Risky Business Video
December 17, 2025
Risky Business Weekly (819): Venezuela (credibly?!) blames USA for wiper attack
Presented by
CEO and Publisher
Technology Editor
In the final show of 2025, Patrick Gray and Adam Boileau discuss the week’s cybersecurity news, including:
- React2Shell attacks continue, surprising no one
- The unholy combination of OAuth consent phishing, social engineering and Azure CLI
- Venezuela’s state oil firm gets ransomware’d, blames US… but what if it really is a US cyber op?!
- Russian junk-hacktivist gets indicted for cybering critical… err… a car wash and a fountain
- Microsoft finally turns RC4 off by default in Active Directory Kerberos
- Traefik’s TLS verify=on … turns it off, whoopsie 🤡
This week’s episode is sponsored by Sublime Security, makers of an email filtering solution that’s up for dealing with modern problems. Founder and CEO Josh Kamdjou joins to talk about calendar invite phishing, and the extra steps they’ve had to take to reach into people’s calendars and fix the mess. …