TopPodcast.com
Menu
  • Home
  • Top Charts
  • Top Networks
  • Top Apps
  • Top Independents
  • Top Podfluencers
  • Top Picks
    • Top Business Podcasts
    • Top True Crime Podcasts
    • Top Finance Podcasts
    • Top Comedy Podcasts
    • Top Music Podcasts
    • Top Womens Podcasts
    • Top Kids Podcasts
    • Top Sports Podcasts
    • Top News Podcasts
    • Top Tech Podcasts
    • Top Crypto Podcasts
    • Top Entrepreneurial Podcasts
    • Top Fantasy Sports Podcasts
    • Top Political Podcasts
    • Top Science Podcasts
    • Top Self Help Podcasts
    • Top Sports Betting Podcasts
    • Top Stocks Podcasts
  • Podcast News
  • About Us
  • Podcast Advertising
  • Contact
Not in our directory?
Add Show Here
Podcast Equipment
Center

toppodcastlogoOur TOPPODCAST Picks

  • Comedy
  • Crypto
  • Sports
  • News
  • Politics
  • True Crime
  • Business
  • Finance

Follow Us

toppodcastlogoStay Connected

    View Top 200 Chart
    Back to Rankings Page
    News

    CyberWire Daily

    The daily cybersecurity news and analysis industry leaders depend on. Published each weekday, the program also includes interviews with a wide spectrum of experts from industry, academia, and research organizations all over the world.

    Advertise

    Copyright: © 2024 N2K Networks, Inc. 706761

    • Apple Podcasts
    • Google Play
    • Spotify

    Latest Episodes:
    Dr. Georgianna Shea: Don't wait to take the initiative. [Technologist] [Career Notes] Aug 13, 2023
    Show notes

    Dr. Georgianna Shea, the Chief Technologist at the Transformative Cyber Innovation Lab at the Foundations for Defensive Democracies (FDD) sits down to share her incredible story, moving around to different roles and how that has lead her to where she is today. Her careers have taken her to many different states throughout the years, as she has learned and grew into the roles she took on, from Hawaii to D.C., Dr. Shea has done it all. Sharing some advice, Dr. Shea says "My words of wisdom are take advantage of every opportunity and don't wait for anybody. I try to mentor people and I talk to young people a lot, you know, trying to get into the field and, and I see a lot of waiting on other people." She explains that you are able to work on your own to become an expert, and taking that initiative will be the thing to get you to where you want to be. We thank Dr. Georgianna Shea for sharing her story with us.

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    It's raining credentials. [Research Saturday] Aug 12, 2023
    Show notes

    Alex Delamotte from SentinelLabs joins Dave to discuss their work on "Cloudy With a Chance of Credentials | AWS-Targeting Cred Stealer Expands to Azure, GCP." As actors find more ways to profit from compromising services, SentinelLabs finds that cloud service credentials are becoming increasingly targeted.

    The lack of threats explicitly targeting Azure and GCP credentials up to this point means there are likely many fresh targets. The research states "These campaigns share similarity with tools attributed to the notorious TeamTNT cryptojacking crew. However, attribution remains challenging with script-based tools, as anyone can adapt the code for their own use."

    The research can be found here:

    • Cloudy With a Chance of Credentials | AWS-Targeting Cred Stealer Expands to Azure, GCP

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    Tehran’s social engineering. CSRB reports on Lapsus$. Call for comment on open-source standards. Coping with a tight labor market. Two private sector incidents in Russia’s hybrid war. Aug 11, 2023
    Show notes

    Charming Kitten collects against Iranian expatriate dissidents. The Cyber Safety Review Board reports on Lapsus$. A Call for comment on open-source, memory-safe standards. How NSA is coping with the cyber labor market. Yandex is restructuring. The Washington Post’s Tim Starks joins us with the latest cyber security efforts from the DOD. Our guest is Dan L. Dodson, CEO of Fortified Health Security with insights on protecting patient data. And How Viasat was hacked.


    For links to all of today's stories check out our CyberWire daily news briefing:

    https://thecyberwire.com/newsletters/daily-briefing/12/153


    Selected reading.

    Germany says Charming Kitten hackers target Iran dissidents (Deutsche Welle)

    Cyber Safety Review Board Releases Report on Activities of Global Extortion-Focused Hacker Group Lapsus$ (US Department of Homeland Security)

    Review Of The Attacks Associated with Lapsus$ And Related Threat Groups Report (Cybersecurity and Infrastructure Security Agency CISA)

    Fact Sheet: Office of the National Cyber Director Requests Public Comment on Open-Source Software Security and Memory Safe Programming Languages (ONCD | The White House)

    Amid historic hiring surge, NSA considers hybrid, unclassified work options (Federal News Network)

    Exclusive: Fear of tech 'brain drain' prevents Russia from seizing Yandex for now, sources say (Reuters)

    Yandex co-founder Volozh slams Russia's 'barbaric' invasion of Ukraine (Reuters)

    Satellite hack on eve of Ukraine war was a coordinated, multi-pronged assault (CyberScoop)

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    A new Magecart campaign. Gootloader’s legal bait. Cryptowallet vulnerabilities. News from the hybrid war. And DARPA’s AI Cybersecurity Challenge. Aug 10, 2023
    Show notes

    A New Magento campaign is discovered. Gootloader malware-as-a-service afflicts law firms. Researchers find security flaws affecting cryptowallets. Panasonic warns of increasing attacks against IoT. A Belarusian cyberespionage campaign outlined. The five cyber phases of Russia's hybrid war, and lessons in resilience from Ukraine's experience. In our Threat Vector segment, Kristopher Russo, Senior Threat Researcher for Unit 42 joins David Moulton to discuss Muddled Libra. Kayla Williams from Devo describes their work benefiting the community at BlackHat. And a new DARPA challenge seeks to bring artificial intelligence to cybersecurity.

    On this segment of Threat Vector, Kristopher Russo, Senior Threat Researcher for Unit 42, joins host David Moulton to discuss part one of two Muddled Libra.


    For links to all of today's stories check out our CyberWire daily news briefing:

    https://thecyberwire.com/newsletters/daily-briefing/12/152


    Threat Vector links.

    Threat Group Assessment: Muddled Libra

    Guest: Kristopher Russo: From practitioner to researcher Kristopher Russo has spent years entrenched in various specializations of cybersecurity. As a researcher focused on ransomware and cybercrime he brings a from the trenches perspective to cyber threat intelligence.


    Selected reading.

    Xurum: New Magento Campaign Discovered (Akamai)

    Gootloader: Why your Legal Document Search May End in Misery (Trustwave)

    Fireblocks Researchers Uncover Vulnerabilities Impacting Dozens of Major Wallet Providers (Fireblocks)

    New BitForge cryptocurrency wallet flaws lets hackers steal crypto (BleepingCompute

    Panasonic Warns That IoT Malware Attack Cycles Are Accelerating (WIRED)

    MoustachedBouncer: Espionage against foreign diplomats in Belarus (We Live Security)

    Belarus hackers target foreign diplomats with help of local ISPs, researchers say (TechCrunch)

    Pro-Russian hackers claim attacks on French, Dutch websites (Record)

    Zhora: Russia's cyber 'war crimes' will outlast invasion (Register)

    The Power of Resilience (Cybersecurity and Infrastructure Security Agency CISA)

    Biden-Harris Administration Launches Artificial Intelligence Cyber Challenge to Protect America’s Critical Software (The White House)

    AIxCC (AIxCC)

    The Biden administration wants to put AI to the test for cybersecurity (Washington Post)

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    Cyberespionage by several intelligence services, some of contracted out. Developments in the cyber underworld. Vulnerabilities reported in CPUs. Some notes on Patch Tuesday. Aug 09, 2023
    Show notes

    Reports of a Wide-ranging cyberespionage campaign by China's Ministry of State Security. EvilProxy phishing tool targets executives, and defeats multifactor authentication. Vulnerabilities in CPUs. Yashma ransomware targets a wide range of countries. MacOS threat trends. Is there a Russian attempt to disrupt British elections? Rob Boyce from Accenture checks in from the Blackhat conference. Maria Varmazis talking with Black Hat Aerospace Village's Kaylin Trychon and Steve Luczynski. Ukraine claims to have stopped a Russian spyware campaign. And Patch Tuesday has come and gone, but the vulnerabilities remain–unless, of course, you’ve applied the patches.


    For links to all of today's stories check out our CyberWire daily news briefing:

    https://thecyberwire.com/newsletters/daily-briefing/12/151


    Selected reading.

    Chinese hackers targeted at least 17 countries across Asia, Europe and North America (Record)

    RedHotel: A Prolific, Chinese State-Sponsored Group Operating at a Global Scale (Recorded Future)

    Cloud Account Takeover Campaign Leveraging EvilProxy Targets Top-Level Executives at over 100 Global Organizations (Proofpoint)

    ‘Downfall’ vulnerability leaves billions of Intel CPUs at risk (CyberScoop)

    New Inception attack leaks sensitive data from all AMD Zen CPUs (BleepingComputer)

    New Yashma Ransomware Variant Targets Multiple English-Speaking Countries (The Hacker News)

    Suspected Vietnamese hacker targets Chinese, Bulgarian organizations with new ransomware (Record)

    Black Hat USA 2023 – Bitdefender macOS Threat Report Reveals Key Dangers for Mac Users (Bitdefender)

    Russia ‘tops list of suspects’ in cyber attack which exposed data of 40m UK voters (The Telegraph)

    Electoral Commission hack: Five things you need to know (Computing)

    ‘Hostile actors’ hacked British voter registry, electoral agency says (Washington Post)

    Electoral Commission apologises for security breach involving UK voters’ data (the Guardian)

    Ukraine says it prevented Russian hacking of armed forces combat system (Reuters)

    Ukraine says it thwarted attempt to breach military tablets (Record)

    Russian secret services try to penetrate operation planning electronic system of Ukraine's army (Ukrainska Pravda)

    Patch Tuesday: Adobe Patches 30 Acrobat, Reader Vulns (SecurityWeek)

    Patch Tuesday: Microsoft (Finally) Patches Exploited Office Zero-Days (SecurityWeek)

    Microsoft Releases August 2023 Security Updates (Cybersecurity and Infrastructure Security Agency CISA)

    Fortinet Releases Security Update for FortiOS (Cybersecurity and Infrastructure Security Agency CISA)

    Adobe Releases Security Updates for Multiple Products (Cybersecurity and Infrastructure Security Agency CISA)

    Patch Tuesday review: August 2023. (CyberWire)

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    Challenges to intelligence-sharing. The complexity of supply-chain security. Ransomware developments. Notes on Russia’s hybrid war, including possible sensor data manipulation. Aug 08, 2023
    Show notes

    Reports on a 2020 Chinese penetration of Japan's defense networks. MOVEit-connected supply chain issues aren't over. Akamai looks at the current state of ransomware. Mallox ransomware continues its evolution. Machine identities and shadow access. Ukrainian hacktivist auxiliaries hit Russian websites. Joe Carrigan unpacks statistics recently released by CISA. Our guest is Jeffrey Wheatman from Black Kite discussing the market shift from SRS to cyber risk intelligence. And radiation sensor reports from Chernobyl may have been manipulated.


    For links to all of today's stories check out our CyberWire daily news briefing:

    https://thecyberwire.com/newsletters/daily-briefing/12/150


    Selected reading.

    China hacked Japan’s sensitive defense networks, officials say (Washington Post)

    Japan says cannot confirm leakage after report says China hacked defence networks (Reuters)

    MOVEit hack spawned around 600 breaches but isn't done yet - cyber analysts (Reuters)

    Mallox Ransomware Group Revamps Malware Variants, Evasion Tactics (Dark Reading)

    TargetCompany Ransomware Abuses FUD Obfuscator Packers (Trend Micro)

    New IAM Research by Stack Identity Finds Machine Identities Dominate Shadow Access in the Cloud, Revealing Easy Attack Vector for Hackers (Business Wire)

    Ukraine-Linked Group Claims It Hacked Website Of Moscow Property Registration Bureau (RadioFreeEurope/RadioLiberty)

    Ukraine-linked group claims it hacked Moscow property registration bureau website – RFE/RL (Euromaidan Press)

    Pro-Ukrainian hackers breach Moscow engineering service website (New Voice of Ukraine)

    Ukrainian state agencies targeted with open-source malware MerlinAgent (Record)

    The Mystery of Chernobyl’s Post-Invasion Radiation Spikes (WIRED)

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    Pyongyang’s new friendship with Moscow apparently only goes so far. Reptile rootkit in the wild. Cloudzy updates. Cl0p’s torrents. And notes on cyber phases of Russia’s hybrid war. Aug 07, 2023
    Show notes

    North Korean cyberespionage against a Russian aerospace firm. The Reptile rootkit is used against South Korean systems. An update on Cloudzy. Cl0p is using torrents to move data stolen in MOVEit exploitation. Andrea Little Limbago from Interos wonders about the dangers of jumping head first into new technologies? Rick Howard ponders quantum computing. And Meduza is back on Apple Podcasts.


    For links to all of today's stories check out our CyberWire daily news briefing:

    https://thecyberwire.com/newsletters/daily-briefing/12/149


    Selected reading.

    Exclusive: North Korean hackers breached top Russian missile maker (Reuters)

    North Korean hackers stole secrets of Russian hypersonic missile maker (Euractiv)

    Comrades in Arms? | North Korea Compromises Sanctioned Russian Missile Engineering Company (SentinelOne)

    Reptile Rootkit: Advanced Linux Malware Targeting South Korean Systems (The Hacker News)

    UPDATE: Cloudzy Command and Control Provider Report (Halcyon)

    Reptile Rootkit: Advanced Linux Malware Targeting South Korean Systems (The Hacker News)

    Clop ransomware now uses torrents to leak data and evade takedowns (BleepingComputer)

    Ukraine may be winning ‘world’s first cyberwar’ (The Kyiv Independent)

    Apple has removed Meduza’s flagship news podcast ‘What Happened’ from Apple Podcasts, without explaining the reason (Meduza)

