
CyberWire Daily
The daily cybersecurity news and analysis industry leaders depend on. Published each weekday, the program also includes interviews with a wide spectrum of experts from industry, academia, and research organizations all over the world.
Latest episodes

May 1, 2025 • 42min
How do you gain “experience” in cyber without a job in cyber? [CISO Persepctives]
We're sharing a episode from another N2K show we thought you might like. It's the third episode of the new season of the show CISO Perspectives with Kim Jones. Enjoy!
Show Notes:
While the cybersecurity industry has expanded and grown in recent years, newcomers still struggle to gain relevant "experience" before officially beginning their cyber careers. In this episode of CISO Perspectives, host Kim Jones sits down with Kathleen Smith, the Chief Outreach Officer at clearedjobs.net and the co-host of Security Cleared Jobs: Who’s Hiring & How, to discuss this dilemma and what new entrants can do to account for these difficulties. Throughout the conversation, Kathleen and Kim will discuss the challenges associated with entry-level cyber positions, how to gain meaningful experience, and how the industry as a whole contributes to this problem.
Want more CISO Perspectives?:
Check out a companion blog post by our very own Ethan Cook, where he breaks down key insights, shares behind-the-scenes context, and highlights research that complements this episode. It’s the perfect follow-up if you’re curious about the cyber talent crunch and how we can reshape the ecosystem for future professionals. Learn more about your ad choices. Visit megaphone.fm/adchoices

Apr 30, 2025 • 36min
Less CISA, more private sector power?
DHS Secretary Kristi Noem justifies budget cuts in her RSAC keynote. The EFF pens an open letter to Trump backing Chris Krebs. Scattered Spider is credited with the Marks & Spencer cyberattack. Researchers discover a critical flaw in Apple’s AirPlay protocol. The latest CISA advisories. On our Industry Voices segment, we are joined by Neil Gad, Chief Product and Technology Officer at RealVNC, who is discussing a security-first approach in remote access software development. What do you call an AI chatbot that finished at the bottom of its class in med school?
Remember to leave us a 5-star rating and review in your favorite podcast app.
Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.
CyberWire Guest
On our Industry Voices segment, we are joined by Neil Gad, Chief Product and Technology Officer at RealVNC, who is discussing a security-first approach in remote access software development.
Kevin on the Street
Joining us this week from RSAC 2025, we have our partner Kevin Magee, Global Director of Cybersecurity Startups at Microsoft for Startups. Stay tuned to the CyberWire Daily podcast for “Kevin on the Street” updates on all things RSAC 2025 from Kevin all week. Today Kevin is joined by Ryan Lasmaili Co-Founder and CEO of Vaultree and Stan Golubchik CEO and co-founder of Contraforce, here are their conversations.
You can also catch Kevin on our Microsoft for Startups Spotlight, brought to you by N2K CyberWire and Microsoft, where we shine a light on innovation, ambition, and the tech trailblazers building the future right from the startup trenches. Kevin and Dave talk with startup veteran and Cygenta co-founder FC about making the leap from hacker to entrepreneur, then speak with three Microsoft for Startups members: Matthew Chiodi of Cerby, Travis Howerton of RegScale, and Karl Mattson of Endor Labs. Whether you are building your own startup or just love a good innovation story, https://explore.thecyberwire.com/microsoft-for-startups.
Selected Reading
DHS Secretary Noem: CISA needs to get back to ‘core mission’ (CyberScoop)
Noem calls for reauthorization of cyberthreat information sharing law during RSA keynote (The Record)
Cyber experts, Democrats urge Trump administration not to break up cyber coordination in State reorg (CyberScoop)
Infosec pros rally against Trump's attack on Chris Krebs (The Register)
Scattered Spider Suspected in Major M&S Cyberattack (Hackread)
AirPlay Zero-Click RCE Vulnerability Enables Remote Device Takeover via Wi-Fi (Cyber Security News)
CISA Adds One Known Exploited Vulnerability to Catalog (CISA)
CISA Releases Three Industrial Control Systems Advisories (CISA)
Instagram's AI Chatbots Lie About Being Licensed Therapists (404 Media)
Share your feedback.
We want to ensure that you are getting the most out of the podcast. Please take a few minutes to share your thoughts with us by completing our brief listener survey as we continually work to improve the show.
Want to hear your company in the show?
You too can reach the most influential leaders and operators in the industry. Here’s our media kit. Contact us at cyberwire@n2k.com to request more info.
The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc. Learn more about your ad choices. Visit megaphone.fm/adchoices

Apr 29, 2025 • 33min
Trends shaping the future at RSAC.
Daniel B. Rosenzweig, founder of DBR Tech Law, specializes in data privacy and AI law. He discusses the intricate challenges of privacy compliance in an era dominated by big data and AI. Dan emphasizes the importance of aligning tech operations with legal obligations to build trust. They tackle U.S. state privacy laws, the global landscape for data transfers, and the impact of AI on compliance. The conversation also touches on privacy-enhancing technologies and the rising threat of deepfakes in cybersecurity.

Apr 28, 2025 • 31min
Lights out, lines down.
A massive power outage strikes the Iberian Peninsula. Iran says it repelled a “widespread and complex” cyberattack targeting national infrastructure. Researchers find hundreds of SAP NetWeaver systems vulnerable to a critical zero-day. A British retailer tells warehouse workers to stay home following a cyberattack. VeriSource Services discloses a breach exposing personal data of four million individuals. Global automated scanning surged 16.7% in 2024. CISA discloses several critical vulnerabilities affecting Planet Technology’s industrial switches and network management products. A Greek court upholds a VPN provider’s no-logs policies. Law enforcement dismantles the JokerOTP phishing tool. Our guest is Tim Starks from CyberScoop with developments in the NSO Group trial. How Bad Scans and AI Spread a Scientific Urban Legend.
Remember to leave us a 5-star rating and review in your favorite podcast app.
Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.
CyberWire Special Edition
On our Microsoft for Startups Spotlight, brought to you by N2K CyberWire and Microsoft, we are shining a light on innovation, ambition, and the tech trailblazers building the future right from the startup trenches. This episode is part of our exclusive RSAC series where we dive into the real world impact of the Microsoft for Startups Founders Hub.
Along with Microsoft’s Kevin Magee, Dave Bittner talks with an entrepreneur and startup veteran, and founders from three incredible startups who are part of the Founders Hub, each tackling big problems with even bigger ideas.
Dave and Kevin set the stage speaking with startup veteran and Cygenta co-founder FC about making the leap from hacker to entrepreneur. Dave and Kevin then speak with three founders: Matthew Chiodi of Cerby, Travis Howerton of RegScale, and Karl Mattson of Endor Labs. So whether you are building your own startup or just love a good innovation story, listen in. For more information, visit the Microsoft for Startups website.
CyberWire Guest
We are joined by Tim Starks from CyberScoop who is discussing Judge limits evidence about NSO Group customers, victims in damages trial
Selected Reading
Nationwide Power Outages in Portugal & Spain Possibly Due to Cyberattack (Cyber Security News)
Iran claims it stopped large cyberattack on country’s infrastructure (The Record)
400+ SAP NetWeaver Devices Vulnerable to 0-Day Attacks that Exploited in the Wild (Cyber Security News)
M&S warehouse workers told not to come to work following cyberattack (The Record)
4 Million Affected by VeriSource Data Breach (SecurityWeek)
Researchers Note 16.7% Increase in Automated Scanning Activity (Infosecurity Magazine)
Critical Vulnerabilities Found in Planet Technology Industrial Networking Products (SecurityWeek)
Court Dismisses Criminal Charges Against VPN Executive, Affirms No-Log Policy (Hackread)
JokerOTP Dismantled After 28,000 Phishing Attacks, 2 Arrested (Hackread)
A Strange Phrase Keeps Turning Up in Scientific Papers, But Why? (ScienceAlert)
Share your feedback.
We want to ensure that you are getting the most out of the podcast. Please take a few minutes to share your thoughts with us by completing our brief listener survey as we continually work to improve the show.
Want to hear your company in the show?
You too can reach the most influential leaders and operators in the industry. Here’s our media kit. Contact us at cyberwire@n2k.com to request more info.
The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc. Learn more about your ad choices. Visit megaphone.fm/adchoices

