Risky Business cover image

Risky Business

Latest episodes

undefined
Feb 13, 2024 • 53min

Risky Business #736 -- Azure misconfigurations are 2024's looming threat

Expert Feross Aboukhadijeh discusses the influx of malicious code in repositories. Topics include Azure misconfigurations, Ivanti exploits, Starlink in Ukraine, and Canada's Flipper Zero crackdown. The podcast delves into the challenges in detecting and blocking malicious packages, cybersecurity trends like crypto attacks, and Discord token theft. A mix of security news and insightful discussions.
undefined
Feb 11, 2024 • 38min

Soap Box: How to dismantle Volt Typhoon-style relay networks

Andrew Morris, Greynoise founder, discusses the persistent network of compromised routers despite US actions. Vendors using Greynoise for early warnings, and reversing exploitation attempts. Topics include challenges in dismantling relay networks, fingerprinting techniques, hidden threats in cybersecurity, APT crews' network usage, product security incidents, vulnerability verification, and defensive retaliation.
undefined
Feb 6, 2024 • 1h 2min

Risky Business #735 -- AnyDesk fails the transparency test

Eric Goldstein, Executive assistant director for cybersecurity at CISA, discusses Ivanti appliance demands and Volt Typhoon concerns. Trail of Bits' Dan Guido talks bug discovery and their Testing Handbook. Topics include AnyDesk PR, Microsoft 365 security nightmare, Cloudflare blog post hostility, and US gov's 'Disneyland ban' for spyware peddlers.
undefined
Jan 30, 2024 • 1h 2min

Risky Business #734 -- The number of hacked Microsoft 365 customers is skyrocketing

Australia's assistant foreign minister and cybersecurity enthusiast, Tim Watts, discusses the Ermakov sanctions. Highlights include Microsoft 365 customers impacted by SVR campaign & US govt.'s cyber data purchases. Sublime Security CEO talks QR-code phishing. Discussed topics: Medibank hacker details, Wyden's actions, Ivanti's security missteps, and more.
undefined
Jan 23, 2024 • 1h 3min

Risky Business #733 -- Say cheese, motherf---er

DHS undersecretary Rob Silvers talks about Cyber Safety Review Board ethics and conflicts. Microsoft and health insurer breaches by Russian hackers discussed. Legal actions and sanctions against cybercriminals highlighted. The importance of managing conflicts of interest on boards emphasized. Collaboration and recommendations for cybersecurity professionals explored, along with simplifying Terraform provisioning for enhanced security measures.
undefined
Jan 16, 2024 • 41min

Risky Business #732 — We are CRUSHED

This podcast covers the disappointment over the SEC Twitter hack, China's use of rainbow-tables Airdrop, challenges with enterprise bugs and patching, UEFI flaws, and more. Discussions include Apple AirDrop data leaks, cyber espionage, VPN exploitation, 0-Day RCE vulnerability in Opera browser, and Southeast Asian casino industry cyber fraud.
undefined
Jan 9, 2024 • 1h 5min

Risky Business #731 -- SEC Twitter hack moves Bitcoin price

Scott Kuffer from Nucleus Security joins to discuss patch management nuances. Topics cover SEC Twitter hack affecting Bitcoin, Telco breaches, Israel's Iranian hacks, and more cyber incidents globally. The show also delves into ethical dilemmas, software vulnerabilities, and technical analysis on cracking Tetra Protocol, highlighting the importance of strategic prioritization and communication in security measures.
undefined
Dec 12, 2023 • 57min

Risky Business #730 -- Apple, Facebook go all in on e2ee

Haroon Meer from Thinkst Canary discusses APT groups shifting to 'living off the land' techniques. Topics include Russian cyber attack on Ukrainian telco, Apple and Facebook's e2ee push, sketchy 702 reauthorization, USG push notifications request, and 2024 predictions.
undefined
Dec 11, 2023 • 34min

Risky Biz Soap Box: Why enterprise browsers are good, actually

Bradon Rogers, specialist in enterprise browsers at Island, discusses the security benefits of using enterprise browsers for corporate applications on unmanaged devices. Topics include challenges faced by CISOs, browser enforcement, access control, telemetry requests, data protection, and secure data handling.
undefined
Dec 5, 2023 • 54min

Risky Business #729 -- Why patching faster won't save us

Ryan Kalember, Proofpoint’s EVP of Cybersecurity Strategy, discusses the Iran-linked attacks on US water infrastructure, the ownCloud bug, and the D-Link 0day controversy. The podcast also covers the importance of Okta, ransomware attacks on hospitals and credit unions, and the need for innovative network security approaches

Get the Snipd
podcast app

Unlock the knowledge in podcasts with the podcast player of the future.
App store bannerPlay store banner

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode

Save any
moment

Hear something you like? Tap your headphones to save it with AI-generated key takeaways

Share
& Export

Send highlights to Twitter, WhatsApp or export them to Notion, Readwise & more

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode