
Cyber Security Headlines
Daily stories from the world of information security. To delve into any daily story, head to CISOseries.com.
Latest episodes

13 snips
May 9, 2025 • 30min
Week in Review: Agriculture ransomware increase, Congress challenges CISA cuts, Disney’s slacker hacker
Dan Holden, CISO at BigCommerce, shares his expertise on the surge of ransomware attacks targeting the agriculture sector, revealing its unique vulnerabilities. He discusses challenges faced by CISA, particularly regarding funding and the evolving nature of critical infrastructure post-COVID-19. The conversation also dives into insider threats, spotlighting a plea deal, and the NSO Group's legal battles over spyware like Pegasus. Lastly, Holden emphasizes the need for accountability in cybersecurity as organizations grapple with increasing threats in a digital landscape.

7 snips
May 9, 2025 • 9min
Cisco IOS XE vulnerability, Pentagon CIO nomination, new SonicWall vulnerability
Discover the critical patch released by Cisco addressing a serious vulnerability in IOS XE, exposing unauthorized access risks. The nomination of a former Unilever CISO for a significant Pentagon role raises eyebrows in cybersecurity circles. Tune in for insights on a new zero-day vulnerability announced by SonicWall, along with the urgent need to protect systems amid rising cyber threats. Plus, hear about high-profile hacks, ransomware incidents, and the latest from the notorious Lockbit Ransomware Gang.

24 snips
May 8, 2025 • 7min
Europol shuts down DDoS-for-hire services, CrowdStrike lays off 500 workers, GOV.UK embraces passkeys
Europol has successfully shut down six notorious DDoS-for-hire services linked to global cyberattacks. In a surprising turn, CrowdStrike announces layoffs of 500 workers as they shift focus on revenue growth. Meanwhile, the UK government is adopting passkeys to enhance security for GOV.UK accounts against potential threats. The podcast also highlights rising cyberattacks, particularly in Poland, raising alarms over legal actions against those facilitating Russian cyber operations.

16 snips
May 7, 2025 • 9min
Congress challenges CISA cuts, Texas school breached, NSO pays WhatsApp
Congress is pushing back against proposed budget cuts that threaten CISA's effectiveness. A significant data breach in Texas affects over 47,000 individuals, raising alarm for cybersecurity measures in schools. Additionally, NSO Group faces a hefty $167 million payout to WhatsApp following legal disputes. The discussion also highlights modern threats like IoT exploitation and investment scams on social media, revealing vulnerabilities in widely used software.

8 snips
May 6, 2025 • 8min
Signal clones, easyjson warning, UK retail hacker
A recent cybersecurity breach involved a hack on Signal clones, raising concerns about the integrity of encrypted communications. A warning was issued about the easyjson package, highlighting potential vulnerabilities. Meanwhile, a ransomware group claimed responsibility for attacking UK retailers, showcasing the evolving threat landscape. The discussion also touched on other cyber threats faced by organizations in Europe, including notorious groups targeting sensitive information across nations.

7 snips
May 5, 2025 • 8min
Microsoft Authenticator passkeys, StealC malware upgraded, CISA budget slashed
Microsoft is shifting away from password autofill in its Authenticator app, signaling a move toward passwordless security. The StealC malware has received stealth upgrades, raising concerns over data theft. In a controversial move, the White House is proposing significant budget cuts to CISA, potentially jeopardizing federal cyber defense efforts. Additionally, ransomware attacks are increasingly targeting the food sector, revealing a pattern of underreported incidents and concerns for cybersecurity in critical industries.

8 snips
May 2, 2025 • 32min
Week in Review: Cybersecurity CEO busted, Cloudflare’s DDoS increase, FBI’s help request
DJ Schleen, Head of Security at Boats Group, returns to discuss a shocking incident where a cybersecurity CEO was arrested for malware activities in hospitals, raising serious trust issues. They dive into the alarming surge in DDoS attacks and the FBI’s call for public assistance against the China-linked threat actor Salt Typhoon. Schleen emphasizes the security vulnerabilities of routers and smart devices in homes, advocating for better regulations and consumer awareness. The conversation highlights the importance of community engagement in tackling cybersecurity challenges.

8 snips
May 2, 2025 • 8min
UK’s Co-op cyberattack, LabHost domains released, NSO WhatsApp damages
The UK retailer Co-op is reeling from a significant cyberattack that has disrupted its operations. The FBI has issued a warning about 42,000 phishing domains associated with LabHost, raising concerns for online security. Meanwhile, the NSO Group faces potential hefty damages in their ongoing legal battles regarding WhatsApp hacks. Additionally, explore innovative cybersecurity strategies like ThreatLocker's zero-trust approach and emerging threats from groups using advanced techniques like IPv6 spoofing.

7 snips
May 1, 2025 • 9min
Scattered Spider extradition, Telecom hack warnings, Impersonation scammer takedown
Alleged ‘Scattered Spider’ member extradited to U.S. Experts see little progress after major Chinese telecom hack Polish police take down impersonation scammers Thanks to today's episode sponsor, ThreatLocker ThreatLocker® is a global leader in Zero Trust endpoint security, offering cybersecurity controls to protect businesses from zero-day attacks and ransomware. ThreatLocker operates with a default deny approach to reduce the attack surface and mitigate potential cyber vulnerabilities. To learn more and start your free trial, visit ThreatLocker.com/CISO. For the stories behind the headlines, visit CISOseries.com.

16 snips
Apr 30, 2025 • 8min
Apple Airplay-Enabled Devices Can Be Hacked, Google tracked 75 zero days, France ties Russian APT28 hackers to 12 cyberattacks
Millions of Apple Airplay-Enabled Devices Can Be Hacked via Wi-Fi Google tracked 75 zero days exploited in the wild in 2024 France ties Russian APT28 hackers to 12 cyberattacks on French orgs Thanks to today's episode sponsor, ThreatLocker ThreatLocker® is a global leader in Zero Trust endpoint security, offering cybersecurity controls to protect businesses from zero-day attacks and ransomware. ThreatLocker operates with a default deny approach to reduce the attack surface and mitigate potential cyber vulnerabilities. To learn more and start your free trial, visit ThreatLocker.com/CISO.