TopPodcast.com
Menu
  • Home
  • Top Charts
  • Top Networks
  • Top Apps
  • Top Independents
  • Top Podfluencers
  • Top Picks
    • Top Business Podcasts
    • Top True Crime Podcasts
    • Top Finance Podcasts
    • Top Comedy Podcasts
    • Top Music Podcasts
    • Top Womens Podcasts
    • Top Kids Podcasts
    • Top Sports Podcasts
    • Top News Podcasts
    • Top Tech Podcasts
    • Top Crypto Podcasts
    • Top Entrepreneurial Podcasts
    • Top Fantasy Sports Podcasts
    • Top Political Podcasts
    • Top Science Podcasts
    • Top Self Help Podcasts
    • Top Sports Betting Podcasts
    • Top Stocks Podcasts
  • Podcast News
  • About Us
  • Podcast Advertising
  • Contact
Not in our directory?
Add Show Here
Podcast Equipment
Center

toppodcastlogoOur TOPPODCAST Picks

  • Comedy
  • Crypto
  • Sports
  • News
  • Politics
  • True Crime
  • Business
  • Finance

Follow Us

toppodcastlogoStay Connected

    View Top 200 Chart
    Back to Rankings Page
    News

    CyberWire Daily

    The daily cybersecurity news and analysis industry leaders depend on. Published each weekday, the program also includes interviews with a wide spectrum of experts from industry, academia, and research organizations all over the world.

    Advertise

    Copyright: © 2024 N2K Networks, Inc. 706761

    • Apple Podcasts
    • Google Play
    • Spotify

    Latest Episodes:
    Prompts gone rogue. [Research Saturday] Aug 10, 2024
    Show notes

    Shachar Menashe, Senior Director of Security Research at JFrog, is talking about "When Prompts Go Rogue: Analyzing a Prompt Injection Code Execution in Vanna.AI." A security vulnerability in the Vanna.AI tool, called CVE-2024-5565, allows hackers to exploit large language models (LLMs) by manipulating user input to execute malicious code, a method known as prompt injection.

    This poses a significant risk when LLMs are connected to critical functions, highlighting the need for stronger security measures.

    The research can be found here:

    • When Prompts Go Rogue: Analyzing a Prompt Injection Code Execution in Vanna.AI

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    The 18-year stowaway. Aug 09, 2024
    Show notes

    Deep firmware vulnerabilities affect chips from AMD. CISA warns of actively exploited Cisco devices. Solar inverters are found vulnerable to disruption. Iran steps up efforts to interfere with U.S. elections. The UN passes its first global cybercrime treaty. ADT confirms a data breach. A longstanding browser flaw is finally fixed. Crash reports help unlock the truth. Rob Boyce of Accenture shares his thoughts live from Las Vegas at the Black Hat conference. These scammers messed with the wrong guy.

    Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.


    CyberWire Guest

    We are joined by podcast partner Rob Boyce of Accenture sharing his thoughts as our man on the street from the Black Hat USA 2024.


    Selected Reading

    ‘Sinkclose’ Flaw in Hundreds of Millions of AMD Chips Allows Deep, Virtually Unfixable Infections (WIRED)

    Warnings Issued Over Cisco Device Hacking, Unpatched Vulnerabilities (SecurityWeek)

    Series Of Solar Power System Vulnerabilities Impacts Millions Of Installations (Cyber Security News)

    Microsoft: Iran makes late play to meddle in U.S. elections (CyberScoop)

    UN cybercrime treaty passes in unanimous vote (The Record)

    ADT confirms data breach after customer info leaked on hacking forum (Bleeping Computer)

    It's 2024 and we're just getting round to stopping browsers insecurely accessing 0.0.0.0 (The Register)

    Computer Crash Reports Are an Untapped Hacker Gold Mine (WIRED)

    USPS Text Scammers Duped His Wife, So He Hacked Their Operation (WIRED)


    Share your feedback.

    We want to ensure that you are getting the most out of the podcast. Please take a few minutes to share your thoughts with us by completing our brief listener survey as we continually work to improve the show.


    Want to hear your company in the show?

    You too can reach the most influential leaders and operators in the industry. Here’s our media kit. Contact us at cyberwire@n2k.com to request more info.

    The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    Cybersecurity leaders gear up for the ultimate test. Aug 08, 2024
    Show notes

    Black Hat kicks off with reassurances from global cyber allies. Researchers highlight vulnerabilities in car head units, AWS and 5G basebands. Alleged dark web forum leaders are charged in federal court. Tens of thousands of ICS devices are vulnerable to weak automation protocols. Kimsuky targets universities for espionage. Ransomware claims the life of a calf and its mother. A look at job risk in the face of AI. In our Threat Vector segment, host David Moulton speaks with Nir Zuk, Founder and CTO of Palo Alto Networks, about the future of cybersecurity. An alleged cybercrime rapper sees his Benjamins seized.

    Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.


    Threat Vector Segment

    In this Threat Vector segment, host David Moulton, Unit 42 Director of Thought Leadership, converses with Nir Zuk, Founder and CTO of Palo Alto Networks, about the future of cybersecurity. They discuss the pressing challenges organizations face today and the pivotal shift from traditional defense strategies to a mindset that assumes breaches. To listen to their full conversation, check out the episode here. You can catch new episodes of Threat Vector every Thursday on the N2K CyberWire network.


    Selected Reading

    US elections have never been more secure, says CISA chief (The Register)

    Black Hat USA 2024: vehicle head unit can spy on you, researchers reveal (Cybernews)

    AWS Patches Vulnerabilities Potentially Allowing Account Takeovers (SecurityWeek)

    Hackers could spy on cell phone users by abusing 5G baseband flaws, researchers say (TechCrunch)

    Exclusive: Massive Criminal Online Platform Disrupted (Court Watch)

    Web-Connected Industrial Control Systems Vulnerable to Attack (Security Boulevard)

    North Korea Kimsuky Launch Phishing Attacks on Universities (Infosecurity Magazine)

    Swiss cow and calf dead after ransomware attack on milking robot (Cybernews)

    AI Will Displace American Workers—When, How, and To What Extent Is Less Certain (Lawfare)

    Cybercrime Rapper Sues Bank over Fraud Investigation (Krebs on Security)


    Share your feedback.

    We want to ensure that you are getting the most out of the podcast. Please take a few minutes to share your thoughts with us by completing our brief listener survey as we continually work to improve the show.


    Want to hear your company in the show?

    You too can reach the most influential leaders and operators in the industry. Here’s our media kit. Contact us at cyberwire@n2k.com to request more info.

    The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    When updates attack. Aug 07, 2024
    Show notes

    Crowdstrike releases a postmortem. LoanDepot puts a multimillion dollar price tag on their ransomware incident. RHADAMANTHYS info stealer targets Israelis. Zola ransomware is an advanced evolution of the Proton family. Firefox fixes several high-severity vulnerabilities. Researchers at Certitude uncover a vulnerability in Microsoft 365’s anti-phishing measures. Threat actors exploit legitimate anti-virus software for malicious purposes. Samsung’s new bug bounty program offers rewards up to a million dollars. Guest Adam Marré, CISO at Arctic Wolf, joining us to share his observations on the ground at Black Hat USA 2024. Ransomware gangs turn the screws and keep up with the times.

    Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.


    CyberWire Guest

    Guest Adam Marré, CISO at Arctic Wolf, joining us to share his observations as our man on the street from Black Hat USA 2024.


    Selected Reading

    CrowdStrike Publishes Technical Root Cause Analysis of Faulty Falcon Update (Cyber Security News)

    Ransomware Attack Cost LoanDepot $27 Million (SecurityWeek)

    RHADAMANTHYS Stealer Weaponizing RAR Archive To Steal Login Credentials (Cyber Security News)

    New Zola Ransomware Using Multiple Tools to Disable Windows Defender (GB Hackers)

    Firefox Patches Multiple High Severity Vulnerabilities (Cyber Security News)

    Exploring Anti-Phishing Measures in Microsoft 365 (Certitude Blog)

    Hackers Hijack Anti-Virus Software Using SbaProxy Hacking Tool (Cyber Security News)

    Samsung to pay $1,000,000 for RCEs on Galaxy’s secure vault (Bleeping Computer)

    Turning the screws: The pressure tactics of ransomware gangs (Sophos News)


    Share your feedback.

    We want to ensure that you are getting the most out of the podcast. Please take a few minutes to share your thoughts with us by completing our brief listener survey as we continually work to improve the show.


    Want to hear your company in the show?

    You too can reach the most influential leaders and operators in the industry. Here’s our media kit. Contact us at cyberwire@n2k.com to request more info.