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    Manuel Hepfer: Discipline, self motivation, and steam. [Research] [Career Notes] Aug 06, 2023
    Show notes

    Manuel Hepfer a cybersecurity researcher from ISTARI sits down to share his story with us. Manuel shares as a kid he was very interested in STEM, and in school he remembered a programming class that he fell in love which made him want to pursue a career in cyber. Studying at the University of Oxford he began working towards acquiring a degree in Cybersecurity and Strategic Management. He found research to be a passion and wanted to share his passion, he decided he wanted to publish, so Manuel published an article in MIT Sloan management review that's titled "Make Cybersecurity a Strategic Asset." He shares that finding a passion, like he did, is the key to working in cyber, saying "I think what I learned at the time is the value of discipline and self motivation. And now you can always come up with a lot of discipline and self motivation, but you'll run out of steam at some point if you're not very passionate about some of the things that you're doing." We thank Manuel for sharing his story with us.

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    Who is that stealing my credentials? [Research Saturday] Aug 05, 2023
    Show notes

    Aleksandar Milenkoski from SentinelOne joins to discuss their work on "Kimsuky Strikes Again | New Social Engineering Campaign Aims to Steal Credentials and Gather Strategic Intelligence." Researchers have been tracking the North Korean APT group Kimsuky and their attempt at a social engineering campaign targeting experts in North Korean affairs.

    The research states "The campaign has the objective of stealing Google and subscription credentials of a reputable news and analysis service focusing on North Korea, as well as delivering reconnaissance malware." Kimsuky has been tracked engaging in extensive email correspondence using spoofed URLs and extensive email correspondence, along with Office documents weaponized with the ReconShark malware.

    The research can be found here:

    • Kimsuky Strikes Again | New Social Engineering Campaign Aims to Steal Credentials and Gather Strategic Intelligence

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    2022’s top exploited vulnerabilities are still a risk. Rilide in the wild. Abusing a legitimate tool. Malicious PyPi packages. A brief update on the cyber aspects of Russia’s hybrid war. Aug 04, 2023
    Show notes

    The Five Eyes warn against top exploited vulnerabilities. The Rilide info stealer in the wild. Malicious PyPI packages. Valerie Abend, Global Cyber Strategy Lead from Accenture, unpacks the Securities and Exchange Commission’s recently announced cyber regulations. In our Solution spotlight: Our own Simone Patrella speaks with Microsoft’s Ann Johnson on how Microsoft is attracting and retaining top cyber talent. And cyber attacks continue to gutter on both sides of Russia's war against Ukraine.


    For links to all of today's stories check out our CyberWire daily news briefing:

    https://thecyberwire.com/newsletters/daily-briefing/12/148


    Selected reading.

    CISA, NSA, FBI, and International Partners Release Joint CSA on Top Routinely Exploited Vulnerabilities of 2022 | CISA (Cybersecurity and Infrastructure Security Agency CISA)

    CISA, NSA, FBI and International Partners Issue Advisory on the Top Routinely Exploited Vu (National Security Agency/Central Security Service)

    New Rilide Stealer Version Targets Banking Data and Works Around Google Chrome Manifest V3 (Trustwave)

    Tunnel Vision: CloudflareD AbuseD in the WilD (GuidePoint Security)

    VMConnect: Malicious PyPI packages imitate popular open source modules (ReversingLabs)

    Bilyana Lilly on how cybersecurity assistance to Ukraine has helped thwart Russian cyberattacks (CyberScoop)

    Microsoft says Russia-linked hackers behind dozens of Teams phishing attacks (Reuters)

    Ukraine's invisible battle to jam Russian weapons (BBC News)

    How Ukraine’s cyberwarriors are upending everyday life in Russia (Times)

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    Previous 1 124 125 126 127 128 378 Next

    Related Podcasts

    Inside Strategic Coach: Connecting Entrepreneurs With What Really Matters

    1

    Inside Strategic Coach: Connecting Entrepreneurs With What Really Matters Business
    WSJ Your Money Briefing

    2

    WSJ Your Money Briefing Business
    FORTUNE Unfiltered with Aaron Task

    3

    FORTUNE Unfiltered with Aaron Task Business
    FORTUNE OnStage Presents: The Most Powerful Women

    4

    FORTUNE OnStage Presents: The Most Powerful Women Business
    Slate Money

    5

    Slate Money Business
    In The Dark – The New Yorker

    6

    In The Dark – The New Yorker Business News
    footer-logo

    Contact Us

    Toll Free: 844-670-7747

    Links

    • Home
    • Top Charts
    • Networks
    • Apps
    • Independents Podcasts
    • Podcast Advertising
    • Podcast News
    • Contact Us
    • About Us
    • Analytics & Insights

    Stay Connected

      Privacy, Terms of Use & Our Code of Ethics Protecting Content Creators Copyrights