POPULARITY
In this episode Erich and Javvad discuss a cyber professor that went away, a ransomware group hacks back, passwords are still poor, and more!
Erich and Javvad summarize this week's cyber soap opera and bring you a tangled web of digital deceit, artificial “intelligence,” and just enough government extradition drama to keep things spicy. From Spain With Wire Fraud: Alleged “Scattered Spider” member Tyler Buchanan thought sunny Spain was a safe hideout—until the long arm of U.S. justice said hola. Extradited for allegedly scamming Caesars and MGM, his toolkit included SIM swapping and social engineering. Welcome to America, Tyler—hope you like federal courtrooms. Phishing with Google's Seal of Approval: Meanwhile, phisherfolk are reusing Google's DKIM signatures like they're leftover lasagna—slapping them onto spoofed emails from no-reply@accounts.google.com and tricking even the most paranoid clickers. The result? Legit-looking credential traps hosted on Google Sites. It's like gourmet phishing, served with a side of irony. Darcula Gets a Brain Upgrade: And if you thought cybercrime required effort, think again. The Darcula phishing kit now uses generative AI to do all the heavy lifting. Bad grammar and clunky templates? Gone. Now, even your cousin Steve with zero hacking skills can impersonate a bank in 100 languages. Thanks, AI. Tune in for a romp through the latest digital deceptions, complete with dark web drama and facepalms galore. Stay sharp—because the hackers definitely are.
Erich and Javvad recap the top stories in Cybersecurity this week including the cyber attack on Iran and a huge DD0S attack. All this and More
In this episode, Erich and Javvad discuss how Lockbit appears to be hacked again, Qlin makes a jump to #1 in the ransomware game, Google gets serious against scams with Gemini, and more! Google Rolls Out On-Device AI Protections to Detect Scams in Chrome and Android https://thehackernews.com/2025/05/google-rolls-out-on-device-ai.html Qilin Ransomware Ranked Highest in April 2025 with 72 Data Leak Disclosures https://thehackernews.com/2025/05/qilin-leads-april-2025-ransomware-spike.html LockBit ransomware gang hacked again https://www.computing.co.uk/news/2025/security/lockbit-ransomware-gang-hacked-again UK Cyber Insurance Claims Second Highest on Record https://www.infosecurity-magazine.com/news/uk-cyberinsurance-claims-second/
In this episode, Erich and Javvad discuss issues facing DeepSeek, a law enforcement takedown of cybercrime sites, and much, much more!
In this episode, Erich and Javvad discuss an AI voice scam, the Steam game PirateFi turning out to be info-stealing malware, HCRG hack/ransomware and a Palo Alto firewall vulnerability. All of this and more!
In this episode, Erich and Javvad talk about a confirmed ransomware campaign through snail mail, 60% of cyber pros looking to change employers, 12 Chinese hackers charged by the US, 1.4TB dataset stolen, and more
In this episode, Erich and Javvad discuss the VSCode extensions that was used by millions, and that Microsoft wrongly removed, Roblox tells parents if they want safe kids, that's a 'you' problem, and the UK says cyberpros need to make more than the PM. This and more!
In this episode, Erich and Javvad discuss a breach of a sperm bank in California, an 9-year old Microsoft vuln that they feel is too unimportant to patch (although it's being exploited), and a hack of over 2000, Wordpress sites
In this episode, Erich and Javvad discuss a warning from the NSA, the arrest of fraudsters in several countries, a story where Cambodian scammers send a potential scammer packing because of his lack of computer skills. All this and more!
Buckle up, cyber enthusiasts, because this week's episode is a rollercoaster ride through the murky depths of cybercrime! Erich and Javvad are diving into the story of 1,006 suspects nabbed in a global sting that makes "Ocean's Eleven" look like a kindergarten playdate. Next, we shop 'til we drop on fake e-commerce sites tied to cybercrime marketplaces—spoiler alert: you're not getting that “Gucci” bag for $19.99. Finally, we break down the latest saga in the US vs. China cyber espionage showdown, where telecom providers find themselves tangled in a hack straight out of a Hollywood thriller. It's cyber justice, scams, and geopolitical drama served with a side of sarcasm and a heaping dose of security tips you'll actually want to use. Don't miss it! Stories from the show: Major cybercrime operation nets 1,006 suspects https://www.interpol.int/en/News-and-Events/News/2024/Major-cybercrime-operation-nets-1-006-suspects Fraudulent shopping sites tied to cybercrime marketplace taken offline https://www.europol.europa.eu/media-press/newsroom/news/fraudulent-shopping-sites-tied-to-cybercrime-marketplace-taken-offline?mtm_campaign=newsletter White House official: 8 US telecom providers hacked by Chinese https://www.cnn.com/2024/12/04/politics/us-telecom-providers-chinese-hack/index.html
Hey there, tech detectives and cyber sleuths! Grab your headphones and get ready for another wild ride through the digital jungle with Erich and Javvad. This week, we're diving into a hot mess at Hot Topic (pun totally intended) that's left 57 million people saying 'Uh-oh!' Plus, we'll take you on a typhoon-fueled adventure as China's notorious Volt Typhoon crew makes a shocking comeback. It's like a cyber soap opera, but with way more zeroes and ones! So, buckle up, buttercup – it's time to unravel these tangled webs of tech drama! Stories from the show: HIBP notifies 57 million people of Hot Topic data breach https://www.bleepingcomputer.com/news/security/hibp-notifies-57-million-people-of-hot-topic-data-breach/ China's Volt Typhoon crew and its botnet surge back with a vengeance https://www.theregister.com/2024/11/13/china_volt_typhoon_back/ Amazon MOVEit Leaker Claims to Be Ethical Hacker https://www.infosecurity-magazine.com/news/amazon-moveit-leaker-claims/
In this episode, Erich and Javvad discuss some odd ransomware demands, a serious flaw with Synology, spying fryers and much more!
In this episode, Erich and Javvad discuss how the British government is trying to hire more security pros for next to nothing, how Teams is being used as an attack vector, and how North Korean attackers have paired up with the Play ransomware group. All this and more! Stories from the show: Wanted. Top infosec pros willing to defend Britain on shabby salaries https://www.theregister.com/2024/10/29/gchq_needs_advanced_cybersecurity_professionals/ Hackers Exploit Microsoft Teams In New Ransomware Scam https://www.forbes.com/sites/larsdaniel/2024/10/30/hackers-posing-as-it-support-on-teams-new-ransomware-scam-targeting-your-workplace/ North Korean Group Collaborates with Play Ransomware in Significant Cyber Attack https://thehackernews.com/2024/10/north-korean-group-collaborates-with.html
In this episode, Erich and Javvad talk about the latest SolarWinds screw up, Cisco data showing up on the dark web, Microsoft losing security logs for a bit, and much, much more! Microsoft warns it lost some customer's security logs for a month https://www.bleepingcomputer.com/news/security/microsoft-warns-it-lost-some-customers-security-logs-for-a-month/ Critical hardcoded SolarWinds credential now exploited in the wild https://www.theregister.com/2024/10/16/solarwinds_critical_hardcoded_credential_bug/ Cisco investigates breach after stolen data for sale on hacking forum https://www.bleepingcomputer.com/news/security/cisco-investigates-breach-after-stolen-data-for-sale-on-hacking-forum/ Firm hacked after accidentally hiring North Korean cyber criminal https://www.bbc.co.uk/news/articles/ce8vedz4yk7o
In this episode, Erich and Javvad speak to Thomas Ryan of 'Robin Sage' fame, the big jump the Meow ransomware group took, and much, much more!
In thi sepisode, Erich and Javvad talk about the Kaspersky switch-a-roo and the storm hitting the Eastern US right now, which will certainly turn into scammers taking advantage of people in a bad spot. All this and more!
In this episode, Erich and Javvad discuss a deadbeat dad that made himself look deceased to end child support payments, a critical chrome patch that is being actively exploited, an incident with Halliburton and ransomware attacks at night. All this and more! Stories from the show: Most Ransomware Attacks Now Happen at Night https://www.infosecurity-magazine.com/news/most-ransomware-attacks-happen/ Google Fixes High-Severity Chrome Flaw Actively Exploited in the Wild https://thehackernews.com/2024/08/google-fixes-high-severity-chrome-flaw.html Deadbeat dad faked his own death by hacking government databases https://www.theregister.com/2024/08/21/man_jailed_faking_death_online/ Halliburton confirms cyber attack on certain systems https://www.reuters.com/technology/cybersecurity/halliburton-confirms-cyber-attack-certain-systems-2024-08-23/
In this episode, Erich and Javvad chat about the Russian trolling in the US elections, fraud hitting the 'heighest ever' levels, a fake OnlyFans tool, and more! Stories from the show: Russian trolling 2.0: How the Kremlin shifted tactics from its 2016 election strategy https://uk.news.yahoo.com/russian-trolling-2-0-kremlin-211903137.html Fraud and scam complaints reach ‘highest ever' level https://www.fstech.co.uk/fst/Fraud_And_Scam_Complaints_Reach_Highest_Ever_Level.php Hacker trap: Fake OnlyFans tool backstabs cybercriminals, steals passwords https://www.bleepingcomputer.com/news/security/fake-onlyfans-cybercrime-tool-infects-hackers-with-malware/
In this episode Erich and Javvad talk about Crowdstrike, and other stuff. I mean on a day like today, is there really anything else to talk about? Join us and be a part of the discussion
In this episode, Erich and Javvad talk about the latest AT&T breach, a dump of 10 billion credentials, Singapore banks ditching texted 2FA, and much more! Stories from the show: AT&T data breach: Millions of customers caught up in major dark web leak https://www.bbc.co.uk/news/world-us-c... Singapore's banks to ditch texted one-time passwords https://www.theregister.com/2024/07/1... Nearly 10 billion stolen passwords were leaked on a hacker forum https://www.securitymagazine.com/arti...
In this episode, Erich and Javvad discuss the Korean telco that allegedly infected its P2P users with malware, Crypto scammers posing as lawyers to steal $10m and much more!
In this episode, Erich and Javvad chat about the Kaspersky ban in the US, a threat actor targeting Chinese users with VPN malware and Booking.com reports a 900% jump in travels scams. All this and more Stories from the show: Biden bans Kaspersky antivirus software in US over security concerns https://www.bleepingcomputer.com/news/security/biden-bans-kaspersky-antivirus-software-in-us-over-security-concerns/ New Threat Actor 'Void Arachne' Targets Chinese Users with Malicious VPN Installers https://thehackernews.com/2024/06/void-arachne-uses-deepfakes-and-ai-to.html Booking.com warns of up to 900% increase in travel scams https://www.bbc.com/news/articles/c8003dd8jzeo
In this episode, Ericha nd Javvad are covering some of the more interesting Cybersecurity stories this week. MS Recall gets recalled, a fired employee deletes a bunch of servers, Frontier communications is about to lose control of data from 750k customers, and more! Stories from the show: Microsoft Made Changes to Recall Feature Following Controversial Security Concerns https://cybersecuritynews.com/microsoft-recall-security-concerns/ Frontier hackers threaten to release private data for at least 750,000 customers https://www.theverge.com/2024/6/10/24175169/frontier-communications-hack-cyberattack-data-breach-ransom Fired employee accessed company's computer 'test system' and deleted servers, causing it to lose S$918,000 https://www.channelnewsasia.com/singapore/former-employee-hack-ncs-delete-virtual-servers-quality-testing-4402141
In this episode, Erich and Javvad talk about the TikTok breach, Russians cyber attacking hospitals LockBit keys being released and much more! Stories from the show: 'Russian criminals' behind hospitals cyber attack https://www.bbc.com/news/articles/cxee7317kgmo FBI recovers 7,000 LockBit keys, urges ransomware victims to reach out https://www.bleepingcomputer.com/news/security/fbi-recovers-7-000-lockbit-keys-urges-ransomware-victims-to-reach-out/#google_vignette Paris Hilton among users targeted in TikTok hack https://www.bbc.com/news/articles/cl770d121gro Cisco fixes WebEx flaw that allowed government, military meetings to be spied on https://www.theregister.com/2024/06/07/cisco_fixes_webex_flaw_which/
In this episode, Erich and Javvad discuss an attack that bricked over 600,000 routers, some serious botnet takedowns, the Ticketmaster breach and much more! Stories from the show: Malware botnet bricked 600,000 routers in mysterious 2023 attack https://www.bleepingcomputer.com/news/security/malware-botnet-bricked-600-000-routers-in-mysterious-2023-attack/#google_vignette Multiple botnets dismantled in largest-ever international operation against ransomware https://www.techcentral.ie/multiple-botnets-dismantled-in-largest-ever-international-operation-against-ransomware/ Ticketmaster breached — data of over 500 million users allegedly put up for sale online https://www.techradar.com/pro/security/ticketmaster-breached-data-of-over-500-million-users-allegedly-put-up-for-sale-online Chinese national cuffed on charges of running 'likely the world's largest botnet ever' https://www.theregister.com/2024/05/29/911s5_botnet_arrest/
In this episode, Erich and Javvad talk about a cyber problem in Leicester, booze distribution problems in Sweden due to ransomware and much more!
In this episode, Erich and Javvad talk about the leader of the Hive RAT getting busted, another bust of LabHost, Frontier communications hit, and more! The cyber camp from Randy: https://www.randylee.com/cybercamp Stories from the show: Hive RAT Creators and $3.5M Cryptojacking Mastermind Arrested in Global Crackdown https://thehackernews.com/2024/04/hive-rat-creators-and-35m-cryptojacking.html Police bust global cyber gang accused of industrial-scale fraud https://www.bbc.com/news/uk-68838977 Frontier Communications shuts down systems after cyberattack https://www.bleepingcomputer.com/news/security/frontier-communications-shuts-down-systems-after-cyberattack/#google_vignette 840-bed hospital in France postpones procedures after cyberattack https://www.bleepingcomputer.com/news/security/chc-sv-hospital-in-france-postpones-procedures-after-cyberattack/
In this episode, Erich and Javvad talk about UK charities being hit, spies accidentally exposed themselves and UK taxi software leaks some details. All this and more in this episode! Stories from the show: Global taxi software vendor exposes details of nearly 300K across UK and Ireland https://www.theregister.com/2024/04/11/icabbi_database_exposure/ Over 90,000 LG Smart TVs may be exposed to remote attacks https://www.bleepingcomputer.com/news/security/over-90-000-lg-smart-tvs-may-be-exposed-to-remote-attacks/ Head of Israeli cyber spy unit exposed ... by his own privacy mistake https://www.theregister.com/2024/04/08/infosec_news_roundup/ Third of charities experienced a cyber breach last year, government reports https://www.civilsociety.co.uk/news/third-of-charities-experienced-a-cyber-breach-last-year-government-reports.html
In this episode Erich and Javvad talk about Scottish IR calls doubling , Microsoft getting beat up over security, YouTube being used to spread malware and what LockBit has done after it took a hit from law enforcement. Stories from the show: Calls to Incident Response Helpline Double in a Year https://www.infosecurity-magazine.com/news/calls-incident-response-helpline/ Microsoft roasted over “cascade of security failures” https://www.thestack.technology/microsoft-roasted-by-csrd-over-security-key-theft/ YouTube being used to distribute malware https://cybernews.com/security/youtube-used-to-distribute-malware/ LockBit Scrambles After Takedown, Repopulates Leak Site with Old Breaches https://www.infosecurity-magazine.com/news/lockbit-takedown-leak-site-old/
In this episode, Erich and Javvad talk about the clud leak of military data, a UK data leak at Southern Water, the rise in ransomware victims in 2023 and more! Stories from the show: US military notifies 20,000 of data breach after cloud email leak https://techcrunch.com/2024/02/14/department-defense-data-breach-microsoft-cloud-email/ Southern Water Notifies Customers and Employees of Data Breach https://www.infosecurity-magazine.com/news/southern-water-notifies-customers/ Ransomware victim numbers rose by 50% in 2023 https://www.csoonline.com/article/1306045/ransomware-victim-numbers-rose-by-50-in-2023.html
In this episode, Erich and Javvad discuss the reward being offered for Hive ransomware members, a botnoet of toothbrushes, a breach that left a healthcare provider using LinkedIn as a notifcation platform, and more! Stories from the show: https://www.techradar.com/pro/security/major-data-breach-at-healthcare-provider-puts-millions-of-customers-at-risk https://www.forbes.com/sites/daveywinder/2024/02/08/surprising-3-million-hacked-toothbrushes-story-goes-viral-is-it-true/?sh=22dc0e296147 https://www.theregister.com/2024/02/09/hive_leaders_bounty/
In this episode, Erich and Javvad discuss the cyberattack targeting UK councils, what might be the Mother of All Breaches (MOAB) with 26 billion records, the NSA buying web browsing data, and more. Stories from the show: Cyberattack targeting UK councils causes online disruption https://uk.style.yahoo.com/cyberattack-targeting-uk-councils-causes-154505162.html?guccounter=1 Mother of all breaches reveals 26 billion records: what we know so far https://cybernews.com/security/billions-passwords-credentials-leaked-mother-of-all-breaches/ US National Security Agency buys web browsing data without warrant, letter shows https://www.reuters.com/technology/cybersecurity/national-security-agency-buys-web-browsing-data-without-warrant-letter-shows-2024-01-26/
In thie episode, Erich and Javvad are talking about the SEC Twitter/x/whateveritis account getting hacked, a vulnerability in Bosch thermostats, the NCA director getting sacked over using personal accounts for sensitive info, and more! Check us out on LinkedIn, YouTube or as an audio-only podcast on all of your favorite platforms Some stories from the show: Have I Been Pwned adds 71 million emails from Naz.API stolen account list https://www.bleepingcomputer.com/news/security/have-i-been-pwned-adds-71-million-emails-from-nazapi-stolen-account-list/ Bosch thermostats vulnerable to malware attacks https://www.scmagazine.com/brief/bosch-thermostats-vulnerable-to-malware-attacks Senators Want Better SEC Cybersecurity After EFT-Related Hack https://www.pymnts.com/cybersecurity/2024/senators-want-better-sec-cybersecurity-after-eft-related-hack/ NCA director sacked after WhatsApp and email security breaches https://www.computerweekly.com/news/366566272/NCA-director-sacked-after-WhatsApp-and-email-security-breaches
In this episode, Erich and Javvad wrap up 2023 with a story about a Florida woman hitting her boyfriend with a Christmas tree, plus they discuss a call center takedown in India that netted arrests of 36 people, and more!
In this episode, the first of 2024, James McQuiggan fills in for Javvad as we welcome in the new year. Stories from the show: Budget cuts take a toll on IT decision makers' mental health https://www.helpnetsecurity.com/2024/01/05/it-decision-makers-wellbeing/ Google Chrome starts blocking data tracking cookies https://www.bbc.com/news/technology-67882315 Mandiant's Twitter Account Restored After Six-Hour Crypto Scam Hack https://thehackernews.com/2024/01/mandiants-twitter-account-restored.html
In ths episode, Erich and Javvad talk about cyber attacks impacting people buying homes, how cybercriminals are targeting booking.com users, and more hospital outages caused by ransomware. All of these cybersecurity stories and more! Stories from the show: Thousands of house purchases frozen by cyber attack https://finance.yahoo.com/news/thousands-house-purchases-frozen-cyber-183437339.html Booking.com hackers increase attacks on customers https://www.bbc.com/news/technology-67583486 Cyber-attack closes hospital emergency rooms in three US states https://www.theguardian.com/us-news/2023/nov/28/cyber-attack-us-hospitals-texas-oklahoma-new-mexico Regulator says stranger entered hospital, treated a patient, took a document ... then vanished https://www.theregister.com/2023/12/01/nhs_health_board_ticked_off/
In this episode, Erich and Javvad talk about using Google Calendar as a C2 channel, how a lack of resources ended the investigation into the EasyJet breach, and more! Stories from the show: EasyJet hack investigation abandoned because of ‘limited resources' https://www.itpro.com/security/data-breaches/limited-resources-scuppers-ico-probe-into-easyjet-breach Google Warns How Hackers Could Abuse Calendar Service as a Covert C2 Channel https://thehackernews.com/2023/11/google-warns-of-hackers-absing-calendar.html Mr. Cooper Responds to Cyberattack: Offering Enhanced Payment Options for Customers https://ts2.space/en/mr-cooper-responds-to-cyberattack-offering-enhanced-payment-options-for-customers/#google_vignette Court rules automakers can record and intercept owner text messages https://therecord.media/class-action-lawsuit-cars-text-messages-privacy Plastic surgeons hit by hackers https://www.timesnownews.com/technology-science/plastic-surgery-data-breach-nude-photos-leaked-article-105062693
After quite a bit of travel in the last couple of weeks, the dynamic duo is back to chat about recent #cybersecurity stories and more. In this episode, Erich and Javvad talk about some of the most recent antics from North Korea, including attacks on shipbuilding and aerospace organizations, something called a 'Dual Ransomware Attack', and much more. Stories from the show: South Korea accuses North of Phish and Ships attack https://www.theregister.com/2023/10/05/north_korea_phishing_attack_on_south/ Lazarus impersonated Meta recruiter to breach Spanish aerospace firm https://www.helpnetsecurity.com/2023/10/02/lazarus-lightlesscan/ FBI: Crippling 'Dual Ransomware Attacks' on the Rise https://www.darkreading.com/threat-intelligence/fbi-highlights-dual-ransomware-attack-in-rising-cybertrends People's Republic of China-Linked Cyber Actors Hide in Router Firmware https://www.cisa.gov/news-events/cybersecurity-advisories/aa23-270a
In this episode, Erich and Javvad discuss the takedown of the Qakbot botnet, an attack on the Polish train system, the Forever 21 breach, which impacts more than 500k people, and much more. Stories from the show: https://www.bleepingcomputer.com/news/security/classiscam-fraud-as-a-service-expands-now-targets-banks-and-251-brands/ Classiscam fraud-as-a-service expands, now targets banks and 251 brands FBI, Partners Dismantle Qakbot Infrastructure in Multinational Cyber Takedown https://www.fbi.gov/news/stories/fbi-partners-dismantle-qakbot-infrastructure-in-multinational-cyber-takedown Poland investigates cyber-attack on rail network https://www.bbc.com/news/world-europe-66630260 Forever 21 Data Breach: Personal Details of Over 500,000 Customers, Employees Compromised https://www.techtimes.com/articles/295813/20230831/forever-21-data-breach-personal-details-over-500-000-customers.htm
Erich and Javvad are back after taking a couple of weeks off to vacation and to attend BSides Las Vegas, Blackhat and DEFCON. In this episode they talk about the conference and what has been happening in the cyber world for the past couple of weeks Stories from the show: Danish cloud host says customers ‘lost all data' after ransomware attack https://techcrunch.com/2023/08/23/cloudnordic-azero-cloud-host-ransomware/ Cybercriminals turn to AI to bypass modern email security measures https://www.helpnetsecurity.com/2023/08/23/ai-enabled-email-threats/ TP-Link smart bulbs can let hackers steal your WiFi password https://www.bleepingcomputer.com/news/security/tp-link-smart-bulbs-can-let-hackers-steal-your-wifi-password/ Lapsus$: Oxford teen accused of being multi-millionaire cyber-criminal https://www.bbc.co.uk/news/technology-60864283
In this episode, Erich and Javvad talk about the upcoming BSides Las Vegas, Black Hat and DEFCON conferences, NHS sharing data via WhatsApp, the #cyber skills gap, and much more Stories from the show: Humans Unable to Reliably Detect Deepfake Speech https://www.infosecurity-magazine.com/news/humans-detect-deefake-speech/ NHS Staff Reprimanded For WhatsApp Data Sharing https://www.infosecurity-magazine.com/news/nhs-staff-reprimanded-whatsapp/ Microsoft Teams Targeted in Midnight Blizzard Phishing Attacks https://www.infosecurity-magazine.com/news/microsoft-teams-midnight-blizzard/ Hacktivist Collective “Mysterious Team Bangladesh” Revealed https://www.infosecurity-magazine.com/news/mysterious-team-bangladesh-revealed/ Report outlines causes of cyber security skills gap https://www.publicsectorexecutive.com/articles/report-outlines-causes-cyber-security-skills-gap
In this episode, Erich and Javvad discuss current #cybersecurity stories including the attack on a cardiac services vendor, an attack on a Tampa hospital and some new SEC rules around breaches. All this and more! Stories from the show: Security Incident Impacts CardioComm's Operations https://www.infosecurity-magazine.com/news/security-incident-cardiocomm/ Tampa General Hospital Data Breach Impacts 1.2 Million Patients https://www.infosecurity-magazine.com/news/tampa-hospital-data-breach/
Today morning Erich and Javvad recount their experiences with the famed hacker and colleague Kevin Mitnick, chat about a Ukrainian takedown netting 150k SIM cards, concernes over the Frenchies plan to use AI to surveil the Paris olympics, Microsoft deciding that allowing access to security logs, without a fee, is good, and much more from the world of #cybersecurity. Stories from the show: Kevin Mitnick passed away at 59 https://www.dignitymemorial.com/obituaries/las-vegas-nv/kevin-mitnick-11371668 French Assembly passes bill allowing police to remotely activate phone cameras and microphones for surveillance https://www.engadget.com/french-assembly-passes-bill-allowing-police-to-remotely-activate-phone-cameras-and-microphones-for-surveillance-210539401.html Paris 2024 Olympics: Concern over French plan for AI surveillance https://www.bbc.co.uk/news/world-europe-66122743 Under CISA pressure, err collaboration, Microsoft makes cloud security logs available for free https://www.theregister.com/2023/07/20/under_cisa_spressures_collaboration_microsoft/ Ukraine takes down massive bot farm, seizes 150,000 SIM cards https://www.bleepingcomputer.com/news/security/ukraine-takes-down-massive-bot-farm-seizes-150-000-sim-cards/
In this episode Erich and Javvad talk about the US government email hack, an ethical hacker gone rogue, Ruskies tempting diplomats with a cheap car, and more #cybersecurity stories from this week. Stories from the show: Fewer Than 100 Scammers Responsible For Global Email Extortion https://www.infosecurity-magazine.com/news/fewer-100-scammers-global-email/ Chinese Hackers Gained Access To Some U.S. Government Emails, Microsoft Says https://www.forbes.com/sites/siladityaray/2023/07/12/chinese-hackers-gained-access-to-some-us-government-emails-microsoft-says/?sh=5f49e30c2a37 Russian hackers lured diplomats in Ukraine with cheap BMW ad https://www.reuters.com/world/europe/russian-hackers-lured-embassy-workers-ukraine-with-an-ad-cheap-bmw-2023-07-12/ Cybersecurity professional accused of stealing $9M in crypto https://techcrunch.com/2023/07/11/cybersecurity-professional-charged-for-stealing-9-million-in-crypto/?guccounter=1 Number of email-based phishing attacks surges 464% https://www.helpnetsecurity.com/2023/07/10/evolving-cyberattack-landscape/ Indian developer fired 90 percent of tech support team, outsourced the job to AI https://www.theregister.com/2023/07/13/dukaan_ai_support_replacement/
In this episode Erich and Javvad discuss the issues with the Anatsa malware being spread on the Google Play store, the issue Siemens Energy has with MOVEit and pilot data being lost in a breach. This and much more! Stories from the show: ‘Anatsa' malware targets banking users in US, UK and Central Europe https://siliconangle.com/2023/06/27/anatsa-malware-targets-banking-users-us-uk-central-europe/ Siemens Energy confirms data breach after MOVEit data-theftattack https://www.bleepingcomputer.com/news/security/siemens-energy-confirms-data-breach-after-moveit-data-theft-attack/ Pilot data of American Airlines and Southwest stolen in data breach https://www.csoonline.com/article/643352/pilot-data-of-american-airlines-and-southwest-stolen-in-data-breach.html
In this episode, Erich and Javvad cover the top #cybersecurity stories of the week including the settlment over Ring and Alexa, and Andriod app that started spying, a dark web data link with RaidForums member info, and much more! Stories from the show: Amazon Ring, Alexa accused of every nightmare IoT security fail you can imagine https://www.theregister.com/2023/06/01/ftc_alexa_ring_amazon_settlement/ Most CEOs now see cybersecurity as more important than economic performance https://www.techradar.com/news/most-ceos-now-see-cybersecurity-as-more-important-than-economic-performance Check your phone: Popular Android app reportedly started spying on users, making recordings https://www.msn.com/en-us/money/other/check-your-phone-popular-android-app-reportedly-started-spying-on-users-making-recordings/ar-AA1bUISq Dark Web Data Leak Exposes RaidForums Members https://www.infosecurity-magazine.com/news/data-leak-exposes-raidforums/ Government publishes guidelines on cybersecurity https://www.rte.ie/news/business/2023/0601/1386968-government-publishes-guidelines-on-cybersecurity/
