Regular cybersecurity news updates from the Risky Business team...
…
continue reading
Risky Business is a weekly information security podcast featuring news and in-depth interviews with industry luminaries. Launched in February 2007, Risky Business is a must-listen digest for information security pros. With a running time of approximately 50-60 minutes, Risky Business is pacy; a security podcast without the waffle.
…
continue reading
…
continue reading
Risky Business Extra is Risky.biz's second podcast feed. Here you'll find recorded security presentations and lectures, single-shot interviews with industry players, freelance contributions and more. Clearly labelled, single-shot sponsored content sometimes appears in this feed.
…
continue reading
1
Risky Bulletin: Russian hackers abuse app-specific passwords to bypass MFA
7:46
7:46
Play later
Play later
Lists
Like
Liked
7:46Russian hackers abuse app-specific passwords to bypass multi-factor, the tenth Salt Typhoon victim is identified, Predatory Sparrow destroys $90 million from an Iranian crypto-exchange, and Argentina arrests a Russian disinfo gang. Show notes
…
continue reading
1
Srsly Risky Biz: Data brokers are a killer's best friend
22:28
22:28
Play later
Play later
Lists
Like
Liked
22:28Tom Uren and Patrick Gray talk about a Minnesota man who used people-search services to locate, stalk and eventually murder political targets. They also discuss purported hacktivist group Predatory Sparrow weighing in on the Iran-Israel conflict. It has attacked Iran’s financial system including a bank associated with the Iranian Revolutionary Guar…
…
continue reading
1
Risky Business #796 -- With special guest co-host Chris Krebs
1:01:04
1:01:04
Play later
Play later
Lists
Like
Liked
1:01:04On this week’s show Patrick Gray and Adam Boileau are joined by special guest Chris Krebs to discuss the week’s cybersecurity news. They talk through: Israeli “hacktivists” take out an Iranian state-owned bank Scattered-spider and friends pivot into attacking insurers Securing identities in a cloud-first world keeps us awake at night Microsoft take…
…
continue reading
1
Risky Business #796 -- With special guest co-host Chris Krebs
1:01:04
1:01:04
Play later
Play later
Lists
Like
Liked
1:01:04On this week’s show Patrick Gray and Adam Boileau are joined by special guest Chris Krebs to discuss the week’s cybersecurity news. They talk through: Israeli “hacktivists” take out an Iranian state-owned bank Scattered-spider and friends pivot into attacking insurers Securing identities in a cloud-first world keeps us awake at night Microsoft take…
…
continue reading
1
Risky Bulletin: Israel-linked hackers claim Iran bank disruption
7:03
7:03
Play later
Play later
Lists
Like
Liked
7:03An Israeli-linked hacktivist group claims attack on Iranian bank, Chrome gets a new prompt to prevent local network attacks, a Century-old German napkin company goes under following ransomware attack, and Europol takes down the Archetyp dark web market. Show notes
…
continue reading
1
Between Two Nerds: Why modern influence operations suck
30:21
30:21
Play later
Play later
Lists
Like
Liked
30:21In this edition of Between Two Nerds Tom Uren and The Grugq take a look at a new AI-powered covert influence campaign and compare it to World War 2 efforts. This episode is also available on Youtube. Show notes
…
continue reading
1
Risky Bulletin: Washington Post email accounts hacked
5:48
5:48
Play later
Play later
Lists
Like
Liked
5:48Email accounts compromised at the Washington Post, shady email provider Cock.li gets hacked, hackers steal data from a French university, and the EU invests €145 million in hospital cybersecurity. Show notes
…
continue reading
1
Soap Box: AI has entered the SOC, and it ain't going anywhere
30:58
30:58
Play later
Play later
Lists
Like
Liked
30:58In this sponsored Soap Box edition of the Risky Business podcast Patrick Gray chats with Dropzone AI founder Ed Wu about the role of LLMs in the SOC. The debate about whether AI agents are going to wind up in the SOC is over, they’ve already arrived. But what are they good for? What are they NOT good for? And where else will we see AI popping up in…
…
continue reading
1
Soap Box: AI has entered the SOC, and it ain't going anywhere
30:58
30:58
Play later
Play later
Lists
Like
Liked
30:58In this sponsored Soap Box edition of the Risky Business podcast Patrick Gray chats with Dropzone AI founder Ed Wu about the role of LLMs in the SOC. The debate about whether AI agents are going to wind up in the SOC is over, they’ve already arrived. But what are they good for? What are they NOT good for? And where else will we see AI popping up in…
…
continue reading
In this Risky Bulletin sponsor interview Michael Leland, Field CTO of Island, talks about how Island manages risks from extensions, phishing and infostealers. Even when credentials are stolen, it is still not game over and there are still ways to prevent data loss and breaches. Show notes
…
continue reading
1
Risky Bulletin: Predator spyware alive despite US sanctions
7:47
7:47
Play later
Play later
Lists
Like
Liked
7:47Intellexa is alive and well despite US sanctions, Paragon spyware used a zero-click iMessage exploit, South Korea’s largest online bookstore gets ransomwared, and law enforcement takes down several cybercrime operations. Show notes
…
continue reading
1
Srsly Risky Biz: Trump scales back Biden product security demands
19:26
19:26
Play later
Play later
Lists
Like
Liked
19:26Tom Uren and Patrick Gray talk about how a Trump executive order has scaled back the government’s cyber security ambitions. The carrots and sticks that would have been used to encourage organisations to adopt stricter security standards are gone. They also discuss North Korea’s use of AI in its IT worker scam and the emergence of espionage-as-a-ser…
…
continue reading
1
Risky Business #795 -- How The Com is hacking Salesforce tenants
1:07:34
1:07:34
Play later
Play later
Lists
Like
Liked
1:07:34On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news: New York Times gets a little stolen Russian FSB data as a treat iVerify spots possible evidence of iOS exploitation against the Harris-Walz campaign Researcher figures out a trick to get Google account holders’ full names and phone numbers Major US food distrib…
…
continue reading
1
Risky Business #795 -- How The Com is hacking Salesforce tenants
1:07:34
1:07:34
Play later
Play later
Lists
Like
Liked
1:07:34On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news: New York Times gets a little stolen Russian FSB data as a treat iVerify spots possible evidence of iOS exploitation against the Harris-Walz campaign Researcher figures out a trick to get Google account holders’ full names and phone numbers Major US food distrib…
…
continue reading
1
Risky Bulletin: SentinelOne dodges a Chinese APT hack
5:13
5:13
Play later
Play later
Lists
Like
Liked
5:13SentinelOne dodges a Chinese APT hack, anonymous sources point to more Salt Typhoon victims, a cyberattack disrupts grocery deliveries in the US, and 140 arrested in Kazakhstan for selling citizens’ data. Show notes
…
continue reading
1
Between Two Nerds: How Russia's sabotage team got into hacking
37:05
37:05
Play later
Play later
Lists
Like
Liked
37:05In this edition of Between Two Nerds Tom Uren and The Grugq take a look at the hackers of Unit 29155, Russian military intelligence’s sabotage and assassination group. This episode is also available on Youtube. Show notes The Insider 'Hidden Bear' investigation Japanese Tokuryū Ukraine SSSCIP report H1 2023…
…
continue reading
1
Risky Bulletin: EU launches its own DNS service
6:12
6:12
Play later
Play later
Lists
Like
Liked
6:12The EU launches its own DNS service, Trump revises previous administrations’ cyber executive orders, a supply chain attack hits popular NPM packages, and mysterious iOS attacks spotted in the wild. Show notes
…
continue reading
1
Sponsored: Phishing crews have gotten really good at evasion
18:19
18:19
Play later
Play later
Lists
Like
Liked
18:19In this sponsored interview, Casey Ellis interviews Push Security co-founder and Chief Product Officer Jacques Louw about how good phishing crews have gotten at evading detection. Attackers are hiding their payloads behind legitimate bot-detection tools to stop things like email security gateways from seeing them, as well as locking up phishing pag…
…
continue reading
1
Risky Bulletin: APTeens go after Salesforce data
7:02
7:02
Play later
Play later
Lists
Like
Liked
7:02A hacking group goes after Salesforce data, the FBI takes down the BidenCash carding forum, China offers rewards for Taiwanese military hackers, and high risk bugs are patched in enterprise software from HPE and Infoblox. Show notes
…
continue reading
1
Srsly Risky Biz: Law Enforcement Is Finally Making Progress on Ransomware
18:43
18:43
Play later
Play later
Lists
Like
Liked
18:43Tom Uren and Patrick Gray talk about how Operation Endgame, the multinational law enforcement effort to tackle ransomware is approaching the problem holisitically. It’s tackling the enablers of ransomware and although it won’t eliminate the crime, it’ll make it harder for criminals. They also discuss the spyware app that helped to dismantle the Syr…
…
continue reading