Podcasts about cybercriminals

  • 708PODCASTS
  • 1,357EPISODES
  • 30mAVG DURATION
  • 5WEEKLY NEW EPISODES
  • Aug 19, 2026LATEST

POPULARITY

20192020202120222023202420252026

Categories



Best podcasts about cybercriminals

Show all podcasts related to cybercriminals

Latest podcast episodes about cybercriminals

Risky Business
Risky Business #849 -- Trump will unleash contractors on cybercriminals

Risky Business

Play Episode Listen Later Aug 19, 2026 59:06


On this week's show Patrick Gray and James Wilson are joined by guest co-host Dmitri Alperovitch to talk through the week's news, including: Trump's memo authorising the private sector to release the cyber hounds is fine, don't worry! OpenAI finally decides to add a few safety measures after the whole “oopsie we committed some felonies” thing Anthropic's models start a turf war when given the same task, surprising… nobody We can't figure out whether a device that can hack a 737 is showboating stunt hacking or … something more real-world cool. Or both. Or something. Much, much more This week's show is brought to you by threat hunt and detection platform Nebulock. Founder and CEO Damien Lewke joins Pat to chat about what it looks like when you try to reinvent the SIEM in 2026 on a clean sheet of paper. This episode is also available on YouTube Show notes Trump signs memo authorizing private sector to launch cyberattacks | washingtonpost.com Trump taps cyber firms to go on offensive against criminals | therecord.media OpenAI Overhauls Safety Protocols After Its AI Agents Went Rogue | wired.com Pacing model development in an era of cyber-critical capabilities | Anthropic set AI agents loose on the same task. They started a turf war. | TechCrunch Security Researchers observe first ‘near-autonomous' AI attack on government target in Taiwan | cyberscoop.com Researchers find AI-powered hacking tools for sale in underground forums | Cybersecurity Dive Terabytes of credentials leaked in massive supply-chain attack | arstechnica.com Trivy, Not LiteLLM Behind the 2,500 Org Compromise | securityweek.com Ukraine says cyberattack hit Russian e-commerce giant Wildberries amid drone strikes | The Record ‘Unprecedented' number of Apple users received recent spyware alert, say investigators | TechCrunch Security This Coin-Sized Device Can Hack a Boeing 737 | wired.com "City-Forum" data-theft attacks target Salesforce, ServiceNow portals | BleepingComputer Max severity SAP Commerce Cloud flaw now targeted in attacks | BleepingComputer Shell investigates 'potential incident' after Clop data theft claims | BleepingComputer Philips and GE investigating Clop ransomware data theft claims | BleepingComputer Uber Freight reportedly investigating after hacking group claims data breach | TechCrunch Security Details emerge on BlackFile's recent attacks on financial companies | cyberscoop.com After Microsoft threatened legal action, a security researcher publishes a new Windows zero-day bug | TechCrunch Security Kimwolf botnet rebuilt to survive takedowns, researchers say | cyberscoop.com Hundreds of fake Chrome VPN extensions route traffic through a proxy | BleepingComputer Deepfake hiccup unmasks suspected digital certificate fraudster | theregister.com Vulnerability giving attackers full control of Macs is under active exploitation | arstechnica.com Critical VMware vCenter RCE flaw exploited for reverse SSH access | BleepingComputer Poland probes MyDr healthcare software breach potentially affecting 19 million people | therecord.media Crypto hardware wallet owners face fresh security risks after recent spate of personal data thefts | TechCrunch Security [un]prompted.au — AI × Cybersecurity Conference · Sydney, 18–19 September 2026 | [un]prompted.au

Breakfast with Refilwe Moloto
Don't let your children be victims of financially-motivated sextortion scams

Breakfast with Refilwe Moloto

Play Episode Listen Later Aug 6, 2026 5:43 Transcription Available


Cybercriminals are targeting children and teenagers between the ages of 12 and 17 in what has become known as financially-motivated sextortion scams. Using fake profiles and private online conversations, they lure their victims into sharing intimate photographs of themselves before making threats to release them unless monies are paid over. Jessica Shelver is the founder of The Digital Bodyguard and shares with Lester Kiewit how to spot the signs and prevent the situation from escalating too far. Good Morning Cape Town with Lester Kiewit is a podcast of the CapeTalk breakfast show. This programme is your authentic Cape Town wake-up call. Good Morning Cape Town with Lester Kiewit is informative, enlightening and accessible. The team’s ability to spot & share relevant and unusual stories make the programme inclusive and thought-provoking. Don’t miss the popular World View feature at 7:45am daily. Listen out for #LesterInYourLounge which is an outside broadcast – from the home of a listener in a different part of Cape Town - on the first Wednesday of every month. This show introduces you to interesting Capetonians as well as their favourite communities, habits, local personalities and neighbourhood news. Thank you for listening to a podcast from Good Morning Cape Town with Lester Kiewit. Listen live on Primedia+ weekdays between 06:00 and 09:00 (SA Time) to Good Morning CapeTalk with Lester Kiewit broadcast on CapeTalk https://buff.ly/NnFM3Nk For more from the show go to https://buff.ly/xGkqLbT or find all the catch-up podcasts here https://buff.ly/f9Eeb7i Subscribe to the CapeTalk Daily and Weekly Newsletters https://buff.ly/sbvVZD5 Follow us on social media CapeTalk on Facebook: https://www.facebook.com/CapeTalk CapeTalk on TikTok: https://www.tiktok.com/@capetalk CapeTalk on Instagram: https://www.instagram.com/ CapeTalk on X: https://x.com/CapeTalk CapeTalk on YouTube: https://www.youtube.com/@CapeTalkSee omnystudio.com/listener for privacy information.

Hacking Humans
Class is in session—for cybercriminals. [OMITB]

Hacking Humans

Play Episode Listen Later Aug 4, 2026 49:58


Welcome in! You've entered, Only Malware in the Building. Join us each month to sip tea and solve mysteries about today's most interesting threats. Your host is ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Selena Larson⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠, ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Proofpoint⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠ intelligence analyst and host of their podcast ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠DISCARDED⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠. Inspired by the residents of a building in New York's exclusive upper west side, Selena is joined by her co-hosts ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠N2K Networks⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠ ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Dave Bittner⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠ and ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Keith Mularski⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠, former FBI cybercrime investigator and now Chief Global Ambassador at ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Qintel⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠. Being a security researcher is a bit like being a detective: you gather clues, analyze the evidence, and consult the experts to solve the cyber puzzle. This week, Today, while Keith is off, Dave and Selena kick off a back-to-school special, exploring the cyber threats students, parents, educators, and universities should have on their radar. They examine the rise in job scams targeting university communities, discuss recent espionage activity aimed at higher education institutions in the U.S. and Canada, and look at how cybercriminals prey on younger audiences through online games, YouTube, and social media. From fake game cracks delivering information stealers to sextortion schemes targeting teens, they break down the tactics attackers are using and share practical advice for staying safe as the new school year begins. Sources:  ⁠⁠⁠⁠⁠ Job Scams Using Bioscience Lures Target Universities One Email Closer to the Edge: UNK_MassTraction & the Physics of Exploitation

Only Malware in the Building
Class is in session—for cybercriminals.

Only Malware in the Building

Play Episode Listen Later Aug 4, 2026 49:58


Welcome in! You've entered, Only Malware in the Building. Join us each month to sip tea and solve mysteries about today's most interesting threats. Your host is ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Selena Larson⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠, ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Proofpoint⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠ intelligence analyst and host of their podcast ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠DISCARDED⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠. Inspired by the residents of a building in New York's exclusive upper west side, Selena is joined by her co-hosts ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠N2K Networks⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠ ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Dave Bittner⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠ and ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Keith Mularski⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠, former FBI cybercrime investigator and now Chief Global Ambassador at ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Qintel⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠. Being a security researcher is a bit like being a detective: you gather clues, analyze the evidence, and consult the experts to solve the cyber puzzle. This week, Today, while Keith is off, Dave and Selena kick off a back-to-school special, exploring the cyber threats students, parents, educators, and universities should have on their radar. They examine the rise in job scams targeting university communities, discuss recent espionage activity aimed at higher education institutions in the U.S. and Canada, and look at how cybercriminals prey on younger audiences through online games, YouTube, and social media. From fake game cracks delivering information stealers to sextortion schemes targeting teens, they break down the tactics attackers are using and share practical advice for staying safe as the new school year begins. Sources:  ⁠⁠⁠⁠⁠ Job Scams Using Bioscience Lures Target Universities One Email Closer to the Edge: UNK_MassTraction & the Physics of Exploitation

Highlights from Newstalk Breakfast
How does "digital breadcrumbs" help cybercriminals steal your identity?

Highlights from Newstalk Breakfast

Play Episode Listen Later Jul 27, 2026 5:09


Cybercriminals are using AI to piece together "digital breadcrumbs", like social media check-ins, fitness app data, public records, and leaked passwords, to build comprehensive profiles for identity theft.Newstalk's Technology Correspondent Jess Kelly, spoke to Newstalk Breakfast to expalin why

Newstalk Breakfast Highlights
How does "digital breadcrumbs" help cybercriminals steal your identity?

Newstalk Breakfast Highlights

Play Episode Listen Later Jul 27, 2026 5:09


Cybercriminals are using AI to piece together "digital breadcrumbs", like social media check-ins, fitness app data, public records, and leaked passwords, to build comprehensive profiles for identity theft.Newstalk's Technology Correspondent Jess Kelly, spoke to Newstalk Breakfast to expalin why

Security Now (MP3)
SN 1088: A Nefarious Novel Use for AI - Ransomware Negotiations Go High-Tech

Security Now (MP3)

Play Episode Listen Later Jul 22, 2026 167:29


Cybercriminals are harnessing AI not to break in, but to make sense of their stolen loot and increase their leverage in multi-million dollar ransomware heists. This episode unpacks how AI is now turbocharging extortion and negotiations on the dark side. The "bone crushing" didn't happen this month. Revisiting and inspecting July's Patch Tuesday. A widespread and worrisome flaw in OpenSSL. Claude can now access your 1Password credentials. Bitwarden is aware that we need whole new security. The day ends in "y" so a new prompt injection attack. A true (and rare) core Wordpress emergency update. Lots of interesting listener feedback. And new ways AI is being used by bad guys Show Notes - https://www.grc.com/sn/SN-1088-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: canary.tools/twit - use code: TWIT zscaler.com/security adaptivesecurity.com joindeleteme.com/twit-biz arcticwolf.com/trends

All TWiT.tv Shows (MP3)
Security Now 1088: A Nefarious Novel Use for AI

All TWiT.tv Shows (MP3)

Play Episode Listen Later Jul 22, 2026 167:29 Transcription Available


Cybercriminals are harnessing AI not to break in, but to make sense of their stolen loot and increase their leverage in multi-million dollar ransomware heists. This episode unpacks how AI is now turbocharging extortion and negotiations on the dark side. The "bone crushing" didn't happen this month. Revisiting and inspecting July's Patch Tuesday. A widespread and worrisome flaw in OpenSSL. Claude can now access your 1Password credentials. Bitwarden is aware that we need whole new security. The day ends in "y" so a new prompt injection attack. A true (and rare) core Wordpress emergency update. Lots of interesting listener feedback. And new ways AI is being used by bad guys Show Notes - https://www.grc.com/sn/SN-1088-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: canary.tools/twit - use code: TWIT zscaler.com/security adaptivesecurity.com joindeleteme.com/twit-biz arcticwolf.com/trends

Security Now (Video HD)
SN 1088: A Nefarious Novel Use for AI - Ransomware Negotiations Go High-Tech

Security Now (Video HD)

Play Episode Listen Later Jul 22, 2026 167:29 Transcription Available


Cybercriminals are harnessing AI not to break in, but to make sense of their stolen loot and increase their leverage in multi-million dollar ransomware heists. This episode unpacks how AI is now turbocharging extortion and negotiations on the dark side. The "bone crushing" didn't happen this month. Revisiting and inspecting July's Patch Tuesday. A widespread and worrisome flaw in OpenSSL. Claude can now access your 1Password credentials. Bitwarden is aware that we need whole new security. The day ends in "y" so a new prompt injection attack. A true (and rare) core Wordpress emergency update. Lots of interesting listener feedback. And new ways AI is being used by bad guys Show Notes - https://www.grc.com/sn/SN-1088-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: canary.tools/twit - use code: TWIT zscaler.com/security adaptivesecurity.com joindeleteme.com/twit-biz arcticwolf.com/trends

Security Now (Video HI)
SN 1088: A Nefarious Novel Use for AI - Ransomware Negotiations Go High-Tech

Security Now (Video HI)

Play Episode Listen Later Jul 22, 2026 167:29 Transcription Available


Cybercriminals are harnessing AI not to break in, but to make sense of their stolen loot and increase their leverage in multi-million dollar ransomware heists. This episode unpacks how AI is now turbocharging extortion and negotiations on the dark side. The "bone crushing" didn't happen this month. Revisiting and inspecting July's Patch Tuesday. A widespread and worrisome flaw in OpenSSL. Claude can now access your 1Password credentials. Bitwarden is aware that we need whole new security. The day ends in "y" so a new prompt injection attack. A true (and rare) core Wordpress emergency update. Lots of interesting listener feedback. And new ways AI is being used by bad guys Show Notes - https://www.grc.com/sn/SN-1088-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: canary.tools/twit - use code: TWIT zscaler.com/security adaptivesecurity.com joindeleteme.com/twit-biz arcticwolf.com/trends

Radio Leo (Audio)
Security Now 1088: A Nefarious Novel Use for AI

Radio Leo (Audio)

Play Episode Listen Later Jul 22, 2026 167:29 Transcription Available


Cybercriminals are harnessing AI not to break in, but to make sense of their stolen loot and increase their leverage in multi-million dollar ransomware heists. This episode unpacks how AI is now turbocharging extortion and negotiations on the dark side. The "bone crushing" didn't happen this month. Revisiting and inspecting July's Patch Tuesday. A widespread and worrisome flaw in OpenSSL. Claude can now access your 1Password credentials. Bitwarden is aware that we need whole new security. The day ends in "y" so a new prompt injection attack. A true (and rare) core Wordpress emergency update. Lots of interesting listener feedback. And new ways AI is being used by bad guys Show Notes - https://www.grc.com/sn/SN-1088-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: canary.tools/twit - use code: TWIT zscaler.com/security adaptivesecurity.com joindeleteme.com/twit-biz arcticwolf.com/trends

Security Now (Video LO)
SN 1088: A Nefarious Novel Use for AI - Ransomware Negotiations Go High-Tech

Security Now (Video LO)

Play Episode Listen Later Jul 22, 2026 167:29 Transcription Available


Cybercriminals are harnessing AI not to break in, but to make sense of their stolen loot and increase their leverage in multi-million dollar ransomware heists. This episode unpacks how AI is now turbocharging extortion and negotiations on the dark side. The "bone crushing" didn't happen this month. Revisiting and inspecting July's Patch Tuesday. A widespread and worrisome flaw in OpenSSL. Claude can now access your 1Password credentials. Bitwarden is aware that we need whole new security. The day ends in "y" so a new prompt injection attack. A true (and rare) core Wordpress emergency update. Lots of interesting listener feedback. And new ways AI is being used by bad guys Show Notes - https://www.grc.com/sn/SN-1088-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: canary.tools/twit - use code: TWIT zscaler.com/security adaptivesecurity.com joindeleteme.com/twit-biz arcticwolf.com/trends

All TWiT.tv Shows (Video LO)
Security Now 1088: A Nefarious Novel Use for AI

All TWiT.tv Shows (Video LO)

Play Episode Listen Later Jul 22, 2026 167:29 Transcription Available


Cybercriminals are harnessing AI not to break in, but to make sense of their stolen loot and increase their leverage in multi-million dollar ransomware heists. This episode unpacks how AI is now turbocharging extortion and negotiations on the dark side. The "bone crushing" didn't happen this month. Revisiting and inspecting July's Patch Tuesday. A widespread and worrisome flaw in OpenSSL. Claude can now access your 1Password credentials. Bitwarden is aware that we need whole new security. The day ends in "y" so a new prompt injection attack. A true (and rare) core Wordpress emergency update. Lots of interesting listener feedback. And new ways AI is being used by bad guys Show Notes - https://www.grc.com/sn/SN-1088-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: canary.tools/twit - use code: TWIT zscaler.com/security adaptivesecurity.com joindeleteme.com/twit-biz arcticwolf.com/trends

Radio Leo (Video HD)
Security Now 1088: A Nefarious Novel Use for AI

Radio Leo (Video HD)

Play Episode Listen Later Jul 22, 2026 167:29 Transcription Available


Cybercriminals are harnessing AI not to break in, but to make sense of their stolen loot and increase their leverage in multi-million dollar ransomware heists. This episode unpacks how AI is now turbocharging extortion and negotiations on the dark side. The "bone crushing" didn't happen this month. Revisiting and inspecting July's Patch Tuesday. A widespread and worrisome flaw in OpenSSL. Claude can now access your 1Password credentials. Bitwarden is aware that we need whole new security. The day ends in "y" so a new prompt injection attack. A true (and rare) core Wordpress emergency update. Lots of interesting listener feedback. And new ways AI is being used by bad guys Show Notes - https://www.grc.com/sn/SN-1088-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: canary.tools/twit - use code: TWIT zscaler.com/security adaptivesecurity.com joindeleteme.com/twit-biz arcticwolf.com/trends

No Password Required
No Password Required Podcast Episode 75 - Philipp Leo

No Password Required

Play Episode Listen Later Jul 20, 2026 43:01


Philipp Leo — Swiss cyber expert, diplomat, and military officer, always two steps ahead of the storm No Password Required Season 7: Episode 7 - Philipp Leo Philipp Leo co-founded Leo & Muhly Cyber Advisory, a strategic advisory firm specializing in cyber risk, resilience, and geopolitics. Now consulting with governments and private firms in Switzerland and abroad, Philipp has served as a UN observer on the Korean DMZ, trained the next generation of Swiss Armed Forces cyber specialists, and taught at the University of Glasgow. He is also part of Europol's network of experts in data protection and cybercrime and has published stateside in MIT Sloan Management Review. In this episode, Philipp shares his journey from a Swiss bank he couldn't wait to leave to the Korean border, and eventually to the boardrooms of executives who still think cyber risk is someone else's problem. He breaks down the three most dangerous misconceptions executives have about cyber risk, why the CISO is too often a poster child rather than a decision-maker, and the challenges to cyber insurance in Europe. Cyber attorney Jack Clabby and co-host Kayley Jerrell talk with Philipp about his live crisis simulation that nobody can win, how to train cyber warriors, and how nation-state cyber conflict is looking more and more like the age of Caribbean pirates. In the Lifestyle Polygraph, Philipp reveals his favorite book, his eye-opening, go-to celebratory drink, and the weight of his luxury umbrella. He also shares his favorite escape when the complexity of modern life gets to be too much and introduces us to a Zurich commuting tradition that involves swimming home through a river.   In this episode: Philipp's journey from a Swiss bank he couldn't wait to leave to the Korean DMZ and eventually the boardrooms of Fortune 500 executives (00:27 - 02:22) The three most dangerous misconceptions executives have about cyber risk and why cyber risk is a corporate problem, not a technology problem (04:19 - 05:30) How Philipp's live crisis simulation works, why nobody can win it, and why that's exactly the point (05:49 - 08:47) Why cyber crisis teams have improved dramatically but leadership boards remain the weakest link (06:30 - 08:47) The CISO poster child problem: why most CISOs have the accountability without the authority (09:54 - 11:00) Why cyber insurance in Europe has largely failed to deliver and what happens when attackers find your policy before you do (11:17 - 13:44) The OFAC twist: what happens mid-exercise when a Swiss bank decides to pay and then learns the attackers are on the sanctions list (18:38 - 19:31) Training Swiss Armed Forces cyber specialists and why the first lesson is that the other side plays by no rules (19:47 - 21:37) Whether nation states can ever beat the cyber threat and why the east side of Vienna tells you everything you need to know (21:54 - 23:25) Why nation-state cyber conflict has become remarkably similar to the age of Caribbean pirates (23:46 - 24:23) The Lifestyle Polygraph: Endurance, Campari Red Bull, a three-ounce umbrella, a cabin in the Alps, and swimming home through a Zurich river (00:04 - 12:03)   Timestamp Highlights: (00:27) From Swiss banker to UN observer on the Korean DMZ (04:19) The three misconceptions executives have about cyber risk (05:49) The crisis simulation nobody can win and why that's the whole point (09:54) Why the CISO is too often a poster child without real power (11:17) Why cyber insurance in Europe has largely failed (18:38) The OFAC twist that stopped a Swiss bank mid-exercise (19:47) Training Swiss cyber warriors to understand the other side plays by no rules (21:54) Nation states vs. cyber threats: are defenders always outpaced? (23:46) How nation-state cyber conflict mirrors the age of Caribbean pirates (07:25) Always prepared: the three-ounce umbrella that nobody sees   Resources & Links: Leo & Muhly Cyber Advisory  Philipp Leo on LinkedIn ThreatLocker — Presenting sponsor DerScanner — Supporter of this podcast Cyber Florida — The Mother Ship  

The POWER Business Show
Cybercriminals are targeting South Africa's sports clubs - report

The POWER Business Show

Play Episode Listen Later Jul 17, 2026 11:55


Nosipho Radebe speaks to Sarah Watson, Cyber Underwriter at iTOO Special RisksSee omnystudio.com/listener for privacy information.

The Aubrey Masango Show
Crime Time: Cybercriminals Are Targeting SA Sports Clubs

The Aubrey Masango Show

Play Episode Listen Later Jul 16, 2026 10:43 Transcription Available


Aubrey Masango speaks to Ryan van de Coolwijk, Managing Executive at iTOO Special Risks (Pty) Ltd, about how cybercriminals are targeting South Africa’s sports clubs. They further discuss how these attacks work, why WhatsApp scams and fake invoices are wiping out club budgets, and the simple, low-cost steps every club can take right now to protect its members. Tags: 702, Aubrey Masango show, Aubrey Masango, Bra Aubrey, Crime Time, Ryan van de Coolwijk, Cybercriminals, Sports club, WhatsApp scams The Aubrey Masango Show is presented by late night radio broadcaster Aubrey Masango. Aubrey hosts in-depth interviews on controversial political issues and chats to experts offering life advice and guidance in areas of psychology, personal finance and more. All Aubrey’s interviews are podcasted for you to catch-up and listen. Thank you for listening to this podcast from The Aubrey Masango Show. Listen live on weekdays between 20:00 and 24:00 (SA Time) to The Aubrey Masango Show broadcast on 702 https://buff.ly/gk3y0Kj and on CapeTalk between 20:00 and 21:00 (SA Time) https://buff.ly/NnFM3Nk Find out more about the show here https://buff.ly/lzyKCv0 and get all the catch-up podcasts https://buff.ly/rT6znsn Subscribe to the 702 and CapeTalk Daily and Weekly Newsletters https://buff.ly/v5mfet Follow us on social media: 702 on Facebook: https://www.facebook.com/TalkRadio702 702 on TikTok: https://www.tiktok.com/@talkradio702 702 on Instagram: https://www.instagram.com/talkradio702/ 702 on X: https://x.com/Radio702 702 on YouTube: https://www.youtube.com/@radio702 CapeTalk on Facebook: https://www.facebook.com/CapeTalk CapeTalk on TikTok: https://www.tiktok.com/@capetalk CapeTalk on Instagram: https://www.instagram.com/ CapeTalk on X: https://x.com/CapeTalk CapeTalk on YouTube: https://www.youtube.com/@CapeTalk567 See omnystudio.com/listener for privacy information.

Your Lot and Parcel
Cybercriminals Use AI, Protect Your Data

Your Lot and Parcel

Play Episode Listen Later Jul 2, 2026 42:46


 She  is widely recognized as The Queen of Online Safety, is the Founder and CEO of Smarter Online Safety and a highly sought-after keynote speaker. Her signature topic, “Digital Self-Defense: The New Survival Skill No One Is Teaching,” is also the subject of her forthcoming book. Jocelyn is a trusted advisor to CEOs, CIOs, celebrities, and families, empowering people to stay safe, stay sane, and take control of their digital lives in an increasingly dangerous online world.After cybercriminals devastated her finances, career, health, and marriage, Jocelyn transformed her personal experience into practical, actionable strategies to help others.She was named as the Top 10 Woman in Cybersecurity; Jocelyn is a leading voice in online safety and digital resilience.She guides Fortune 500 leaders, entrepreneurs, and everyday individuals to protect what matters most.She breaks complex cybersecurity concepts into simple, powerful survival skills anyone can use.She is committed to equipping people with the mindset and tools to thrive in the AI-driven era of cybercrime. https://www.jocelynking.com/http://www.yourlotandparcel.orgSupport the show

The Tech Blog Writer Podcast
Binalyze: The Culture Change Cybersecurity Can No Longer Ignore

The Tech Blog Writer Podcast

Play Episode Listen Later Jun 26, 2026 19:43


What if the biggest weakness in cybersecurity isn't the technology, but the way defenders communicate with each other? Cybercriminals openly exchange techniques, vulnerabilities, and attack methods, constantly learning from one another. Meanwhile, many organizations remain reluctant to share details of breaches, investigations, or lessons learned. In this episode, I sit down with Lee Sult, Chief Investigator at Binalyze, to discuss why that imbalance is creating an advantage for attackers and what the industry can do to change it. Drawing on almost two decades in digital forensics and incident response, including work with Palantir, law enforcement agencies, and government organizations, Lee explains why cybersecurity should learn from industries such as aviation and emergency services, where every major incident becomes an opportunity for everyone to improve. We discuss why incident response needs to move beyond reacting to alerts, how proactive threat hunting can reduce attacker dwell time, and why repeatable investigation processes are becoming just as important as the security tools themselves. We also explore the growing influence of AI, not because it is making attackers dramatically smarter, but because it is lowering the barrier to entry and increasing the volume of attacks security teams must handle. Lee shares why automation is becoming essential for investigators, how organizations can move from hours to minutes when responding to threats, and why cybersecurity is steadily becoming a boardroom issue rather than simply an IT concern. If cybersecurity is truly an information war, what would happen if defenders became just as collaborative as the attackers they face every day? After listening, I'd love to hear your thoughts. Should organizations be more open about cyber incidents if it helps strengthen security for everyone?

