Risky Business cover image

Risky Business

Latest episodes

undefined
Dec 20, 2024 • 27min

Risky Biz Soap Box: Cool compliance tricks with the Island enterprise browser

Michael Fey, CEO of Island, shares insights on their innovative enterprise browser designed for compliance and security. He discusses clever ways the browser meets cybersecurity and regulatory challenges, particularly around user access and GDPR. The conversation also delves into the risks of using Gen.ai chatbots in corporate settings and how a specialized browser can enhance secure collaborations during mergers and acquisitions. Fey's engaging take on compliance makes it a surprisingly fun listen!
undefined
16 snips
Dec 18, 2024 • 1h 1min

Risky Business #775 -- Cl0p is back, SEC hack disclosures disappoint

Robby Winchester from SpecterOps, a leading cybersecurity firm renowned for its penetration testing expertise, joins the discussion. He shares insights on the evolution of penetration testing, highlighting the growing importance of identity-centric approaches. The conversation also dives into the recent resurgence of the Cl0p ransomware crew and their alarming hacks. The hosts critique the SEC's uninspiring cyber incident reporting rule and examine the implications of vulnerabilities within Java enterprise software, emphasizing the pressing challenges in today's cybersecurity landscape.
undefined
Dec 13, 2024 • 50min

Wide World of Cyber: SentinelOne's Chris Krebs on Chinese cyber operations

In this edition of the Wild World of Cyber podcast Patrick Gray sits down with SentinelOne’s Chief Intelligence and Public Policy Officer Chris Krebs to talk all about Chinese cyber operations. They look at the Salt Typhoon and Volt Typhoon campaigns, the last 20 years of Chinese operations, and the evolution of the cyber roles of China’s Ministry of State Security and People’s Liberation Army. It’s a very dense hour of conversation! This podcast was recorded in front of an audience at the Museum of Contemporary Art in Sydney. This episode is also available on Youtube. Show notes
undefined
17 snips
Dec 11, 2024 • 1h 2min

Risky Business #774 -- Cleo file transfer appliances under widespread attack

Jacob Torrey, an expert from Thinkst Canary, dives into the critical flaws in Cleo file transfer appliances and the ongoing exploitation by ransomware groups. He also discusses Snowflake's upcoming shift to mandatory multi-factor authentication to combat credential theft. With a focus on innovative cybersecurity techniques, Torrey reveals fascinating operating system tricks, including canary tokens that can trigger alarms in your environment. Plus, he delves into the complexities of enhancing security in Windows, keeping attackers at bay!
undefined
Dec 8, 2024 • 30min

Risky Biz Soapbox: Enterprise Yubikeys can now be pre-registered

Jerrod Chong, COO and President of Yubico, discusses exciting advancements in YubiKey technology, including the new pre-registration feature that facilitates easier onboarding for enterprises. He highlights the seamless integration with Okta and Microsoft, streamlining security measures for staff. Jerrod shares insights from his recent trip to Singapore, focusing on the critical cybersecurity challenges facing the energy sector and emphasizes the importance of proactive risk management in infrastructure. The conversation also touches on the slow adoption of passwordless authentication in various industries.
undefined
14 snips
Dec 4, 2024 • 57min

Risky Business #773 -- Cybercriminals are dropping like flies in Russia

In this discussion, Vijit Nair, VP of Product at Corelight, sheds light on the future of cloud security, revealing the complexities organizations face in multi-cloud environments. He emphasizes the need for standardized monitoring approaches. The conversation also highlights recent trends in cybercrime, notably Russian hackers facing severe consequences. Nair dives into the inadequacies of traditional security solutions in cloud contexts and advocates for innovative tools that can enhance protection across dynamic infrastructures.
undefined
25 snips
Nov 27, 2024 • 1h 1min

Risky Business #772 -- Salt Typhoon is truly a national security disaster

Matt Muller from Tines, a security automation expert, dives into the provocative assertion by Gartner that SOAR is dead. The chat reveals the complexities of ransomware attacks, focusing on Blue Yonder and the tough choices companies must make when traditional recovery fails. They also discuss how the evolving tactics of state-backed hackers, particularly Salt Typhoon's telecom assaults, have raised national security alarms. The conversation wraps up with insights on the integration of AI in security and the necessity for adaptive approaches in ever-changing cyber landscapes.
undefined
Nov 20, 2024 • 1h 1min

Risky Business #771 -- Palo Alto's firewall 0days are very, very stupid

Andrew Morris, the founder of GreyNoise, dives into the world of cybersecurity, highlighting alarming vulnerabilities in edge devices. He reveals a new zero-day discovered by their AI system, emphasizing that the threat landscape is even worse than commonly perceived. The conversation also tackles the ineffectiveness of phishing training and underscores the critical security flaws in high-security IP cameras. As always, the episode blends humor with serious insights, making it both engaging and informative.
undefined
5 snips
Nov 13, 2024 • 1h 3min

Risky Business #770 -- A Russian IR guy discovers extremely cool spookware

Chris Tarbell, a former FBI agent famed for his role in the Silk Road case, shares dramatic insights into combating cybercrime. He discusses the complexities of Ross Ulbricht’s story and the potential implications of a changing political landscape. Feross Aboukhadijeh, founder of Socket.dev, argues for a centralized tracking system for supply chain attacks, highlighting vulnerabilities in software ecosystems. The conversation delves into Apple’s new security feature limiting law enforcement access and the ongoing evolution of cybersecurity challenges in today’s digital landscape.
undefined
8 snips
Nov 11, 2024 • 36min

Risky Biz Soap Box: Why black box email security is dead

In this insightful discussion, Josh Kamdjou, co-founder of Sublime Security, shares his journey from offensive security to pioneering innovative email protection. He critiques traditional opaque email security solutions for their inefficiencies and high false positive rates. Josh introduces a new programmable detection engine that adapts to diverse user environments, addressing emerging threats like AI-driven phishing. The conversation emphasizes the necessity for smarter, more customizable email security measures in the face of evolving cyberattack tactics.

Get the Snipd
podcast app

Unlock the knowledge in podcasts with the podcast player of the future.
App store bannerPlay store banner

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode

Save any
moment

Hear something you like? Tap your headphones to save it with AI-generated key takeaways

Share
& Export

Send highlights to Twitter, WhatsApp or export them to Notion, Readwise & more

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode