Cybersecurity Headlines - podcast cover

Cybersecurity Headlines

CISO Seriescisoseries.com
Daily stories from the world of information security. To delve into any daily story, head to CISOseries.com.
Last refreshed:
Download Metacast podcast app
Podcasts are better in Metacast mobile app
Don't just listen to podcasts. Learn from them with transcripts, summaries, and chapters for every episode. Skim, search, and bookmark insights. Learn more

Episodes

Japanese auto security, Feds tap encrypted messages, Microsoft breaks Linux dual-booting

Security initiative from Japanese auto companies Feds tapping into encrypted messaging haul Microsoft breaks Linux dual-boot systems Thanks to today's episode sponsor, Nudge Security How big is your SaaS attack surface? Find out today with Nudge Security . Nudge Security discovers all SaaS accounts ever created by anyone in your org, in minutes, and gives you automated workflows to scale SaaS security and governance. Take control of your SaaS security posture. Start a free trial today at nudgese...

Aug 22, 20247 min

Toyota third-party breach, Hawaii registry hack, Iran disrupting campaigns

Toyota confirms third-party data breach impacting customers Man who hacked Hawaii state registry sentenced U.S. Intelligence blames Iran for Trump campaign hack Thanks to today's episode sponsor, Nudge Security When your CEO asks "Hey, are we using that SaaS app that was just breached?", how quickly and confidently can you answer? Stop guessing with Nudge Security . Discover all SaaS accounts ever introduced by anyone in your org, in minutes and get alerted when any SaaS app used in your org is ...

Aug 21, 20248 min

National Public Data breach update, Flaws in macOS apps, FlightTracker configuration issue

'Only' 1.3 million affected by National Public Data Breach Flaws in Microsoft macOS Apps allowing secret recording Configuration issue exposes flight tracking site Thanks to today's episode sponsor, Nudge Security Do you know who's using genAI tools in your org? Find out today with Nudge Security . Their patented approach to SaaS discovery gives you a full inventory of all apps ever introduced by anyone in your org, in minutes, including genAI apps. And, automated workflows help you scale securi...

Aug 20, 20248 min

Entra forces MFA, another AnyDesk heist, Google Pixel vulnerability

Microsoft Entra admins must enable MFA or lose access to admin portals Cybercrime gang uses fake Windows update screen to hide data theft Google Pixel devices shipped with vulnerable Verizon app Thanks to today's episode sponsor, Nudge Security How big is your SaaS attack surface? Find out today with Nudge Security . Nudge Security discovers all SaaS accounts ever created by anyone in your org, in minutes, and gives you automated workflows to scale SaaS security and governance. Take control of y...

Aug 19, 20248 min

Week in Review: NIST encryption standards, NPD breach analyzed, Texas sues GM

Link to blog post This week's Cyber Security Headlines – Week in Review is hosted by Rich Stroffolino with guest Edwin Covert , head of cyber risk engineering, Bowhead Specialty Underwriters and edwincovert.com Thanks to our show sponsor, ThreatLocker Do zero-day exploits and supply chain attacks keep you up at night? Worry no more; you can harden your security with ThreatLocker. ThreatLocker helps you take a proactive, default-deny approach to cybersecurity and provides a full audit of every ac...

Aug 16, 202426 min

GitHub artifact warning, RansomHub's EDR killer, SolarWinds latest hotfix

GitHub vulnerability warning regarding ArtiPacked RansomHub affiliate launches new EDR-killing tool SolarWinds issues hotfix for web help desk vulnerability Thanks to today's episode sponsor, ThreatLocker Do zero-day exploits and supply chain attacks keep you up at night? Worry no more; you can harden your security with ThreatLocker . ThreatLocker helps you take a proactive, default-deny approach to cybersecurity and provides a full audit of every action, allowed or blocked, for risk management ...

Aug 16, 20249 min

Gemini AI privacy, AI Risk Repository, Russian phishing

Google details privacy commitments with Gemini AI MIT releases AI Risk Repository Russian spies using highly targeted phishing Thanks to today's episode sponsor, ThreatLocker Do zero-day exploits and supply chain attacks keep you up at night? Worry no more; you can harden your security with ThreatLocker . ThreatLocker helps you take a proactive, default-deny approach to cybersecurity and provides a full audit of every action, allowed or blocked, for risk management and compliance. Onboarding and...

Aug 15, 20248 min

FBI shutters Radar, NIST post-quantum standards, 2.7B record leaked

FBI shutters Radar ransomware gangs servers NIST finalizes post-quantum encryption standards 2.7 billion National Public Data records leaked Thanks to today's episode sponsor, ThreatLocker Do zero-day exploits and supply chain attacks keep you up at night? Worry no more; you can harden your security with ThreatLocker . ThreatLocker helps you take a proactive, default-deny approach to cybersecurity and provides a full audit of every action, allowed or blocked, for risk management and compliance. ...

Aug 14, 20249 min

U.S. "laptop farm" shut down, Ukranian computers compromised, Trump campaign hacked

U.S. operation of "laptop farm" for North Korea shutdown Over 100 Ukrainian government computers compromised Trump campaign says they were hacked Thanks to today's episode sponsor, ThreatLocker Do zero-day exploits and supply chain attacks keep you up at night? Worry no more; you can harden your security with ThreatLocker . ThreatLocker helps you take a proactive, default-deny approach to cybersecurity and provides a full audit of every action, allowed or blocked, for risk management and complia...

Aug 13, 20248 min

Iran election interference, AMD SinkClose flaw, ADT break-in

Iranian hackers ramping up U.S. election interference AMD SinkClose flaw helps install nearly undetectable malware ADT discloses breach that impacts more than 30,000 customers demands Thanks to today's episode sponsor, ThreatLocker Do zero-day exploits and supply chain attacks keep you up at night? Worry no more; you can harden your security with ThreatLocker . ThreatLocker helps you take a proactive, default-deny approach to cybersecurity and provides a full audit of every action, allowed or bl...

Aug 12, 20248 min

Week in Review: CrowdStrike releases Falcon, ransomware as terrorist threat

Link to blog post This week's Cyber Security Headlines – Week in Review is hosted by Rich Stroffolino with guest DJ Schleen , distinguished security architect, Yahoo Thanks to our show sponsor, Vanta Whether you're starting or scaling your security program, Vanta helps you automate compliance across frameworks like SOC 2, ISO 27001, and more. With Vanta, you can streamline security reviews by automating questionnaires and demonstrating your security posture with a customer-facing Trust Center. O...

Aug 09, 202429 min

Chameleon malware reappears, Rhysida hospital attack, Blacksuit's $500m tally

Chameleon reappears targeting Canadian restaurant chain Rhysida claims attack on Bayhealth Hospital in Delaware BlackSuit/Royal achieves $500m in ransomware demands Huge thanks to our sponsor, Vanta Whether you're starting or scaling your security program, Vanta helps you automate compliance across frameworks like SOC 2, ISO 27001, and more. With Vanta, you can streamline security reviews by automating questionnaires and demonstrating your security posture with a customer-facing Trust Center. Ov...

Aug 09, 20248 min

McLaren hospitals disrupted, CrowdStrike improves processes, Ronin Network hacked

McLaren hospitals disruption linked to INC ransomware attack CrowdStrike to give customers control over Falcon sensor updates Ronin Network hacked by "white hats" Huge thanks to our sponsor, Vanta When it comes to ensuring your company has top-notch security practices, things can get complicated, fast. Vanta automates compliance for SOC 2, ISO 27001, and more, saving you time and money. With Vanta, you can unify your security program management and proactively manage security reviews with AI-pow...

Aug 08, 20248 min

Android kernel zero-day, voter portal flaw, ransomware as terrorism

Google patches Android kernel zero-day Researchers find flaws in Georgia voter portal Law would make ransomware a terrorist threat Huge thanks to our sponsor, Vanta Whether you're starting or scaling your security program, Vanta helps you automate compliance across frameworks like SOC 2, ISO 27001, and more. With Vanta, you can streamline security reviews by automating questionnaires and demonstrating your security posture with a customer-facing Trust Center. Over 7,000 global companies like Atl...

Aug 07, 20248 min

CrowdStrike strikes back against Delta, Keytronic loses millions to ransomware, Flaw in Apache OFBiz

CrowdStrike strikes back against Delta's claims of negligence Ransomware attack costs Keytronic $17 million Patch required for high-severity flaw in Apache OFBiz Huge thanks to our sponsor, Vanta When it comes to ensuring your company has top-notch security practices, things can get complicated, fast. Vanta automates compliance for SOC 2, ISO 27001, and more, saving you time and money. With Vanta, you can unify your security program management and proactively manage security reviews with AI-powe...

Aug 06, 20249 min

Software update malware, investors sue CrowdStrike, cybercriminals in prisoner swap

Hackers use ISP to send malware through software updates CrowdStrike sued by investors following update failure Historic prisoner swap includes cybercriminals returned to Russia Huge thanks to our sponsor, Vanta Whether you're starting or scaling your security program, Vanta helps you automate compliance across frameworks like SOC 2, ISO 27001, and more. With Vanta, you can streamline security reviews by automating questionnaires and demonstrating your security posture with a customer-facing Tru...

Aug 05, 20248 min

Week in Review: CrowdStrike problems grow, record breaking ransom, Argentina's Minority Report

Link to blog post This week's Cyber Security Headlines – Week in Review is hosted by Rich Stroffolino with guest Dennis Pickett , vp, CISO, Westat Thanks to our show sponsor, Dropzone AI Dropzone AI's Analyst investigates alerts with unmatched speed and precision, providing clear, actionable reports. Experience the power of autonomous threat detection. Meet Dropzone AI at BSides Las Vegas. Visit dropzo ne.ai for a 3-month free trial. All links and the video of this episode can be found on CISO S...

Aug 02, 202425 min

Cencora patient breach, OneDrive phishing campaign, Argentina's crime predictions

Cencora confirms patient data stolen in February cyberattack Phishing campaign targets OneDrive users Argentina will use AI to predict future crimes Huge thanks to our sponsor, Dropzone AI Picture an analyst who works tirelessly around the clock. Dropzone AI 's Analyst investigates every alert and provides comprehensive, actionable reports. Boost your SOC's capabilities with a 3-month free trial at dropzone.ai . For the stories behind the headlines, head to CISOseries.com...

Aug 02, 20247 min

Elections and DDoS, dating apps leak locations, Germany blames China

DDoS attacks won't impact US elections Dating apps leaked precise location data Germany formally blames China for 2021 cyberattack Huge thanks to our sponsor, Dropzone AI Think of Alex, your new team member who never takes a break. Dropzone AI 's Analyst investigates every alert and delivers detailed reports without playbooks or code. Experience Alex's dedication with a 3-month free trial at dropzone.ai ....

Aug 01, 20248 min

Delta's legal maneuver, Record-breaking ransom, Meta $1.4B settlement

Delta enlists Microsoft's legal nemesis over CrowdStrike losses Dark Angels receives record-breaking ransom payment Meta to pay $1.4 billion biometric lawsuit Huge thanks to our sponsor, Dropzone AI Dropzone AI 's Analyst investigates alerts and responds to threats with unmatched speed and precision. No playbooks, no code required. Transform your SOC's performance with a 3-month free trial at dropzone.ai . For the stories behind the headlines, head to CISOseries.com....

Jul 31, 20248 min

HealthEquity data breach, CrowdStrike impact grows, Proofpoint exploit

4.3 million impacted by HealthEquity data breach Microsoft admits CrowdStrike incident far greater than first reported Proofpoint exploit allows for millions of fake emails Huge thanks to our sponsor, Dropzone AI Imagine an analyst who never misses an alert. Dropzone AI autonomously investigates every alert and provides decision-ready reports, enhancing your SOC's efficiency. Try it free for 3 months at dropzone.ai ....

Jul 30, 20248 min

PyPi package targets MacOS, Columbus, Ohio suffers cyber incident, Windows July update problems

Hackers exploiting PyPi package targets MacOS Columbus, Ohio suffers cyber incident Windows July updates come with some BitLocker and remote connectivity challenges Huge thanks to our sponsor, Dropzone AI Meet Dropzone AI , the analyst who never rests. Investigating every alert with unparalleled speed and precision, delivering clear, actionable reports. No playbooks, no code. Experience the power of AI with a 3-month free trial at dropzone.ai . For the stories behind the headlines, head to CISOs...