Risky Business
Risky Business #843 -- Fortibleed is kinda awesome, actually

Risky Business

Play Episode Listen Later Jun 24, 2026 63:35


On this week's show special guest co-host Rob Joyce joins Patrick Gray and James Wilson to discuss the week's cybersecurity news. Rob served as an advisor to Donald Trump during his first term as president and also served at NSA for 34 years. While at the agency, Joyce led Tailored Access Operations (TAO), and later became NSA's Director of Cybersecurity. They cover: The surprisingly well done Fortibleed campaign Stolen Klue OAuth tokens lead to Salesforce data theft OpenAI wants to patch the planet runZero gets acquired by Accenture, congrats HD Moore! Much, much more! This episode is also available on YouTube. Show notes FortiBleed campaign used custom FortiGate sniffer to steal credentials | BleepingComputer FortiBleed: Fortinet device credential compromise expands into broader credential-attack guidance | unit42.paloaltonetworks.com Cybercriminals allegedly hacked tens of thousands of Fortinet firewalls used by major companies all over the world | TechCrunch Security Klue OAuth breach linked to 'Icarus' Salesforce data theft attacks | BleepingComputer Polymarket (@Polymarket) on X | X (formerly Twitter) The Korean telecom giant at the center of Anthropic's Mythos controversy | wrd.cm Beyond Fable: Can a Local LLM Replace Cloud AI for Security Code Reviews - SRLabs Research | SRLabs OpenAI Launches Full-Scale Effort to Patch Open-Source Bugs as It Takes on Anthropic's Mythos | wired.com Sponsored: Trail of Bits and OpenAI patch the planet | Risky Bulletin Intel agencies: Frontier AI models will reshape cybersecurity faster than expected | cyberscoop.com Embedding Forbidden Text in Spyware to Discourage AI Analysis | Schneier on Security A new unpatchable flaw in Apple chips opens the door to an iPhone jailbreak | TechCrunch Security USB worm spreads crypto-stealing malware via Windows shortcut files | BleepingComputer Android verification is coming: Google confirms timeline and supported app stores | Ars Technica California water utility probes breach claim by Iran-linked actor | Cybersecurity Dive Suspected cyberattack triggers false emergency alerts across parts of Brazil | The Record Tesco moving 40,000 server workloads off VMware amid Broadcom's "abusive conduct" | Ars Technica Trump directs federal agencies to protect US data from quantum threats | therecord.media Accenture shells out $4.18B on three companies in big industrial cybersecurity push | cyberscoop.com

The Gate 15 Podcast Channel
Weekly Security Sprint EP 162. All hazards recap - election risks, geopolitics, weather, AI and more.

The Gate 15 Podcast Channel

Play Episode Listen Later Jun 16, 2026 22:10


On this week's Security Sprint, Dave and Andy covered the following topics: Opening:• (TLP:CLEAR) WaterISAC – EPA: National Security Information Sharing Bulletin – Q2 2026⁠ — WaterISAC • The New Threat Environment; Why geopolitics matters to your water system — NRWA • Registration is open for WaterISAC's H2OEx – Camden — Association of Metropolitan Water Agencies • EPA Advisory: Protecting Sensitive Operational Information in Water and Wastewater Systems — EPAMain Topics:Election Security and Cascading Risks: An explosion of AI deepfakes is redefining American elections — Axios — 16 Jun 2026. • FBI foils alleged plot to attack White House UFC event, Patel says • Man pleads guilty to killing a top Minnesota Democrat and her husband in politically motivated attack • Man Charged with Sending Antisemitic Threats to Kill Governor of Hawaii and His Family — U.S. DOJ• Threats Against Politicians Skyrocketed After Meta Changed Its Speech Rules & Violent Threats Against Members of Congress Quadrupled After Meta Rolled Back Moderation Policies — Center for Countering Digital Hate Operation Epic Fury & Continued Threats:• ThreatBeat reports Iranian-linked hackers claimed California water system breaches after Iran water facility strike & Iranian Cyber Group Handala Claims Cal Water Hack • Iran and US reach an initial deal to end the war and open the Strait of Hormuz but challenges remain • U.S. and Iran Shape the Optics of an Agreement • Domestic: Iran-linked group claims hack of FBI drones, threatens World Cup, monitor says • Swedish Crime Group Foxtrot Adds Fuel to Iran's Proxy War in Europe Anthropic, AI & Patching… N-days. Anthropic reported that frontier models can significantly accelerate development of exploits for N-day vulnerabilities, which are publicly disclosed flaws that remain unpatched on many systems. • Exclusive: Anthropic's Mythos can exploit new flaws in hours — Axios • Statement on the US government directive to suspend access to Fable 5 and Mythos 5 • Anthropic Says It's Taking Claude Fable 5 Offline to Comply With US Government Order • “They screwed us”: Personality clashes sent Anthropic's models offline • Anthropic Releases Claude Fable 5, a Limited-Release AI Model • CISA orders feds to patch actively exploited Ivanti flaw by Sunday & CISA Adds One Known Exploited Vulnerability to Catalog - CVE-2026-10520 Ivanti Sentry OS Command Injection Vulnerability • Oracle Security Alert for CVE-2026-35273 & Cybercriminals claim breach of Oracle PeopleSoft servers at 100-plus organizations Quick Hits:• Wildfire Threats: National Interagency Coordination Center: 7-Day Significant Fire Potential• Weekly ransomware & data leak landscape — eCrime.ch — 15 Jun 2026. eCrime.ch reported 210 observed ransomware and data leak events for the 09 Jun to 15 Jun 2026 reporting window. The report identified 96 public data leak indicators, 38 active actors, and DeadLock as the highest-volume actor with 73 observed events. • Ransomware Evolution Report — Halcyon • Ransomware-as-a-Service: LockBit Alumni Launch Competing Programs as Ecosystem Consolidates in Q1 2026 • Ransomware Cybersecurity Framework Community Profile — NCCoE • National Security Presidential Memorandum/NSPM-12: National Policy for the Cybersecurity of National Security Systems — The White House • CISA sees leadership shakeup after infrastructure security chief moves to ONCD • MS-ISAC enters uncertain new era after losing federal funding and thousands of members

HLTH Matters
Trust, Verify, Repeat: Securing Healthcare in the Age of AI Voices

HLTH Matters

Play Episode Listen Later Jun 10, 2026 22:52


For years, healthcare organizations focused on securing digital channels while treating phone calls as a trusted service channel. That assumption no longer holds true.  In this episode, Sandy sits with Jason Barr, the Vice President of Strategic Sales for Healthcare at Pindrop, who explains how AI-powered voice cloning, deepfakes, and synthetic identities are transforming the cybersecurity landscape. Jason shares how healthcare organizations can defend against AI-driven fraud, verify identity in real time, and protect patients, providers, and employees in a world where even a familiar voice may not be what it seems. In this episode, they talk about: AI has transformed the phone from a trusted service channel into a rapidly growing cybersecurity threat vector for healthcare organizations. Cybercriminals can now use AI-powered tools to launch thousands of voice-based attacks per day, dramatically increasing the scale and efficiency of fraud attempts. Many attackers use voice channels not for immediate theft, but for reconnaissance, collecting sensitive information that can later be used to target providers, payers, and patients. Traditional identity verification methods such as knowledge-based questions and one-time passcodes are becoming increasingly vulnerable to modern fraud tactics. Continuous identity verification is emerging as a new security model that validates users throughout an interaction rather than only at the point of authentication. Pindrop analyzes thousands of signals during voice interactions to determine whether a caller is who they claim to be, whether they pose a risk, and whether they are even human. Healthcare organizations are facing a growing challenge in distinguishing between legitimate automation and malicious AI-powered bots. Deepfake technology is now sophisticated enough to mimic both voices and video, creating new risks across hiring, workforce management, and patient-facing operations. Help desks and support centers remain attractive targets because attackers often use social engineering tactics to pressure employees into resetting credentials. Voice-based security solutions can reduce fraud while simultaneously improving operational efficiency and the customer experience. One healthcare organization achieved a 90% reduction in fraud after implementing voice authentication and risk detection technology. Healthcare leaders must begin evaluating voice security as part of their broader cybersecurity strategy, as AI-enabled attacks continue to grow at an unprecedented pace.  A Little About Jason: As a West Point graduate and former U.S. Army Officer, Jason brings the operational rigor, discipline, and leadership foundation of combat-tested command into the boardroom and the GTM arena. He thrives where GTM transformation is mission-critical: aligning strategy to investor outcomes, building high-performing teams, and delivering predictable growth.

The ShiftShapers Podcast
EP 551 Cybersecurity Reality Check - with Daniel Metcalf

The ShiftShapers Podcast

Play Episode Listen Later Jun 2, 2026 33:24 Transcription Available


Cybercriminals don't need to “hack” our systems when they can trick someone into handing over access, and AI is making those tricks more realistic and scalable. We talk with Daniel Metcalfe of Cyberfin about where benefits advisors are most exposed and the layered, practical steps that reduce breach risk while still letting teams use AI responsibly. • why employee and employer data is “gold” to attackers • how advisors get used as a pathway to bigger targets • why MFA and antivirus alone don't stop social engineering • where agencies are most vulnerable today: email credentials and tool connections • what “layered” user-based protection looks like in real life • why password managers change the social engineering game • how ongoing security awareness training finds gaps faster than annual check-the-box training • why cloud storage is not the same as encrypted backups • how AI is already being used inside agencies without formal approval • practical AI wins that avoid sensitive data and improve efficiency • what client expectations are becoming in an AI world and why relationships still matter

The Cybersecurity Defenders Podcast
GitHub repositories compromised, Webworm targets Europe, fake Outlook & cybercriminal VPN / Intel Chat [#326]

The Cybersecurity Defenders Podcast

Play Episode Listen Later May 29, 2026 24:27


Originally recorded: Friday May 22, 2026In this episode of The Cybersecurity Defenders Podcast, we discuss some intel being shared in the LimaCharlie community.GitHub has confirmed that roughly 3,800 internal repositories were accessed in a supply chain compromise tied to the hacking group TeamPCP.China-aligned threat actor Webworm has shifted its targeting focus from Asia to Europe, according to new research published by ESET.Researchers uncovered a previously undocumented Microsoft 365 account takeover panel that integrates directly with Evilginx Pro infrastructure to streamline token theft and post-compromise operations.European and North American law enforcement agencies announced the dismantling of “First VPN,” a VPN service allegedly built to support cybercriminal activity including ransomware operations, data theft, scanning, and denial-of-service attacks.Support our show by sharing your favorite episodes with a friend, subscribe, give us a rating or leave a comment on your podcast platform.This podcast is brought to you by LimaCharlie, maker of the SecOps Cloud Platform, infrastructure for SecOps where everything is built API first. Scale with confidence as your business grows. Start today for free at limacharlie.io.

Coffee w/#The Freight Coach
1460. #TFCP - Securing the Asset: How Cybercriminals Are Targeting You In Freight!

Coffee w/#The Freight Coach

Play Episode Listen Later May 28, 2026 33:04


Let's welcome Joe Ohr and Ben Wilkens from NMFTA back to the show as they discuss the critical intersection of transportation and cybersecurity and the stark reality of modern freight fraud! We also cover the driving force behind the NMFTA's new threat report portal, a collaborative tool designed to share real-time intelligence and disrupt the predictable playbooks that cybercriminals rely on. To stay ahead of these growing logistics security threats, we highlight actionable defense mechanisms, including the non-negotiable need for continuous employee education, strict password hygiene, multi-factor authentication, and robust offboarding practices.  Don't let your company become uninsurable; protect your operations, own your data, and help harden the entire industry's defense by tuning in now! To learn more about the NMFTA Threat Report Portal, go to https://nmfta.org/standards/cybersecurity/cybersecurity-resources/nmfta-threat-report-portal/.  

The 30 Minute Hour™
#418 -- What Cybercriminals Hope You Never Learn

The 30 Minute Hour™

Play Episode Listen Later May 14, 2026 43:24


Most leaders think cyberattacks happen to “other companies.”Until it happens to theirs.This week on The 30 Minute Hour, we sit down with cybersecurity leader Gustavo Mastroianni — a seasoned CISO with nearly 20 years of experience helping organizations defend against ransomware, cyber threats, and costly security breaches.In this episode, you'll discover:✅ The biggest cybersecurity mistakes businesses make✅ How ransomware attacks really happen✅ The hidden risks leaders often overlook✅ Why human behavior is the #1 vulnerability✅ The mindset every executive needs before a crisis hitsIf you lead a business, manage a team, or make critical decisions, this episode could help you avoid a devastating and expensive mistake.

The PC Pro Podcast
Episode 789: A bumper week for cyber-criminals

The PC Pro Podcast

Play Episode Listen Later May 7, 2026 58:23


The team discusses a spate of major security flaws affecting Linux, Microsoft Edge and the cPanel web administration software. We also look at how kids are getting around online age checks, and ponder the US government's plan to test and certify AI models. For this week's Hot Hardware spot we completely rip up the rule book to showcase not one but two software tools, named FineTune and WhatCable. One helps you set volumes for different audio devices, while the other tells you the technical specifications of your USB cables and devices; there can be only one winner.

Breaking Into Cybersecurity
Understanding the Weaponization of AI Scams & Extortion | Jeremiah Baker | Breaking into Cybersecurity

Breaking Into Cybersecurity

Play Episode Listen Later Apr 27, 2026 32:52


This episode features Jeremiah Baker discussing emerging cybersecurity threats, specifically how AI is being weaponized by cybercriminals. He highlights the use of AI to accelerate and automate scams, using a specific example of internal chat breaches leading to extortion. The conversation emphasizes the evolving landscape of cybersecurity and the need to stay informed about new tactics.Key TakeawaysAI is being used to automate and accelerate cyber scams: Criminals are using AI to rapidly sift through data and identify vulnerabilities.Ransomware-like extortion is on the rise: Threat actors are going beyond encrypting data and are now leveraging sensitive information for financial gain.Internal communication tools are a ripe target: Compromised admin accounts in internal chat platforms provide access to a wealth of sensitive data.Compromising conversations are being weaponized: AI can quickly analyze chat logs to identify conversations that can be used for blackmail.Financial extortion can target individual executives: Cybercriminals may directly target individuals with compromising information gathered from corporate systems.Our guest is an experienced cybersecurity professional focused on emerging threat vectors. They provide deep insights into how artificial intelligence is changing the game for both attackers and defenders.---Sponsored by CPF Coaching LLC - http://cpf-coaching.comThe Breaking into Cybersecurity: It's a conversation about what they did before, why they pivoted into cyber, what the process was they went through, how they keep up, and advice/tips/tricks along the way.The Breaking into Cybersecurity Leadership Series is an additional series focused on cybersecurity leadership and hearing directly from different leaders in cybersecurity (high and low) on what it takes to be a successful leader. We focus on the skills and competencies associated with cybersecurity leadership, as well as tips/tricks/advice from cybersecurity leaders.Check out our books:The Cybersecurity Advantage - https://leanpub.com/the-cybersecurity-advantageDevelop Your Cybersecurity Career Path: How to Break into Cybersecurity at Any Level https://amzn.to/3443AUIHack the Cybersecurity Interview: Navigate Cybersecurity Interviews with Confidence, from Entry-level to Expert roleshttps://www.amazon.com/Hack-Cybersecurity-Interview-Interviews-Entry-level/dp/1835461298/Hacker Inc.: Mindset For Your Careerhttps://www.amazon.com/Hacker-Inc-Mindset-Your-Career/dp/B0DKTK1R93/---About the hosts:Renee Small is the CEO of Cyber Human Capital, one of the leading human resources business partners in the field of cybersecurity, and author of the Amazon #1 best-selling book, Magnetic Hiring: Your Company's Secret Weapon to Attracting Top Cyber Security Talent. She is committed to helping leaders close the cybersecurity talent gap by hiring from within and encouraging more people to enter the lucrative cybersecurity profession. https://www.linkedin.com/in/reneebrownsmall/Download a free copy of her book at magnetichiring.com/bookChristophe Foulon focuses on helping secure people and processes, drawing on a solid understanding of the technologies involved. He has over ten years of experience as an Information Security Manager and Cybersecurity Strategist. He is passionate about customer service, process improvement, and information security. He has significant expertise in optimizing technology use while balancing its implications for people, processes, and information security, through a consultative approach.https://www.linkedin.com/in/christophefoulon/Find out more about CPF-Coaching at https://www.cpf-coaching.com

MPR News Update
Winona County cyberattack is a growing trend of cybercriminals targeting local governments

MPR News Update

Play Episode Listen Later Apr 9, 2026 4:05


Winona County is still working to recover from a cyberattack on their IT network this week. The attack is part of a growing trend of cybercriminals targeting local governments. A federal judge today dissolved a temporary injunction barring federal agents from retaliating against people observing ICE activities. Those stories and more in today's evening update from MPR News. Hosted by Emily Reese. Music by Gary Meister.

Kendall And Casey Podcast
Former FBI special agent Cory Grass joins to discuss the dangers of government spyware tools getting in the hands of cybercriminals

Kendall And Casey Podcast

Play Episode Listen Later Mar 25, 2026 15:43 Transcription Available


The Segment: A Zero Trust Leadership Podcast
How Cybercriminals Manipulate Trust — Then Steal Millions | Timothy Kromphardt

The Segment: A Zero Trust Leadership Podcast

Play Episode Listen Later Mar 25, 2026 39:02


Social engineering attacks may evolve with new technology, but the core tactic hasn't changed in decades: exploiting human trust. In this episode of The Segment, host Raghu Nandakumara sits down with Timothy Kromphardt, Senior Threat Researcher at Proofpoint to explore how modern scams actually work behind the scenes. Tim spends his days engaging directly with threat actors—sometimes for months at a time—to understand how fraud campaigns operate, how scammers build trust, and how they ultimately convince victims to hand over money or sensitive information. Together, they unpack the mechanics of today's most common scams, including TOAD (telephone-oriented attack delivery) attacks, business email compromise, and the increasingly sophisticated “pig butchering” investment scams that can drain victims' life savings after months of relationship-building. Together, Raghu and Tim unpack: Why social engineering continues to succeed—even as security technology improves   How pig butchering scams build trust over months before stealing massive sums   What happens when researchers directly engage with scammers   Why AI is helping attackers scale operations—but not necessarily replace humans   Practical steps organizations and individuals can take to reduce their risk   If you've ever wondered how scammers actually operate—or why even highly successful professionals sometimes fall victim—this episode offers a rare inside look at the human side of cybercrime.   Stay Connected with our host, Raghu on LinkedIn For more information about Illumio, check out our website at illumio.com 

Cyber Briefing
March 16, 2026 - Cyber Briefing

Cyber Briefing

Play Episode Listen Later Mar 16, 2026 7:13


If you like what you hear, please subscribe, leave us a review and tell a friend!

Cyber Briefing
March 11, 2026 - Cyber Briefing

Cyber Briefing

Play Episode Listen Later Mar 11, 2026 7:34


If you like what you hear, please subscribe, leave us a review and tell a friend!

Cyber Briefing
March 05, 2026 - Cyber Briefing

Cyber Briefing

Play Episode Listen Later Mar 5, 2026 8:04


If you like what you hear, please subscribe, leave us a review and tell a friend!

The Audit
Secret Service Agent Reveals Undercover Cyber Ops

The Audit

Play Episode Listen Later Feb 23, 2026 44:26 Transcription Available


What does it take to go undercover with international cybercriminals — with no backup, no safe house, and no script? In this episode of The Audit, Richard LaTulip, Field CISO at Recorded Future and former U.S. Secret Service agent, pulls back the curtain on three years of undercover operations spanning Thailand, Dubai, Macau, and China. From buying stolen credit card data in bulk to handing cheap government-issued laptops to disappointed hackers, Richard shares the raw, unfiltered reality Hollywood never shows you. Co-hosts Joshua J Schmidt, Eric Brown, Nick Mellem, and Jen Lotze dig into the psychology of social engineering, the stark differences between nation-state and financially motivated threat actors, and why your employees are simultaneously your greatest asset and your biggest vulnerability. Richard breaks down how SolarWinds revealed the patience of nation-state operations, why cultural awareness is a cybersecurity weapon, and how organizations can shift security from a cost center to a value driver. 

DrZeroTrust
How Cybercriminals Turn Legitimate Marketing Tools into Invisible Malware Systems

DrZeroTrust

Play Episode Listen Later Jan 27, 2026 20:28


Cybersecurity in 2026 is more dangerous—and more invisible—than ever. Passwords are still the weakest link, with over 6 billion stolen in the past year alone, including common ones like 123456 and admin. Yet, despite decades of awareness, predictable passwords remain the primary entry point for hackers. Meanwhile, attacker tactics have evolved from noisy, overt breaches to stealthy, living-off-the-land operations—using legitimate tools like VPNs, DNS tunneling, and even marketing infrastructure like Kataro to hide in plain sight.Join me as I dive into the latest breach and compromise reports, revealing how adversaries made a strategic pivot to resilience and invisibility. You'll discover how threat actors have shifted focus from traditional malware to infrastructure abuse, leveraging open-source projects, cloud services, and commercial-grade tools to stay under the radar. Learn about the top attack techniques, from privilege escalation to command-and-control protocols, and get insights on how defenders can adapt in an era where the perimeter no longer exists.This episode unpacks the disturbing reality: when breaches happen inside your network, the damage is already done. You'll hear concrete analysis of data from Lumoo's threat intelligence—highlighting the rise of anonymization tools like Tor and NordVPN used by hackers, and how education, financial services, and government sectors are prime targets. Plus, get expert tips on effective defenses like behavioral detection, password management, and monitoring legitimate-looking traffic.Perfect for cybersecurity pros, IT leaders, and anyone serious about staying ahead of the evolving threats—this episode is your urgent wake-up call. We're entering an era where assumptions no longer hold, and understanding the latest tactics could be the difference between breach and defense. Don't get left behind—hit play and upgrade your security mindset now.

Cyber Briefing
January 23, 2026 - Cyber Briefing

Cyber Briefing

Play Episode Listen Later Jan 23, 2026 7:40


If you like what you hear, please subscribe, leave us a review and tell a friend!

Adversary Universe Podcast
Taking Down Cybercriminals with Shawn Henry, Former FBI Leader

Adversary Universe Podcast

Play Episode Listen Later Jan 15, 2026 48:46


How do you take down a cybercriminal? Last month, we explored that question through the lens of Operation Endgame. Today, we ask Shawn Henry, former Executive Assistant Director of the FBI and current Executive Advisor to the Founder and CEO of CrowdStrike. In some ways, it's similar to taking down criminals in the physical world. But the speed and scale of cybercrime operations exacerbate the challenge of stopping them. While infrastructure can be dismantled, the impact is now short-lived as adversaries pivot to other setups. While law enforcement considers how to replicate successful operations, cybercriminals are thinking about how they can adapt and stay ahead. For those pursuing adversaries, speed and scale are difficult to achieve. As Shawn explains, successful takedowns require collaboration among dozens of groups; among them law enforcement agencies, international partners, intelligence analysts, reverse engineers, prosecutors, and private sector organizations that have visibility into adversary infrastructure. “A takedown isn't a single door-kick moment. It's a monthslong choreography of legal process and infrastructure mapping and partner synchronization,” he says. Are there ways to accelerate the process? He has a few ideas. Tune in as Shawn joins Adam and Cristian to share a behind-the-scenes take on stopping cybercrime. Learn the key challenges law enforcement faces, how a takedown comes together, why arrests alone aren't enough to stop adversaries, and where there is still an opportunity to have real impact.

Inside Sources with Boyd Matheson
Instagram Password Reset Attacks: Are You At Risk?

Inside Sources with Boyd Matheson

Play Episode Listen Later Jan 12, 2026 11:19


Instagram users are sounding the alarm over a wave of unrequested password reset emails that's hitting inboxes. Cybercriminals are exploiting password resets to break into accounts. KSL Investigative Reporter Matt Gephart joins to explain what to know about this scam.

The Medcurity Podcast: Security | Compliance | Technology | Healthcare
Why Healthcare is Target #1 for Cyber Criminals | Medcurity Podcast 124

The Medcurity Podcast: Security | Compliance | Technology | Healthcare

Play Episode Listen Later Jan 8, 2026 5:24


Cybercriminals target healthcare more than any other industry. We break down the reasons attackers focus their efforts here and the specific vulnerabilities they look for.This episode explores what that reality means for the leaders and teams working to protect patient data.Learn more about Medcurity here: https://medcurity.com#Cybersecurity #HealthcareSecurity #HIPAA #Ransomware #HealthcareIT #DataPrivacy #Healthcare #Compliance #SecurityRiskAnalysis

Supply Chain Now Radio
Adapting to Change: 2025 Lessons, Supply Chain Insights, & 2026 Predictions, featuring U.S. Bank's Gustav Khambatta

Supply Chain Now Radio

Play Episode Listen Later Jan 7, 2026 47:12 Transcription Available


As global supply chains navigate through cybersecurity threats and rapid technological integration, companies must rethink their strategies to stay competitive. Cybercriminals are increasingly targeting corporate systems through sophisticated tactics, such as email infiltration, to gain access to sensitive data, including bills of lading. This underscores the need for organizations to strengthen their cybersecurity and ensure their supply chains remain secure.In this episode of Supply Chain Now, Scott Luton and Karin Bursa sit down with Gustav Khambatta, SVP, Head of Freight Payment Sales at U.S. Bank, to explore key themes in supply chain management. They discuss the evolving role of cybersecurity, AI's impact on the industry, and the challenges posed by cargo theft and security breaches.They talk about the intersection of AI and cybersecurity, highlighting how technology is transforming business operations. AI is being integrated into supply chain processes, with use cases ranging from fraud prevention to streamlining document verification. However, as AI adoption accelerates, so does the potential for security vulnerabilities. The conversation underscores the importance of continuous adaptation in a rapidly changing supply chain landscape, where technology and security will play a central role in shaping the future.Jump into the conversation:(00:00) Intro(04:02) Sports talk: Patriots, Falcons, F1(06:19) Gustav's professional journey(08:01) US Bank Freight Payment Index insights(14:39) Cybersecurity in the corporate world(20:22) AI in supply chain and cybersecurity(23:28) AI and cybersecurity integration(24:08) Regulatory environment and leadership challenges(24:38) Supply chain evolution and technology(27:26) AI in supply chain management(29:35) Reflections on 2025(32:29) Energy demand and AI(37:02) Predictions for 2026Additional Links & Resources:Connect with Gustav Khambatta: https://www.linkedin.com/in/gustav-khambatta-384852/Learn more about U.S. Bank: https://www.usbank.com/index.htmlDownload the most recent edition of the U.S. Bank Freight Payment Index: bit.ly/scn-us-bankLearn more about Supply Chain Now: https://supplychainnow.comWatch and listen to more Supply Chain Now episodes here: https://supplychainnow.com/program/supply-chain-nowSubscribe to Supply Chain Now on your favorite platform: https://supplychainnow.com/join

Cyber Security Today
Inside the Dark Web: Exploring Cybercrime with Expert David Décary-Hétu

Cyber Security Today

Play Episode Listen Later Dec 31, 2025 53:02


In this episode, the host shares a pre-recorded favorite interview with David Decary-Hetu, a criminologist at the University of Montreal. They discuss the dark web, its technology, and its role in cybercrime. Decary-Hetu explains how the dark web operates, its users, and the dynamics between researchers and law enforcement in tackling cyber threats. Key topics include the economics of illicit markets, the cat-and-mouse game between law enforcement and criminals, the role of cryptocurrencies, and the evolution of cyber threats. The episode offers insights into the social aspects of cybercrime and the measures being taken to combat it. 00:00 Introduction and Sponsor Message 00:52 Understanding the Dark Web 02:16 Interview with David Decary-Hetu 05:10 The Basics of the Dark Web 06:27 Technology Behind the Dark Web 14:49 Law Enforcement Challenges 21:50 Trust and Transactions on the Dark Web 23:45 Recruitment and Structure of Cybercriminals 26:42 Cultural Dynamics in Hacking Communities 27:32 Researching the Impact of Technology on Crime 29:01 Challenges in Policing the Dark Web 30:12 The Role of Social Engineering in Cybercrime 31:18 Law Enforcement Strategies and Conditional Deterrence 32:09 The Evolution of Cybercrime and Cryptocurrency 41:24 Legal and Ethical Considerations in Cybercrime 43:47 Advice for Policymakers and Corporations 48:44 Educational Resources and Conferences 50:57 Conclusion and Final Thoughts

The CyberWire
Yippee-ki-yay, cybercriminals! [OMITB]

The CyberWire

Play Episode Listen Later Dec 25, 2025 40:18


While our team is out on winter break, please enjoy this episode of Only Malware in the Building. Welcome in! You've entered, Only Malware in the Building. Wrap yourself in a warm blanket, pour your favorite mug of tea, and join us each month as we unwrap the season's juiciest cyber mysteries. Your host is ⁠⁠⁠⁠⁠⁠Selena Larson⁠⁠⁠⁠⁠⁠, ⁠⁠⁠⁠⁠⁠Proofpoint⁠⁠⁠⁠⁠⁠ intelligence analyst and host of their podcast ⁠⁠⁠⁠⁠⁠DISCARDED⁠⁠⁠⁠⁠⁠. Inspired by the residents of a building in New York's exclusive upper west side, Selena is joined by her co-hosts ⁠⁠⁠⁠⁠⁠N2K Networks⁠⁠⁠⁠⁠⁠ ⁠⁠⁠⁠⁠⁠Dave Bittner⁠⁠⁠⁠⁠⁠ and ⁠⁠⁠⁠⁠Keith Mularski⁠⁠⁠⁠⁠, former FBI cybercrime investigator and now Chief Global Ambassador at ⁠⁠⁠⁠⁠Qintel⁠⁠⁠⁠⁠. Being a security researcher is a bit like being a detective: you gather clues, analyze the evidence, and consult the experts to solve the cyber puzzle. On this episode, we explore Remote access, real cargo: cybercriminals targeting trucking and logistics. From clever schemes to protect shipments to the tools cybercriminals use, our guests discuss how organizations can safeguard physical goods in an increasingly connected world—because even during the season of hustle and bustle, the threats don't take a holiday. Learn more about your ad choices. Visit megaphone.fm/adchoices

The Rest Is Money
235. How M&S saw off the cyber criminals and its plan for the next 100 Years (Part 1)

The Rest Is Money

Play Episode Listen Later Dec 18, 2025 46:35


Is there any worse trauma for a business than a cyber attack? What should you do if it happens? Plus how do M&S decide when to close a store and, if it does, is that the final nail in the coffin for that town centre? Steph and Robert talk with M&S chairman Archie Norman, about not just any cyber attack, but an M&S cyber attack. Plus what the barometer of British retail is planning to do next. Email: the⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠restismoney@goalhanger.com⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠ X: ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠@TheRestIsMoney⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠ Instagram: ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠@TheRestIsMoney⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠ TikTok: ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠@RestIsMoney⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠ ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠https://⁠⁠⁠goalhanger.com⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠ Learn more about your ad choices. Visit podcastchoices.com/adchoices

Business of Tech
MSP Cybersecurity: Addressing Identity Risks and Account Control Fraud in 2025

Business of Tech

Play Episode Listen Later Dec 6, 2025 39:54


The integration of advanced AI capabilities in tools like OpenAI Atlas and Microsoft Teams has raised significant security concerns, particularly regarding identity and trust vulnerabilities. Recent findings from LayerX indicate that the Atlas browser has critical vulnerabilities that could allow attackers to inject harmful instructions, while Microsoft Teams has a flaw that enables attackers to bypass Microsoft Defender protections through guest access. These issues highlight the fragility of AI integrations and the need for organizations to implement strict B2B collaboration configurations to mitigate risks associated with external collaborations.The FBI has reported over $262 million in losses due to account takeover fraud, with more than 5,100 complaints filed this year. Cybercriminals are increasingly using social engineering tactics to gain unauthorized access to online banking accounts, often changing passwords to lock victims out and quickly transferring funds to cryptocurrency wallets, complicating recovery efforts. The FBI advises individuals to monitor their financial accounts closely and adopt security measures such as complex passwords and multi-factor authentication to protect against these threats.Managed Service Providers (MSPs) are experiencing a growing demand for integrated security solutions, with a recent survey indicating that 92% of MSPs are seeing business growth driven by interest in AI. However, less than half feel prepared to guide clients in deploying AI tools, particularly autonomous agents. This gap in readiness reflects a significant drop from the previous year's 90% preparedness figure, emphasizing the need for MSPs to focus on data governance and security before implementing AI solutions.The episode underscores the importance of managing identity and data governance as the primary control mechanisms in modern security. MSPs that prioritize these areas will be better positioned to offer secure collaboration and effective automation. As the landscape evolves, providers must choose tools that enhance service delivery without adding unnecessary complexity, ensuring they can meet client demands for security and efficiency in an increasingly AI-driven environment.

Business of Tech
MSP Cybersecurity: Addressing AI Vulnerabilities and Account Takeover Fraud Risks

Business of Tech

Play Episode Listen Later Dec 3, 2025 13:49


AI-integrated tools, such as OpenAI's Atlas and Microsoft Teams, are introducing new trust and identity risks, particularly through vulnerabilities like prompt injections and guest access features. The Atlas browser, launched on October 21, 2025, has been identified as having security flaws that could allow attackers to inject harmful instructions. Similarly, Microsoft Teams has a vulnerability that permits attackers to bypass security protections when users join external tenants as guests. These developments highlight the fragility of AI integrations and the need for robust security measures in collaborative environments.The FBI has reported over $262 million in losses due to account takeover fraud schemes, with more than 5,100 complaints filed this year. Cybercriminals are employing social engineering tactics to gain unauthorized access to online banking and payroll accounts, often locking victims out by changing passwords. The FBI recommends that individuals monitor their financial accounts closely, use complex passwords, and enable multi-factor authentication to mitigate these risks. This trend underscores the importance of managing trust and identity in security practices, as attackers increasingly exploit human vulnerabilities rather than technical flaws.In the managed service provider (MSP) sector, a recent survey by OpenText Cybersecurity revealed that while 92% of MSPs are experiencing growth driven by interest in AI, fewer than half feel prepared to implement AI tools effectively. This marks a significant decline from the previous year's 90% readiness. Additionally, 71% of MSPs reported that their small and medium-sized business clients prefer bundled security solutions, indicating a shift towards integrated offerings that simplify decision-making for clients. The findings suggest that MSPs need to focus on data governance and readiness before deploying AI solutions.For MSPs and IT service leaders, the key takeaway is that modern security is increasingly about managing identity and data governance rather than merely adding more tools. As AI vulnerabilities and account takeover fraud become more prevalent, providers must prioritize establishing secure trust boundaries and effective data management practices. By doing so, MSPs can differentiate themselves in a competitive market, ensuring they are equipped to deliver secure AI solutions and meaningful automation to their clients. Three things to know today00:00 New AI, Collaboration, and Fraud Threats Underscore That Identity—not Infrastructure—is the Real Security Battleground05:15 Survey Shows MSPs Expanding Services Amid AI Interest, Yet True Opportunity Lies in Readiness and Governance07:45 New MSP Integrations, Funding, and AI Platforms Underscore the Shift Toward Identity and Data Governance as the True Control Plane This is the Business of Tech.     Supported by:  https://try.auvik.com/dave-switchhttps://scalepad.com/dave/

Hacking Humans
Yippee-ki-yay, cybercriminals! [OMITB]

Hacking Humans

Play Episode Listen Later Dec 2, 2025 40:18


Welcome in! You've entered, Only Malware in the Building. Wrap yourself in a warm blanket, pour your favorite mug of tea, and join us each month as we unwrap the season's juiciest cyber mysteries. Your host is ⁠⁠⁠⁠⁠Selena Larson⁠⁠⁠⁠⁠, ⁠⁠⁠⁠⁠Proofpoint⁠⁠⁠⁠⁠ intelligence analyst and host of their podcast ⁠⁠⁠⁠⁠DISCARDED⁠⁠⁠⁠⁠. Inspired by the residents of a building in New York's exclusive upper west side, Selena is joined by her co-hosts ⁠⁠⁠⁠⁠N2K Networks⁠⁠⁠⁠⁠ ⁠⁠⁠⁠⁠Dave Bittner⁠⁠⁠⁠⁠ and ⁠⁠⁠⁠Keith Mularski⁠⁠⁠⁠, former FBI cybercrime investigator and now Chief Global Ambassador at ⁠⁠⁠⁠Qintel⁠⁠⁠⁠. Being a security researcher is a bit like being a detective: you gather clues, analyze the evidence, and consult the experts to solve the cyber puzzle. On this episode, we explore Remote access, real cargo: cybercriminals targeting trucking and logistics. From clever schemes to protect shipments to the tools cybercriminals use, our guests discuss how organizations can safeguard physical goods in an increasingly connected world—because even during the season of hustle and bustle, the threats don't take a holiday.

The CyberWire
A storm brews behind the firewall.

The CyberWire

Play Episode Listen Later Nov 4, 2025 25:02


China-Linked hackers target Cisco firewalls. MIT Sloan withdraws controversial “AI-Driven Ransomware” paper. A new study questions the value of cybersecurity training. Hackers exploit OpenAI's API as a malware command channel. Apple patches over 100 Security flaws across devices. A Florida-based operator of mental health and addiction treatment centers exposes sensitive patient information. OPM plans a “mass deferment” for Cybercorps scholars affected by the government shutdown. Lawmakers urge the FTC to investigate Flock Safety's cybersecurity gaps. Cybercriminals team with organized crime for high-tech cargo thefts. Ben Yelin from University of Maryland Center for Cyber Health and Hazard Strategies discussing ICE's controversial facial scanning initiative. A priceless theft meets a worthless password.  Remember to leave us a 5-star rating and review in your favorite podcast app. Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you'll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn. CyberWire Guest We are joined by Ben Yelin from University of Maryland Center for Cyber Health and Hazard Strategies discussing ICE's controversial facial scanning initiative. You can read more about Ben's topic from 404 Media: You Can't Refuse To Be Scanned by ICE's Facial Recognition App, DHS Document Says. Selected Reading China-Linked Hackers Target Cisco Firewalls in Global Campaign (Hackread) MIT Sloan shelves paper about AI-driven ransomware (The Register) CyberSlop — meet the new threat actor, MIT and Safe Security (DoublePulsar) Study concludes cybersecurity training doesn't work (KPBS Public Media) Microsoft: OpenAI API moonlights as malware HQ (The Register) Apple Patches 19 WebKit Vulnerabilities (SecurityWeek) Data Theft Hits Behavioral Health Network in 3 States (Bank Infosecurity) OPM plans to give CyberCorps members more time to find jobs after shutdown ends (CyberScoop) Lawmakers ask FTC to probe Flock Safety's cybersecurity practices (The Record) Cybercriminals, OCGs team up on lucrative cargo thefts (The Register) Louvre Robbery: Security Flaws: The (Obviously) Password Was "Louvre" (L'Unione Sarda) Share your feedback. What do you think about CyberWire Daily? Please take a few minutes to share your thoughts with us by completing our brief listener survey. Thank you for helping us continue to improve our show. Want to hear your company in the show? N2K CyberWire helps you reach the industry's most influential leaders and operators, while building visibility, authority, and connectivity across the cybersecurity community. Learn more at sponsor.thecyberwire.com. The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc. Learn more about your ad choices. Visit megaphone.fm/adchoices

Something You Should Know
Think You're Too Smart to Be Scammed? & The Invention That Changed Medicine

Something You Should Know

Play Episode Listen Later Oct 27, 2025 48:51


People who live the longest aren't always the ones with the “perfect” body weight. In fact, research suggests that being slightly overweight can actually increase your life expectancy. It sounds counterintuitive, but the science may surprise you. Listen as I explain what's really going on. https://healthland.time.com/2013/01/02/being-overweight-is-linked-to-lower-risk-of-mortality/ Ever since the dawn of the Internet, we've been told to guard against hackers — but today's biggest threat isn't hacking, it's scamming. Cybercriminals are more cunning than ever, tricking millions into giving up money and information every day. If you think you are too clever to be taken by cyber-scammers, think again. Eric O'Neill — former FBI undercover operative, national security attorney, and cybersecurity strategist — reveals how modern scams work and how to stop them before they get to you. He's the author of Spies, Lies, and Cybercrime: Cybersecurity Tactics to Outsmart Hackers and Disarm Scammers (https://amzn.to/4nRvvv1). Imagine medicine without X-rays, CT scans, or MRIs. It's impossible — these imaging breakthroughs revolutionized how doctors diagnose and treat disease. Yet not long ago, the idea of seeing inside the body without a single incision was pure fantasy. Dr. Daniel K. Sodickson, chief of innovation in radiology at NYU Grossman School of Medicine and author of The Future of Seeing: How Imaging Is Changing Our World (https://amzn.to/3KNz3zS), shares the fascinating story of how imaging transformed modern medicine — and what's coming next. Sarcasm might seem like just a clever way to joke around but it's actually good exercise for your brain. Using and understanding sarcasm requires multiple parts of your mind to work together. Listen as I explain why being sarcastic might make you sharper. https://www.hbs.edu/faculty/Pages/item.aspx?num=49283&utm Learn more about your ad choices. Visit megaphone.fm/adchoices

The CyberWire
One flaw to rule the root.

The CyberWire

Play Episode Listen Later Sep 30, 2025 23:49


CISA issues an urgent warning about active exploitation of a critical vulnerability in the sudo utility. Broadcom patches two high-severity vulnerabilities in VMware NSX. South Korea raises its national cyber threat level after a datacenter fire. Formbricks patches a critical token validation flaw. Microsoft blocks a credential phishing campaign that made use of malicious SVG files. Landlords are accused of scraping sensitive payroll data. Cybercriminals lay the groundwork for large-scale FIFA fraud. Burnout takes a heavy toll on cybersecurity professionals. On our Threat Vector segment, host David Moulton⁠ is joined by⁠ Kyle Wilhoit⁠ talking about the evolution of hacker culture and cybersecurity. London police bag the biggest bitcoin bust. Remember to leave us a 5-star rating and review in your favorite podcast app. Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you'll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn. CyberWire Guest On this Threat Vector segment, host David Moulton⁠ is joined by⁠ Kyle Wilhoit⁠ of Unit 42 talking about the evolution of hacker culture and cybersecurity. You can listen to the full conversation⁠ here⁠, and catch new episodes of Threat Vector each Thursday in your podcast app of choice. Selected Reading CISA Issues Alert on Active Exploitation of Linux and Unix Sudo Flaw (GB Hackers) Broadcom fixes high-severity VMware NSX bugs reported by NSA (Bleeping Computer) South Korea raises cyber threat level after huge data centre fire sparks hacking fears (The Guardian) JWT signature verification bypass enables account takeover in Formbricks (Beyond Machines) Microsoft Flags AI Phishing Attack Hiding in SVG Files (Hackread) Landlords Demand Tenants' Workplace Logins to Scrape Their Paystubs (404 Media) Playing Offside: How Threat Actors Are Warming Up for FIFA 2026 (Check Point Blog) Why burnout is a growing problem in cybersecurity (BBC) Chinese woman convicted after 'world's biggest' bitcoin seizure (BBC) Share your feedback. What do you think about CyberWire Daily? Please take a few minutes to share your thoughts with us by completing our brief listener survey. Thank you for helping us continue to improve our show. Want to hear your company in the show? You too can reach the most influential leaders and operators in the industry. Here's our media kit. Contact us at cyberwire@n2k.com to request more info. The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc. Learn more about your ad choices. Visit megaphone.fm/adchoices