    The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    Cyberattack calls for an early dismissal. Aug 06, 2024
    Show notes

    Thousands of education sector devices have been maliciously wiped after an attack on a UK MDM firm. A perceived design flaw in Microsoft Authenticator leaves users locked out of accounts. SharpRino charges ahead to deploy ransomware. North Korea’s Stressed Pungsan provides initial access points for malware distribution. Magniber ransomware targets home users and SMBs. Google patches an Android zero-day. A new Senate bill aims to treat ransomware as terrorism. Microsoft ties security to employee compensation. Guest Kim Kischel, Director of Cybersecurity Product Marketing at Microsoft, discusses how AI is impacting the unified security operations center. A victim of business email compromise gets some good news.

    Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.


    CyberWire Guest

    Guest Kim Kischel, Director of Cybersecurity Product Marketing at Microsoft, discusses how AI is impacting the unified security operations center and how it's changing the way defenders defend.


    Selected Reading

    Over 13,000 phones wiped clean as cyberattack cripples Mobile Guardian (CSO Online)

    Design Flaw Has Microsoft Authenticator Overwriting MFA Accounts, Locking Users Out (Slashdot)

    Network Admins Beware! SharpRhino Ransomware Attacking Mimic as Angry IP Scanner (Cyber Security News)

    North Korean Hackers Attacking Windows Users With Weaponized npm Files (Cyber Security News)

    Surge in Magniber ransomware attacks impact home users worldwide (Bleeping Computer)

    Google Patches Android Zero-Day Exploited in Targeted Attacks (SecurityWeek)

    Intelligence bill would elevate ransomware to a terrorist threat (CyberScoop)

    Microsoft is binding employee bonuses and promotions to security performance (TechSpot)

    Police Recover Over $40m Headed to BEC Scammers (Infosecurity Magazine)


    Share your feedback.

    We want to ensure that you are getting the most out of the podcast. Please take a few minutes to share your thoughts with us by completing our brief listener survey as we continually work to improve the show.


    Want to hear your company in the show?

    You too can reach the most influential leaders and operators in the industry. Here’s our media kit. Contact us at cyberwire@n2k.com to request more info.

    The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    TikTok in the hot seat...again. Aug 05, 2024
    Show notes

    The justice department sues TikTok over alleged violations of children’s online privacy laws. Bad blood between Crowdstrike and Delta Airlines. The UK once again delays upgrades to their cybercrime reporting center. Apache OFBiz users are urged to patch a critical vulnerability. SLUBStick is a newly discovered Linux Kernel attack. CISA releases a handy guide to help software suppliers manage security risk. StormBamboo poisons DNS queries to deliver targeted malware. The White House looks to help close the cybersecurity skills gap with $15 million in scholarships. Our guest US Congressional candidate from Oklahoma, Madison Horn, speaking with my Caveat co host Ben Yelin about national security and cyberwarfare. Chewing on rumors of Olympic sabotage.

    Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.


    CyberWire Guest

    US Congressional candidate from Oklahoma, Madison Horn, speaks with Caveat co host Ben Yelin about national security and cyberwarfare. You can hear the full interview on our latest episode of Caveat here.


    CSO Perspectives

    This week on N2K Pro’s CSO Perspectives podcast, host and N2K CSO Rick Howard focuses on “Cybersecurity is radically asymmetrically distributed.” Rick and Dave do a preview. You can find the full episode here if you are an N2K Pro subscriber, otherwise check out an extended sample here.

    Selected Reading

    Justice Department Sues TikTok, Accusing the Company of Illegally Collecting Children's Data (SecurityWeek)

    CrowdStrike says it’s not to blame for Delta’s days-long outage (The Verge)

    Replacement for Action Fraud, UK’s cybercrime reporting service, delayed again until 2025 (The Record)

    Apache OFBiz Users Warned of New and Exploited Vulnerabilities (SecurityWeek)

    Linux kernel impacted by new SLUBStick cross-cache attack (Bleeping Computer)

    CISA says suppliers bear responsibility for insecure software in Fed procurement guide (The Stack)

    Chinese hackers compromised an ISP to deliver malicious software updates (Help Net Security)

    White House and EC-Council Launch $15m Cybersecurity Scholarship Program (Infosecurity Magazine)

    2024 Paris Olympics: a snoop was at the origin of suspicions of sabotage in the fan zone of the Chateau de Vincennes (FranceInfo)


    Share your feedback.

    We want to ensure that you are getting the most out of the podcast. Please take a few minutes to share your thoughts with us by completing our brief listener survey as we continually work to improve the show.


    Want to hear your company in the show?

    You too can reach the most influential leaders and operators in the industry. Here’s our media kit. Contact us at cyberwire@n2k.com to request more info.