Jul 29, 20247 min

Week in Review: CrowdStrike developments, LA court shutdown, MGM casino claims win

Link to blog post This week's Cyber Security Headlines – Week in Review is hosted by Rich Stroffolino with guest Jana Moore , CISO, Belron , also vice president, EmpoWer – Supporting women in infosec . Thanks to our show sponsor, Vanta When it comes to ensuring your company has top-notch security practices, things can get complicated, fast. Vanta automates compliance for SOC 2, ISO 27001, and more, saving you time and money. With Vanta, you can unify your security program management and proactiv...

Jul 26, 202426 min

Microsoft Defender exploited, assassin's encryption frustration, NK elite hackers

Hackers exploiting Microsoft Defender SmartScreen bug IT leaders note increase in severity of cyber-attacks, ransomware and BEC stand out, Trump shooting investigation revives the end-to-end encryption issue Huge thanks to our sponsor, Vanta Whether you're starting or scaling your security program, Vanta helps you automate compliance across frameworks like SOC 2, ISO 27001, and more. With Vanta, you can streamline security reviews by automating questionnaires and demonstrating your security post...

Jul 26, 20248 min

CrowdStrike details, Chrome keeps cookies, BreachForums leaked

CrowdStrike dishes details Google scuttles third-party cookie deprecation BreachForums leaked on Telegram Huge thanks to our sponsor, Vanta When it comes to ensuring your company has top-notch security practices, things can get complicated, fast. Vanta automates compliance for SOC 2, ISO 27001, and more, saving you time and money. With Vanta, you can unify your security program management and proactively manage security reviews with AI-powered security questionnaires. Our listeners get $1,000 of...

Jul 25, 20247 min

Wiz deal crumbles, CrowdStrike aftermath, dYdX exchange hack

Google's $23 billion plan to buy Wiz falls apart U.S. government looking for answers amidst CrowdStrike aftermath dYdX exchange hacked in DNS hijack attack Thanks to our episode sponsor, Vanta Whether you're starting or scaling your security program, Vanta helps you automate compliance across frameworks like SOC 2, ISO 27001, and more. With Vanta , you can streamline security reviews by automating questionnaires and demonstrating your security posture with a customer-facing Trust Center. Over 7,...

Jul 24, 20248 min

CrowdStrike update, Russian criminals sanctioned, ransomware shuts down courts

CrowdStrike says "significant number" back up and running Russian cyber criminals sanctioned for infrastructure attacks Ransomware attack shuts down largest trial court in U.S. Huge thanks to our sponsor, Vanta When it comes to ensuring your company has top-notch security practices, things can get complicated, fast. Vanta automates compliance for SOC 2, ISO 27001, and more, saving you time and money. With Vanta, you can unify your security program management and proactively manage security revie...

Jul 23, 20249 min

CrowdStrike hits Cloud PCs, criminals exploit CrowdStrike fix, CISA rebuked

Microsoft confirms CrowdStrike update also hit cloud Windows PCs Cybercriminals exploit CrowdStrike problem to distribute malware CISA adds some big names to its KEV catalog Huge thanks to our sponsor, Vanta Whether you're starting or scaling your security program, Vanta helps you automate compliance across frameworks like SOC 2, ISO 27001, and more. With Vanta , you can streamline security reviews by automating questionnaires and demonstrating your security posture with a customer-facing Trust ...

Jul 22, 20248 min

Week in Review: Crowdstrike Microsoft outage, AT&T breach implications, CDK pays up

Link to blog post – get exact one from https://cisoseries.com This week's Cyber Security Headlines – Week in Review is hosted by Rich Stroffolino with guest Adam Arellano , former vp, enterprise cybersecurity, PayPal Thanks to our show sponsor, Conveyor Why do teams choose Conveyor over the competition to automate answering security questionnaires? A few reasons. One. Market-leading AI accuracy Two. They don't have to maintain a crazy knowledge base anymore because ConveyorAI can read from any s...

Jul 19, 202431 min

Windows outage, Fin7 sells malware, Synnovis blood shortage

Windows outage worldwide UK national blood stocks suffer the effects of ransomware Security flaws in SAP AI Core cloud-based platform Thanks to today's episode sponsor, Conveyor It's Friday and Conveyor hopes you don't have a meaty security questionnaire waiting for you on the other side of this podcast. If you do, you should check them out. As the market leader in instant, generative AI answers to entire security questionnaires, Conveyor helps you complete questionnaires fast, no matter the for...

Jul 19, 20248 min
Hosted on Libsyn
For the best experience, listen in Metacast app for iOS or Android