Podcasts about ESET

  • 388PODCASTS
  • 1,032EPISODES
  • 31mAVG DURATION
  • 5WEEKLY NEW EPISODES
  • Jul 31, 2026LATEST
ESET

POPULARITY

20192020202120222023202420252026


Best podcasts about ESET

Show all podcasts related to eset

Latest podcast episodes about ESET

Security Conversations
Proofpoint's Greg Lesnewich on Laundry Bear, ‘Half-Click' Exploits, and Magnets of Threats

Security Conversations

Play Episode Listen Later Jul 31, 2026 206:39


(Presented by Thinkst Canary: Most Companies find out way too late that they've been breached. Thinkst Canary changes this. Deploy Canaries and Canarytokens in minutes and then forget about them. Attackers tip their hand by touching 'em giving you the one alert, when it matters. With zero admin overhead and almost no false-positives, Canaries are deployed (and loved) on all 7 continents.) Three Buddy Problem - Episode 107: Proofpoint's Greg Lesnewich joins the show to break down Laundry Bear, the "half-click" webmail exploits that let a Russian GRU cluster hack inboxes the moment an email was opened, and what it took to publish alongside the NSA, FBI and sixteen allied agencies. Plus, Anthropic and OpenAI both admit their models escaped test sandboxes and popped real companies, why JAGS wants the CFAA burned down and vulnerable devices bricked, and a heartfelt detour into how threat hunters actually build intuition and skills. Cast: Greg Lesnewich, Juan Andres Guerrero-Saade, Ryan Naraine and Costin Raiu. Timestamps: 0:00 Sponsor - Thinkst Canary 1:34 Greg Lesnewich introduces the Proofpoint threat-hunting team 5:23 Inside the NSA ‘Laundry Bear' advisory 7:15 What does "half-click" mean? 9:58 Laundry Bear's Zimbra exploit: DNS exfil and app-specific password persistence 12:59 Ferrari model numbers, F1 UNC names, and ESET's Operation RoundPress 17:05 Targeting Ukraine, US universities, and magnetic fusion research 19:34 How threat hunters actually build intuition 32:35 Systems thinking, Donella Meadows, and Costin's laptop under the dinner table 54:48 The dopamine hit of a real find and the deleted "never mind" messages 1:00:42 Magnets of threats: under 1% of customers ever see an APT 1:25:21 Getting detections into the product, and coordinating a release with NSA 1:53:22 Anthropic and OpenAI models breaking out of the eval sandbox 2:17:45 The case for killing the CFAA and bricking vulnerable devices 2:43:44 AI in the lab, malware paleontology, Google's new names, and AngrySpark

LA PATRIA Radio
Entrevista con Alexander Ramírez Duque, CEO de Frontech - ESET Colombia

LA PATRIA Radio

Play Episode Listen Later Jul 31, 2026 10:47


Entrevista con Alexander Ramírez Duque, CEO de Frontech - ESET Colombia by LA PATRIA

Partnerships Unraveled
Michal Jankech - The true partner playbook

Partnerships Unraveled

Play Episode Listen Later Jul 28, 2026 38:20 Transcription Available


Send us Fan MailIn this episode of Partnerships Unraveled, we sit down with Michal Jankech, Vice President of Enterprise, Small Business, and Managed Service Provider Segments at ESET. With 16 years at ESET, a first decade in product management, and a strategic advisory role shaping how the company evolves, Michal brings rare depth across both technical and commercial perspectives to a conversation about what actually builds durable partnerships.Michal opens with the story of how a decade in product management shaped his approach to partner strategy. Traveling with clients as a product manager showed him something that still holds: many cybersecurity decisions are partner-led, and the strongest relationships between vendors and technical partners are built engineer to engineer. That foundation now feeds his advisory work with the CEO on how to steer the company through change. In a matrix organization the size of ESET, influence beats authority, and driving transformation depends on relationships, belief, and a clear, consistent story everyone across the business is willing to carry.From there, the conversation turns to ESET's evolution ahead of its 40th anniversary. The company has been quietly using machine learning in detection long before it was called AI, and the current moment brings new relevance to that engineering-first heritage. Michal shares how perception matters as much as substance, and how the company is modernizing its communication to match what it delivers. He also gets into where data sovereignty is landing for European buyers today. As a fully European vendor with all core processing on the continent, ESET has turned a former disadvantage into a real differentiator.Michal closes with the pillars that hold the strongest partner relationships together: rock-solid technology, predictable commercials, a clear vision partners can invest in, and the constant work of listening. It's the foundation of trust that keeps ecosystems moving forward._________________________Learn more about Channext

Hírstart Robot Podcast
Augusztusra már csak 20 centi körül lehet a Velencei-tó vízszintje

Hírstart Robot Podcast

Play Episode Listen Later Jul 28, 2026 3:39


Augusztusra már csak 20 centi körül lehet a Velencei-tó vízszintje Drágulhatnak a mobilok és a laptopok, nagy áremelést jelentett be az egyik legnagyobb chipgyártó Augusztus 12-én részleges napfogyatkozás lesz Magyarországon, a leglátványosabb Sopron környékén lesz Vészfrissítést kaptak az iPhone-ok A Google telepakolta a Waze-t mesterséges intelligenciával, de csak két új funkciót érdemes bekapcsolni Új kiberbiztonsági veszélyekre figyelmeztet az Eset legfrissebb jelentése Nagy erejű földrengés rázta meg Japánt Stratégiai akvizícióval erősít Magyarországon az informatikai piac meghatározó szereplője Százával lopták el a kiadatlan dalait, Ariana Grande most beperelte a hekkereket, akik meggazdagodtak belőle A további adásainkat keresd a podcast.hirstart.hu oldalunkon. Hosted by Simplecast, an AdsWizz company. See pcm.adswizz.com for information about our collection and use of personal data for advertising.

Hírstart Robot Podcast - Tech hírek
Augusztusra már csak 20 centi körül lehet a Velencei-tó vízszintje

Hírstart Robot Podcast - Tech hírek

Play Episode Listen Later Jul 28, 2026 3:39


Augusztusra már csak 20 centi körül lehet a Velencei-tó vízszintje Drágulhatnak a mobilok és a laptopok, nagy áremelést jelentett be az egyik legnagyobb chipgyártó Augusztus 12-én részleges napfogyatkozás lesz Magyarországon, a leglátványosabb Sopron környékén lesz Vészfrissítést kaptak az iPhone-ok A Google telepakolta a Waze-t mesterséges intelligenciával, de csak két új funkciót érdemes bekapcsolni Új kiberbiztonsági veszélyekre figyelmeztet az Eset legfrissebb jelentése Nagy erejű földrengés rázta meg Japánt Stratégiai akvizícióval erősít Magyarországon az informatikai piac meghatározó szereplője Százával lopták el a kiadatlan dalait, Ariana Grande most beperelte a hekkereket, akik meggazdagodtak belőle A további adásainkat keresd a podcast.hirstart.hu oldalunkon. Hosted by Simplecast, an AdsWizz company. See pcm.adswizz.com for information about our collection and use of personal data for advertising.

The CyberWire
Cold lures, hot targets. [Research Saturday]

The CyberWire

Play Episode Listen Later Jul 25, 2026 17:03


This week, we are joined by Ondrej Kubovič, Security Awareness Specialist from ESET, discussing their work on "FrostyNeighbor: Fresh mischief and digital shenanigans." Ondrej walks us through ESET's latest research into FrostyNeighbor, a long-running Belarus-aligned cyberespionage group that has continued to target Ukrainian government organizations with increasingly sophisticated spearphishing campaigns. We discuss how the group uses malicious PDF lures, server-side victim validation, and an updated JavaScript-based malware chain to selectively deploy espionage tools, demonstrating its ongoing efforts to evade detection while compromising high-value targets across Eastern Europe. The research and executive brief can be found here: ⁠FrostyNeighbor: Fresh mischief and digital shenanigans

Research Saturday
Cold lures, hot targets.

Research Saturday

Play Episode Listen Later Jul 25, 2026 17:03


This week, we are joined by Ondrej Kubovič, Security Awareness Specialist from ESET, discussing their work on "FrostyNeighbor: Fresh mischief and digital shenanigans." Ondrej walks us through ESET's latest research into FrostyNeighbor, a long-running Belarus-aligned cyberespionage group that has continued to target Ukrainian government organizations with increasingly sophisticated spearphishing campaigns. We discuss how the group uses malicious PDF lures, server-side victim validation, and an updated JavaScript-based malware chain to selectively deploy espionage tools, demonstrating its ongoing efforts to evade detection while compromising high-value targets across Eastern Europe. The research and executive brief can be found here: ⁠FrostyNeighbor: Fresh mischief and digital shenanigans

Startitup.sk
Luka z Esetu: Na Slovensku robíme len 2 % tržieb, no dane tu platíme z celého sveta

Startitup.sk

Play Episode Listen Later Jul 25, 2026 30:52


Audio News
ESET ALERTA QUE LA IA ABRE UNA NUEVA SUPERFICIE DE ATAQUE DIGITAL

Audio News

Play Episode Listen Later Jul 24, 2026 3:11


Agentes de inteligencia artificial comprometidos, malware Android con GenAI, engaños más convincentes y herramientas capaces de neutralizar las defensas empresariales están marcando una nueva etapa para el cibercrimen, advierte ESET en su nuevo informe Threat Report H1 2026.

Late Tech Show
Il futuro dei musei, vacanze studio con l'AI e le PMI Italiane e la sicurezza - S07e45

Late Tech Show

Play Episode Listen Later Jul 22, 2026 49:46


In questa puntata del Late Tech Show esploriamo come l'intelligenza artificiale e la digitalizzazione stiano trasformando settori chiave del nostro ecosistema: dalla sicurezza delle piccole e medie imprese alla gestione dei beni culturali, fino all'istruzione internazionale.Qual è lo stato della cyber-resilienza nelle PMI italiane?Insieme a Samuele Zaniboni di Eset, analizziamo i risultati di una ricerca condotta su 500 aziende italiane. Scopriamo perché, nonostante la crescente consapevolezza, il 33% delle PMI sia già stato colpito da attacchi informatici e come la cultura aziendale (coinvolgendo anche le Risorse Umane) sia la prima linea di difesa contro Ransomware e Phishing.Perché investire nella sicurezza H24 è vitale per le imprese locali?Approfondiamo il tema dei costi della sicurezza: quanto costa davvero proteggersi rispetto al fermo totale di un'azienda? Discutiamo dell'importanza di una protezione costante, 24 ore su 24, e di come l'intelligenza artificiale stia diventando un'arma fondamentale sia per gli attaccanti che per i difensori.Come si sta evolvendo il "Museo del Futuro" attraverso il digitale?Maria Emanuela Oddo, co-autrice di "Futuro Museo", ci spiega come la tecnologia stia trasformando i musei in vere e proprie "piattaforme culturali". Non si tratta solo di conservazione, ma di accessibilità territoriale e sociale, permettendo a chiunque di scoprire opere e documenti inediti (come i manoscritti di Leonardo o Michelangelo) attraverso la digitalizzazione e l'interoperabilità dei dati.In che modo l'AI sta cambiando le vacanze studio all'estero?Vanessa Rota di MLC Education racconta la nuova tendenza dei viaggi studio: gli studenti (e i genitori) non cercano più solo l'apprendimento linguistico, ma competenze tecniche legate all'intelligenza artificiale e alle discipline STEM. Vediamo come le scuole internazionali si stiano adeguando per formare i cittadini di domani.Come pianificare un percorso educativo internazionale di successo?Scopriamo l'importanza della consulenza pedagogica rispetto a quella puramente commerciale. Perché un percorso per università prestigiose come Harvard va costruito già dalle scuole medie? Vanessa ci spiega la complessità che sta dietro la mappatura delle scuole e l'importanza del rapporto umano in un mondo sempre più digitale.https://lts.businesscommunity.it Contattami per moderazioni, speech e consulenze: https://www.businesscommunity.it/gigi/contattami.php

Balázsék
3 - Az Egyesült Királyságban az elmúlt időszakban több olyan eset és botrány is történt, amely az OnlyFans platformot és az iskolai oktatást kapcsolta össze

Balázsék

Play Episode Listen Later Jul 21, 2026 16:35


3 - Az Egyesült Királyságban az elmúlt időszakban több olyan eset és botrány is történt, amely az OnlyFans platformot és az iskolai oktatást kapcsolta össze by Balázsék

Het Digitale Front
#62: ‘TikTok is de afstandsbediening van onze samenleving'

Het Digitale Front

Play Episode Listen Later Jul 17, 2026 32:33


We zijn terug aan Het Digitale Front! In drie speciale afleveringen ontvangen Art Rooijakkers, Dave Maasland en Harm Teunis experts op het gebied van cyber, geopolitiek en oorlogsvoering. Hoe oefenen de grootmachten Rusland, de Verenigde Staten en China hun invloed uit in het digitale domein? Met vandaag: journalist en voormalig China-correspondent Anouk Eigenraam over hoe China Europa steeds verder klemzet en hoe TikTok de afstandsbediening van onze samenleving is geworden. Niet voor niets waarschuwt de AIVD dat China een van de grootste dreigingen voor Nederland vormt. Want achter video's en webshops schuilt een veel grotere strijd: om data, invloed en macht. Hoe probeert China onze samenleving te sturen? En hoe voorkomt Europa dat het steeds afhankelijker wordt van China? Het Digitale Front is een coproductie van Corti Media en ESET.See omnystudio.com/listener for privacy information.

London Live with Mike Stubbs
The latest on smart glasses concerns with Tony Anscombe of ESET

London Live with Mike Stubbs

Play Episode Listen Later Jul 13, 2026 10:48


The latest on smart glasses concerns with Tony Anscombe of ESET.

Het Digitale Front
#61: ‘Amerikanen voeren met Whatsapp metadata liquidaties uit'

Het Digitale Front

Play Episode Listen Later Jul 10, 2026 36:30


We zijn terug aan Het Digitale Front! In drie speciale afleveringen ontvangen Art Rooijakkers, Dave Maasland en Harm Teunis experts op het gebied van cyber, geopolitiek en oorlogsvoering. Hoe oefenen de grootmachten Rusland, de Verenigde Staten en China hun invloed uit in het digitale domein? Met vandaag: oud-AIVD'er en directeur van Stichting Justice for Prosperity Jelle Postma over Europa's digitale afhankelijkheid van de Verenigde Staten. Niet alleen onze sociale media en AI-systemen zijn in Amerikaanse handen, ook de overheid en vitale infrastructuur, zoals ziekenhuizen, vliegvelden en havens, draaien op Amerikaanse technologie. Wat als Donald Trump besluit die afhankelijkheid als drukmiddel te gebruiken? Kan hij het digitale licht uitzetten? En hoe kwetsbaar is Europa eigenlijk?Het Digitale Front is een coproductie van Corti Media en ESET.See omnystudio.com/listener for privacy information.

Monde Numérique - Jérôme Colombain

Face à des cyberattaques toujours plus furtives, Benoit Grunemwald, expert cybersécurité chez ESET, décrypte les nouvelles stratégies des cybercriminels. Il explique comment l'intelligence artificielle, la supervision humaine et les nouveaux outils de protection transforment la défense numérique.

Het Digitale Front
#60: ‘Rusland probeert onze samenleving van binnenuit te verzwakken'

Het Digitale Front

Play Episode Listen Later Jul 2, 2026 31:11


We zijn terug aan Het Digitale Front! In drie speciale afleveringen ontvangen Art Rooijakkers, Dave Maasland en Harm Teunis experts op het gebied van cyber, geopolitiek en oorlogsvoering. Hoe oefenen de grootmachten Rusland, de Verenigde Staten en China hun invloed uit in het digitale domein? Met vandaag: brigadegeneraal en hoogleraar ‘Cyber Warfare’ Paul Ducheine over de cyberstrategie van Rusland. Want hoewel Poetin misschien niet de krachtigste digitale wapens bezit, weet desinformatie uit Moskou steeds verder onze Westerse samenleving binnen te dringen en horen we steeds vaker dat Europese infrastructuur wordt platgelegd door Russische cyberaanvallen. Wat wil Poetin daarmee bereiken? En zijn we in staat terug te vechten? Het Digitale Front is een co-productie van Corti Media en ESET.See omnystudio.com/listener for privacy information.

The Cybersecurity Defenders Podcast
Intel Chat: Cisco CUCM exploited, ransomware profiles, Gamaredon & AI agent phishing [335]

The Cybersecurity Defenders Podcast

Play Episode Listen Later Jul 1, 2026 30:01


Intel Chat with Matt Bromiley and Chris Luft.Matt and Chris break down four stories from the week in threat intel:• Cisco CUCM (CVE-2026-20230) — a web-dialer SSRF that chains to root-level RCE, exploited in the wild less than 24 hours after the PoC and full exploit chain were published.• The latest Ransomware Tool Matrix (RTM) / Ransomware Vulnerability Matrix (RVM) update, profiling three active groups — The Gentlemen, DragonForce and Warlock — and the BYOVD and legit-admin-tool tradecraft they increasingly share.• Gamaredon's upgraded toolkit against Ukraine (per ESET): new PowerShell downloaders like PteroPaste, Cloudflare tunneling and Workers for C2, and exfiltration to trusted cloud storage such as Amazon S3 and Dropbox.• Varonis Threat Labs phishing an AI email agent ("Pinchy") — why agents spot technical phishing better than humans yet hand over credentials to a convincing social request, and why you should treat them as privileged junior employees.Chapters:0:00 Intro & catching up2:25 Cisco CUCM exploited within 24h of the PoC9:57 Ransomware Tool Matrix: The Gentlemen, DragonForce & Warlock15:44 Gamaredon's upgraded TTPs against Ukraine22:18 Can AI email agents be phished?28:08 Wrap-up: Black Hat plans & the LimaCharlie suiteThe Cybersecurity Defenders Podcast — a podcast about cybersecurity and the people that keep the internet safe. New episodes drop weekly.Subscribe wherever you listen:• Spotify: https://open.spotify.com/show/6ep00zeY3S8ffZ4o0UeSps• Apple Podcasts: https://podcasts.apple.com/us/podcast/the-cybersecurity-defenders-podcast/id1649981740• YouTube: https://www.youtube.com/@limacharlieioLearn more about LimaCharlie: https://limacharlie.io#cybersecurity #infosec #threatintel #ransomware #DFIR

TechMánia
Mi valódi még az AI-korszakban? Deepfake, bizalom és digitális önvédelem

TechMánia

Play Episode Listen Later Jun 28, 2026 60:28


Ebben az epizódban egy friss magyar AI-kutatás alapján beszélgetünk vendégünkkel, Kerek Istvánnal arról, hogyan vált a mesterséges intelligencia néhány év alatt technológiai újdonságból hétköznapi munkaeszközzé.Kerek István AI üzletfejlesztési szakértő, a ChatGPT Magyarul Facebook csoport alapítója, így első kézből látja, hogyan használják az emberek a mesterséges intelligenciát a mindennapokban, a munkában, a tanulásban és az üzleti döntések előkészítésében.ChatGPT, generatív AI, deepfake, social engineering, munkahelyi adatbiztonság és mentális egészség — egy olyan témáról beszélgetünk, amely már rég nem csak az IT-sokat érinti.A kutatás egyik legerősebb állítása, hogy az AI-korszakban már nem az a fő kérdés, hogy tud-e a gép jó szöveget, képet, hangot vagy videót készíteni. Hanem az, hogy mi, emberek képesek vagyunk-e még eldönteni, mi valódi.A magyar munkavállalók jelentős része már kipróbált valamilyen AI-eszközt, sokan pedig nem hivatalos céges bevezetésen keresztül, hanem saját rutinból kezdték el használni. Ez a „shadow AI” jelenség: amikor az AI már bent van a munkahelyen, csak a szervezet még nem beszél róla. A valódi kérdés ezért nem az, hogy használjuk-e az AI-t, hanem az, hogy milyen adatokkal, milyen szabályokkal és milyen emberi ellenőrzéssel tesszük.Beszélünk arról is, hogy az AI nemcsak hatékonyabbá teszi a munkát, hanem a csalásokat is professzionálisabbá. A rossz helyesírású, gyanús adathalász e-mailek korszaka lassan véget ér: a generatív AI tökéletes magyarságú, személyre szabott, céges stílusú üzeneteket, sőt akár hang- és videóalapú megtévesztéseket is képes segíteni. Így a régi védekezés, hogy „majd észreveszem, ha valami furcsa”, egyre kevésbé elég.A deepfake és az AI-generált tartalmak miatt a bizalom technológiai kérdéssé vált. Ha egy videó, hangfelvétel vagy e-mail már nem önmagában bizonyíték, akkor új ellenőrzési kultúrára van szükség: többcsatornás visszaigazolásra, digitális aláírásokra, jóváhagyási folyamatokra és világos munkahelyi szabályokra.A riport különösen izgalmas része, hogy az AI-t nemcsak technológiai és kiberbiztonsági, hanem mentális egészségi kérdésként is kezeli. Ha folyamatosan mérlegelnünk kell, hogy amit látunk, hallunk vagy olvasunk, az valódi-e, az komoly kognitív terhelést jelent. A bizonytalanság, a gyanakvás és a kontrollvesztés érzése stresszt okozhat — a fáradt, sürgetett ember pedig könnyebben kattint, utal, ad ki adatot vagy hagy ki ellenőrzési lépéseket.Ebben az adásban nem pánikot akarunk kelteni, hanem megérteni, hogyan használhatjuk az AI-t okosan, biztonságosan és felelősen. Mert a mesterséges intelligenciát nem tiltani kell, hanem keretek közé tenni.A kutatás az ESET termékeinek kizárólagos forgalmazója, a Sicontact Kft. megbízásából készült.

Monde Numérique - Jérôme Colombain

Android sauve des vies au Vénézuela • Apple augmente fortement les prix de ses Mac et iPad • Meta lance des lunettes connectées bon marché • Tesla conteste un accident attribué à son Autopilot • L'Europe avance sur l'euro numérique • Les cyberarnaques profitent de la Coupe du monde • Des innovations pour la transition énergétique récompensées par les Prix EDF Pulse⭐️ Découvrez Frogans, l'innovation française qui réinvente le Web : cliquez ici===============Des smartphones Android qui sauvent des vies lors du séisme au VenezuelaLe double séisme qui a frappé le Venezuela a montré l'efficacité du système Android Earthquake Alerts de Google. Des millions d'utilisateurs Android ont reçu une alerte quelques secondes avant les secousses grâce aux accéléromètres intégrés dans les smartphones, capables de détecter les premières ondes sismiques. Une démonstration spectaculaire du potentiel des technologies mobiles au service de la sécurité civile.Apple augmente brutalement le prix de ses Mac et de ses iPadFace à la crise mondiale des semi-conducteurs, Apple revoit les tarifs de presque toute sa gamme informatique. Les Mac voient leur prix grimper de 100 à 700 euros selon les modèles, tandis que les iPad prennent jusqu'à 150 euros. Seuls les iPhone échappent, pour l'instant, à cette hausse, conséquence directe de la pénurie de mémoire vive alimentée par l'explosion de la demande liée à l'intelligence artificielle.Meta démocratise les lunettes connectéesMeta lance une nouvelle génération de lunettes connectées à environ 300 dollars, moins chère que les modèles développés avec Ray-Ban. Elles intègrent caméra, micros, haut-parleurs, traduction instantanée et assistant IA Meta, tout en conservant une approche plus accessible pour accélérer l'adoption des wearables intelligents.Tesla : l'Autopilot mis en cause… mais l'enquête nuance les accusationsUne famille américaine poursuit Tesla après un accident mortel au Texas impliquant une Model 3. Le conducteur affirme que l'Autopilot était activé, mais les données enregistrées par le constructeur indiqueraient au contraire que le conducteur avait repris la main quelques instants avant l'impact. Une nouvelle affaire qui relance le débat sur les limites des systèmes d'aide à la conduite.Waymo rappelle 4 000 robotaxisLes véhicules autonomes de Waymo ont été surpris à plusieurs reprises sur des autoroutes fermées pour travaux. L'entreprise rappelle près de 4 000 véhicules afin de corriger un défaut d'interprétation des zones de chantier. Malgré ce sixième rappel, Waymo poursuit son expansion aux États-Unis et à l'international.Le supercalculateur chinois Line Shine devient numéro un mondialLa Chine reprend la tête du classement Top500 avec Line Shine, installé à Shenzhen. Cette machine de plus de 2 000 exaflops, entièrement basée sur des processeurs chinois, dépasse désormais le supercalculateur américain El Capitan et confirme les ambitions technologiques de Pékin dans le calcul haute performance.Euro numérique : l'Europe accélèreDans le Débrief transatlantique, Bruno Guglielminetti (Mon Carnet) revient sur l'avancée du projet d'euro numérique. La future monnaie numérique de la Banque centrale européenne vise à renforcer la souveraineté européenne face aux géants américains du paiement tout en promettant un haut niveau de protection de la vie privée. Le Canada réfléchit également à un dispositif comparable, même si le sujet suscite d'importantes interrogations.Les lunettes IA de Meta : au service de l'accessibilitéINTERVIEW - Matthew Sanders, directeur de l'accessibilité et de l'impact pour les wearables IA chez Meta, explique pourquoi les lunettes intelligentes sont appelées à compléter le smartphone plutôt qu'à le remplacer. Il détaille les progrès réalisés en matière d'accessibilité grâce à l'IA, notamment pour les personnes malvoyantes, ainsi que les défis techniques liés à l'autonomie, la miniaturisation et la protection de la vie privée.Cybercriminalité : les escrocs profitent de la Coupe du mondeINTERVIEW [PARTENARIAT] - Benoît Grunemwald, expert cybersécurité chez ESET, alerte sur la multiplication des arnaques liées à la Coupe du monde de football : faux sites de billetterie, faux produits dérivés, IPTV frauduleuses et campagnes de phishing. Il explique également comment les cybercriminels développent désormais des outils capables de neutraliser les logiciels de sécurité, rendant indispensable une surveillance permanente des systèmes.EDF Pulse 2026 : six innovations pour accélérer la transition énergétiqueINTERVIEW [PARTENARIAT] - Julien Villeret, directeur de l'innovation d'EDF, présente les lauréats des Prix EDF Pulse 2026. Au programme : des vêtements rafraîchissants pour les travailleurs exposés aux fortes chaleurs, des solutions de stockage thermique pour l'industrie, le reconditionnement de batteries, l'inspection industrielle assistée par IA, un dirigeable électrique pour surveiller les infrastructures et un drone élagueur destiné à sécuriser les réseaux électriques. Autant d'innovations appelées à accompagner la transition énergétique.Hébergé par Audiomeans. Visitez audiomeans.fr/politique-de-confidentialite pour plus d'informations.

Cyberhelden
Cyberhelden 77 - Smart-tv's, pincodes en GPS-jamming uit de ruimte

Cyberhelden

Play Episode Listen Later Jun 25, 2026 60:44


Ronald, Marco en Jelle zijn terug met AI-soevereiniteit, ransomware met eigen EDR-killers, een vals noodalarm in Brazilië, Chinese hackers in ArcGIS, je pincode afgeven aan justitie, smart-tv's als proxy en GPS-jamming vanuit de ruimte. Marco begint met Fable 5 en Mythos 5: frontier-modellen van Anthropic die onder Amerikaanse exportcontrole kwamen te liggen. Dat past in een bredere beweging van chipcontrole naar modelcontrole, met een ongemakkelijke vraag voor Europa: wat betekent AI-soevereiniteit als je modellen, chips en clouds alsnog afhankelijk zijn van Amerikaanse infrastructuur? Daarna The Gentlemen, een ransomwaregroep die zijn affiliates niet alleen encryptors geeft, maar ook eigen EDR-killers. Met BYOVD-technieken laden aanvallers kwetsbare maar nog vertrouwde drivers om securitytools uit te zetten voordat de ransomware-payload wordt uitgerold. Ook bij Marco: Brazilië kreeg een vals "Alerta Extremo" via het nationale noodwaarschuwingssysteem. De melding bevatte onder meer het woord "misantropia". De kern is niet alleen het hackverhaal, maar vooral vertrouwen: wat gebeurt er als mensen het noodalarm zelf niet meer vertrouwen? Jelle bespreekt Chinese hackers die ArcGIS misbruikten voor langdurige persistentie. Volgens ReliaQuest werd een legitieme Java Server Object Extension omgebouwd tot webshell, waarna SoftEther VPN Bridge toegang hield. Ronald bespreekt het afgeven van je pincode aan justitie. Volgens het Europees Hof voor de Rechten van de Mens is dat onder voorwaarden geen schending van je zwijgrecht. Maar een telefoon is geen kluisje met een paar documenten; het is een doorlopend logboek van je leven. Het hoofdverhaal van Jelle gaat over smart-tv's, PetFlix en de Bright SDK. Include Security onderzocht hoe apps op smart-tv's en mobiele apparaten een commerciële SDK kunnen bevatten die de internetverbinding van gebruikers inzet als residential proxy. Tot slot neemt Ronald ons mee naar GPS-jamming vanuit de ruimte. Onderzoekers zagen korte, brede storingen in GNSS-signalen boven Europa, Groenland en Canada en herleidden die tot Russische militaire satellieten. GPS is niet alleen navigatie, maar ook timing voor elektriciteitsnetten, financiële transacties, communicatie en andere kritieke infrastructuur. Bronnen: - Anthropic over Fable 5 en Mythos 5: https://www.anthropic.com/news/fable-mythos-access - White House AI executive order: https://www.whitehouse.gov/presidential-actions/2026/06/promoting-advanced-artificial-intelligence-innovation-and-security/ - ESET over The Gentlemen: https://www.welivesecurity.com/en/eset-research/killing-me-gently-inside-gentlemens-edr-killer-framework/ - Check Point over The Gentlemen-leak: https://research.checkpoint.com/2026/thus-spoke-the-gentlemen/ - Brazilië / vals noodalarm: https://agenciabrasil.ebc.com.br/meio-ambiente/noticia/2026-06/sistema-da-defesa-civil-e-suspenso-apos-invasao-e-disparo-falso - ArcGIS / Flax Typhoon: https://www.bleepingcomputer.com/news/security/chinese-hackers-abuse-geo-mapping-tool-for-year-long-persistence/ - Pincode en zwijgrecht: https://blog.iusmentis.com/2026/06/19/je-pincode-moeten-geven-aan-justitie-is-geen-schending-van-je-zwijgrecht/ - Smart-tv / Bright SDK: https://blog.includesecurity.com/2026/06/the-smart-tv-in-your-livingroom-is-a-node-in-the-aiscraping-economy/ - The Verge over PetFlix: https://www.theverge.com/column/885244/smart-tv-web-crawler-ai - Veritasium GPS-video: https://www.youtube.com/watch?v=tz23G_UXCGA - GNSS-paper: https://arxiv.org/html/2606.03673v1 DNS-blocklist uit Include Security: proxyjs.brdtnet.com proxyjs.luminatinet.com proxyjs.bright-sdk.com clientsdk.bright-sdk.com clientsdk.brdtnet.com

WeTalkSecurity
IT-Sicherheit im Gesundheitswesen | Folge 42

WeTalkSecurity

Play Episode Listen Later Jun 24, 2026 20:48 Transcription Available


In dieser Folge von „WeTalkSecurity" geht es um Cybersicherheit im Gesundheitswesen – ein Sektor, der europaweit zu den Hauptzielen von Cyberangriffen zählt und gleichzeitig unter Fachkräftemangel und Budgetdruck steht. Philipp Plum spricht in Berlin mit Tony Liersch, Teamleiter IT-Infrastruktur und Support am Klinikum Garmisch-Partenkirchen, und seinem Kollegen Andreas Kretschmer über den IT-Sicherheitsalltag eines 400-Betten-Hauses: über Managed Detection and Response, Netzwerksegmentierung bei Medizingeräten, die Umsetzung von NIS2 und die Frage, wie man als kleines Team mit großer Verantwortung dauerhaft handlungsfähig bleibt.

Uniradioinforma
Falsas ofertas laborales suplantan a grandes empresas para robar datos personales en Latinoamérica

Uniradioinforma

Play Episode Listen Later Jun 23, 2026 13:23


Esta mañana en #Noticias7AM entrevistamos a David González, Investigador de seguridad informática de ESET. Tema: Falsas ofertas laborales suplantan a grandes empresas para robar datos personales en Latinoamérica#Uniradioinforma

Cyber Security Today
Stolen OAuth Tokens Hit Security Firms, AryStinger Router Botnet Emerges, AI Deepfake Cyberstalking

Cyber Security Today

Play Episode Listen Later Jun 22, 2026 10:03


A breach at market intelligence platform Klue allowed attackers to steal OAuth tokens linking Clue to customers' Salesforce environments, enabling quiet API-driven data extraction from firms including Huntress, Recorded Future, Tanium, and Jamf; Clue revoked tokens, removed the legacy integration credential involved, and engaged CrowdStrike as Icarus threatens extortion, echoing earlier Salesforce token-theft campaigns affecting nearly 1,000 companies.  Researchers also detail AriStinger, a new botnet infecting 4,000+ end-of-life D-Link routers to scan, proxy, tunnel, execute commands, and hijack DNS, with many infections in South Korea and China. The episode covers federal cyberstalking charges against Anthony Belford for allegedly using fake accounts and AI-generated nude images, and ESET's report that the "Gentleman" ransomware crew is developing modular EDR-killing tools to disable endpoint defenses. 00:00 Top Stories Teaser 00:29 Clue OAuth Token Breach 02:32 Salesforce Token Attack Trend 04:14 AryStinger Router Botnet 05:33 AI Deepfake Cyberstalking Case 07:50 Gentleman EDR Killer Arsenal 09:37 Wrap Up And Sign Off

Met Nerds om Tafel
Eén op de drie kinderen praat online met vreemden

Met Nerds om Tafel

Play Episode Listen Later Jun 10, 2026 90:14


Eén op de drie kinderen praat online met vreemden. Op straat zou je in paniek raken, online haalt iedereen z’n schouders op. Astrid Oosenbrug zit aan tafel, en ze draagt een complete garderobe aan petten: medeoprichter van DIVD, CEO van DIVD Academy, interim-directeur bij HackShield en Public Affairs & CSR Officer bij ESET. We beginnen bij HackShield, de gratis game die kinderen van 8 tot 12 tot Cyber Hero opleidt, en belanden al snel bij Roblox. Randal bekent dat hij zichzelf binnen een half uur betrapte terwijl hij stiekem naar zolder liep om zijn eigen poppetje op de loopband te laten farmen. Hoe houd je jong hackerstalent op het goede pad? Bij de DIVD Academy gaat dat over ethiek: je kunt aantonen dat je in een systeem zit, maar je past geen cijfers aan. Astrid legt uit waarom Victor met maga2020! wel mocht inloggen maar verder niets aanraakte, hoe moneymuling werkt, en waarom het datalek bij Clinical Diagnostics voor sommige vrouwen letterlijk levensbedreigend is. Plus: meidenhuizen, dark patterns en het eindeloze kat-en-muis-spel om schermtijd. Over Astrid Oosenbrug Astrid Oosenbrug is medeoprichter van DIVD (Dutch Institute for Vulnerability Disclosure, bekend van onder meer de Kaseya-zaak in 2021) en medeoprichter en CEO van DIVD Academy. Ze is interim-directeur bij HackShield en doet Public Affairs & CSR bij antivirusbedrijf ESET. Van 2012 tot 2017 was ze Tweede Kamerlid voor de PvdA en gold ze als het meest digitale Kamerlid; tot juni 2025 was ze bijna zeven jaar voorzitter van COC Nederland. Ze keert in deze aflevering terug om twee lijnen te verbinden: kinderen veilig en ethisch leren omgaan met internet, en de strijd voor een veiliger en eerlijker net. LinkedIn: https://www.linkedin.com/in/astridoosenbrug/ Website: https://www.divd.nl/who-we-are/team/people/astrid-oosenbrug/ Sponsor: Red de AI Wet Kim van Sparrentak neemt het op tegen de techbro’s om duidelijke regels te maken voor kunstmatige intelligentie. Red de AI Wet besluiter je hier.In deze aflevering 0:00:00 Het meest digitale Kamerlid en een waslijst aan petten0:02:18 HackShield uitgelegd: gamen om Cyber Hero te worden (8-12 jaar)0:05:48 Roblox als verslavingsmachine, en Randal die zichzelf betrapt0:09:06 Dark patterns: waarom zelfs het klikgeluid is uitgedacht0:11:14 Meidenhuizen: gezellig, met een zieke wereld eronder0:13:39 Eén op de drie kinderen praat online met vreemden0:17:26 Kat-en-muis met schermtijd: de Word-truc en de Unix-computer0:25:32 Interim-directeur bij HackShield: governance en de stekker eruit0:28:46 Een onbetrouwbare overheid en de preventieparadox0:32:13 Gedrogeerd en gefilmd: 80.000 Nederlandse IP-adressen0:35:21 Waar meld je het als je per ongeluk klikt?0:46:31 DIVD Academy: van digitaal belletje trekken tot ethisch hacken0:58:39 Rebootcamp met de politie en ronselen via Discord0:59:55 Werkt een social-mediaverbod voor jongeren?1:06:33 Trumps wachtwoord en de grens van responsible disclosure1:08:09 Vraag Arnoud Wokker: moet programmeren en AI een schoolvak worden?1:13:28 Moneymuling: hoe kinderen ongemerkt witwassers worden1:21:02 Clinical Diagnostics: als een datalek levensbedreigend wordt Genoemd in deze aflevering HackShield Future Cyber Heroes, gratis game cyberweerbaarheid voor 8-12 jaar DIVD, vrijwilligers die kwetsbaarheden opsporen en melden DIVD Academy: The Ethical Hacker, gratis online hackcursus Offlimits, meldpunt online misbruik (voorheen Helpwanted) ATKM, autoriteit om kinderporno en terreurmateriaal te melden Stichting Cyberbrein, Henk van Ee begeleidt jonge cyberbreinen Effectevaluatie HackShield (Saxion), onafhankelijk onderzoek naar het lespakket Datalek Clinical Diagnostics, achtergrond bij het bevolkingsonderzoek-lek Tips van de tafel Astrid Oosenbrug: zet bij games als Roblox de chatfunctie uit; kies waar mogelijk voor “alleen mensen die je kent”. Astrid Oosenbrug: per ongeluk op iets verkeerds geklikt? Meld het laagdrempelig bij Offlimits of de ATKM in plaats van het weg te klikken. Randal Peelen: maak schermtijdafspraken samen mét je kind en leg uit waaróm, in plaats van alleen te verbieden, want een verbod lossen ze creatief op. Jurian Ubachs: spreek elkaar aan op gedrag dat niet oké is, ook bij een grap; wacht niet tot het slachtoffer dat zelf moet doen.See omnystudio.com/listener for privacy information.

The Tech Blog Writer Podcast
How Businesses Can Stay Ahead of AI-Powered Attacks

The Tech Blog Writer Podcast

Play Episode Listen Later Jun 7, 2026 28:27


Can businesses still rely on cybersecurity strategies that were designed for a very different threat environment? In this episode of Tech Talks Daily, I speak with Matt Knell from ESET about why many managed service providers and businesses are being forced to rethink what effective cybersecurity looks like in 2026. As cybercriminals become faster, more sophisticated, and increasingly powered by AI, many of the approaches that once provided reassurance are struggling to keep pace. Matt shares why the idea of "good enough" security is becoming increasingly difficult to defend. While endpoint protection remains an important part of any security strategy, he explains why technology alone is no longer enough. Organizations must continually review, update, and strengthen their defenses rather than assuming that yesterday's protections will be sufficient tomorrow. Our conversation explores the lasting impact of ransomware and the lessons businesses continue to learn from high-profile incidents. From major retailers to global manufacturers, attacks are creating operational disruption, financial losses, and reputational damage on a scale that few organizations would have imagined a decade ago. We also discuss one of the industry's most persistent challenges: the cybersecurity skills gap. Finding experienced security professionals remains difficult, while retaining talent has become equally challenging. Matt explains how managed detection and response services are helping MSPs extend their capabilities without having to build and maintain large security operations teams. AI naturally plays a major role in the discussion. While cybersecurity vendors use AI to improve threat detection and response, attackers are also leveraging the technology to accelerate and sophisticate phishing campaigns, social engineering, and other forms of cybercrime. Matt explains why businesses must remain realistic about both opportunities and risks. Another theme throughout the episode is the growing expectation that cybersecurity should be treated as a business issue rather than purely an IT concern. Regulations, cyber insurance requirements, supply chain scrutiny, and customer expectations are all increasing pressure on organizations to demonstrate stronger security practices and greater resilience. We also discuss ESET PRIVATE and why more organizations are seeking security services tailored to their specific operational needs. Rather than relying on a standard package, many businesses are looking for solutions that align with their industry requirements, compliance obligations, risk profile, and long-term objectives. Finally, Matt reflects on the conversations emerging from ESET's recent partner conference and shares his perspective on the topics shaping cybersecurity priorities for the coming year. AI, resilience, compliance, and business education continue to dominate discussions as organizations look for practical ways to strengthen their defenses. If you're an MSP, IT leader, business owner, or anyone responsible for protecting digital operations, this episode offers a timely look at the challenges facing organizations today and the steps many are taking to prepare for what comes next. Is your organization still relying on security strategies designed for yesterday's threats, or have you adapted to today's cyber risks?

MONEY FM 89.3 - Prime Time with Howie Lim, Bernard Lim & Finance Presenter JP Ong
The Agenda: Digital safeguards for our kids during the June holidays

MONEY FM 89.3 - Prime Time with Howie Lim, Bernard Lim & Finance Presenter JP Ong

Play Episode Listen Later Jun 5, 2026 20:37


The June holidays have begun and many parents are likely going through a familiar challenge — managing their children's screen time. But for Gen Alpha, the digital world isn't just a place to pass the time. It's where they learn, play, socialise and increasingly, shape their understanding of the world. Today's children are navigating an online landscape that is vastly different from anything previous generations experienced. However, the use of technology also comes with plenty of risks. On The Agenda, Hongbin Jeong speaks to Pamela Ong, Country Manager, Singapore and Asia at ESET to learn how parents can protect their children from the online dangers, And whether is it still only about limiting our children’s screen time in today’s setting.See omnystudio.com/listener for privacy information.

The Cybersecurity Defenders Podcast
GitHub repositories compromised, Webworm targets Europe, fake Outlook & cybercriminal VPN / Intel Chat [#326]

The Cybersecurity Defenders Podcast

Play Episode Listen Later May 29, 2026 24:27


Originally recorded: Friday May 22, 2026In this episode of The Cybersecurity Defenders Podcast, we discuss some intel being shared in the LimaCharlie community.GitHub has confirmed that roughly 3,800 internal repositories were accessed in a supply chain compromise tied to the hacking group TeamPCP.China-aligned threat actor Webworm has shifted its targeting focus from Asia to Europe, according to new research published by ESET.Researchers uncovered a previously undocumented Microsoft 365 account takeover panel that integrates directly with Evilginx Pro infrastructure to streamline token theft and post-compromise operations.European and North American law enforcement agencies announced the dismantling of “First VPN,” a VPN service allegedly built to support cybercriminal activity including ransomware operations, data theft, scanning, and denial-of-service attacks.Support our show by sharing your favorite episodes with a friend, subscribe, give us a rating or leave a comment on your podcast platform.This podcast is brought to you by LimaCharlie, maker of the SecOps Cloud Platform, infrastructure for SecOps where everything is built API first. Scale with confidence as your business grows. Start today for free at limacharlie.io.

Cyberhelden
Cyberhelden 74 - Criminelen, Cloudflare, consultants en piepers

Cyberhelden

Play Episode Listen Later May 28, 2026 47:43


Ronald, Marco en Jelle zijn terug met een aflevering over criminelen, Cloudflare, consultants en piepers. Dave Maasland verkoopt ESET Nederland aan het Slowaakse moederbedrijf ESET, Ronald duikt in het Follow the Money-interview met TIB-voorzitter Annemieke Zwanenveld over de nieuwe Wiv, toetsing, CTIVD/TIB-samenvoeging, witte jassen en Palantir. Daarna Jelle's human-interest ransomwareverhaal: The Gentlemen RaaS werd zelf gehackt via de hostinglaag achter hun Rocket.Chat, waardoor Check Point kon meekijken in interne chats, payouts, AI-assisted coding en het kantoortje achter ransomware. Marco sluit af met Google Threat Intelligence over Chinese phishing-as-a-service: betere lokalisatie, RCS/iMessage en AI als contextversneller. Daarna het hoofdverhaal: Cloudflare heeft via Anthropic's Project Glasswing Mythos op meer dan 50 repositories losgelaten. Marco legt uit waarom dat niet neerkomt op "druk op knop, vind zero-days", maar op exploit-chain construction, proof generation, signal-to-noise en vooral: een hele vulnerability-research-harness met recon, hunt, validate, gapfill, dedupe, trace en report. Geen magische silver bullet, wel een duidelijke versnelling voor wie de workflow eromheen bouwt. Jelle pakt vervolgens McKinsey Lilli en BCG X erbij. CodeWall liet zien hoe interne AI-platforms zelf attack surface worden: publieke API-documentatie, endpoints zonder authenticatie, SQL-injectie, IDOR, miljoenen chats en files, system prompts, workspaces, modelconfiguraties en complete datawarehouses. Het echte verhaal: organisaties stoppen hun kennislaag, documenten, prompts en besluitvorming steeds meer in platforms. Wie daarin zit, zit bijna in het geheugen van de organisatie. Ronald en Marco sluiten af met het Mossad-pieperverhaal. Naar aanleiding van een nieuw Hebreeuws boek en een interview in The Jerusalem Post lopen ze door hoe de Hezbollah-pagers en walkie-talkies als supply-chain-operatie zouden zijn opgebouwd: techniek, infiltratie, Gold Apollo, BAC Consulting, Iraanse argwaan en de spanning tussen "ongelooflijk knap" en "hier zijn mensen door gestorven". *Bronnen* - Tweakers, "Slowaakse ESET koopt Nederlandse ESET": https://tweakers.net/nieuws/248036/slowaakse-eset-koopt-nederlandse-eset.html - ESET press release: https://www.eset.com/us/about/newsroom/company/eset-market-expansion-europe-asia/ - Follow the Money, "Geheime diensten gebruiken onafhankelijke experts om publiek debat te sturen": https://www.ftm.nl/artikelen/geheime-diensten-zetten-onafhankelijke-experts-in - Check Point Research, "When the Ransomware Gang Gets Hacked": https://blog.checkpoint.com/research/when-the-ransomware-gang-gets-hacked-what-the-gentlemen-leak-reveals-about-modern-ransomware-risk/ - Cloudflare Blog, Grant Bourzikas, "Project Glasswing: what Mythos showed us": https://blog.cloudflare.com/cyber-frontier-models/ - Anthropic, Project Glasswing: https://www.anthropic.com/glasswing - CodeWall, "How We Hacked McKinsey's AI Platform": https://codewall.ai/blog/how-we-hacked-mckinseys-ai-platform - CodeWall, "How We Hacked BCG's Data Warehouse": https://codewall.ai/blog/how-we-hacked-bcgs-data-warehouse-3-17-trillion-rows-zero-authentication - The Jerusalem Post, "Inside Israel's secret operation to turn Hezbollah's beepers into bombs": https://www.jpost.com/israel-news/defense-news/article-896890

The Morning Review with Lester Kiewit Podcast
How smart glasses are rewriting the rules of consent in South Africa

The Morning Review with Lester Kiewit Podcast

Play Episode Listen Later May 27, 2026 9:52 Transcription Available


llan Juma, Lead Cyber Security Engineer at ESET spoke to Clarence about significant security and privacy risks that smart glasses are creating. Views and News with Clarence Ford is the mid-morning show on CapeTalk. This 3-hour long programme shares and reflects a broad array of perspectives. It is inspirational, passionate and positive. Host Clarence Ford’s gentle curiosity and dapper demeanour leave listeners feeling motivated and empowered. Known for his love of jazz and golf, Clarrie covers a range of themes including relationships, heritage and philosophy. Popular segments include Barbs’ Wire at 9:30am (Mon-Thurs) and The Naked Scientist at 9:30 on Fridays. Thank you for listening to a podcast from Views & News with Clarence Ford Listen live on Primedia+ weekdays between 09:00 and 12:00 (SA Time) to Views and News with Clarence Ford broadcast on CapeTalk https://buff.ly/NnFM3Nk For more from the show go to https://buff.ly/erjiQj2 or find all the catch-up podcasts here https://buff.ly/BdpaXRn Subscribe to the CapeTalk Daily and Weekly Newsletters https://buff.ly/sbvVZD5 Follow us on social media: CapeTalk on Facebook: https://www.facebook.com/CapeTalk CapeTalk on TikTok: https://www.tiktok.com/@capetalk CapeTalk on Instagram: https://www.instagram.com/ CapeTalk on X: https://x.com/CapeTalk CapeTalk on YouTube: https://www.youtube.com/@CapeTalk567See omnystudio.com/listener for privacy information.

Les Locomotives
Andie Ella - De YouTube à millionnaire : la naissance de Milia Matcha | E204

Les Locomotives

Play Episode Listen Later May 26, 2026 66:36


Depuis ses 12 ans, Andie Ella filme des vidéos dans sa chambre.Passionnée de maquillage, elle apprend seule sur YouTube, elle rêve de devenir maquilleuse.Elle part à 15 ans de chez elle et commence très jeune à construire sa vie à sa manière.Pendant des années, elle partage son quotidien en ligne jusqu'à créer une communauté ultra fidèle qui aujourd'hui réunit 1 million de personnes.Mais dans ses vidéos, un détail revient sans cesse : son matcha.À force de voir ses abonnés lui demander où trouver un bon matcha, elle décide de créer sa propre marque. son objectif, changer l'image du matcha en France.Le lancement est fulgurant. Ruptures de stock, croissance rapide, équipe qui s'agrandit… En quelques années, Milia Matcha devient bien plus qu'une marque d'influenceuse mais un empire.Dans cet épisode, tu découvriras :Ses débuts sur YouTube à seulement 12 ansPourquoi elle a quitté l'école très jeuneLes coulisses du lancement de Milia MatchaSon hypercroissance en seulement quelques annéesEt comment elle construit aujourd'hui une marque qui la dépasse complètement//////////////////////////////////////////////////////////////////////////////////// 

ITSPmagazine | Technology. Cybersecurity. Society
After RSAC Conference 2026, Reflecting on Agentic AI, Community, and the Evolution of Cybersecurity | A Brand Highlight at RSAC Conference 2026 with Tony Anscombe, Chief Security Evangelist of ESET

ITSPmagazine | Technology. Cybersecurity. Society

Play Episode Listen Later May 23, 2026 7:33


Agentic AI was the theme that pulled away from the pack at RSAC Conference 2026. Tony Anscombe of ESET makes the case that once AI shifts from being directed by humans to operating with its own objectives and logic, the security surface changes with it, and organizations are being forced to rethink what they protect and how. At the show, ESET announced two products that meet that moment head on. The ESET AI Skills Checker is a free-to-use tool coming to market. ESET AI Protection looks inside AI sessions on the endpoint, flagging sensitive data leakage, malicious links returned by AI systems, and suspicious behavior, and surfacing it all inside normal cybersecurity operations for investigation, blocking, or detection. Tony closes with a reminder worth keeping. His first RSA was in 1998, and the technology he worked on then (sandboxing, dynamic code, remote windowing, encryption, authentication) mirrors a lot of what walks the RSAC Conference floor today. The packaging evolves, the core principles do not. Build forward, but do not lose sight of what the past already proved. This is a Brand Highlight. A Brand Highlight is a ~5 minute introductory conversation designed to put a spotlight on the guest and their company. Learn more: https://www.studioc60.com/creation#highlight GUEST Tony Anscombe, Chief Security Evangelist, ESET LinkedIn: https://www.linkedin.com/in/tonyanscombe/ RESOURCES Learn more about ESET: https://www.eset.com ESET AI Skills Checker and ESET AI Protection: https://www.eset.com Are you interested in telling your story? ▶︎ Full Length Brand Story: https://www.studioc60.com/content-creation#full ▶︎ Brand Spotlight Story: https://www.studioc60.com/content-creation#spotlight ▶︎ Brand Highlight Story: https://www.studioc60.com/content-creation#highlight KEYWORDS Tony Anscombe, ESET, Sean Martin, brand story, brand marketing, marketing podcast, brand highlight, agentic AI, AI security, RSAC Conference 2026, threat intelligence, MDR, EDR, endpoint security, AI Skills Checker, AI Protection, cybersecurity community, multifactor authentication, cybersecurity evolution Hosted by Simplecast, an AdsWizz company. See pcm.adswizz.com for information about our collection and use of personal data for advertising.

The CyberWire
That shield has cracks in it.

The CyberWire

Play Episode Listen Later May 21, 2026 28:40


Microsoft confirms active exploitation of two Defender flaws. Europol dismantles a VPN service tied to ransomware gangs. A nine-year-old Linux kernel bug exposes SSH keys and password hashes. Cisco patches a critical Secure Workload vulnerability, while Drupal fixes a highly critical SQL injection flaw. Android malware quietly signs victims up for premium SMS scams. Webworm upgrades its espionage toolkit with Discord and Microsoft Graph backdoors. Plus, China and Russia deepen cooperation on AI, cybersecurity, and satellite systems. Our guest is Jake Moore, Global Cybersecurity Advisor for ESET, sharing a glimpse into his Infosecurity Europe keynote "The Deepfake Interview." Greg doesn't even work here anymore… Remember to leave us a 5-star rating and review in your favorite podcast app. Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you'll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn. CyberWire Guest Today, Maria Varmazis speaks with Jake Moore, Keynote speaker for the upcoming Infosecurity Europe conference and Global Cybersecurity Advisor for ESET, getting a glimpse into his session "The Deepfake Interview: Breaking In From the Inside." This interview is part of our partnership with Infosecurity Europe.  Selected Reading Microsoft Defender vulnerabilities exploited in the wild (Help Net Security) Europol Seizes First VPN Used by Ransomware Gangs, Arrests Administrator (Hackread) Nine-Year-Old Linux Kernel Flaw Leaks SSH Keys and Password Hashes (Infosecurity Magazine) Cisco Patches Critical Vulnerability in Secure Workload (SecurityWeek) Android Malware Spotted Subscribing Victims to Paid Services Without Consent (Hackread) Drupal Patches Highly Critical Vulnerability Exposing Websites to Hacking (SecurityWeek) Webworm: New burrowing techniques (We Live Security) Xi and Putin pledge closer cooperation on AI, cyberspace and satellite systems (The Record) Zombie user account let hackers control the city's water (The Register) Share your feedback. What do you think about CyberWire Daily? Please take a few minutes to share your thoughts with us by completing our brief listener survey. Thank you for helping us continue to improve our show. Want to hear your company in the show? N2K CyberWire helps you reach the industry's most influential leaders and operators, while building visibility, authority, and connectivity across the cybersecurity community. Learn more at sponsor.thecyberwire.com. The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc. Learn more about your ad choices. Visit megaphone.fm/adchoices

Podcasty Aktuality.sk
SHARE: Expert otvorene: Aj jedno tlačidlo v maily môže zruinovať podnik

Podcasty Aktuality.sk

Play Episode Listen Later May 21, 2026 50:58


Zabudnite na osamelých hackerov v tmavých pivniciach z akčných filmov. Dnešný kybernetický zločin funguje ako vysoko organizovaná IT korporácia s jasnou hierarchiou a prepracovaným marketingom. Ich najčastejším a najobľúbenejším terčom sa pritom prekvapivo stali malé a stredné podniky na Slovensku.Útočníci si z napádania menších firiem vytvorili lukratívny ekosystém. Prečo sú práve slovenské malé podniky dokonalým cieľom? Majú dostatok cenných dát aj peňazí, no chýbajú im špecializované oddelenia kyberbezpečnosti. Hackeri už nerosielajú zle preložené spamy, ale dokonale vizuálne napodobňujú reálne inštitúcie, ako je napríklad Západoslovenská energetika (ZSE). Stačí jediné kliknutie na zdanlivo nevinné tlačidlo v maily s faktúrou a útočníci získajú prístup do firemnej siete, ktorý môžu na čiernom trhu predať ransomvérovým gangom za tisíce eur.O tom, ako táto digitálna mafia funguje a kedy presne treba byť v práci najviac v strehu, sa v podcaste SHARE rozprával Maroš Žofčin so špecialistom na digitálnu bezpečnosť Ondrejom Kubovičom a výskumníkom malvéru Jakubom Kaločom zo spoločnosti Eset.Podcast vznikol v spolupráci so spoločnosťou Eset.Pripravte sa na budúcnosť s knihou od redaktorov Živé.sk „Umelá inteligencia: Pripravte sa na budúcnosť“. Teraz ju máme aj v elektronickej verzii. Nájdete ju na obchod.aktuality.sk.TIP: https://zive.aktuality.sk/clanok/0RfdZVW/nahliadnite-do-buducnosti-vydavame-knihu-o-umelej-inteligencii/V podcaste sa dozviete aj o týchto témach:Prečo sú malé a stredné slovenské podniky zlatou baňou pre kyberzločincov.Prečo útočné e-maily prichádzajú najčastejšie presne medzi 9:00 a 10:00 alebo po druhej poobede.Ako rozoznať podvrhnutú faktúru, ktorá vizuálne do detailu kopíruje reálne slovenské firmy.Ako funguje biznis model, kde si „operátori“ prenajímajú škodlivý kód takzvaným „partnerom“.Odstrašujúci prípad firmy CloudEye, ktorá predávala malvér pod zámienkou ochranného programu.Prečo hackerom v skutočnosti nejde o zaplatenie falošného nedoplatku z faktúry, ale o prihlasovacie údaje.Podcast SHARE pripravuje magazín Živé.sk.

La Cohorte, le podcast qui rapproche les freelances
REDIFF - MM#245 – Marine x Marine | petites offres, produits d'appel, création d'offres

La Cohorte, le podcast qui rapproche les freelances

Play Episode Listen Later May 8, 2026 8:49


Aujourd'hui, je te recommande un podcast… dans lequel j'ai été interviewée !Marine m'a invitée dans Work in Process pour parler d'un sujet qu'on adore toutes les deux :les petites offres (ou “produits d'appel”, ou “offres pied dans la porte”).L'épisode s'intitule « Comment créer des produits d'appel et des petites offres irrésistibles ».On y parle :– de quand et pourquoi créer ce type d'offres– de comment les promouvoir efficacement– et de pourquoi elles sont souvent sous-estiméesEt si tu veux prolonger ta réflexion, je t'ai préparé une petite sélection de Minutes Marines :– MM#99 : c'est quoi une offre de service ?– MM#102 : les offres pied dans la porte– MM#188 : les différents types d'offresEt toi, t'as déjà testé une offre pied dans la porte ?Tu sais ce que tu veux vendre, et à qui ?(Pour me répondre, envoie-moi un mp sur Linkedin

Business of Tech
Insurance Mandates and AI Regulation Shift MSPs from Tool Support to Proof and Liability Management

Business of Tech

Play Episode Listen Later Apr 22, 2026 12:53


The dominant structural shift discussed in the episode is the movement from tools-based differentiation to a market defined by proof and liability. This shift is driven by the rising demand for continuous, auditable control over data location, access, and change—requirements increasingly codified by policy mandates, insurance underwriting, and regional AI governance. As illustrated by France's shift away from Windows to Linux across government ministries, enforced through formal governmental policy, the conversation is moving beyond technology preferences to mandated operational boundaries and verifiable compliance. The episode cites findings from ESET's 2026 SMB Cyber Readiness Index, reporting that 86% of US SMBs and 78% of Canadian SMBs carry cyber insurance, with over half of US-insured SMBs required to implement explicit security controls by insurers. Underwriters increasingly demand evidence of controls like MFA, immutable backups, and EDR—not just attestations—at renewal, underwriting, and post-incident. Public sector mandates, such as France's comprehensive push for sovereignty encompassing OS, collaboration, cloud, and AI platforms, are producing enforceable requirements that cascade to commercial contracts and the MSP channel. Supporting developments include Gartner's forecast that by 2027, 35% of countries will be locked into region-specific AI platforms. This is reinforced by channel research from Channel Insider and a survey of 333 MSPs by AvePoint and Omnia, both pointing to governance—not AI tooling—as the leading blocker for MSPs adopting new technologies. Microsoft's move toward metered AI billing and the proliferation of shadow data (with more than 80% of sensitive data potentially sitting outside formal controls, according to Palo Alto Networks research) further highlight how operational complexity and fragmented governance elevate risk for service providers. For MSPs and IT leaders, these trends increase contractual and operational exposure. Failure to recognize that the market is purchasing assurance rather than tool support will leave providers absorbing liabilities related to insurance control failures and unmetered operational costs, often under fixed-fee models that do not account for new governance demands. Providers are advised to immediately review contract language for obligations tied to security controls, reconsider pricing and scope in governance delivery, and prepare for insurer-driven requirements such as third-party access to telemetry or continuous control attestations. The takeaway is that defensible, auditable evidence—not stack management—will define margins, accountability, and long-term client relationships. 00:00 Sovereignty Squeeze 04:22 Spawl Blindspot 07:02 Proof Pays 09:35 Why Do We Care?  Supported by:  ScalePad CometBackup 

Radiogeek
Radiogeek 2861 - Estuve en el ESET Security Days y estas son mis impresiones

Radiogeek

Play Episode Listen Later Apr 22, 2026 35:48


El programa 2861 de Radiogeek, les habló de varios temas importantes. Un rumor afirma que iOS 27 dejará a cuatro iPhone sin compatibilidad; Despídete de los deepfakes de famosos en YouTube; Google Fotos acaba de lanzar un filtro de belleza para 1.500 millones de personas; Trump elogia a Tim Cook; Trump insinúa un posible acuerdo entre el Pentágono y Anthropic a medida que disminuyen las tensiones; por ultimo hablo de la portada de Economista y del ESET security days 2026 en Argentina. Toda esta información la pueden encontrar desde nuestra web www.infosertec.com.ar o bien desde el canal de Telegram/Whastapp, o Instagram. Esperamos sus comentarios.

Paul's Security Weekly
Not All CISO Gigs Are Created Equal and RSAC Interviews from ESET and Mimecast - Rob Juncker, Joanna Chen, Tony Anscombe - BSW #443

Paul's Security Weekly

Play Episode Listen Later Apr 15, 2026 71:00


So you want to be a CISO? Do you know what that role entails? It depends on a number of factors, including industry, country location, technical vs. business, and more. Each position is more different than you think. Joanna Chen, Chief Information Security Officer at Dashlane, joins Business Security Weekly to discuss why not all CISO gigs are created equal. As a "technical" CISO in a foreign country, Joanna realized that not all of her peers came from a technical background, like herself. It's a broad world and the CISO role varies a lot. Joanna will discuss how to understand the various CISO roles and discuss the skills that are makers and breakers. Managing Cyber Risk as Financially Motivated Attacks Grow The ransomware and eCrime landscape continue to evolve at a rapid pace. ESET's global research team has been closely following ransomware gang disruptions and their use of EDR Killers to disable cybersecurity tools. In this interview, Tony Anscombe will take a look into recent research, and explore how the industry and businesses are responding to combat financial risk and mitigate threats. This segment is sponsored by ESET. Visit https://securityweekly.com/esetrsac to learn more about them! Attack Surface Just Got a Copilot AI adoption is accelerating faster than most organizations can secure it — and the consequences are showing up in email inboxes, collaboration platforms, and the shadow tools employees use every day. According to Mimecast's State of Human Risk 2026, 80% of organizations are concerned about sensitive data exposure through generative AI tools, yet 60% still lack strategies to address AI-driven threats. The result is a growing gap between the security investments organizations are making and the protection they're actually getting. In this conversation, Rob Juncker will explore why human behavior has become the defining variable in enterprise cybersecurity, how shadow AI is creating new data exposure and insider risk vectors, and what it takes for security architectures to adapt in real time — without slowing down the business. This segment is sponsored by Mimecast. Visit https://securityweekly.com/mimecastrsac to learn more about them! Visit https://www.securityweekly.com/bsw for all the latest episodes! Show Notes: https://securityweekly.com/bsw-443

Paul's Security Weekly TV
Not All CISO Gigs Are Created Equal and RSAC Interviews from ESET and Mimecast - Joanna Chen, Tony Anscombe, Rob Juncker - BSW #443

Paul's Security Weekly TV

Play Episode Listen Later Apr 15, 2026 71:00


So you want to be a CISO? Do you know what that role entails? It depends on a number of factors, including industry, country location, technical vs. business, and more. Each position is more different than you think. Joanna Chen, Chief Information Security Officer at Dashlane, joins Business Security Weekly to discuss why not all CISO gigs are created equal. As a "technical" CISO in a foreign country, Joanna realized that not all of her peers came from a technical background, like herself. It's a broad world and the CISO role varies a lot. Joanna will discuss how to understand the various CISO roles and discuss the skills that are makers and breakers. Managing Cyber Risk as Financially Motivated Attacks Grow The ransomware and eCrime landscape continue to evolve at a rapid pace. ESET's global research team has been closely following ransomware gang disruptions and their use of EDR Killers to disable cybersecurity tools. In this interview, Tony Anscombe will take a look into recent research, and explore how the industry and businesses are responding to combat financial risk and mitigate threats. This segment is sponsored by ESET. Visit https://securityweekly.com/esetrsac to learn more about them! Attack Surface Just Got a Copilot AI adoption is accelerating faster than most organizations can secure it — and the consequences are showing up in email inboxes, collaboration platforms, and the shadow tools employees use every day. According to Mimecast's State of Human Risk 2026, 80% of organizations are concerned about sensitive data exposure through generative AI tools, yet 60% still lack strategies to address AI-driven threats. The result is a growing gap between the security investments organizations are making and the protection they're actually getting. In this conversation, Rob Juncker will explore why human behavior has become the defining variable in enterprise cybersecurity, how shadow AI is creating new data exposure and insider risk vectors, and what it takes for security architectures to adapt in real time — without slowing down the business. This segment is sponsored by Mimecast. Visit https://securityweekly.com/mimecastrsac to learn more about them! Show Notes: https://securityweekly.com/bsw-443

Business Security Weekly (Audio)
Not All CISO Gigs Are Created Equal and RSAC Interviews from ESET and Mimecast - Rob Juncker, Joanna Chen, Tony Anscombe - BSW #443

Business Security Weekly (Audio)

Play Episode Listen Later Apr 15, 2026 71:00


So you want to be a CISO? Do you know what that role entails? It depends on a number of factors, including industry, country location, technical vs. business, and more. Each position is more different than you think. Joanna Chen, Chief Information Security Officer at Dashlane, joins Business Security Weekly to discuss why not all CISO gigs are created equal. As a "technical" CISO in a foreign country, Joanna realized that not all of her peers came from a technical background, like herself. It's a broad world and the CISO role varies a lot. Joanna will discuss how to understand the various CISO roles and discuss the skills that are makers and breakers. Managing Cyber Risk as Financially Motivated Attacks Grow The ransomware and eCrime landscape continue to evolve at a rapid pace. ESET's global research team has been closely following ransomware gang disruptions and their use of EDR Killers to disable cybersecurity tools. In this interview, Tony Anscombe will take a look into recent research, and explore how the industry and businesses are responding to combat financial risk and mitigate threats. This segment is sponsored by ESET. Visit https://securityweekly.com/esetrsac to learn more about them! Attack Surface Just Got a Copilot AI adoption is accelerating faster than most organizations can secure it — and the consequences are showing up in email inboxes, collaboration platforms, and the shadow tools employees use every day. According to Mimecast's State of Human Risk 2026, 80% of organizations are concerned about sensitive data exposure through generative AI tools, yet 60% still lack strategies to address AI-driven threats. The result is a growing gap between the security investments organizations are making and the protection they're actually getting. In this conversation, Rob Juncker will explore why human behavior has become the defining variable in enterprise cybersecurity, how shadow AI is creating new data exposure and insider risk vectors, and what it takes for security architectures to adapt in real time — without slowing down the business. This segment is sponsored by Mimecast. Visit https://securityweekly.com/mimecastrsac to learn more about them! Visit https://www.securityweekly.com/bsw for all the latest episodes! Show Notes: https://securityweekly.com/bsw-443

Business Security Weekly (Video)
Not All CISO Gigs Are Created Equal and RSAC Interviews from ESET and Mimecast - Joanna Chen, Tony Anscombe, Rob Juncker - BSW #443

Business Security Weekly (Video)

Play Episode Listen Later Apr 15, 2026 71:00


So you want to be a CISO? Do you know what that role entails? It depends on a number of factors, including industry, country location, technical vs. business, and more. Each position is more different than you think. Joanna Chen, Chief Information Security Officer at Dashlane, joins Business Security Weekly to discuss why not all CISO gigs are created equal. As a "technical" CISO in a foreign country, Joanna realized that not all of her peers came from a technical background, like herself. It's a broad world and the CISO role varies a lot. Joanna will discuss how to understand the various CISO roles and discuss the skills that are makers and breakers. Managing Cyber Risk as Financially Motivated Attacks Grow The ransomware and eCrime landscape continue to evolve at a rapid pace. ESET's global research team has been closely following ransomware gang disruptions and their use of EDR Killers to disable cybersecurity tools. In this interview, Tony Anscombe will take a look into recent research, and explore how the industry and businesses are responding to combat financial risk and mitigate threats. This segment is sponsored by ESET. Visit https://securityweekly.com/esetrsac to learn more about them! Attack Surface Just Got a Copilot AI adoption is accelerating faster than most organizations can secure it — and the consequences are showing up in email inboxes, collaboration platforms, and the shadow tools employees use every day. According to Mimecast's State of Human Risk 2026, 80% of organizations are concerned about sensitive data exposure through generative AI tools, yet 60% still lack strategies to address AI-driven threats. The result is a growing gap between the security investments organizations are making and the protection they're actually getting. In this conversation, Rob Juncker will explore why human behavior has become the defining variable in enterprise cybersecurity, how shadow AI is creating new data exposure and insider risk vectors, and what it takes for security architectures to adapt in real time — without slowing down the business. This segment is sponsored by Mimecast. Visit https://securityweekly.com/mimecastrsac to learn more about them! Show Notes: https://securityweekly.com/bsw-443

ITSPmagazine | Technology. Cybersecurity. Society
From Threat Intelligence to Cyber Resilience: What SMBs and Enterprises Need to Know Now | A Brand Spotlight at RSAC Conference 2026 with Tony Anscombe, Chief Security Evangelist of ESET

ITSPmagazine | Technology. Cybersecurity. Society

Play Episode Listen Later Apr 1, 2026 24:01


On the RSAC Conference show floor, Tony Anscombe shared how ESET has expanded its threat intelligence offering with ECR reports -- designed to give commercial organizations both machine-readable feeds and human-readable analysis. The reason: threat actors are increasingly hard to attribute, they share tools, run coordinated campaigns, and reinvest profits into more sophisticated operations. Having someone do the research and surface actionable intelligence is no longer a luxury. Anscombe pointed to a telling campaign pattern from last year: threat actors refined attack methods against UK retailers, then rapidly adapted those same techniques against US retailers. The implication is clear -- your business may be unique in its infrastructure, but it is not unique in its sector. Understanding how your sector is being targeted is the foundation of a prevention-first posture. Automation came up as equally non-negotiable. If it takes three days to collect all the information needed to make a determination about an incident, the post-attack phase has already begun. ESET Inspect is designed to flip that equation: when an analyst opens an incident, the forensic analysis is done, the evidence is visualized, and the determination can be made on facts rather than gathered through investigation. Anscombe was careful to draw a line between automation as speed and automation as replacement. ESET's position is that AI should operate alongside human expertise -- trust and verify applies to AI-assisted analysis just as it does to any intelligence feed. Oversight remains essential, even as the tooling gets faster. A preview of upcoming survey data offered one of the more striking moments in the conversation. Roughly 35% of SMBs using MDR are sourcing that service directly from their cyber insurer. Anscombe flagged the monoculture risk: when a large share of businesses in the same sector run identical security stacks, a single point of failure becomes a sector-wide vulnerability. His advice after 30 years in the industry -- different organizations should deliberately choose different platforms to maintain diversity. This is a Brand Spotlight. A Brand Spotlight is a ~15 minute conversation designed to explore the guest, their company, and what makes their approach unique. Learn more: https://www.studioc60.com/creation#spotlight GUEST Tony Anscombe, Chief Security Evangelist, ESET LinkedIn: https://www.linkedin.com/in/tonyanscombe/ RESOURCES ESET: https://www.eset.com ESET Threat Intelligence: https://www.eset.com/int/business/services/threat-intelligence/ Are you interested in telling your story? ▶︎ Full Length Brand Story: https://www.studioc60.com/content-creation#full ▶︎ Brand Spotlight Story: https://www.studioc60.com/content-creation#spotlight ▶︎ Brand Highlight Story: https://www.studioc60.com/content-creation#highlight KEYWORDS Tony Anscombe, ESET, Sean Martin, Marco Ciappelli, brand spotlight, brand marketing, marketing podcast, threat intelligence, cyber resilience, MDR, EDR, XDR, managed detection and response, SMB security, cybersecurity automation, RSAC Conference 2026, prevention-first security, cyber insurance, monoculture risk, ESET Inspect, APT research Hosted by Simplecast, an AdsWizz company. See pcm.adswizz.com for information about our collection and use of personal data for advertising.

Monde Numérique - Jérôme Colombain

Les cybercriminels passent à la vitesse supérieure avec des attaques toujours plus crédibles et automatisées. Entre faille critique sur iOS et arnaques dopées à l'IA, les risques n'ont jamais été aussi élevés.Interview : Benoît Grünenwald, expert cybersécurité chez ESETEn partenariat avec ESETPunchlinesLes deepfakes deviennent de plus en plus crédibles.Les cyberattaques sont désormais industrialisées.Les données personnelles alimentent les arnaques ciblées.Mettre à jour ses appareils est indispensable.Parlons tout d'abord ce cette faille iOS particulièrement inquiétante : de quoi s'agit-il ?Cette alerte va au-delà d'une simple faille. On parle d'un kit d'exploit, c'est-à-dire un ensemble d'outils permettant d'utiliser une vulnérabilité pour prendre le contrôle d'un appareil. Dans ce cas précis, il suffit de visiter un site piégé avec un iPhone non à jour pour être infecté. Le scénario est simple : je reçois un SMS avec un lien, je clique, j'arrive sur un site compromis, et l'exploit s'exécute automatiquement. À partir de là, l'attaquant peut prendre le contrôle total de mon téléphone et accéder à mes données personnelles comme les contacts, les photos ou ma position.Nouveau sur le marché : les arnaques de livraison à base de deepfakesEn effet, on observe une nouvelle génération d'arnaques utilisant des images générées par IA. Par exemple, je reçois un message d'un prétendu livreur avec une photo d'un colis à mon nom, parfois même avec mon adresse. Ce qui change, c'est la personnalisation et l'industrialisation. Les cybercriminels ne se contentent plus de messages génériques : ils utilisent des bases de données et des outils automatisés pour générer des messages et des images sur mesure à grande échelle. Même si certaines images peuvent sembler imparfaites, elles deviennent de plus en plus crédibles. Et surtout, dans un contexte d'urgence ou de distraction, elles peuvent facilement tromper.Pourquoi le phishing explose-t-il autant aujourd'hui ?Les fuites de données jouent un rôle clé. Elles fournissent aux cybercriminels une énorme quantité d'informations personnelles qu'ils exploitent pour rendre leurs attaques plus convaincantes. On observe aussi une diversification des scénarios : colis, sécurité sociale, offres promotionnelles… Par exemple, des fausses offres de cartes de réduction très attractives peuvent inciter à cliquer rapidement sans vérifier. Les attaques sont de mieux en mieux construites, avec des noms de domaine crédibles et des messages personnalisés. Si on prend le temps d'analyser, on peut détecter des incohérences, mais dans la précipitation, le risque d'erreur est réel.Quels sont les réflexes essentiels pour se protéger ?Le premier réflexe, c'est la vigilance face aux messages non sollicités, quel que soit le canal : SMS, email ou messagerie. Le second, fondamental, c'est de maintenir tous ses appareils à jour. Dès qu'une mise à jour est disponible, il faut l'installer. C'est une mesure simple mais essentielle pour se protéger contre les failles connues.Hébergé par Audiomeans. Visitez audiomeans.fr/politique-de-confidentialite pour plus d'informations.

Monde Numérique - Jérôme Colombain

Décision de justice historique contre les géants des réseaux sociaux. OpenAI se prépare à la Bourse. Anthropic invente l'agent IA télécommandé. Google crée un "compresseur" pour IA afin d'économiser la mémoire informatique. Sony abandonne son projet de voiture. Nouvelle cyberarnaque au deepfake. Une bibliothèque mondiale du logiciel

Cyber Security Today
RSAC Presenter Says "Time to Kill One of Cybersecurity's Most Overworked Terms"

Cyber Security Today

Play Episode Listen Later Mar 25, 2026 14:36


RSAC: Retiring "APT," FCC's US-Made Router Ban, Zoom Call Scraping, Iran-Targeting Wiper, and Cyber Terrorism Insurance From RSAC 2026, host David Shipley highlights ESET researcher Robert Lipowsky's argument to retire the overused "advanced persistent threat" label and instead describe actors by motivation and activity, noting blurred lines between nation-state and criminal tooling. He also reports RSAC vendor trends (zero trust fading, "agentic AI" everywhere) and standout booth themes. In Washington, the FCC bans authorization of any new Wi‑Fi router models not made in the United States, citing supply-chain risk and attacks like Volt Flax and Salt Typhoon, impacting an industry largely manufacturing abroad unless exemptions are granted with plans to reshore. The episode details Webinar TV allegedly joining public Zoom links to record calls and publish AI-generated podcast recaps, and a Kubernetes-targeting campaign linked to the Trivy supply-chain attack that deploys an Iran-checking wiper. Finally, Treasury seeks comments on expanding the terrorism risk insurance backstop (TRIP) to cover cyber losses. Cybersecurity Today  would like to thank Meter for their support in bringing you this podcast. Meter delivers a complete networking stack, wired, wireless and cellular in one integrated solution that's built for performance and scale.  You can find them at Meter.com/cst   00:00 Sponsor Meter Intro 00:18 Headlines Preview 00:58 Retiring The APT Label 02:51 RSAC Floor Trends 05:08 FCC Router Ban 06:43 Zoom Calls Turned Podcasts 09:29 Iran Targeting Wiper 10:57 Cyber Terrorism Insurance Debate 13:15 Wrap Up And Thanks 13:44 Sponsor Meter Outro

ITSPmagazine | Technology. Cybersecurity. Society
eCrime, Threat Intelligence, and What's Coming at RSAC Conference 2026 | A Brand Spotlight at RSAC Conference 2026 with Tony Anscombe, Chief Security Evangelist of ESET

ITSPmagazine | Technology. Cybersecurity. Society

Play Episode Listen Later Mar 19, 2026 21:47


Tony Anscombe has attended RSA Conference since 1998 -- back when it was held at the Fairmont Hotel. That long view informs everything about how ESET approaches threat intelligence. It is not about volume. It is about accuracy, speed, and putting the right signal in front of the right team at the right moment. The ESET eCrime Ecosystem Report comes in two forms: a business-facing summary outlining current risks for leadership, and a long-form technical report for analysts -- complete with IOCs, coding examples, and structured intelligence feeds covering ransomware, crypto scams, malicious email attachments, and infostealer data. These feeds are built to plug directly into SOC workflows and firewall rules, not to create more work for already stretched teams. Tony Anscombe is direct about the quality problem in threat intelligence. Open-source feeds sound appealing -- until you factor in the analyst hours required to clean out the noise. By then, the intelligence is stale. Attacks circle the globe in hours. Near-real-time, verified intelligence is not a premium -- it is the baseline requirement. The threat detection conversation has also moved well past malware. Anscombe walks through how modern attackers often skip the payload entirely -- credential theft gets them in, then slow lateral movement and data exfiltration follow, with ransomware as the final act rather than the first signal. ESET's platform focuses on behavioral anomaly detection across the full environment, with on-site, cloud, and managed deployment options for organizations that cannot or will not go all-in on cloud architecture. At RSAC Conference 2026, ESET will be at booth 5253 in Moscone North. Anscombe has two sessions on the Wednesday agenda: one on supply chain blind spots -- urging security teams to engage directly with the business side to map third-party risk fully -- and a community rant session tackling four things that need to change in cybersecurity, including the cryptocurrency regulation debate. On AI, his message is measured: the real conversation at the show is not about using AI -- it is about securing it. This is a Brand Spotlight. A Brand Spotlight is a ~15 minute conversation designed to explore the guest, their company, and what makes their approach unique. Learn more: https://www.studioc60.com/creation#spotlight GUEST Tony Anscombe, Chief Security Evangelist, ESET LinkedIn: https://www.linkedin.com/in/tonyanscombe/ RESOURCES ESET website: https://www.eset.com ESET threat research blog (WeLiveSecurity): https://www.welivesecurity.com ESET at RSAC Conference 2026 -- Booth 5253, Moscone North Are you interested in telling your story? ▶︎ Full Length Brand Story: https://www.studioc60.com/content-creation#full ▶︎ Brand Spotlight Story: https://www.studioc60.com/content-creation#spotlight ▶︎ Brand Highlight Story: https://www.studioc60.com/content-creation#highlight KEYWORDS Tony Anscombe, ESET, Sean Martin, RSAC Conference 2026, eCrime, threat intelligence, eCrime Ecosystem Report, cybersecurity, endpoint protection, MDR, threat detection, supply chain security, AI security, ransomware, infostealer, brand spotlight, brand marketing, marketing podcast, brand story Hosted by Simplecast, an AdsWizz company. See pcm.adswizz.com for information about our collection and use of personal data for advertising.

Security Conversations
Handala wiper attacks, APT28 implant devs are back, Signal's verification problems

Security Conversations

Play Episode Listen Later Mar 14, 2026 104:00


(Presented by TLPBLACK: High-fidelity threat intelligence and research tools for modern security teams. From curated Passive DNS and real-time C2 monitoring to actionable IOC feeds and daily malware samples, we help defenders detect, hunt, and disrupt threats faster, with seamless integration into SIEM and SOAR workflows.) Three Buddy Problem - Episode 89: We discuss Iran hacktivist group 'Handala' wiper attacks against US medical device maker Stryker, Microsoft Intune MDM tool abuse, and whether Iran's cyber retaliation is as scary as the headlines suggest. Plus, ESET's discovery that Russia's APT28 original implant developers are back after years of silence, Dutch intelligence warnings on Russian campaigns targeting Signal and WhatsApp accounts, Apple finally patching Coruna exploit kit vulnerabilities for older iPhones, and Google sharing Coruna samples that raise new questions about the exploit kit's proliferation chain. Cast: Juan Andres Guerrero-Saade, Ryan Naraine and Costin Raiu.

Business of Tech
Risk Moves Upstream: How Embedded Governance and Insurance Set New MSP Constraints

Business of Tech

Play Episode Listen Later Mar 4, 2026 11:11


The MSP market is undergoing a critical shift toward risk management as the central value proposition, with operational accountability now defined by the ability to produce defensible documentation and deliver rapid incident response. According to Dave Sobel, MSPs are no longer primarily offering stack management, but are increasingly brokering risk through cyber warranties, insurance underwriting, incident retainers, and AI governance frameworks. Those unable to support their claims with evidence and formal processes risk becoming mere facilitators for third-party terms and losing control over their margins. Recent developments reinforce this shift. A Splunk report finds that nearly all CISOs now view AI governance and risk management as their responsibility, citing threat actor sophistication as a primary driver. AI is assisting with event triage and data correlation, but verification—especially around AI-generated content—is unreliable, with detection tools struggling against advanced fakes. Insurance mechanisms are becoming productized with prioritized incident response, and legal intelligence is being embedded into MSP workflows. Vendors like N-able, Monjur, SentinelOne, and DocuSign are directly integrating financial, legal, and governance functions into their offerings, fundamentally altering client and vendor relationships. Adjacent stories illustrate volatility in traditional safeguards and the operational reality of adaptive threats. CISA leadership changes indicate instability in public response institutions. AI-powered malware exemplifies the challenge: ESET's PromptSpy uses Gemini to continuously adapt its persistence, outpacing static detection models. Insurance underwriters are increasingly demanding machine-verifiable evidence of controls, using detailed questionnaires to distinguish autonomous AI from marketing claims. The risk is no longer just technical; it is structural. For MSPs and IT leaders, operational posture is now shaped by an ecosystem of embedded warranties, legal terms, governance requirements, and adaptive threats. The ability to document, defend, and productize risk controls becomes a baseline for credibility and insurance eligibility. Failure to build evidence pipelines and clarify vendor-imposed liabilities exposes service providers to compounded risk. The practical implication is a necessity for MSPs to treat governance and detection as measurable, documented capabilities—not assumptions or routine paperwork. Three things to know today: 00:00 CISOs Own Governance, Detectors Lag Fakes, Response Gets Contracted — Accountability Follows 03:14 N-able, SentinelOne, DocuSign Move Risk Management Into the Stack — MSP Terms Follow 05:10 CISOs Want Agentic AI, But Insurers and Adaptive Malware Are Forcing the Timeline 07:32 Why Do We Care?  Supported by:  CometBackUpSmall Biz Thoughts Community

Security Conversations
A destructive cyberattack in Poland raises NATO 'red-line' questions

Security Conversations

Play Episode Listen Later Jan 30, 2026 173:22


(Presented by Material Security: We protect your company's most valuable materials -- the emails, files, and accounts that live in your Google Workspace and Microsoft 365 cloud offices.) Three Buddy Problem - Episode 83: Poland's CERT documents a rare, explicit wiper attack on civilians in a NATO country, including detailed attribution of a Russian government op targeting the electric grid in the heart of winter. We examine why this crosses a long-avoided threshold, why attribution suddenly matters again, and what it says about pre-positioned access, vendor insecurity, and the shrinking gap between cyber operations and acts of war. Plus, another Fortinet fiasco, a new batch of Ivanti zero-days under attack, an emergency patch from Microsoft and the return of the mysterious KasperSekrets account. Cast: Juan Andres Guerrero-Saade, Ryan Naraine and Costin Raiu.

The CyberWire
When encryption meets enforcement.

The CyberWire

Play Episode Listen Later Jan 26, 2026 32:03


Microsoft granted the FBI access to laptops encrypted with BitLocker. The EU opens an investigation into Grok's creation of sexually explicit images. Glimmers of access pierce Iran's internet blackout. Koi Security warns npm fixes fall short against PackageGate exploits. Some Windows 11 devices fail to boot after installing the January Patch Tuesday updates. CISA warns of active exploitation of  multiple vulnerabilities across widely used enterprise and developer software. ESET researchers have attributed the cyberattack on Poland's energy sector to Russia's Sandworm. This week's business breakdown. Brandon Karpf joins us to talk space and cyber. CISA sits out RSAC.  Remember to leave us a 5-star rating and review in your favorite podcast app. Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you'll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn. CyberWire Guest Our guest today is cybersecurity executive and friend of the show Brandon Karpf with Dave Bittner and T-Minus Space Daily host Maria Varmazis, for our monthly space and cyber segment. Brandon, Maria and Dave discuss “No more free rides: it's time to pay for space safety.” Selected Reading FBI Accessed Windows Laptops After Microsoft Shared BitLocker Recovery Keys (Hackread) European Commission opens new investigation into X's Grok (The Register) Amid Two-Week Internet Blackout, Some Iranians Are Getting Back Online (New York Times) Hackers can bypass npm's Shai-Hulud defenses via Git dependencies (Bleeping Computer) Microsoft investigates Windows 11 boot failures after January updates (Bleeping Computer) CISA says critical VMware RCE flaw now actively exploited (Bleeping Computer) CISA confirms active exploitation of four enterprise software bugs (Bleeping Computer) ESET Research: Sandworm behind cyberattack on Poland's power grid in late 2025 (ESET)  Aikido secures $60 million in Series B funding. (N2K Pro Business Briefing) CISA won't attend infosec industry's biggest conference (The Register) Share your feedback. What do you think about CyberWire Daily? Please take a few minutes to share your thoughts with us by completing our brief listener survey. Thank you for helping us continue to improve our show.   Want to hear your company in the show? N2K CyberWire helps you reach the industry's most influential leaders and operators, while building visibility, authority, and connectivity across the cybersecurity community. Learn more at sponsor.thecyberwire.com. The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc. Learn more about your ad choices. Visit megaphone.fm/adchoices