    The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    Cybersecurity is radically asymmetrically distributed. Aug 05, 2024
    Show notes

    Rick Howard, N2K CyberWire’s Chief Analyst and Senior Fellow, discusses the idea that Cybersecurity is radically asymmetrically distributed. It means that cybersecurity risk is not the same for all verticals and knowing that may impact the first principle strategies you choose to protect your enterprise.


    For a complete reading list and even more information, check out Rick’s more detailed essay on the topic.


    References:

    André Munro, 2024. Liberal democracy [Explainer]. Encyclopedia Britannica.

    David Weedmark, 2017. Why do some states require emissions testing? [Explainer]. Autoblog.

    Kara Rogers, 2020. What Is a Superspreader Event? [Explainer]. Encyclopedia Britannica.

    Lara Salahi, 2021. 1 Year Later: The ‘Superspreader’ Conference That Sparked Boston’s COVID Outbreak [News]. NBC10 Boston.

    Malcolm Gladwell, 2002. The Tipping Point: How Little Things Can Make a Big Difference [Book]. Goodreads.

    Malcolm Gladwell, 2005. Blink: The Power of Thinking Without Thinking [Book]. Goodreads.

    Malcolm Gladwell, 2008. Outliers: The Story of Success [Book]. Goodreads.

    Malcolm Gladwell, 2019. Talking to Strangers: What We Should Know About the People We Don’t Know [Book]. Goodreads.

    Malcolm Gladwell, 2021. The Bomber Mafia: A Dream, a Temptation, and the Longest Night of the Second World War [Book]. Goodreads.

    Malcom Gladwell, 2024. Medal of Honor: Stories of Courage [Podcast]. Pushkin Industries.

    Malcolm Gladwell. Revisionist History [Podcast]. Pushkin Industries.

    Michael Lewis, 2003. Moneyball: The Art of Winning an Unfair Game [Book]. Goodreads.

    Michael Lewis. Against the Rules [Podcast]. Pushkin Industries.

    Nassim Nicholas Taleb, 2007. The Black Swan: The Impact of the Highly Improbable [Book]. Goodreads.

    Rick Howard, 2023. Cybersecurity First Principles: A Reboot of Strategy and Tactics [Book]. Goodreads.

    Rick Howard, 2023. Cybersecurity First Principles Book Appendix [Diagram]. N2K CyberWire.

    Rick Howard, 2023. Cybersecurity moneyball: First principles applied to the workforce gap. [Podcast]. The CyberWire.

    Rick Howard, Simone Petrella , 2024. The Moneyball Approach to Buying Down Risk, Not Superstars [Presentation]. RSA 2024 Conference.

    Robert Soucy, 2024. Fascism [Explainer]. Encyclopedia Britannica.

    Staff, 2022. Information Risk Insights Study: A Clearer Vision for Assessing the Risk of Cyber Incidents [Report]. Cyentia Institute.

    Staff. Congressional Medal of Honor Recipients [Website]. Congressional Medal of Honor Society.

    Staff. North American Industry Classification System (NAICS) [Website]. U.S. Census Bureau.

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    Ron Brash: Problem fixer in critical infrastructure. [OT] [Career Notes] Aug 03, 2024
    Show notes

    Director of Cyber Security Insights at Verve Industrial aka self-proclaimed industrial cybersecurity geek Ron Brash shares his journey through the industrial cybersecurity space. From taking his parents 286s and 386s to task to working for the "OG of industrial cybersecurity," Ron has pushed limits. Starting off in technical testing, racing through university at 2x speed, and taking a detour through neuroscience with machine learning, Ron decided to return to critical infrastructure working with devices that keep the lights on and the water flowing. Ron hopes his work makes an impact and his life is memorable for those he cares about. We thank Ron for sharing his story with us.

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    Spinning the web of tangled tactics. [Research Saturday] Aug 03, 2024
    Show notes

    This week, we are joined by Jason Baker, Senior Threat Consultant at GuidePoint Security, and he is discussing their work on "Worldwide Web: An Analysis of Tactics and Techniques Attributed to Scattered Spider." In early 2024, a current RansomHub RaaS affiliate was identified as a former Alphv/Black Cat affiliate and is believed to be linked to the Scattered Spider group, known for using overlapping tools, tactics, and victims.

    The high-confidence assessment by GuidePoint’s DFIR and GRIT teams is supported by the consistent use of tools like ngrok and Tailscale, social engineering tactics, and systematic playbooks in intrusions.

    The research can be found here:

    • Worldwide Web: An Analysis of Tactics and Techniques Attributed to Scattered Spider

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    A high-stakes swap. Aug 02, 2024
    Show notes

    Notorious Russian cybercriminals head home after an historic prisoner exchange. An Israeli hacktivist group claims responsibility for a cyberattack that disrupted internet access in Iran. The U.S. Copyright Office calls for federal legislation to combat deep fakes. Cybercriminals are using a Cloudflare testing service for malware campaigns. The GAO instructs the EPA to address rising cyber threats to water and wastewater systems. Claroty reports a vulnerability in Rockwell Automation’s ControlLogix devices. Apple has open-sourced its homomorphic encryption (HE) library. CISA warns of a high severity vulnerability in Avtech Security cameras, and the agency appoints its first Chief AI Officer. We welcome Tim Starks of CyberScoop back to the show today to discuss President Biden's cybersecurity legacy. Can an AI chatbot recognize its own reflection?

    Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.


    CyberWire Guests

    Welcoming Tim Starks of CyberScoop back to the show today to discuss Biden's cybersecurity legacy. For more information, you can check out Tim’s article “Biden’s cybersecurity legacy: ‘a big shift’ to private sector responsibility.” The National Cybersecurity Strategy can be found here.


    Dave also sits down with Errol Weiss, CSO of Health-ISAC, sharing their reaction to the ransomware attacks against healthcare. Health-ISAC and the American Hospital Association (AHA) have issued an advisory to raise awareness of the potential cascading impacts of cyberattacks on healthcare suppliers and the importance of mitigating single points of failure in supply chains. Recent ransomware attacks on OneBlood, Synnovis, and Octapharma by Russian cybercrime gangs have caused significant disruptions to patient care, emphasizing the need for healthcare organizations to incorporate mission-critical third-party suppliers into their risk and emergency management plans.


    Selected Reading

    Jailed cybercriminals returned to Russia in historic prisoner swap (CyberScoop)

    American Hospital Association and Health-ISAC Joint Threat Bulletin - TLP White (American Hospital Association and Health-ISAC)

    Iranian Internet Attacked by Israeli Hacktivist Group: Reports (Security Boulevard)

    Copyright and Artificial Intelligence, Part 1 Digital Replicas Report (US Copyright Office)

    Hackers abuse free TryCloudflare to deliver remote access malware (Bleeping Computer)

    EPA Told to Address Cyber Risks to Water Systems (Infosecurity Magazine)

    Security Bypass Vulnerability Found in Rockwell Automation Logix Controllers (SecurityWeek)

    Apple open-sources its Homomorphic Encryption library (The Stack)

    CISA Warns of Avtech Camera Vulnerability Exploited in Wild (SecurityWeek)

    Lisa Einstein Appointed as CISA’s First Chief AI Officer (Homeland Security Today)

    Can a Large Language Model Recognize Itself? (IEEE Spectrum)


    Share your feedback.

    We want to ensure that you are getting the most out of the podcast. Please take a few minutes to share your thoughts with us by completing our brief listener survey as we continually work to improve the show.


    Want to hear your company in the show?

    You too can reach the most influential leaders and operators in the industry. Here’s our media kit. Contact us at cyberwire@n2k.com to request more info.

    The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.

    Learn more about your ad choices. Visit megaphone.fm/adchoices


    Previous 1 83 84 85 86 87 378 Next

    Related Podcasts

    Inside Strategic Coach: Connecting Entrepreneurs With What Really Matters

    1

    Inside Strategic Coach: Connecting Entrepreneurs With What Really Matters Business
    WSJ Your Money Briefing

    2

    WSJ Your Money Briefing Business
    FORTUNE Unfiltered with Aaron Task

    3

    FORTUNE Unfiltered with Aaron Task Business
    FORTUNE OnStage Presents: The Most Powerful Women

    4

    FORTUNE OnStage Presents: The Most Powerful Women Business
    Slate Money

    5

    Slate Money Business
    In The Dark – The New Yorker

    6

    In The Dark – The New Yorker Business News
    footer-logo

    Contact Us

    Toll Free: 844-670-7747

    Links

    • Home
    • Top Charts
    • Networks
    • Apps
    • Independents Podcasts
    • Podcast Advertising
    • Podcast News
    • Contact Us
    • About Us
    • Analytics & Insights

    Stay Connected

      Privacy, Terms of Use & Our Code of Ethics Protecting Content Creators Copyrights