POPULARITY
* Cyberattack on Partnered Health Exposes Sensitive Patient Data Across 21 Australian Clinics* Australian and Allied Agencies Warn of Russian State-Sponsored Targeting of Routers and Network Devices* Australian Signals Directorate Warns Organisations to Embrace AI Model Harnesses as Cyber Threat Landscape Shifts* ClickLock: New macOS Stealer Holds Victims' Desktops Hostage Until They Hand Over Their Password This is a public episode. If you would like to discuss this with other subscribers or get access to bonus episodes, visit edwinkwan.substack.com
This episode covers a hacker's claim of stealing 35GB from Accenture—including source code, Azure personal access tokens, RSA keys, and SSH keys—while Accenture calls it an isolated, remediated matter, leaving uncertainty about potential downstream risk to its Fortune 500-heavy client base. It also highlights a deepfake image of Senator Mitch McConnell debunked after Google's invisible SynthID watermark identified it as AI-generated, noting watermarking depends on tool participation. The show warns of an undocumented Tenda router firmware backdoor using an alternate password ("RZadmin") with no patch available, and reports Ubiquiti fixes for seven critical UniFi OS vulnerabilities, including a max-severity command injection in UniFi Connect. Finally, it describes how Venture Employer Solutions used ML/LLMs to filter low-value logs before SIEM ingestion, cutting firewall log volume 83%, saving about $250K annually, and halving mean time to response. 00:00 Sponsor NordLayer 00:37 Headlines Intro 01:08 Accenture Breach Claim 04:25 Deepfake Watermark Win 05:47 Tenda Router Backdoor 07:22 UniFi Critical Fixes 09:10 AI Cuts Log Noise 11:09 Wrap Up And Thanks 11:41 Sponsor Message
Ronald, Marco en Jelle nemen de laatste aflevering voor de zomerstop op. Natuurlijk begint dat met AI-gebruik dat iets te veel op een verslaving begint te lijken, inclusief technostress, Claude-limieten en zelfgebouwde tools die sneller ontstaan dan gezond voelt. Daarna: datadiodes. Naar aanleiding van ons tankmeter-item wees een luisteraar op de Open Source Data Diode: een manier om sensoren wel meetwaarden naar buiten te laten sturen, maar geen verkeer terug naar binnen toe te staan. Ronald vertelt hoe in Nederland de eerste datadiodes ontstonden rond staatsgeheimen, glasvezel en fysieke eenrichtingsverkeer. Marco bespreekt een FIFA-bug waarbij een onderzoeker via een publiek voetbalmakelaarsaccount in FIFA's Microsoft-omgeving terechtkwam. Door ontbrekende server-side toegangscontrole had hij in theorie WK-streams kunnen aanpassen. De kwetsbaarheid werd via CISA en de FBI gemeld, omdat FIFA zelf geen duidelijk meldpunt had. Ronald neemt FISA Section 702 mee: de Amerikaanse surveillancebevoegdheid onder onder meer PRISM is verlopen, maar bestaande certificeringen lopen voorlopig nog door. De discussie draait vooral om data van Amerikanen die "incidenteel" in buitenlandse intelligencecollectie terechtkomt, en waar de FBI vervolgens in kon zoeken. Ook kort: de Belgische Staatsveiligheid werd opnieuw geraakt via een security-/beheerproduct, dit keer Ivanti EPMM. En Ronald bewaart voor na de zomer een spionageverhaal over een enorme schotelantenne bij een Frans Starlink-grondstation. Het eerste grote verhaal: mag een inlichtingendienst je router schoonhacken? De Canadese CSIS kreeg rechterlijke toestemming om met Threat Reduction Measures botnet-malware op Canadese servers, SOHO-routers en IoT-apparaten te neutraliseren. Dat voelt nuttig, maar schuurt ook: de overheid grijpt actief in op apparaten van burgers en bedrijven. Het tweede grote verhaal komt van Marco: een China-gelinkte groep zat langdurig in onderzoeksinstellingen in de VS en Canada. De ingang liep via REDCap, onderzoekssoftware voor databases en vragenlijsten. De malware INFINITERED overleefde updates, las wachtwoorden mee en uiteindelijk werd een beheerwachtwoord hergebruikt om mailregels aan te zetten. Simpel en pijnlijk: mails met interessante trefwoorden werden stilletjes via BCC doorgestuurd. De les van deze aflevering: sommige aanvallen zijn technisch slim, maar vaak blijft de kern akelig gewoon. Een oude server, een hergebruikt wachtwoord, een mailregel, een router die niemand meer beheert. Precies daar zit de kwetsbaarheid. Bronnen: - Technostress en GenAI: https://pmc.ncbi.nlm.nih.gov/articles/PMC13084270/ - OSDD / Vrolijk: https://github.com/Vrolijk/OSDD - Open Source Data Diode: https://github.com/CyberInnovationHub-NLD/OpenSourceDataDiode - FIFA-bug / BobDaHacker: https://bobdahacker.com/blog/fifa-hack - Dark Reading over FIFA: https://www.darkreading.com/application-security/fifa-bug-world-cup-streams-remote-takeover - FISA 702 explainer: https://www.brennancenter.org/our-work/research-reports/section-702-foreign-intelligence-surveillance-act - Axios over FISA 702-verlenging: https://www.axios.com/2026/06/11/fisa-section-702-expiration-pulte-trump-johnson - Belgische VSSE / Ivanti: https://www.techzine.eu/news/security/142341/belgian-state-security-hit-by-ivanti-data-breach/ - Starlink-spionagezaak Frankrijk: https://intelnews.org/2026/02/11/01-3427/ - Federal Court Canada, file C-6-24: https://www.fct-cf.ca/en/pages/media/news-bulletins/file-c-6-24 - The Hacker News over CSIS: https://thehackernews.com/2026/06/canadas-spy-agency-used-first-of-its.html - Google Threat Intelligence over REDCap/UNC6508: https://cloud.google.com/blog/topics/threat-intelligence/prc-targets-us-medical-research
Take a Network Break! We start with listener followup and a red alert affecting ScadaBR, an open source SCADA controller. On the news front, Forward adds predictive testing to its network digital twin software, Qumulo and Cisco team up to offer cloud-bursting for file storage, and NetBrain adds new skills and other updates to its... Read more »
Take a Network Break! We start with listener followup and a red alert affecting ScadaBR, an open source SCADA controller. On the news front, Forward adds predictive testing to its network digital twin software, Qumulo and Cisco team up to offer cloud-bursting for file storage, and NetBrain adds new skills and other updates to its... Read more »
Take a Network Break! We start with listener followup and a red alert affecting ScadaBR, an open source SCADA controller. On the news front, Forward adds predictive testing to its network digital twin software, Qumulo and Cisco team up to offer cloud-bursting for file storage, and NetBrain adds new skills and other updates to its... Read more »
Conviértete en un supporter de este podcast: https://www.spreaker.com/podcast/el-camionero-geek--431234/support.
The FCC eases restrictions on foreign-made routers. Shiny Hunters hit Canvas and Zara. SailPoint discloses unauthorized access to its GitHub repositories. TrickMo Android banking malware has more tricks up its sleeve. Polish officials warn of increased targeting of ICS and public infrastructure. A federal judge orders $10 million in restitution for stolen zero days. German authorities takedown the Crimenetwork marketplace, again. Monday business breakdown. Dan Lorenc, Chainguard CEO and co-founder, is talking about a recent wave of supply chain attacks. Malware gets signed, sealed and delivered. Remember to leave us a 5-star rating and review in your favorite podcast app. Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you'll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn. CyberWire Guest Dan Lorenc, Chainguard CEO and co-founder, is talking about how the recent wave of supply chain attacks is fundamentally different – and more dangerous –than previous incidents, as well as immediate steps organizations should take as this continues to unfold. Selected Reading US: FCC Relaxes Foreign-Made Router Ban to Allow for Security Updates (Infosecurity Magazine) ShinyHunters Escalates Canvas Extortion (Infosecurity Magazine) Zara Data Breach Impacts Nearly 200,000 Customers (Infosecurity Magazine) SailPoint Discloses GitHub Repository Hack (SecurityWeek) TrickMo Android banker adopts TON blockchain for covert comms (Bleeping Computer) Polish ABW warns cyberattacks shifting from espionage and data theft toward physical disruption of critical infrastructure (Industrial Cyber) Trenchant Exec Who Sold Zero Days to Russian Buyer Ordered to Pay $10 Million in Restitution to Former Employers (Zero Day) Resurrected 'Crimenetwork' Marketplace Taken Down, Administrator Arrested (SecurityWeek) XBOW secures an additional $35 million in Series C funding. (N2K Pro Business Briefing) Hackers Trick DigiCert Into Issuing Certificates Used to Sign Malware (Hackread) Share your feedback. What do you think about CyberWire Daily? Please take a few minutes to share your thoughts with us by completing our brief listener survey. Thank you for helping us continue to improve our show. Want to hear your company in the show? N2K CyberWire helps you reach the industry's most influential leaders and operators, while building visibility, authority, and connectivity across the cybersecurity community. Learn more at sponsor.thecyberwire.com. The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc. Learn more about your ad choices. Visit megaphone.fm/adchoices
This week on the Microsoft Threat Intelligence Podcast, host Sherrod DeGrippo speaks with Danny Adamitis, Distinguished Engineer at Lumen Technologies' Black Lotus Labs who break down how the Russian state-linked threat actor Forest Blizzard is exploiting home and small office routers to hijack DNS traffic, enabling large-scale surveillance and targeted credential theft. The conversation highlights how this low-cost approach scales globally, why unmanaged routers have become a critical weak point, and how tactics, from brute force to token theft to DNS hijacking continue to evolve. In this episode you'll learn: How Forest Blizzard exploits home routers to intercept DNS traffic Why unmanaged routers are a major blind spot in modern security How tactics have evolved from brute force to token-based access Some questions we ask: What defines Forest Blizzard and how they operate? How does this impact machine-to-machine or service account security? What are the broader third-party or downstream risks? Resources: View Danny Adamitis on LinkedIn View Sherrod DeGrippo on LinkedIn Justice Department Conducts Court-Authorized Disruption of DNS Hijacking Network Controlled by a Russian Military Intelligence Unit FrostArmada: All thriller, no (malware) filler Discover and follow other Microsoft podcasts at microsoft.com/podcasts Get the latest threat intelligence insights and guidance at Microsoft Security Insider The Microsoft Threat Intelligence Podcast is produced by Microsoft, Hangar Studios and distributed as part of N2K media network.
This week in the security news: Are you a FIRESTARTER? Eavesdropping via fiber-optic cables Copy Fail - more Linux LPE Github RCE Running Linux on a PS5 BadUSB tricks SilentGlass and HDMI threats Sonicwall and vague details Universities are for porn? The Banshee Before CVEs comes scanning Vendor addresses AirSnitch GitHub and not serious work Routers have country-specific backdoors Phones with Hotspot are fine Visit https://www.securityweekly.com/psw for all the latest episodes! Show Notes: https://securityweekly.com/psw-924
This week in the security news: Are you a FIRESTARTER? Eavesdropping via fiber-optic cables Copy Fail - more Linux LPE Github RCE Running Linux on a PS5 BadUSB tricks SilentGlass and HDMI threats Sonicwall and vague details Universities are for porn? The Banshee Before CVEs comes scanning Vendor addresses AirSnitch GitHub and not serious work Routers have country-specific backdoors Phones with Hotspot are fine Show Notes: https://securityweekly.com/psw-924
This week in the security news: Are you a FIRESTARTER? Eavesdropping via fiber-optic cables Copy Fail - more Linux LPE Github RCE Running Linux on a PS5 BadUSB tricks SilentGlass and HDMI threats Sonicwall and vague details Universities are for porn? The Banshee Before CVEs comes scanning Vendor addresses AirSnitch GitHub and not serious work Routers have country-specific backdoors Phones with Hotspot are fine Visit https://www.securityweekly.com/psw for all the latest episodes! Show Notes: https://securityweekly.com/psw-924
This week in the security news: Are you a FIRESTARTER? Eavesdropping via fiber-optic cables Copy Fail - more Linux LPE Github RCE Running Linux on a PS5 BadUSB tricks SilentGlass and HDMI threats Sonicwall and vague details Universities are for porn? The Banshee Before CVEs comes scanning Vendor addresses AirSnitch GitHub and not serious work Routers have country-specific backdoors Phones with Hotspot are fine Show Notes: https://securityweekly.com/psw-924
The U.S. believes China could flip a switch and turn millions of routers into weapons. The real truth is worse. Learn more about your ad choices. Visit megaphone.fm/adchoices
The FCC on April 14 conditionally exempted certain drone and router models produced in foreign countries from the import bans that were recently adopted on these products. For more information, listen to today's Two Minutes in Trade.
Routers, computers, web cameras — they all connect to the internet. And they can be infected with malicious software that lets someone else take over. The device becomes a bot, essentially.A group of these devices networked together then becomes a botnet. And these botnets can then be used for nefarious purposes, like distributed denial of service attacks, without the device owners even knowing about it.Cybersecurity journalist Brian Krebs recently wrote about several large botnets including one called Kimwolf that compromised more than three million devices.
Routers, computers, web cameras — they all connect to the internet. And they can be infected with malicious software that lets someone else take over. The device becomes a bot, essentially.A group of these devices networked together then becomes a botnet. And these botnets can then be used for nefarious purposes, like distributed denial of service attacks, without the device owners even knowing about it.Cybersecurity journalist Brian Krebs recently wrote about several large botnets including one called Kimwolf that compromised more than three million devices.
Rock Band 4 fixes land in Kernel 7.0! Installing (and playing DOOM) on a router, France installs Linux, and Oberon System 3 on Raspberry Pi.Patreon: https://www.patreon.com/lwdwDiscord: https://discord.gg/uQVckr5gEZTOPICSDOOMing a routerhttps://interfacinglinux.com/2026/04/09/doom-on-the-banana-pi-r4-pro/France to Linuxhttps://www.zdnet.com/article/france-leaves-windows-for-linux-desktop/Linux Kernel 7https://www.omgubuntu.co.uk/2026/04/linux-7-0-kernel-featuresOberon System 3 on Raspberry Pi 3https://github.com/rochus-keller/OberonSystem3Native/releases/tag/2026-04-1000:00 Intro03:48 RPG adventures with cars08:56 Playing DOOM on a router 18:46 France install Linux 26:28 Kernel 7.0 ROCKS37:41 Oberon System 3 on Raspberry Pi 3
Researchers find malicious LLM proxy routers, a fake Ledger crypto-wallet on the Mac App Store stole $10 million dollars, a ransomware crew leaks data from 38 law firms, and Google cracks down on back button hijacking. Show notes Risky Bulletin: Malicious LLM proxy routers found in the wild
(Presented by TLPBLACK: A cybersecurity intelligence platform focused on sharing curated, high-sensitivity threat insights and research with trusted security professionals.) Three Buddy Problem - Episode 93: We discuss Anthropic's release of Claude Mythos Preview (an AI model so capable and dangerous they won't release it publicly) and debate the looming patching crisis, bug bounty extinction, possible US government nationalization of frontier labs, and why the NSA might not be thrilled about all this bug-fixing. Plus, North Korea's six-month Drift Protocol con job, APT28's retro DNS hijacking campaign, and Microsoft's driver signing mess hitting WireGuard and VeraCrypt. Cast: Juan Andres Guerrero-Saade, Ryan Naraine and Costin Raiu. 00:00 — Opening banter 01:36 — Anthropic Mythos Preview + Project Glasswing 06:17 — USG reaction + Wall Street emergency meeting 10:54 — Mythos capabilities vs hype (technical reality check) 13:44 — PR stunt? Skepticism of Anthropic narrative 20:42 — The patching crisis + “defender advantage” 27:41 — Bug bounty model under threat from AI 33:37 — Mythos practical workflows 45:09 — Geopolitics, NSA angle, and nationalization discussion 01:40:18 — Fortinet zero-day + ongoing failures 01:42:39 — Drift Protocol heist ($285M) + long-term social engineering 01:44:07 — Revisiting XZ Utils / Jia Tan attribution 01:54:07 — Crypto security gaps + need for real CTI in blockchain 02:04:22 — APT28 DNS hijacking + router compromise campaign 02:18:57 — Microsoft driver signing meltdown + ecosystem impact
The Cybercrime Magazine Podcast brings you daily cybercrime news on WCYB Digital Radio, the first and only 7x24x365 internet radio station devoted to cybersecurity. Stay updated on the latest cyberattacks, hacks, data breaches, and more with our host. Don't miss an episode, airing every half-hour on WCYB Digital Radio and daily on our podcast. Listen to today's news at https://soundcloud.com/cybercrimemagazine/sets/cybercrime-daily-news. Brought to you by our Partner, Evolution Equity Partners, an international venture capital investor partnering with exceptional entrepreneurs to develop market leading cyber-security and enterprise software companies. Learn more at https://evolutionequity.com
The FCC has banned all new consumer routers made outside the US, leaving networks stuck with aging, insecure hardware while blocking innovation. Find out why this sweeping move is raising eyebrows and lawsuits—and why it makes zero sense for cybersecurity. Apple's 26.4 age queries catches many by surprise. LinkedIn's 2.7 MB of privacy-invading javascript. Microsoft starts forcing Win11 24H2 to 25H2. Cisco loses source code to the Trivy supply-chain mess. Proton introduces privacy-first voice and video "Meet." GitHub to fix lagging security of its Actions feature. Cloudflare reaffirms the privacy of its 1.1.1.1 DNS. Cloudflare uses AI to re-code better secure Wordpress. The FCC drops a ban on all new consumer-grade routers. Show Notes - https://www.grc.com/sn/SN-1073-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: meter.com/securitynow zscaler.com/security material.security bitwarden.com/twit hoxhunt.com/securitynow
The FCC has banned all new consumer routers made outside the US, leaving networks stuck with aging, insecure hardware while blocking innovation. Find out why this sweeping move is raising eyebrows and lawsuits—and why it makes zero sense for cybersecurity. Apple's 26.4 age queries catches many by surprise. LinkedIn's 2.7 MB of privacy-invading javascript. Microsoft starts forcing Win11 24H2 to 25H2. Cisco loses source code to the Trivy supply-chain mess. Proton introduces privacy-first voice and video "Meet." GitHub to fix lagging security of its Actions feature. Cloudflare reaffirms the privacy of its 1.1.1.1 DNS. Cloudflare uses AI to re-code better secure Wordpress. The FCC drops a ban on all new consumer-grade routers. Show Notes - https://www.grc.com/sn/SN-1073-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: meter.com/securitynow zscaler.com/security material.security bitwarden.com/twit hoxhunt.com/securitynow
The FCC has banned all new consumer routers made outside the US, leaving networks stuck with aging, insecure hardware while blocking innovation. Find out why this sweeping move is raising eyebrows and lawsuits—and why it makes zero sense for cybersecurity. Apple's 26.4 age queries catches many by surprise. LinkedIn's 2.7 MB of privacy-invading javascript. Microsoft starts forcing Win11 24H2 to 25H2. Cisco loses source code to the Trivy supply-chain mess. Proton introduces privacy-first voice and video "Meet." GitHub to fix lagging security of its Actions feature. Cloudflare reaffirms the privacy of its 1.1.1.1 DNS. Cloudflare uses AI to re-code better secure Wordpress. The FCC drops a ban on all new consumer-grade routers. Show Notes - https://www.grc.com/sn/SN-1073-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: meter.com/securitynow zscaler.com/security material.security bitwarden.com/twit hoxhunt.com/securitynow
The FCC has banned all new consumer routers made outside the US, leaving networks stuck with aging, insecure hardware while blocking innovation. Find out why this sweeping move is raising eyebrows and lawsuits—and why it makes zero sense for cybersecurity. Apple's 26.4 age queries catches many by surprise. LinkedIn's 2.7 MB of privacy-invading javascript. Microsoft starts forcing Win11 24H2 to 25H2. Cisco loses source code to the Trivy supply-chain mess. Proton introduces privacy-first voice and video "Meet." GitHub to fix lagging security of its Actions feature. Cloudflare reaffirms the privacy of its 1.1.1.1 DNS. Cloudflare uses AI to re-code better secure Wordpress. The FCC drops a ban on all new consumer-grade routers. Show Notes - https://www.grc.com/sn/SN-1073-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: meter.com/securitynow zscaler.com/security material.security bitwarden.com/twit hoxhunt.com/securitynow
The FCC has banned all new consumer routers made outside the US, leaving networks stuck with aging, insecure hardware while blocking innovation. Find out why this sweeping move is raising eyebrows and lawsuits—and why it makes zero sense for cybersecurity. Apple's 26.4 age queries catches many by surprise. LinkedIn's 2.7 MB of privacy-invading javascript. Microsoft starts forcing Win11 24H2 to 25H2. Cisco loses source code to the Trivy supply-chain mess. Proton introduces privacy-first voice and video "Meet." GitHub to fix lagging security of its Actions feature. Cloudflare reaffirms the privacy of its 1.1.1.1 DNS. Cloudflare uses AI to re-code better secure Wordpress. The FCC drops a ban on all new consumer-grade routers. Show Notes - https://www.grc.com/sn/SN-1073-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: meter.com/securitynow zscaler.com/security material.security bitwarden.com/twit hoxhunt.com/securitynow
The FCC has banned all new consumer routers made outside the US, leaving networks stuck with aging, insecure hardware while blocking innovation. Find out why this sweeping move is raising eyebrows and lawsuits—and why it makes zero sense for cybersecurity. Apple's 26.4 age queries catches many by surprise. LinkedIn's 2.7 MB of privacy-invading javascript. Microsoft starts forcing Win11 24H2 to 25H2. Cisco loses source code to the Trivy supply-chain mess. Proton introduces privacy-first voice and video "Meet." GitHub to fix lagging security of its Actions feature. Cloudflare reaffirms the privacy of its 1.1.1.1 DNS. Cloudflare uses AI to re-code better secure Wordpress. The FCC drops a ban on all new consumer-grade routers. Show Notes - https://www.grc.com/sn/SN-1073-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: meter.com/securitynow zscaler.com/security material.security bitwarden.com/twit hoxhunt.com/securitynow
Anthropic announces Project Glasswing U.S. seeks to slash CISA funding Russia-linked hackers hijack routers for passwords Check out our show notes here: https://cisoseries.com/cybersecurity-news-anthropics-project-glasswing-cisa-funding-in-doubt-routers-hijacked-for-passwords/ Huge thanks to our episode sponsor, Vanta Risk and regulation ramping up—and customers expect proof of security just to do business. Vanta's automation brings compliance, risk, and customer trust together on one AI-powered platform. So whether you're prepping for a SOC 2 or running an enterprise GRC program, Vanta keeps you secure—and keeps your deals moving. Learn more at vanta.com/ciso.
The FCC has banned all new consumer routers made outside the US, leaving networks stuck with aging, insecure hardware while blocking innovation. Find out why this sweeping move is raising eyebrows and lawsuits—and why it makes zero sense for cybersecurity. Apple's 26.4 age queries catches many by surprise. LinkedIn's 2.7 MB of privacy-invading javascript. Microsoft starts forcing Win11 24H2 to 25H2. Cisco loses source code to the Trivy supply-chain mess. Proton introduces privacy-first voice and video "Meet." GitHub to fix lagging security of its Actions feature. Cloudflare reaffirms the privacy of its 1.1.1.1 DNS. Cloudflare uses AI to re-code better secure Wordpress. The FCC drops a ban on all new consumer-grade routers. Show Notes - https://www.grc.com/sn/SN-1073-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: meter.com/securitynow zscaler.com/security material.security bitwarden.com/twit hoxhunt.com/securitynow
This episode covers the FCC's move to restrict or ban certain foreign-made networking equipment—especially routers tied to Chinese manufacturers—highlighting the potential cybersecurity risks, supply chain implications, and how the rule could affect ISPs and consumers. The hosts also discuss broader concerns around hardware trust, existing infrastructure, and what qualifies as “approved” devices under FCC guidelines, along with a brief, lighter mention of a viral robot incident making the rounds online.Join us LIVE on Mondays, 4:30pm EST.A weekly Podcast with BHIS and Friends. We discuss notable Infosec, and infosec-adjacent news stories gathered by our community news team.https://www.youtube.com/@BlackHillsInformationSecurityChat with us on Discord! - https://discord.gg/bhis
Gm! In this episode, Eugene Chen, CEO of Ellipsis Labs, joins us to break down Solana's evolving market structure and the launch of Phoenix Perps. We explore onchain trading design, routing and sequencing challenges, MCP's role, and how user behavior and incentives are shaping the future of DeFi. Enjoy! -- Follow Lightspeed: https://x.com/Lightspeedpodhq Follow Ellipsis Labs: https://x.com/ellipsis_labs Follow Eugene: https://x.com/0xShitTrader Follow Danny: https://x.com/defi_kay_ Join the Lightspeed Telegram: https://t.me/+QHlbNTNS4gc1ZTVh -- Get top market insights and the latest in crypto news. Subscribe to Blockworks Daily Newsletter: https://blockworks.co/newsletter/ -- Timestamps: (0:00) Introduction (2:25) Solana Market Structure Shift (8:07) Why Phoenix Perps Now (21:16) Why Perps Need No Router (29:39) What Solana Must Improve (34:49) The Block Builder Problem (43:24) Will DeFi Mimic TradFi? (52:48) Phoenix Perps Launch Plans (53:38) Closing Comments -- Disclaimers: Lightspeed was kickstarted by a grant from the Solana Foundation. Nothing said on Lightspeed is a recommendation to buy or sell securities or tokens. This podcast is for informational purposes only, and any views expressed by anyone on the show are solely our opinions, not financial advice. Danny, and our guests may hold positions in the companies, funds, or projects discussed.
(Presented by TLPBLACK: High-fidelity threat intelligence and research tools for modern security teams. From curated Passive DNS and real-time C2 monitoring to actionable IOC feeds and daily malware samples, we help defenders detect, hunt, and disrupt threats faster, with seamless integration into SIEM and SOAR workflows.) Three Buddy Problem - Episode 91: This week we dig into Google's new cyber threat disruption unit announced at RSAC, Kaspersky confirming Coruna is a direct evolution of Operation Triangulation, and a cascading supply chain compromise that chained through LiteLLM, Trivy, and Checkmarx into thousands of software pipelines. Plus, VCs and the breathless AI hype, Apple's iOS 26.4 and silent patches, the FCC's ban on foreign-made routers, and Symantec catching an APT looking for Chinese military data. Cast: Juan Andres Guerrero-Saade, Ryan Naraine and Costin Raiu. 0:00 Intro & Pre-Show Banter 3:08 JAGS in San Francisco: RSAC week recap 6:05 Google Launches Cyber Disruption Unit — What's Actually New? 13:43 Why Separate Disruption Units Matter: ROI & Budget Justification 29:11 Haroon Meer's RSA Reality Check: The AI Hype Machine 32:37 The VC Ponzi Cycle & How Easy Money Hollowed Out Cybersecurity 47:32 ENT.ai & Tenex AI Hackathon at RSAC 53:08 Kaspersky Links Corona Exploit Kit to Operation Triangulation 1:08:09 Trenchant Cleanup & Lessons from Equation Group Burns 1:19:31 Apple iOS Patches, Hong Kong Device Passcode Law 1:27:53 Handala Hacks FBI Director Kash Patel's Personal Gmail 1:37:32 LeakBase Admin "Chucky" Arrested in Russia — FSB Gets the Data 1:45:38 Supply Chain Attacks: TeamPCP Hits LiteLLM & Trivy 2:04:34 FCC Bans Foreign-Made Routers — But What Do We Buy?
Macbooks, Routers, Ample Nonsense.
Dan Moren joins Mikah Sargent on Tech News Weekly! Rumors of iOS 27 are slowly making the rounds, with Apple's planned AI reboot. A look inside the lawsuit between Halide co-founders. The US just banned consumer routers made outside of the US. And NASA unveiled its initiatives to return back to the Moon. Dan talks about the rumors of iOS 27 and Apple's planned AI refresh, alongside a new "Ask Siri" feature, that will be part of the unveiling of iOS 27 & macOS 27 at Apple's Worldwide Developer Conference later in June. Mikah goes a bit deeper into the lawsuit that Lux co-founder Ben Sandofsky brought against Sebastiaan de With over financial misconduct and bringing source code with them over to Apple. Sean Hollister of The Verge joins the show to talk more about the US's ban on foreign-made consumer routers and explains what the ban is seeking to do. And Mikah explains NASA's initiatives and plans to return to the Moon, and what NASA plans to do once they return. Hosts: Mikah Sargent and Dan Moren Guest: Sean Hollister Download or subscribe to Tech News Weekly at https://twit.tv/shows/tech-news-weekly. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: hoxhunt.com/securitynow threatlocker.com/twit Melissa.com/twit
Dan Moren joins Mikah Sargent on Tech News Weekly! Rumors of iOS 27 are slowly making the rounds, with Apple's planned AI reboot. A look inside the lawsuit between Halide co-founders. The US just banned consumer routers made outside of the US. And NASA unveiled its initiatives to return back to the Moon. Dan talks about the rumors of iOS 27 and Apple's planned AI refresh, alongside a new "Ask Siri" feature, that will be part of the unveiling of iOS 27 & macOS 27 at Apple's Worldwide Developer Conference later in June. Mikah goes a bit deeper into the lawsuit that Lux co-founder Ben Sandofsky brought against Sebastiaan de With over financial misconduct and bringing source code with them over to Apple. Sean Hollister of The Verge joins the show to talk more about the US's ban on foreign-made consumer routers and explains what the ban is seeking to do. And Mikah explains NASA's initiatives and plans to return to the Moon, and what NASA plans to do once they return. Hosts: Mikah Sargent and Dan Moren Guest: Sean Hollister Download or subscribe to Tech News Weekly at https://twit.tv/shows/tech-news-weekly. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: hoxhunt.com/securitynow threatlocker.com/twit Melissa.com/twit
Dan Moren joins Mikah Sargent on Tech News Weekly! Rumors of iOS 27 are slowly making the rounds, with Apple's planned AI reboot. A look inside the lawsuit between Halide co-founders. The US just banned consumer routers made outside of the US. And NASA unveiled its initiatives to return back to the Moon. Dan talks about the rumors of iOS 27 and Apple's planned AI refresh, alongside a new "Ask Siri" feature, that will be part of the unveiling of iOS 27 & macOS 27 at Apple's Worldwide Developer Conference later in June. Mikah goes a bit deeper into the lawsuit that Lux co-founder Ben Sandofsky brought against Sebastiaan de With over financial misconduct and bringing source code with them over to Apple. Sean Hollister of The Verge joins the show to talk more about the US's ban on foreign-made consumer routers and explains what the ban is seeking to do. And Mikah explains NASA's initiatives and plans to return to the Moon, and what NASA plans to do once they return. Hosts: Mikah Sargent and Dan Moren Guest: Sean Hollister Download or subscribe to Tech News Weekly at https://twit.tv/shows/tech-news-weekly. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: hoxhunt.com/securitynow threatlocker.com/twit Melissa.com/twit
Dan Moren joins Mikah Sargent on Tech News Weekly! Rumors of iOS 27 are slowly making the rounds, with Apple's planned AI reboot. A look inside the lawsuit between Halide co-founders. The US just banned consumer routers made outside of the US. And NASA unveiled its initiatives to return back to the Moon. Dan talks about the rumors of iOS 27 and Apple's planned AI refresh, alongside a new "Ask Siri" feature, that will be part of the unveiling of iOS 27 & macOS 27 at Apple's Worldwide Developer Conference later in June. Mikah goes a bit deeper into the lawsuit that Lux co-founder Ben Sandofsky brought against Sebastiaan de With over financial misconduct and bringing source code with them over to Apple. Sean Hollister of The Verge joins the show to talk more about the US's ban on foreign-made consumer routers and explains what the ban is seeking to do. And Mikah explains NASA's initiatives and plans to return to the Moon, and what NASA plans to do once they return. Hosts: Mikah Sargent and Dan Moren Guest: Sean Hollister Download or subscribe to Tech News Weekly at https://twit.tv/shows/tech-news-weekly. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: hoxhunt.com/securitynow threatlocker.com/twit Melissa.com/twit
The FCC is banning the import and sales of all routers made outside the U.S. Hear why and what it means for your Wi-Fi. Learn more about your ad choices. Visit megaphone.fm/adchoices
On this episode, I cover more fallout from the last round of Windows Updates and news of an upcoming change to Windows Update behavior, I also dive further into the recent Stryker security incident and much more! Reference Links: https://www.rorymon.com/blog/overhaul-of-windows-updates-chatgpt-library-announced-foreign-routers-to-be-banned-from-us/
Anthropic Claude Code can now control the computer in claw-like fashion, and Apple Maps is about to get sponsored results inside its maps.Starring Jason Howell and Tom Merritt.Links to stories discussed in this episode can be found here. Hosted on Acast. See acast.com/privacy for more information.
Anthropic Rolls Out Autonomous Research Preview for Claude Desktop App Users, Nintendo Cuts Switch 2 Q1 Production by 2 Million Units Following Soft Holiday Sales, and TikTok Expands Ad Formats with “Disruptive” Options. MP3 Please SUBSCRIBE HERE for free or get DTNS Live ad-free. A special thanks to all our supporters–without you, none of thisContinue reading "FCC Bans Most Foreign Routers Citing National Security Risk – DTH"
AP's Lisa Dwyer reports on new restrictions on foreign made routers.
-The Federal Communications Commission has released a notice today designating any consumer routers manufactured outside the US as a security risk. -This potential ad revenue from Apple's Map App could seriously bolster Apple's services business, which currently generates $100 billion a year for the company. This division accounts for around 25 percent of annual revenue but faces challenges in both the short-term and long-term -The drone delivery startup has been rapidly expanding to metro areas across the US, but is now targeting the tech-friendly Silicon Valley region. Learn more about your ad choices. Visit podcastchoices.com/adchoices
El programa 2844 de Radiogeek, les habló de varios temas importantes. Samsung y Apple rompen el «muro de cristal» y anuncian compatibilidad entre Quick Share y AirDrop; Elon Musk anuncia «Terafab» – La planta de microchips más grande del mundo para alimentar su imperio de IA; La Conferencia Mundial de Desarrolladores de Apple regresa la semana del 8 de junio; Hackers ponen a la venta los datos de 6 millones de clientes de Verizon; WhatsApp trabaja en mensajes que desaparecen automáticamente tras ser leídos; Reddit está evaluando métodos de verificación de identidad para combatir a los bots y por último Estados Unidos acaba de prohibir los routers Wi-Fi de fabricación extranjera Toda esta información la pueden encontrar desde nuestra web www.infosertec.com.ar o bien desde el canal de Telegram/Whastapp, o Instagram. Esperamos sus comentarios.
Evgeny is the founder of SimpleX Chat, a private and secure comms protocol that has a radically different approach to the concept of user identity. We discuss how SimpleX's unique transport network assigns addresses to connections instead of endpoints, why MLS is flawed, the upcoming scalable channels feature to compete with Telegram, and how the network plans to sustain itself through a model where large channels fund infrastructure. No phone numbers. Private and secure. Open and scalable.Personal blog: https://www.poberezkin.com Official website: https://simplex.chatSimpleX on Nostr: https://primal.net/simplex SimpleX on X: https://x.com/SimpleXChat EPISODE: 196BLOCK: 941454PRICE: 1432 sats per dollar(00:02:56) Introducing SimpleX and why Signals model falls short(00:04:48) What is SimpleX? Sovereignty and trustless design principles(00:09:21) Privacy as prerequisite for speech and society(00:13:04) From messenger to scalable channels and Telegram comparisons(00:17:27) Content privacy vs participation privacy in large groups(00:23:30) Removing identity(00:24:32) Transport layer innovation: addressing connections, not endpoints(00:29:09) SimpleX Chat as first app and platform on the network(00:30:25) Agents, AI, and commerce inside messaging(00:32:43) Routers: resource needs and the trust model(00:36:14) Operator diversity and Tor comparisons(00:40:15) Packet level anonymity vs persistent circuits(00:41:39) Discovery and first contact: addresses, reply paths, UX(00:43:09) Groups at scale, MLS critique, and Signals approach(00:48:00) SimpleX groups today and upcoming channel relays(00:52:30) Verifiability, signed actions, and deniability tradeoffs(01:01:02) Authenticity for public speech in a deepfake era(01:02:01) Incentivizing infrastructure: beyond hobby servers(01:08:10) Why premium app models fail; web monetization analogy(01:11:00) Channels as websites: who pays and why(01:14:34) For profit vs nonprofit: incentives, governance, and scale(01:21:16) Consortium governance and resisting capture(01:27:41) Lessons from the web: speed, innovation, and standards(01:33:06) Privacy tech adoption realities and movement unity(01:34:36) Monetization mechanics: registries, naming, and smart contracts(01:39:54) Programmatic revenue sharing and prepaid credits(01:52:18) Choosing chains and assets: centralization vs volatility(01:55:09) Prototype first, prove market fit, then harden design(01:59:00) Motivation: restoring private communication at scale(02:00:12) Next steps: consortium, crowdfunding, and closingmore info on the show: https://citadeldispatch.comlearn more about me: https://odell.xyzmonitor the situation: https://citadelwire.com
Take a Network Break! We start with follow-up on the proper pronunciation of the US state of Nevada, and then sound the alarm about new research that gets around WiFi client isolation and could enable man-in-the-middle attacks. On the news front, AMD and Meta strike a massive deal in which AMD will sell its stock... Read more »
Take a Network Break! We start with follow-up on the proper pronunciation of the US state of Nevada, and then sound the alarm about new research that gets around WiFi client isolation and could enable man-in-the-middle attacks. On the news front, AMD and Meta strike a massive deal in which AMD will sell its stock... Read more »
Take a Network Break! We start with follow-up on the proper pronunciation of the US state of Nevada, and then sound the alarm about new research that gets around WiFi client isolation and could enable man-in-the-middle attacks. On the news front, AMD and Meta strike a massive deal in which AMD will sell its stock... Read more »
In this episode of Command Control Power, Jerry and Joe discuss recent weather experiences and delve into network topics, including the Unify travel router, the Unify 5G Max Dream Router, and data SIM options. They also share practical tips for streamlining tech tools like Text Expander shortcuts and explore innovative solutions like SPEED for bonding multiple internet connections. Additionally, they touch on topics like simplifying Amazon returns and considerations for international travel, providing humorous anecdotes and prudent advice along the way. 00:00 Introduction and Weather Chat 01:14 Network Talk: Ubiquiti Announcements 01:36 Unify Travel Router: Features and Criticisms 04:54 Dream Router 5G Max: A Versatile Solution 06:28 5G Max and LTE Backup: Deployment Insights 13:26 Affordable Data SIMs for Low-Income Users 18:41 International Travel: EIM Solutions 23:05 Speed.com: Bonding Multiple Connections 28:05 Understanding Data Plans and Router Compatibility 28:56 Currency Exchange for International Travel 33:29 Network Security and Data Protection 37:57 Text Expander Tips and Tricks 43:43 Venmo and ACH Payment Insights 48:11 Amazon Returns and Stock Picks 52:13 Conclusion and Listener Appreciation