

WhatsAppened to Samsung?
32 snips Sep 12, 2025
Dave Lewis, Global Advisory CISO at 1Password, shares insights on safeguarding M&A deal value and integrity. He emphasizes the importance of thorough cybersecurity assessments during transactions to prevent knowledge loss. The conversation also touches on the alarming rise of insider threats in schools, showcasing the unique challenges security leaders face. Additionally, he discusses legislative advances impacting data privacy and the need for collaboration in tackling cybersecurity vulnerabilities in major tech firms like Samsung and Microsoft.
AI Snips
Chapters
Transcript
Episode notes
Third-Party Library Risk
- Samsung patched a critical Android zero-day affecting devices on Android 13+ driven by a Kuramsoft image parser bug.
- Security teams must assume widely used libraries can be exploited via messaging apps and update promptly.
Patch Quickly When Exploited
- Update devices and push patches immediately when vendors confirm active exploitation of vulnerabilities.
- Monitor messaging apps and shared libraries as likely exploitation vectors during attacks.
Build Faults Can Trigger Global Outages
- Microsoft traced a global Exchange Online outage to a faulty build causing repeated dismounts and high CPU backlogs.
- Operational bugs in builds can cascade into large service outages across multiple products.