Risky Bulletin cover image

Risky Bulletin

Latest episodes

undefined
Apr 3, 2025 • 23min

Srsly Risky Biz: North Korean IT workers head to Europe

Tom Uren and Patrick Gray discuss how North Korean IT worker scam is shifting towards Europe and employing tactics that make it more dangerous. They also discuss why Signalgate was a massive security failure. We learnt this week that US cabinet members were in multiple Signal groups discussing different topics. Phone hacking is not uncommon, an adversary states will be able to take advantage of the intelligence in these conversations. This episode is also available on Youtube. Show notes
undefined
Apr 2, 2025 • 6min

Risky Bulletin: North Korean IT worker scams expand to Europe

A North Korean IT worker scheme pivots to Europe after a US crackdown, 24,000 IPs are looking for Palo Alto Networks VPNs, Gmail rolls out end-to-end encrypted emails for enterprise users, and hackers steal over $100 million via Coinbase phishing. Show notes
undefined
Mar 31, 2025 • 27min

Between Two Nerds: The 800 pound gorilla

Delve into the intriguing misconceptions of U.S. cybersecurity, likening its capabilities to self-proclaimed martial arts skills. Discover how think tanks gauge the cyber power of agencies like the NSA, especially post-Snowden. The podcast highlights the evolution of talent in cryptography, nurturing innovation within elite organizations. It also compares different nations' approaches to cyber operations, illustrating the distinct paths taken by the U.S., China, and Russia. Finally, explore the remarkable journey of a key cybersecurity player from humble beginnings to dominance.
undefined
Mar 31, 2025 • 6min

Risky Bulletin: Oracle's healthtech division hacked, customers extorted

Dive into the alarming world of cybersecurity as Oracle's Health Tech division faces a devastating hack, with extortion hitting its customers hard. Discover the shocking revelation of the Italian government using Paragon for surveillance on NGOs. Then, learn about how a WordPress feature is being exploited to silently unleash malicious plugins. Finally, hear about the Dutch authorities taking drastic measures after a cyber incident shuts down critical systems.
undefined
Mar 30, 2025 • 9min

Sponsored: Why hacked geolocation data is worrying

In this Risky Bulletin sponsor interview Ed Currie from Kroll Cyber talks to Tom Uren about the recent hack of the Gravy Analytics geolocation data provider. He explains the hack and how geolocation data can be used by malicious actors. Show notes Kroll's report on the risks of geolocation hacks
undefined
Mar 28, 2025 • 9min

Risky Bulletin: France runs phishing test on 2.5 million students

France runs a phishing test on two and a half million students, Google fixes a Chrome zero-day abused for espionage, China publishes new facial recognition rules, and the DragonForce ransomware group hacks two rivals. Show notes
undefined
Mar 27, 2025 • 15min

Srsly Risky Biz: The Signalgate clown show

Tom Uren and Patrick Gray discuss how the Signalgate messages betray an alarming lack of security nous at the highest levels of the US natsec leadership. It’s head-scratchingly bad. They also discuss the possibility the Trump Administration will reconstitute the CSRB. The Board wasn’t perfect, but in our view it is better to get it started again rather than waiting for reviews to determine its perfect form. This episode is also available on Youtube. Show notes
undefined
Mar 26, 2025 • 7min

Risky Bulletin: Cyberattack hits Ukraine's state railway

Ukraine’s state railway hit by a cyberattack, a ransomware attack reduces Malaysia’s largest airport to writing flight details on a whiteboard, buggy exploits put DrayTek routers in a reboot loop, and the NIST CVE backlog grows bigger despite efforts to address it. Show notes
undefined
6 snips
Mar 24, 2025 • 24min

Between Two Nerds: The 0day fetish

Dive into the intriguing world of 0-day vulnerabilities, where hackers find exploits before manufacturers do. Discover the fine line between academic enthusiasm and real-world urgency in cybersecurity. The discussion reveals how individual hackers and state agencies approach these risks differently. Learn about the surprising impact of exploits like Eternal Blue and triangulation, affecting even high-profile targets. Moreover, explore the ethics of using these powerful tools within the complex web of international relations!
undefined
Mar 24, 2025 • 8min

Risky Bulletin: US removes Tornado Cash sanctions

The US removes Tornado Cash sanctions, the White House shifts cyber responsibility to state and local governments, a Michigan football coach is indicted for hacking, and Google sues a Maps scam syndicate. Show notes

Get the Snipd
podcast app

Unlock the knowledge in podcasts with the podcast player of the future.
App store bannerPlay store banner

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode

Save any
moment

Hear something you like? Tap your headphones to save it with AI-generated key takeaways

Share
& Export

Send highlights to Twitter, WhatsApp or export them to Notion, Readwise & more

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode