TopPodcast.com
Menu
  • Home
  • Top Charts
  • Top Networks
  • Top Apps
  • Top Independents
  • Top Podfluencers
  • Top Picks
    • Top Business Podcasts
    • Top True Crime Podcasts
    • Top Finance Podcasts
    • Top Comedy Podcasts
    • Top Music Podcasts
    • Top Womens Podcasts
    • Top Kids Podcasts
    • Top Sports Podcasts
    • Top News Podcasts
    • Top Tech Podcasts
    • Top Crypto Podcasts
    • Top Entrepreneurial Podcasts
    • Top Fantasy Sports Podcasts
    • Top Political Podcasts
    • Top Science Podcasts
    • Top Self Help Podcasts
    • Top Sports Betting Podcasts
    • Top Stocks Podcasts
  • Podcast News
  • About Us
  • Podcast Advertising
  • Contact
Not in our directory?
Add Show Here
Podcast Equipment
Center

toppodcastlogoOur TOPPODCAST Picks

  • Comedy
  • Crypto
  • Sports
  • News
  • Politics
  • True Crime
  • Business
  • Finance

Follow Us

toppodcastlogoStay Connected

    View Top 200 Chart
    Back to Rankings Page
    News

    CyberWire Daily

    The daily cybersecurity news and analysis industry leaders depend on. Published each weekday, the program also includes interviews with a wide spectrum of experts from industry, academia, and research organizations all over the world.

    Advertise

    Copyright: © 2024 N2K Networks, Inc. 706761

    • Apple Podcasts
    • Google Play
    • Spotify

    Latest Episodes:
    UK's NCA and NCSC release a study of the cybercriminal underworld. HijackLoader's growing share of the C2C market. Russia's hacker diaspora in Turkey. Cyber diplomacy, free and frank.. Sep 11, 2023
    Show notes

    UK's NCA and NCSC release a study of the cybercriminal underworld. HijackLoader's growing share of the C2C market. Russia's hacker diaspora in Turkey. Author David Hunt discusses his new book, “Irreducibly Complex Systems: An Introduction to Continuous Security Testing.” In our Industry Voices segment, Mike Anderson from Netskope outlines the challenges of managing Generative AI tools. And a senior Russian cyber diplomat warns against US escalation in cyberspace.


    For links to all of today's stories check out our CyberWire daily news briefing:

    https://thecyberwire.com/newsletters/daily-briefing/12/173


    Selected reading.

    Ransomware, extortion and the cyber crime ecosystem (NCSC)

    HijackLoader (Zscaler)

    New HijackLoader malware is rapidly growing in popularity (Security Affairs)

    New HijackLoader Modular Malware Loader Making Waves in the Cybercrime World (Hacker News)

    Spyware Telegram mod distributed via Google Play (Secure List)

    Millions Infected by Spyware Hidden in Fake Telegram Apps on Google Play (The Hacker News)

    'Evil Telegram' Android apps on Google Play infected 60K with spyware (BleepingComputer)

    Influx of Russian fraudsters gives Turkish cyber crime hub new lease of life (Financial Times)

    Russia warns "all-out war" with US could erupt over worsening cyber clashes (Newsweek)

    New strategy for global cybersecurity cooperation coming soon: State cyber ambassador (Breaking Defense)

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    Caroline Wong: A passion for teaching. [CSO] [Career Notes] Sep 10, 2023
    Show notes

    Caroline Wong, Chief Strategy Officer from Cobalt sits down to share her story of her 15+ years in cybersecurity leadership, including practitioner, product, and consulting roles. As well as being a member of our very own Hash Table, Caroline also authored the popular textbook, Security Metrics: A Beginner's Guide and teachers cybersecurity courses on LinkedIn Learning as well as hosts the Humans of InfoSec podcast. Caroline's father pushed her to start her career in engineering, she went to UC Berkeley and got accepted into their Electrical Engineering and Computer Sciences program. As a college student, she was looking for an internship and found eBay, where she says she worked an entry level position available on the information security team, and says the rest is history. She shares that she loves to teach her peers, and how she would like to be remembered for being a good teacher, saying "I think that my favorite part of the work that I get to do is teaching. Um, and in particular, um, being able to communicate about cybersecurity concepts to a wide audience. I have such tremendous gratitude." We thank Caroline for sharing her story with us.

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    No honor in being a criminal. [Research Saturday] Sep 09, 2023
    Show notes

    This week, our guest is Reece Baldwin from Kasada discussing their work on "No Honour Amongst Thieves: Unpacking a New OpenBullet Malware Campaign." The Kasada Threat Intelligence team has recently identified a malware campaign targeting users of OpenBullet, a tool popular within criminal communities to conduct credential stuffing attacks.

    This malware campaign was first uncovered when the team was digging around in a Telegram channel setup to share OpenBullet configurations. Reading through a few of the configurations they identified a function, ostensibly designed to bypass Google’s reCAPTCHA anti-bot solution. Th research states "While the versatility of OpenBullet’s configuration files enable complex attacks, they can also make it difficult for inexperienced attackers to fully understand what requests are being created and what data is being retrieved."

    The research can be found here:

    • No Honour Amongst Thieves: Unpacking a New OpenBullet Malware Campaign

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    Apple issues an emergency patch. Aerospace sector under attack. DPRK spearsphishes security researchers. Notes from the hybrid war, including Starlink’s judgments on jus in bello. Sep 08, 2023
    Show notes

    Apple issues emergency patches. "Multiple nation-state actors" target the aerospace sector. The DPRK targets security researchers. SpaceX interrupted service to block a Ukrainian attack against Russian naval units last year. The International Criminal Court will prosecute cyber war crimes. Operation KleptoCapture extends to professional service providers. Malek Ben Salem of Accenture ponders the long-term reliability of LLM-powered applications. Our guest is Elliott Champion from CSC on how cybercriminals are taking advantage of the Threads platform. And congratulations to the SINET 16.


    For links to all of today's stories check out our CyberWire daily news briefing:

    https://thecyberwire.com/newsletters/daily-briefing/12/172


    Selected reading.

    BLASTPASS: NSO Group iPhone Zero-Click, Zero-Day Exploit Captured in the Wild (The Citizen Lab)

    Apple issues software updates after spyware discoveries (Washington Post)

    Apple patches two zero-days under attack (CVE-2023-41064, CVE-2023-41061) (Help Net Security)

    CISA, FBI, and CNMF Release Advisory on Multiple Nation-State Threat Actors Exploit CVE-2022-47966 and CVE-2022-42475 | CISA (Cybersecurity and Infrastructure Security Agency CISA)

    Multiple Nation-State Threat Actors Exploit CVE-2022-47966 and CVE-2022-42475 (Cybersecurity and Infrastructure Security Agency CISA)

    AA23-250A: Multiple Nation-State Threat Actors Exploit CVE-2022-47966 and CVE-2022-42475 (Tenable®)

    CISA Warning: Nation-State Hackers Exploit Fortinet and Zoho Vulnerabilities (The Hacker News)

    Active North Korean campaign targeting security researchers (Google)

    Rigged Software and Zero-Days: North Korean APT Caught Hacking Security Researchers (SecurityWeek)

    Musk 'switched off Starlink in Ukraine over nuclear fears' (Computing)

    CNN Exclusive: 'How am I in this war?': New Musk biography offers fresh details about the billionaire's Ukraine dilemma | CNN Politics (CNN)

    Ukraine, US Intelligence Suggest Russia Cyber Efforts Evolving, Growing (Voice of America)

    The International Criminal Court Will Now Prosecute Cyberwar Crimes (WIRED)

    Technology Will Not Exceed Our Humanity (Digital Front Lines)

    Justice Department’s Oligarch Hunters Widen Scope to Include Facilitators (Wall Street Journal)

    Apple issues emergency patches. APTs target aerospace sector. DPRK targets security researchers. New BEC phishing kit. Notes from the hybrid war. ICC will prosecute cyber war crimes. SINET 16 announced. (CyberWire)

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    Microsoft releases results of investigation into cloud email compromise. A buggy booking service. Adversary emulation for OT networks. Identity protection trends. Notes from the hybrid war. Sep 07, 2023
    Show notes

    Microsoft releases results of their investigation into cloud email compromise. A vulnerability affects a resort booking service. Adversary emulation for OT networks. Identity protection and identity attack surfaces. Sanctioning privateers (with a bonus on vacation ideas). Rob Boyce from Accenture Security tracks new trends in ransomware. Our Threat Vector segment features Mastering IR Sniping A Deliberate Approach to Cybersecurity Investigations with Chris Brewer. And Estonia warns of ongoing cyber threats.

    On this segment of Threat Vector, Chris Brewer, a Director at Unit 42 and expert in digital forensics and incident response, joins host David Moulton discussing Mastering IR Sniping: A Deliberate Approach to Cybersecurity Investigations.


    For links to all of today's stories check out our CyberWire daily news briefing:

    https://thecyberwire.com/newsletters/daily-briefing/12/171


    Threat Vector links.

    Sniper Incident Response from Cactus Con on GitHub

    Sniper Incident Response presentation by Chris Brewer on YouTube


    Selected reading.

    Results of Major Technical Investigations for Storm-0558 Key Acquisition (Microsoft Security Response Center)

    Check-Out With Extra Charges - Vulnerabilities in Hotel Booking Engine Explained (Bitdefender)

    Deep Dive into Supply Chain Compromise: Hospitality's Hidden Risks (Bitdefender)

    MITRE and CISA release Caldera for OT attack emulation (Security Affairs)

    MITRE Caldera for OT now available as extension to open-source platform (Help Net Security)

    Silverfort and Osterman Research Report Exposes Critical Gaps in Identity Threat Protection (Silverfort)

    United States and United Kingdom Sanction Additional Members of the Russia-Based Trickbot Cybercrime Gang (US Department of the Treasury)

    Estonian PM: cyberspace is Ukraine war frontline (Euromaidan Press)

    Cyberwar and Conventional Warfare in Ukraine (19FortyFive)

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    Agent Tesla still hits unpatched systems. Hot wallet hacks. AI and DevSecOps. Notes on Fancy Bear and NoName057(16). And some curious trends in the cyber labor market. Sep 06, 2023
    Show notes

    There’s a new Agent Tesla variant. Lost credentials and crypto wallet hacks. Tension between DevSecOps and AI. Fancy Bear makes an attempt on Ukrainian energy infrastructure. A look at NoName057(16). Tim Starks from the Washington Post's Cybersecurity 202. Simone Petrella and Helen Patton discuss People as a security first principle. And cybersecurity jobs seem to be getting tougher (say the people who are doing them).


    For links to all of today's stories check out our CyberWire daily news briefing:

    https://thecyberwire.com/newsletters/daily-briefing/12/170


    Selected reading.

    New Agent Tesla Variant Being Spread by Crafted Excel Document (Fortinet Blog)

    World's Largest Cryptocurrency Casino Stake Hacked for $41 Million (Hackread)

    Crypto casino Stake.com loses $41 million to hot wallet hackers (BleepingComputer)

    Experts Fear Crooks are Cracking Keys Stolen in LastPass Breach (KrebsOnSecurity)

    Global DevSecOps Report on AI Shows Cybersecurity and Privacy Concerns Create an Adoption Dilemma (GitLab)

    APT28 cyberattack: msedge as a bootloader, TOR and mockbin.org/website.hook services as a control center (CERT-UA#7469) (CERT-UA)

    Ukraine's CERT Thwarts APT28's Cyberattack on Critical Energy Infrastructure (The Hacker News)

    Ukraine says an energy facility disrupted a Fancy Bear intrusion (Record)

    What's in a NoName? Researchers see a lone-wolf DDoS group (Record)

    New Research from TechTarget’s Enterprise Strategy Group and the ISSA Reveals Continuous Struggles within Cybersecurity Professional Workforce - ISSA International (ISSA International)

    Life and Times 2023 Download Landing Page (ISSA International)

    E-book: The Life and Times of Cybersecurity Professionals Volume VI (ESG Global)

    Layoffs list extended by Malwarebytes, Fortinet, Veriff, SecureWorks (Cybernews)

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    In today’s symposium, we talk about a new strand of Chae$ malware, some developments in social engineering, privateers in a hybrid war, cyber ops as combat support, and some default passwords. Sep 05, 2023
    Show notes

    A New variant of Chae$ malware is described. A "Smishing Triad" impersonates postal services. A MinIO storage exploit reported. Okta warns of attackers seeking senior admin privileges. LockBit compromises a UK security contractor. DDoS takes down a German financial regulator's site. Infamous Chisel as GRU combat support. Joe Carrigan on Meta uncovering a Chinese influence effort. Our guest is Connie Stack, CEO of Next DLP, discussing data breach notification procedure. And please -PLEASE- remember to change your default passwords.


    For links to all of today's stories check out our CyberWire daily news briefing:

    https://thecyberwire.com/newsletters/daily-briefing/12/169


    Selected reading.

    Threat Profile: Chae$ 4 Malware (Morphisec)

    "Smishing Triad" Targeted USPS and US Citizens for Data Theft (Resecurity)

    'Smishing Triad' Targeted USPS and US Citizens for Data Theft (Security Affairs)

    New Attack Vector In The Cloud: Attackers caught exploiting Object Storage Services (Security Joes)

    Hackers exploit MinIO storage system to breach corporate networks (BleepingComputer)

    Okta Warns of Social Engineering Attacks Targeting Super Administrator Privileges (The Hacker News)

    More Okta customers trapped in Scattered Spider's web (Register)

    Cross-Tenant Impersonation: Prevention and Detection (Okta Security)

    Breaking: UK MoD attacked by LockBit (Computing)

    German financial agency site disrupted by DDoS attack since Friday (BleepingComputer)

    LogicMonitor customers hacked in reported ransomware attacks (BleepingComputer)

    LogicMonitor customers hit by hackers, because of default passwords (TechCrunch)

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    Interview Select: Jeff Welgan, Chief Learning Officer at N2K Networks is expanding on the NICE framework in strategic workforce intelligence. [Interview selects] Sep 04, 2023
    Show notes

    This interview from August 25th, 2023 originally aired as a shortened version on the CyberWire Daily Podcast. In this extended interview, Dave Bittner sits down with Jeff Welgan, Chief Learning Officer at N2K Networks, to expand on the NICE framework in strategic workforce intelligence.

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    Rick Doten: There is a rainbow of different roles in cybersecurity. [VP] [Career Notes] Sep 03, 2023
    Show notes

    This week's guest is Rick Doten, the VP of Information Security at Centene Corporation, he sits down to share his story and provide wise words of wisdom after conquering this industry for 30 years. Rick, like many others in the field started off not knowing what he wanted to do, so he tried out a few things, including doing in-user training and desktop support, eventually evolving to do systems analysis work and designing software. Rick shares that his main day to day roles are spending time helping out the corporate global CISO, CTO, and head of platform within the organization, he shares that his nickname is the neighborhood cat because he's everywhere. Rick shares advice for people getting into the industry for the first time, saying "There is a rainbow of different roles in cyber security, and I feel like I've done all of them in the last 30 years. So there are different things that, that you, the thing that like appeal to you the most because you're going to excel and want to hyper focus on the thing that you really, really are interested in and not the thing that you're not" We thank Rick for sharing his story with us.

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    Thwarting Muddled Libra. [Research Saturday] Sep 02, 2023
    Show notes

    Kristopher Russo and Stephanie Regan from Palo Alto Networks Unit 42 join Dave to talk about Threat Group Assessment: Muddled Libra. With an intimate knowledge of enterprise information technology, this threat group presents a significant risk even to organizations with well-developed legacy cyber defenses.

    Posing threats to organizations in the software automation, BPO, telecommunications and technology industries, Muddled Libra is a threat group that favors targeting large outsourcing firms serving high-value cryptocurrency institutions and individuals.

    The research can be found here:

    • Threat Group Assessment: Muddled Libra

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    Previous 1 121 122 123 124 125 378 Next

    Related Podcasts

    Inside Strategic Coach: Connecting Entrepreneurs With What Really Matters

    1

    Inside Strategic Coach: Connecting Entrepreneurs With What Really Matters Business
    WSJ Your Money Briefing

    2

    WSJ Your Money Briefing Business
    FORTUNE Unfiltered with Aaron Task

    3

    FORTUNE Unfiltered with Aaron Task Business
    FORTUNE OnStage Presents: The Most Powerful Women

    4

    FORTUNE OnStage Presents: The Most Powerful Women Business
    Slate Money

    5

    Slate Money Business
    In The Dark – The New Yorker

    6

    In The Dark – The New Yorker Business News
    footer-logo

    Contact Us

    Toll Free: 844-670-7747

    Links

    • Home
    • Top Charts
    • Networks
    • Apps
    • Independents Podcasts
    • Podcast Advertising
    • Podcast News
    • Contact Us
    • About Us
    • Analytics & Insights

    Stay Connected

      Privacy, Terms of Use & Our Code of Ethics Protecting Content Creators Copyrights