Player FM - Internet Radio Done Right
17 subscribers
Checked 44m ago
Added three years ago
Content provided by Risky.biz. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Risky.biz or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ppacc.player.fm/legal.
Player FM - Podcast App
Go offline with the Player FM app!
Go offline with the Player FM app!
Podcasts Worth a Listen
SPONSORED
S
Species Unite


I think you could probably go back and track the stages of grief, probably that is what I went through. But I think if you do it right, you end up at acceptance. And that's where I ended up. And that's not to say that I've fully accepted the idea that the golden toad is extinct. Personally, I do still hold out hope that it could still be out there in those forests." - Trevor Ritland This conversation is with Trevor Ritland, who—along with his twin brother Kyle—authored The Golden Toad . The book chronicles their remarkable journey into Costa Rica’s cloud forest, once home to hundreds of brilliant golden toads that would emerge for just a few weeks each year—until, one day, they vanished without a trace. What began as a search for a lost species soon became something much more profound: a confrontation with ecological grief, a meditation on hope, and a powerful call to protect the natural world while we still can. Links: SpeciesUnite.com Kyle and Trevor: https://kyleandtrevor.com/ Instagram: https://www.instagram.com/adventureterm/ Goodreads - https://www.goodreads.com/book/show/222249677-the-golden-toad Amazon - https://www.amazon.com/Golden-Toad-Ecological-Mystery-Species/dp/163576996…
Risky Bulletin: Russian hackers abuse app-specific passwords to bypass MFA
Manage episode 489799143 series 3343651
Content provided by Risky.biz. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Risky.biz or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ppacc.player.fm/legal.
Russian hackers abuse app-specific passwords to bypass multi-factor, the tenth Salt Typhoon victim is identified, Predatory Sparrow destroys $90 million from an Iranian crypto-exchange, and Argentina arrests a Russian disinfo gang.
Show notes
673 episodes
Manage episode 489799143 series 3343651
Content provided by Risky.biz. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Risky.biz or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ppacc.player.fm/legal.
Russian hackers abuse app-specific passwords to bypass multi-factor, the tenth Salt Typhoon victim is identified, Predatory Sparrow destroys $90 million from an Iranian crypto-exchange, and Argentina arrests a Russian disinfo gang.
Show notes
673 episodes
All episodes
×R
Risky Bulletin

1 Risky Bulletin: Microsoft investigates MAPP leak 5:23
5:23
Play Later
Play Later
Lists
Like
Liked5:23
Microsoft investigates a MAPP leak as the source of the SharePoint zero-day, US law enforcement takes down the BlackSuit ransomware portal, an Arizona woman is imprisoned for running a North Korean laptop farm, and Allianz life insurance suffers a security breach. Show notes
R
Risky Bulletin

1 Sponsored: Nucleus Security on the evolution of vulnerability management 19:14
19:14
Play Later
Play Later
Lists
Like
Liked19:14
In this sponsored interview, Nucleus Security co-founder and COO, Scott Kuffer joins Casey Ellis to chat about how vulnerability management evolved into quite a lot more than just patch prioritization. Show notes
R
Risky Bulletin

1 Risky Bulletin: Microsoft rolls out linkable token identifiers to help IR teams 7:02
7:02
Play Later
Play Later
Lists
Like
Liked7:02
Microsoft rolls out better logging for incident responders, the SharePoint hacking spree hits major US agencies, Ukraine arrests the admin of a well-known hacking forum, and China launches a national Digital ID system. Show notes
R
Risky Bulletin

1 Risky Bulletin: Three Chinese APTs are behind the SharePoint zero-day attacks 5:41
5:41
Play Later
Play Later
Lists
Like
Liked5:41
Three Chinese APTs are behind the recent SharePoint zero-day attacks, the UK wants to ban the public sector from paying ransoms, Russia takes down a malware operation, and South Korea charges airline employees over selling celebrity data. Show notes
R
Risky Bulletin

1 Between Two Nerds: How China's cyber militia make sense 33:20
33:20
Play Later
Play Later
Lists
Like
Liked33:20
In this edition of Between Two Nerds Tom Uren and The Grugq discuss whether China’s ‘cyber militia’ make sense and what they could be good for. This episode is also available on Youtube . Show notes Mobilizing Cyber Power: The Growing Role of Cyber Militias in China’s Network Warfare Force Structure
R
Risky Bulletin

1 Risky Bulletin: Iranian security firm behind airline hacking spree 6:07
6:07
Play Later
Play Later
Lists
Like
Liked6:07
An Iranian security firm is behind an airline hacking spree, Chinese hackers breach Singapore’s critical infrastructure, new SharePoint and CrushFTP zero-days are being used in the wild, and Japan releases free ransomware decrypters. Show notes
R
Risky Bulletin

1 Sponsored: Haroon Meer's secret to business success is… love 20:53
20:53
Play Later
Play Later
Lists
Like
Liked20:53
In this Risky Business sponsored interview, Thinkst Canary CEO Haroon Meer chats to Casey Ellis about the company’s impressive growth over the past decade, and how it approached that path a little differently to other firms. Haroon’s advice for young startup founders: Is your problem worth solving? And can you actually solve it? And… Love your customers. Show notes…
R
Risky Bulletin

1 Risky Bulletin: New phishing technique bypasses FIDO keys 8:03
8:03
Play Later
Play Later
Lists
Like
Liked8:03
Hackers bypass FIDO keys with a new phishing technique, a mobile surveillance vendor deploys an SS7 exploit, ransomware hits South Korea’s largest insurance provider, and law enforcement agencies dismantle a pro-Kremlin DDoS group. Show notes
R
Risky Bulletin

1 Srsly Risky Biz: Spain leaves key under mat for Huawei 21:23
21:23
Play Later
Play Later
Lists
Like
Liked21:23
Tom Uren and Amberleigh Jack talk about Huawei’s contract to manage storage for Spain’s lawful intercept system. News broke this week that Spain had signed a €12 million contract, but it turns out Huawei has been involved in the system since 2004! They also discuss arrests in the UK of four individuals associated with Scattered Spider. The criminal resumés of two of the suspects support the idea that there are key individuals with outsize impact. But they also reinforce that the online communities they are involved in act as training grounds for cyber criminals. Arrests will slow hacks, not stop them. This episode is also available on Youtube . Show notes…
R
Risky Bulletin

1 Risky Bulletin: China breaches US National Guard 7:08
7:08
Play Later
Play Later
Lists
Like
Liked7:08
Salt Typhoon breaches a US state’s National Guard, Ukrainian hackers wipe the servers of a Russian drone maker, the UK relocates Afghans caught up in a data leak, and Microsoft outsources some US government work to China. Show notes
R
Risky Bulletin

1 Between Two Nerds: Is US cyber espionage too careful? 31:30
31:30
Play Later
Play Later
Lists
Like
Liked31:30
In this edition of Between Two Nerds Tom Uren and The Grugq examine whether US cyber operations are too stealthy. Could they get more bang for the buck if they adopted a devil may care attitude to getting busted? This episode is also available on Youtube . Show notes Should US spies steal Chinese commercial secrets?…
R
Risky Bulletin

1 Risky Bulletin: Radio equipment vulnerability can bring trains to sudden stops 7:12
7:12
Play Later
Play Later
Lists
Like
Liked7:12
A radio equipment vulnerability can bring trains to sudden stops, researchers prevent a Lazarus crypto attack, Spain hands Huawei control over its phone wiretapping system, and CISA warns of ongoing CitrixBleed 2 attacks. Show notes
R
Risky Bulletin

In this Risky Business sponsored interview, Zero Networks Field CTO, Chris Boehm discusses the everyone-gets-an-AI future with Casey Ellis. Zero Networks makes network microsegmentation achievable without simply handing an AI control of the network. Will generative artificial intelligence ever be trusted to make hard access control decisions? Show notes…
R
Risky Bulletin

1 Risky Bulletin: Two billion eSIMs receive crucial security patch 8:20
8:20
Play Later
Play Later
Lists
Like
Liked8:20
Two billion eSIMs receive crucial security patches, China’s cyber militias go on the offensive, four Scattered Spider members detained over UK retail attacks, and a Russian basketball player is arrested in a ransomware case. Show notes
R
Risky Bulletin

1 Srsly Risky Biz: Four key players drive Scattered Spider 17:07
17:07
Play Later
Play Later
Lists
Like
Liked17:07
Tom Uren and Amberleigh Jack talk about our developing understanding of the group that people call Scattered Spider. Independent security firms agree that there are a small number of key people that are driving the group’s outrageous success. That gives us hope that targeted action might stem the bleeding. They also talk about data leaks from China’s cyber espionage ecosystem that are for sale on a data leak site. These look to contain actionable information from a counterintelligence point of view. And Tom wonders if a market for espionage-as-a-service will develop? This episode is also available on Youtube . Show notes…
Welcome to Player FM!
Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.