Podcasts

News, analysis and commentary

Srsly Risky Biz: Security vendors are constantly attacked

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

Tom Uren
Tom Uren

Policy & Intelligence

Tom Uren and Patrick Gray talk about a SentinelOne report about how it is constantly targeted by both cybercriminal and state-backed hackers. Security firms are high-value targets, so constant attacks on them are the new normal.

They also discuss an article that calls Signal “a kind of dark matter of American politics and media”. Many policy discussions occur on the app, and this explains the Trump administration’s extensive use of the app.

This episode is also available on Youtube.

Srsly Risky Biz: Security vendors are constantly attacked
0:00 / 20:47

Risky Business #789 -- Apple's AirPlay vulns are surprisingly awful

Presented by

Adam Boileau
Adam Boileau

Technology Editor

Patrick Gray
Patrick Gray

CEO and Publisher

On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news:

  • British retail stalwart Marks & Spencer gets cybered
  • South Korean telco sets out to replace all its subscriber SIMs after (we assume) it lost the keymat
  • It’s a good exploit week! Bugs in Apple Airplay, SAP webservers, Erlang SSH and CommVault backups
  • Juice jacking! No, really! Some researchers actually did it (so still not in the wild, then)
  • Anti-DOGE whistleblower sure sounds like he has a point

This week’s episode is sponsored by Knocknoc, who let you glue your firewalls to your single sign on. Knocknoc’s CEO Adam Pointon talks about the joy that having end-to-end IPv6 would bring for zero-trust access control. He also touches on people using Knocknoc inside their network to isolate critical systems.

Editors Note : Pat also gives Adam (Boileau) stick in the sponsor interview about the Risky Biz webserver not having IPv6 enabled, which fact-checking during the edit says is FAKE NEWS. Just uh, don’t look at how fresh that AAAA record in the DNS is, friends 😉

This episode is also available on Youtube.

Risky Business #789 -- Apple's AirPlay vulns are surprisingly awful
0:00 / 62:31

Risky Bulletin: French government grows spine, calls out Russian hacks

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

The French government calls out Russian hacks for the first time, Marks & Spencer sends staff home after a ransomware attack, China accuses America of hacking a major cryptography provider, and AirBorne vulnerabilities impact Apple’s AirPlay.

Risky Bulletin: French government grows spine, calls out Russian hacks
0:00 / 8:49

Between Two Nerds: Releasing the hounds on scam compounds

Presented by

The Grugq
The Grugq

Independent Security Researcher

Tom Uren
Tom Uren

Policy & Intelligence

In this edition of Between Two Nerds Tom Uren and The Grugq discuss the Southeast Asian criminal syndicates that run online scam compounds. Should organisations like US Cyber Command or the UK’s National Cyber Force target these gangs with disruption operations?

This episode is also available on Youtube.

Between Two Nerds: Releasing the hounds on scam compounds
0:00 / 31:23

Snake Oilers: LimaCharlie, Honeywell Cyber Insights, CobaltStrike and Outflank

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

In this edition of the Snake Oilers podcast, three sponsors come along to pitch their products:

This episode is also available on Youtube.

Snake Oilers: LimaCharlie, Honeywell Cyber Insights, CobaltStrike and Outflank
0:00 / 38:50

Risky Bulletin: Top AI models all fall to new prompt injection technique

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

A new prompt injection attack is effective against all the big AI models, Poland says Facebook is failing to remove malicious ads, Africa’s largest telco discloses a security breach, and hackers breach Malaysian brokerage accounts.

Risky Bulletin: Top AI models all fall to new prompt injection technique
0:00 / 5:25

Dropzone AI on AI's impact and role for SOC teams

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

In this Risky Business News sponsor interview, Catalin Cimpanu talks with Edward Wu, founder and CEO of Dropzone AI. Edward talks about the impact AI in modern-day SOC teams and how its role slowly becomes a force multiplier and productivity boost rather than workforce replacement.

Dropzone AI on AI's impact and role for SOC teams
0:00 / 18:43

Risky Bulletin: Cybercriminals stole more than $16 billion last year

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

Cybercriminals stole more than $16 billion last year, Iran tries to hack an EU official, the Lazarus Groups pulls off a successful watering hole and zero-day attack, and WhatsApp adds new chat privacy features.

Risky Bulletin: Cybercriminals stole more than $16 billion last year
0:00 / 6:21

Srsly Risky Biz: When pig butcherers fly

Presented by

Adam Boileau
Adam Boileau

Technology Editor

Tom Uren
Tom Uren

Policy & Intelligence

Tom Uren and Adam Boileau talk about how scam compound criminal syndicates are responding to strong government action by moving operations overseas. It’s good they are being affected, but they are shifting into new countries that don’t have the ability to counter industrial-scale transnational organised crime.

They also discuss CISA’s Secure by Design initiative and that key people behind the program have left the organisation. Given prospective job cuts at CISA it is hard to see the initiative getting a lot of love, but international cyber security authorities should pick up the slack.

This episode is also available on Youtube.

Srsly Risky Biz: When pig butcherers fly
0:00 / 16:14

Risky Bulletin: Russian military personnel targeted with Android spyware

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

Russian military personnel targeted with Android spyware, Trump defends Hegseth after second Signalgate scandal, CISA’s Secure by Design leaders depart the agency, and forced-labour cyber scam compounds expand globally.

Risky Bulletin: Russian military personnel targeted with Android spyware
0:00 / 6:09