Apr 27, 2025 • 8min
Natali Tshuva: Impacting critical industries. [CEO] [Career Notes]
Natali Tshuva, CEO and co-founder of Sternum, shares her fascinating journey from aspiring doctor to cybersecurity innovator. Beginning her career at just 14, she later served in Unit 8200 within the Israeli intelligence, where she realized the real-world impact of cybersecurity. She discusses the vital intersection of cybersecurity and medical technology, emphasizing the need for secure innovations in healthcare. Natali encourages new entrants to gain hands-on experience and leverage their unique strengths to make a difference in critical industries.

Apr 27, 2025 • 1h 15min
Microsoft for Startups: The benefits of the cyber startup ecosystem. [Special Edition]
In this insightful discussion, Kevin Magee from Microsoft for Startups shares how the initiative empowers entrepreneurs. Matthew Chiodi of Cerby tackles the challenges of securing unmanaged applications. Travis Howerton from RegScale dives into continuous controls monitoring and compliance, emphasizing real-time solutions. Finally, Karl Mattson of Endor Labs explores securing the software supply chain and the transformative role of AI in vulnerability analysis. Each guest offers valuable insights for aspiring startups navigating the cyber landscape.

12 snips
Apr 26, 2025 • 26min
China’s new cyber arsenal revealed. [Research Saturday]
Crystal Morin, a Cybersecurity Strategist from Sysdig, dives into the complex world of UNC5174, a Chinese state-sponsored threat actor. She reveals their evolution from SNOWLIGHT to the sophisticated VShell RAT, showcasing a new array of cyber tools targeting Linux systems. Morin explains how their tactics blur attribution through domain squatting and fileless malware, posing serious risks to research institutions and critical infrastructure. This insightful discussion highlights the urgent need for robust cybersecurity measures amid escalating threats.

Apr 25, 2025 • 33min
Pentagon hits fast-forward on software certs.
The Pentagon is speeding up its software approval process, sparking debates on risk management. A major employee monitoring tool has leaked millions of screenshots, raising privacy concerns. The U.S. is investigating TP-Link for antitrust violations, while significant health data breaches affect millions. A critical zero-day vulnerability threatens numerous SAP applications. Researchers warn about AI agents executing unauthorized tasks, and new insights reveal the high costs associated with data breaches. Experts preview the upcoming Innovation Sandbox contest, celebrating 20 years of cybersecurity innovation.

Apr 24, 2025 • 29min
Lessons from the latest breach reports.
Cynthia Kaiser, Deputy Assistant Director with the FBI's Cyber Division, dives into the latest trends in cybersecurity. She discusses Salt Typhoon and its implications for global security. The conversation highlights the evolving ransomware landscape, where groups are testing new business models, and emphasizes the necessity for layered defenses against sophisticated cyber threats. Kaiser also sheds light on recent vulnerabilities in Linux systems that risk undetected rootkit attacks, showcasing the urgent need for heightened awareness in data protection.

Apr 24, 2025 • 47min
Are we a trade or a profession? [CISO Perspectives]
In this discussion, Larry Whiteside Jr., Chief Advisory Officer for The CISO Society and a veteran cybersecurity leader, dives into the debate over whether cybersecurity is a trade or a profession. He explores the importance of professional standards and training to bridge current gaps in the field. The conversation touches on the evolving role of CISOs, the necessity of better hiring practices, and the critical skills needed for future cybersecurity leaders. Larry advocates for fostering a skilled pipeline to elevate the industry and its professionals.