Risky Business News Podcast

Analysis and news podcasts published weekly

Risky Bulletin: SentinelOne dodges a Chinese APT hack

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

SentinelOne dodges a Chinese APT hack, anonymous sources point to more Salt Typhoon victims, a cyberattack disrupts grocery deliveries in the US, and 140 arrested in Kazakhstan for selling citizens’ data.

Risky Bulletin: SentinelOne dodges a Chinese APT hack
0:00 / 5:13

Between Two Nerds: How Russia's sabotage team got into hacking

Presented by

The Grugq
The Grugq

Independent Security Researcher

Tom Uren
Tom Uren

Policy & Intelligence

In this edition of Between Two Nerds Tom Uren and The Grugq take a look at the hackers of Unit 29155, Russian military intelligence’s sabotage and assassination group.

This episode is also available on Youtube.

Between Two Nerds: How Russia's sabotage team got into hacking
0:00 / 37:05

Risky Bulletin: EU launches its own DNS service

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

The EU launches its own DNS service, Trump revises previous administrations’ cyber executive orders, a supply chain attack hits popular NPM packages, and mysterious iOS attacks spotted in the wild.

Risky Bulletin: EU launches its own DNS service
0:00 / 6:12

Sponsored: Phishing crews have gotten really good at evasion

Presented by

Casey Ellis
Casey Ellis

Founder, Bugcrowd

In this sponsored interview, Casey Ellis interviews Push Security co-founder and Chief Product Officer Jaques Louw about how good phishing crews have gotten at evading detection.

Attackers are hiding their payloads behind legitimate bot-detection tools to stop things like email security gateways from seeing them, as well as locking up phishing pages behind OAuth challenges.

Push sees all this because it’s installed as a browser plugin and sees what users see.

Sponsored: Phishing crews have gotten really good at evasion
0:00 / 18:19

Risky Bulletin: APTeens go after Salesforce data

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

A hacking group goes after Salesforce data, the FBI takes down the BidenCash carding forum, China offers rewards for Taiwanese military hackers, and high risk bugs are patched in enterprise software from HPE and Infoblox.

Risky Bulletin: APTeens go after Salesforce data
0:00 / 7:02

Srsly Risky Biz: Law Enforcement Is Finally Making Progress on Ransomware

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

Tom Uren
Tom Uren

Policy & Intelligence

Tom Uren and Patrick Gray talk about how Operation Endgame, the multinational law enforcement effort to tackle ransomware is approaching the problem holisitically. It’s tackling the enablers of ransomware and although it won’t eliminate the crime, it’ll make it harder for criminals.

They also discuss the spyware app that helped to dismantle the Syrian regime, at least maybe a little bit, and how Russian military intelligence’s sabotage and assasination unit got into cyber operations.

This episode is also available on Youtube.

Srsly Risky Biz: Law Enforcement Is Finally Making Progress on Ransomware
0:00 / 18:43

Risky Bulletin: Syrian Army infected with spyware before regime collapse

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

A spyware app infected the Syrian Army’s soldiers before the regime collapsed, NSO appeals its WhatsApp verdict, Chrome and Qual-comm patch zero-days, and an Emergency services information sharing group shuts down;

Risky Bulletin: Syrian Army infected with spyware before regime collapse
0:00 / 8:20

Between Two Nerds: NSA's thinking on information warfare

Presented by

The Grugq
The Grugq

Independent Security Researcher

Tom Uren
Tom Uren

Policy & Intelligence

In this edition of Between Two Nerds Tom Uren and The Grugq look at NSA’s take on information warfare, all the way back from 1997.

This episode is also available on Youtube.

Between Two Nerds: NSA's thinking on information warfare
0:00 / 31:08

Risky Bulletin: Law enforcement takes down AVCheck

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

Law enforcement agencies take down A-V-Check, four US Senators urge for the reinstatement of the Cyber Safety Review Board, Germany identifies the leader of the TrickBot gang, and an AI-vibe-coding platform leaks user data and API keys.

Risky Bulletin: Law enforcement takes down AVCheck
0:00 / 6:16

Sponsored: HD Moore on why vuln scanners are awful and broken

Presented by

Casey Ellis
Casey Ellis

Founder, Bugcrowd

In this sponsored interview, Risky Business Media’s brand new interviewer Casey Ellis chats with runZero founder and CEO HD Moore about why vuln scanning tech is awful and broken. He also talks about how they’re trying to do something better by glueing their own discovery product to the nuclei open source vulnerability scanner.

Sponsored: HD Moore on why vuln scanners are awful and broken
0:00 / 15:21