In this episode, Erich and Javvad talk about Dish breach, an IT worker that piggybacked on a hackers extortion attempt, Googles new .zip and .mov domains, Met's huge $1.3B fine, and much more #cybersecurity news! Stories from the show: Dish confirms 300,000 peoples data was exposed in February's attack https://www.theregister.com/2023/05/23/dish_networks/ IT Worker Admits Piggybacking on Hacker's Extortion Attempt https://www.inforisktoday.com/worker-admits-piggybacking-on-hackers-extortion-attempt-a-22142 18-year-old charged with hacking 60,000 DraftKings betting accounts https://www.bleepingcomputer.com/news/security/18-year-old-charged-with-hacking-60-000-draftkings-betting-accounts/ Google's .zip, .mov Domains Give Social Engineers a Shiny New Tool https://www.darkreading.com/endpoint/google-zip-mov-domains-social-engineers-shiny-new-tool Meta Hit With $1.3B Record-Breaking Fine for GDPR Violations https://www.darkreading.com/endpoint/meta-hit-1-3b-record-breaking-fine-gdpr-violations
In this episode Erich and Javvad discuss the weekly stories in #cybersecurity, including the Tik Tok ban in Montana, insured organizations are more likely to be ransomware victims, OpenAI CEO calls for slowing and more! Stories from the show: TikTok: Montana to become first US state to ban app on personal devices https://www.bbc.com/news/business-65630201 Insured companies more likely to be ransomware victims, sometimes more than once https://www.csoonline.com/article/3696350/insured-companies-more-likely-to-be-ransomware-victims-sometimes-more-than-once.html UK Pension Scheme: Members Should Assume Capita Data Theft https://www.infosecurity-magazine.com/news/pension-scheme-members-capita-data/ Sam Altman: CEO of OpenAI calls for US to regulate artificial intelligence https://www.bbc.com/news/world-us-canada-65616866 Upstart encryption app walks back privacy claims, pulls from stores after probe https://www.theregister.com/2023/05/17/converso_e2ee_app/
Joining us this week is Javvad Malik, Security Awareness Advocate at KnowBe4. We cover an array of themes including the need to “protect the seams”, understanding where risks are moving, how small interventions can deliver quick security wins, understanding people in the security equation and the importance of cybersecurity training, the AI debate, smishing attacks, and more! Javvad Malik is a Security Awareness Advocate at KnowBe4, a blogger event speaker and industry commentator who is possibly best known as one of the industry's most prolific video bloggers with his signature fresh and light-hearted perspective on security that speak to both technical and non-technical audiences alike. Prior to joining KnowBe4, Javvad was security advocate at AlienVault. Before then, he was a Senior Analyst at 451's Enterprise Security Practice (ESP), providing in-depth, timely perspective on the state of enterprise security and emerging trends in addition to competitive research, new product and go-to-market positioning, investment due diligence and M&A strategy to technology vendors, private equity firms, venture capitalists and end users. Prior to joining 451 Research, he was an independent security consultant, with a career spanning 12+ years working for some of the largest companies across the financial and energy sectors. As well as being an author and co-author on several books, Javvad was one of the co-founders of the Security B-Sides London conference. For links and resources discussed in this episode, please visit our show notes at https://www.forcepoint.com/govpodcast/e233