

Talkin' Bout [Infosec] News
Black Hills Information Security
A weekly Podcast with BHIS and Friends. We discuss notable Infosec, and infosec-adjacent news stories gathered by our community news team.
Join us live on YouTube, Monday's at 4:30PM ET
Join us live on YouTube, Monday's at 4:30PM ET
Episodes
Mentioned books

May 5, 2023 • 1h 2min
Talkin’ About Infosec News – 5/5/2023
The post Talkin’ About Infosec News – 5/5/2023 appeared first on Black Hills Information Security.
(00:00) - PreShow Banter™ — Swords in San Francisco
(01:32) - BHIS - Talkin' Bout [infosec] News 2023- 04-24
(04:00) - Story # 1: Pentagon Leaks: What's the Damage?
(13:09) - Story # 2: Hacker Group Names Are Now Absurdly Out of Control
(21:15) - Story # 3: 3CX Breach Was a Double Supply Chain Compromise
(38:31) - Story # 4: What’s more prevalent than juice jacking? Fake public WiFi networks, says researcher
(45:23) - Story # 5: Hundreds of Southwest Airlines flights are delayed after FAA lifts nationwide ground stop
(49:06) - Story # 6: European air traffic control confirms website 'under attack' by pro-Russia hackers
(50:56) - Story # 7: APC warns of critical unauthenticated RCE flaws in UPS software
(53:16) - Story # 8: ‘AuKill’ EDR killer malware abuses Process Explorer driver

Apr 19, 2023 • 60min
Talkin’ About Infosec News – 4/18/2023
The post Talkin’ About Infosec News – 4/18/2023 appeared first on Black Hills Information Security.
(00:00) - PreShow Banter™ — Hardest to Handle
(02:41) - BHIS - Talkin' Bout [infosec] News 2023-04-17
(04:22) - Story # 1: Actually, Charging Your Phone in a Public USB Port Is Fine
(16:04) - Story # 2: Israeli Irrigation Water Controllers & Postal Service Breached
(16:48) - Story # 2b: Did someone really hack into the Oldsmar, Florida, water treatment plant? New details suggest maybe not.
(27:30) - Story # 2c: Ridley turns a horrific true story involving Hurricane Katrina into a scripted drama
(29:13) - Story # 3: 3CX blames North Korea for supply chain mass-hack
(35:09) - Story # 4: FBI arrests 21-year-old Air National Guardsman suspected of leaking classified documents
(53:59) - Story # 5: Montana lawmakers vote to completely ban TikTok in the state

Apr 11, 2023 • 57min
Talkin’ About Infosec News – 4/11/2023
The post Talkin’ About Infosec News – 4/11/2023 appeared first on Black Hills Information Security.
(00:00) - PreShow Banter™ — Canada Man
(03:49) - BHIS - Talkin' Bout [infosec] News 2023-04-10
(05:10) - Story # 1: IRS-authorized eFile.com tax return software caught serving JS malware
(11:52) - Story # 2: Hackers using Log4j bug to profit from victim IP addresses through ‘proxyjacking’ scheme
(19:45) - Story # 3: Two-Fifths of IT Pros Told to Keep Breaches Quiet
(27:27) - Story # 4: Samsung reportedly leaked its own secrets through ChatGPT
(30:16) - Story # 4b: Introducing Microsoft Security Copilot: Empowering defenders at the speed of AI
(32:07) - Story # 5: Tesla workers shared images from car cameras, including “scenes of intimacy”
(47:37) - HBS News Hour
(52:01) - Story # 6: KFC, Pizza Hut owner discloses data breach after ransomware attack

Apr 5, 2023 • 1h 1min
Talkin’ About Infosec News – 4/5/2023
The post Talkin’ About Infosec News – 4/5/2023 appeared first on Black Hills Information Security.
(00:00) - PreShow Banter™ — Jazzy Saxophone
(01:13) - BHIS - Talkin' Bout [infosec] News 2023-04-03
(02:40) - Story # 1: He Would Still Be Here': Man Dies by Suicide After Talking with AI Chatbot, Widow Says
(08:45) - Story # 1b: Elon Musk, Steve Wozniak Join AI Experts In Pushing To 'Pause Giant AI Experiments'
(14:51) - Story # 2: S.686 - RESTRICT Act
(26:01) - Story # 3: Leaked IT contractor files detail Kremlin's stockpile of cyber-weapons
(29:27) - Story # 4: 3CX thought supply chain attack was a false positive
(35:46) - Story # 5: Twitter takes its algorithm ‘open-source,’ as Elon Musk promised
(39:40) - Story # 6: 20-Year-Old BreachForums Founder Faces Up to 5 Years in Prison
(44:16) - Story # 7: Hacker Agrees to Return $197 Million Stolen from Euler Finance
(47:46) - Story # 8: India-based cybergang busted for selling fake KFC franchises
(51:50) - Story # 8b: https://twitter.com/cyberabadpolice
(52:42) - Story # 8c: https://www.cyberabadpolice.gov.in
(56:07) - Story # 9: Meta wants EU users to apply for permission to opt out of data collection

Apr 3, 2023 • 1h 3min
Talkin’ About Infosec News – 4/3/2023
The post Talkin’ About Infosec News – 4/3/2023 appeared first on Black Hills Information Security.
(00:00) - PreShow Banter™ — Always Checking For Leaks
(02:56) - BHIS - Talkin' Bout [infosec] News 2023-03-27
(04:31) - Story # 1: Data breach leak site BreachForums shuts down
(12:06) - Story # 2: Ralph's personal cybercrime story
(21:43) - Story # 3: North Korean hackers using Chrome extensions to steal Gmail emails
(31:13) - Story # 4: Gordon Moore, Intel Co-Founder, Dies at 94
(32:37) - Story # 4b: Beloved hacking veteran Kelly ‘Aloria’ Lum passes away at 41
(32:59) - Story # 5: Twitter Says Parts of Its Source Code Were Leaked Online
(37:00) - Story # 6: AI image of Pope Francis in a puffer jacket fooled the internet and experts fear there’s worse to come
(41:07) - Story # 6b: Samsung’s Moon Shots Force Us to Ask How Much AI Is Too Much
(44:00) - Story # 7:New MacStealer macOS malware steals passwords from iCloud Keychain
(45:22) - Story # 8: Windows 11, Tesla, Ubuntu, and macOS hacked at Pwn2Own 2023
(49:39) - Story # 9: Ferrari discloses data breach after receiving ransom demand
(52:03) - Story # 10: How hackers took over Linus Tech Tips

Mar 16, 2023 • 1h 1min
Talkin’ About Infosec News – 3/16/2023
00:00 – PreShow Banter™ — Tossing Money at Problems00:58 – BHIS – Talkin’ Bout [infosec] News 2023-03-1301:41 – Story # 1: Silicon Valley Bank collapse: Treasury, Fed, and FDIC announce […]
The post Talkin’ About Infosec News – 3/16/2023 appeared first on Black Hills Information Security.
(00:00) - PreShow Banter™ — Tossing Money at Problems
(00:58) - BHIS - Talkin' Bout [infosec] News 2023-03-13
(01:41) - Story # 1: Silicon Valley Bank collapse: Treasury, Fed and FDIC announce steps to ensure deposits will be paid in full
(17:23) - Story # 1b: Silicon Valley Bank exec was Lehman Brothers CFO prior to 2008 collapse
(21:21) - Story # 2: FBI investigates data breach impacting U.S. House members and staff
(30:33) - Story # 3: Acronis downplays intrusion after 12GB trove leaks online
(34:40) - Story # 4: Acer confirms breach after 160GB of data for sale on hacking forum
(51:26) - Story # 5: The privacy loophole in your doorbell
(57:28) - Spearfish General Store

Mar 8, 2023 • 1h 7min
Talkin’ About Infosec News – 3/8/2023 (v2)
THIS IS A TEST
The post Talkin’ About Infosec News – 3/8/2023 (v2) appeared first on Black Hills Information Security.
(00:00) - PreShow Banter™ — Lil NAS
(06:52) - BHIS - Talkin' Bout [infosec] News 2023-03-06
(08:13) - Story # 1: LastPass says employee’s home computer was hacked and corporate vault taken
(28:32) - Story # 2: An Uncomfortable Reality: Occupational Hazards Associated with Thought Leadership in CTI
(35:18) - Story # 3: FACT SHEET: Biden-Harris Administration Announces National Cybersecurity Strategy
(45:17) - Story # 4: Roku Doesn’t Support IPv6 and It Might Be a Big Deal
(51:05) - Story # 5: Secret crawlspace cryptomine discovered in routine inspection of MA high school
(57:18) - Story # 6: ATM thieves use glue and 'tap' function to drain accounts at Chase Bank

Mar 8, 2023 • 1h 7min
Talkin’ About Infosec News – 3/8/2023
00:00 – PreShow Banter™ — Lil NAS06:52 – BHIS – Talkin’ Bout [infosec] News 2023-03-0608:13 – Story # 1: LastPass says employee’s home computer was hacked and corporate vault takenhttps://arstechnica.com/information-technology/2023/02/lastpass-hackers-infected-employees-home-computer-and-stole-corporate-vault/28:32 […]
The post Talkin’ About Infosec News – 3/8/2023 appeared first on Black Hills Information Security.
(00:00) - PreShow Banter™ — Lil NAS
(06:52) - BHIS - Talkin' Bout [infosec] News 2023-03-06
(08:13) - Story # 1: LastPass says employee’s home computer was hacked and corporate vault taken
(28:32) - Story # 2: An Uncomfortable Reality: Occupational Hazards Associated with Thought Leadership in CTI
(35:18) - Story # 3: FACT SHEET: Biden-Harris Administration Announces National Cybersecurity Strategy
(45:17) - Story # 4: Roku Doesn’t Support IPv6 and It Might Be a Big Deal
(51:05) - Story # 5: Secret crawlspace cryptomine discovered in routine inspection of MA high school
(57:18) - Story # 6: ATM thieves use glue and 'tap' function to drain accounts at Chase Bank

Mar 3, 2023 • 59min
Talkin’ About Infosec News – 3/3/2023
Story # 1: A Basic iPhone Feature Helps Criminals Steal Your Entire Digital Lifehttps://www.wsj.com/articles/apple-iphone-security-theft-passcode-data-privacya-basic-iphone-feature-helps-criminals-steal-your-digital-life-cbf14b1a Story # 1b: Apple’s iPhone Passcode Problem: Thieves Can Ruin Your Entire Digital Life in Minutes […]
The post Talkin’ About Infosec News – 3/3/2023 appeared first on Black Hills Information Security.
(00:00) - PreShow Banter™ — Farm Raised Artificial Intelligence
(04:01) - BHIS - Talkin' Bout [infosec] News 2023-02-27
(05:09) - Story # 1: A Basic iPhone Feature Helps Criminals Steal Your Entire Digital Life
(18:52) - Story # 2: Sensitive US military emails spill online
(27:55) - Story # 3: Fruit giant Dole suffers ransomware attack impacting operations
(33:01) - Story # 4: Well-hidden Mac cryptomining malware found in pirate copies of Final Cut Pro; expect more
(37:30) - Story # 5: AI Helps Crack NIST-Recommended Post-Quantum Encryption Algorithm
(40:38) - Story # 6: Snapchat launches ChatGPT integration, warns to not share your secrets
(43:28) - Story # 7: How I Broke Into a Bank Account With an AI-Generated Voice
(47:55) - Story # 8: Firms Who Pay Ransom Subsidise 10 New Attacks: Report
(53:51) - Story # 9: Valve set a trap to catch and ban 40,000 Dota 2 cheaters

Feb 22, 2023 • 1h 7min
Talkin’ About Infosec News – 2/22/2023
00:00 – PreShow Banter™ — Pop Tart Pizza04:15 – BHIS – Talkin’ Bout [infosec] News 2023-02-2005:39 – Story # 1: Employee data from a major cybersecurity firm posted for sale […]
The post Talkin’ About Infosec News – 2/22/2023 appeared first on Black Hills Information Security.
(00:00) - PreShow Banter™ — Pop Tart Pizza
(04:15) - BHIS - Talkin' Bout [infosec] News 2023-02-20
(05:39) - Story # 1: Employee data from a major cybersecurity firm posted for sale on a hacker forum
(13:43) - Story # 2: FBI is investigating a cybersecurity incident on its network
(16:44) - Story # 3: GoDaddy: Hackers stole source code, installed malware in multi-year breach
(21:44) - Story # 4: Hyundai, Kia pushing updates so you can’t just steal their cars with USB cables
(30:21) - Story # 5: Eurostar forces 'password resets' — then fails and locks users out
(33:37) - Story # 6: Hacker Uncovers How to Turn Traffic Lights Green With Flipper Zero
(39:30) - Story # 7: Namecheap denies system breach after email service used to spread phishing scams
(43:11) - Story # 8: Official: Twitter will now charge for SMS two-factor authentication
(48:24) - Story # 9: Software suite of Israeli security firm Cellebrite leaks online
(51:22) - Story # 10: The US Air Force may have shot down an Amateur Radio Pico Balloon over Canada
(55:48) - Story # 11: ChatGPT Is Ingesting Corporate Secrets


