deception
0:00 / 37:56

Risky Business #767 – SEC fines Check Point, Mimecast, Avaya and Unisys over hacks

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

Adam Boileau
Adam Boileau

Technology Editor

On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news, including:

  • SEC fines tech firms for downplaying the Solarwinds hacks
  • Anonymous Sudan still looks and quacks like a Russian duck
  • Apple proposes max 10 day TLS certificate life
  • Oopsie! Microsoft loses a bunch of cloud logs
  • Veeam and Fortinet are bad and should feel bad
  • North Koreans are good (at hacking)
  • And much, much more.

This week’s episode is sponsored by Proofpoint. Chief Strategy Officer Ryan Kalember joins to talk about their work keeping up with prolific threat actor SocGholish.

This episode is also available on Youtube.

Risky Business #767 – SEC fines Check Point, Mimecast, Avaya and Unisys over hacks
0:00 / 62:21

Risky Business #766 – China hacks America's lawful intercept systems

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

Adam Boileau
Adam Boileau

Technology Editor

On this week’s show Patrick Gray and Adam Boileau discuss the week’s infosec news, including:

  • Chinese spooks all up in western telco lawful intercept
  • Jerks ruin the Internet Archive’s day
  • Microsoft drops a great report with a bad chart
  • The feds make their own crypto currency and get it pumped
  • Forti-, Palo- and Ivanti-fail
  • And much, much more.

This week’s episode is sponsored by detection-as-code vendor Panther. Casey Hill, Panther’s Director Product Management joins to discuss why the old “just bung it all in a data lake and… ???… “ approach hasn’t worked out, and what smart teams do to handle their logs.

This episode is also available on [Youtube].(https://youtu.be/86zy6DcwtbE)

Risky Business #766 – China hacks America's lawful intercept systems
0:00 / 53:57

Snake Oilers: Sandfly Security, Permiso and Wiz

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

In this edition of Snake Oilers we hear pitches from three security vendors:

  • Sandfly Security: An agentless Linux security platform that actually sounds very cool
  • Permiso: An identity security platform founded by ex FireEye folks
  • Wiz: The cloud security giant is getting in on code security scanning

You can watch this edition of Snake Oilers on YouTube here.

Snake Oilers: Sandfly Security, Permiso and Wiz
0:00 / 40:22

Risky Business #765 -- The Kaspersky switcheroo

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

Adam Boileau
Adam Boileau

Technology Editor

Patrick Gray and Adam Boileau discuss the week’s infosec news with everyone’s favourite ex-NSA big-brain, Rob Joyce. They talk through:

  • Musk and Durov bow to government pressure
  • Tiktok rushes to ban authoritarian propagandists
  • The US doesn’t want Chinese software in its cars
  • Kaspersky replaces itself with an AV no one has ever heard of
  • Aussie police chalk up another crimephone takedown
  • Press Win-R Ctrl-V to prove you’re human
  • And much, much more.

This week’s show is brought to you by Stairwell, and Stairwell’s founder Mike Wiacek will be along to talk about how people are using their platform to hunt down detection resistant malware.

A video version of this episode is also available on Youtube.

Risky Business #765 -- The Kaspersky switcheroo
0:00 / 65:41