CyberWire Daily cover image

CyberWire Daily

Latest episodes

undefined
Oct 28, 2024 • 11min

How to turn tech insights into real advantages. [CSO Perspectives]

Justin Daniels, a lawyer at Baker Donelson specializing in corporate M&A and blockchain, shares his insights on the dynamic intersection of cyber law and compliance. He discusses how cybersecurity impacts business resilience, particularly highlighted by recent challenges in the airline industry. The conversation delves into navigating liability in critical infrastructure, stressing the importance of both private and governmental accountability. Daniels offers valuable strategies for tech leaders aiming to turn compliance challenges into competitive advantages.
undefined
Oct 27, 2024 • 8min

Stephen Hamilton: Getting the mission to the next level. [Military] [Career Notes]

Join Stephen Hamilton, Army Cyber Institute's Technical Director and Chief of Staff Colonel, on a fascinating journey from a second-grade computer enthusiast to a military cyber leader. He discusses his West Point experience, where he chose signals over computing due to his love for ham radio. Stephen shares insights on his transition from programming to teaching, emphasizing the importance of understanding coding nuances. He reflects on the challenges of military tech roles, burnout, and staying mission-focused.
undefined
Oct 27, 2024 • 34min

Mission possible? Navigating tech adoption in the DoD. [Special Edition]

Pete Newell, Founder and CEO of BMNT, dives into the challenges of tech adoption in the Department of Defense. He argues that innovation is more about addressing human factors than technology itself. Newell highlights the need for cultural shifts and better education to facilitate this change. The conversation also touches on the evolution of military education systems, contrasting U.S. and U.K. approaches. Additionally, he emphasizes maintaining a proactive attitude in technology adoption to avoid stagnation and enhance defense operations.
undefined
6 snips
Oct 26, 2024 • 21min

LLM security 101. [Research Saturday]

Mick Baccio, a Global Security Advisor for Splunk SURGe, shares valuable insights on the security vulnerabilities of Large Language Models (LLMs). He discusses the surprising complexity behind these AI systems and the critical need for robust cybersecurity measures. Key topics include the OWASP Top 10 vulnerabilities, focusing on issues like prompt injection and data poisoning. Baccio emphasizes the importance of input sanitization and offers practical strategies to enhance LLM security while highlighting engaging resources for cybersecurity awareness.
undefined
Oct 25, 2024 • 27min

UnitedHealth breach numbers confirmed.

A massive data breach at UnitedHealth affects over 100 million patients, raising serious privacy concerns. Amazon clashes with APT29 over cybersecurity issues. Vulnerabilities in the AWS Cloud Development Kit could lead to account takeovers. The podcast features insights from Itzik Alvas on the risks of non-human identities, crucial for enhancing organizational security. Finally, Muni Metro is ditching floppy disks for safety improvements. Buckle up for a deep dive into modern cybersecurity challenges!
undefined
Oct 24, 2024 • 38min

A giant FortiJump for cybercriminals.

Eric Herzog, CMO of Infinidat, shares insights on the intersection of cybersecurity and storage resilience. He discusses the urgent need for businesses to adapt their data protection strategies in light of escalating cyber threats. Herzog highlights how traditional backup methods fall short and advocates for a collaborative approach to disaster preparedness. The conversation delves into the complexities of modern cybercriminal tactics and emphasizes innovative strategies to bolster defense mechanisms against both cyber attacks and natural disasters.
undefined
Oct 23, 2024 • 37min

NotLockBit takes a bite out of macOS.

Jérôme Segura, Sr. Director of Research at Malwarebytes, shares insights on the alarming rise of NotLockBit, a new macOS malware mimicking LockBit tactics. He discusses how scammers are exploiting platforms like GitHub to advertise fake AppleCare+ services, highlighting vulnerabilities associated with mobile apps. The conversation sheds light on the accountability of tech firms in the face of increased privacy violations and examines the federal government’s push for better information sharing in cybersecurity. It's a must-listen for anyone concerned about modern digital threats!
undefined
Oct 22, 2024 • 33min

Zero-day exploited in the wild.

Nathaniel Quist, Manager of Cloud Threat Intelligence at Cortex & Unit 42, dives into the evolving landscape of cyber threats. He explores the recent rise in cloud extortion operations and ransomware attacks, shedding light on the significant challenges businesses face in securing their public cloud environments. The discussion also touches on critical vulnerabilities affecting devices and platforms, as well as the implications of increasing cyber threats that can disrupt operations across industries.
undefined
Oct 21, 2024 • 38min

On the run, caught on arrival.

An Australian scammer behind a $46 million fraud scheme is arrested in Italy, showcasing international cooperation. Cyber threats remain a hot topic as the Internet Archive experiences yet another breach, and encrypted cloud storage reveals troubling vulnerabilities. Chinese disinformation campaigns are targeting U.S. senators, while advancements in AI safety seek to enhance digital security. The Department of Defense explores challenges in tech adoption, and Microsoft employs clever tactics to ensnare phishers, all while the specter of old threats still looms.
undefined
5 snips
Oct 21, 2024 • 18min

Identity 3.0. [CSO Perspectives]

In this insightful discussion, Kim Jones, Managing Director at Ursus Security Consulting and former US Army Intel officer, rethinks identity in the cybersecurity landscape. He emphasizes the necessity of Identity 3.0 to combat the growing issue of stolen credentials. Kim explores the complexities of identity verification in digital communication, highlighting the challenges of remote interactions. He advocates for bi-directional identity principles, addressing the inadequacies of traditional methods while proposing new strategies for enhancing digital security.

Get the Snipd
podcast app

Unlock the knowledge in podcasts with the podcast player of the future.
App store bannerPlay store banner

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode

Save any
moment

Hear something you like? Tap your headphones to save it with AI-generated key takeaways

Share
& Export

Send highlights to Twitter, WhatsApp or export them to Notion, Readwise & more

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode