Risky Business cover image

Risky Business

Latest episodes

undefined
Nov 28, 2023 • 1h 5min

Risky Business #728 -- The Citrixbleed ransomware disaster

Guests David Cottingham and Daniel Schell discuss the Citrixbleed ransomware crisis, DPRK supply chain threats, Microsoft's HSM purchase, and the intersection of civil war and pig butchering. The FBI's arrest struggles and recent cyberattacks on major entities are also highlighted.
undefined
Nov 15, 2023 • 40min

Risky Biz Soap Box: Why o365 and Google Workspace are a security liability

Abhishek Agrawal, CEO of Material Security, discusses security risks in o365 and Google Workspace. Topics include threat actors accessing accounts, email archives, and controlling file sharing. Material Security's product adds MFA challenges, PII redaction, and limits damage from compromised accounts. Explore the evolution of email security, navigating email inbox security, and enhancing security measures in cloud environments.
undefined
Oct 31, 2023 • 58min

Risky Business #727 -- Mr Gray goes to Washington

Cybersecurity experts Chris Krebs and Dmitri Alperovitch discuss SEC action, AI Executive Order, CitrixBleed exploit, Kaspersky's iOS 0day, and Elon Musk's ventures. Greynoise CEO Andrew Morris talks about using language models to analyze malicious internet traffic.
undefined
Oct 29, 2023 • 30min

Risky Biz Soap Box: Stairwell will offer platform to researchers

Mike Wiacek and Eric Foster from Stairwell discuss their platform for analyzing executable files, emphasizing its flexibility and sharing tools. Stairwell is compared to VirusTotal but offers more features. The platform is described as a 'social network for CTI nerds' with advanced analysis capabilities and data accessibility.
undefined
Oct 24, 2023 • 57min

Risky Business #726 -- Okta owned while Cisco takes a massive L

Cybersecurity experts Dmitri Alperovitch, Rob Joyce, and Morgan Adamski discuss the Okta breach, Cisco exploits, http/2 protocol flaw, Ragnar Locker takedown, and NSA CCC insights in this informative podcast episode.
undefined
Oct 12, 2023 • 31min

Risky Biz Soap Box: Preventing MFA reset attacks

Jerrod Chong from Yubico discusses enhancing MFA reset security, separating pins from authentication devices, and the risks of SMS resets. They delve into the importance of HR verification processes, in-person verification, and hardware-bound authenticators to combat security threats and the challenges faced by federated identity providers.
undefined
Oct 10, 2023 • 44min

Risky Business #725 -- Microsoft knifes VBScript, passkeys the new default for Google accounts

Guest Jimmy Mesta from KSOC discusses applying IAM to Kubernetes environments. Topics include Microsoft ditching VBScript, Google's switch to passkeys, MGM's cyberattack losses, Clorox's struggles, and the potential dangers of a cURL bug. The episode also touches on cybercrime trends, state-backed attacks, ransomware, and the spread of disinformation.
undefined
Oct 3, 2023 • 55min

Risky Business #724 -- Exploitation moves away from Microsoft, Google and Apple products

George Glass, the sponsor guest on this week's show, discusses the shifting landscape of cyber exploitation away from major tech companies towards other targets. Topics include ransomware crews targeting WS_FTP and Jetbrains servers, global energy supply as a big target, Indian nationalists DDoSing Canadian targets, and the Exim drama. Much more on the latest security news is covered in this engaging episode.
undefined
Sep 27, 2023 • 57min

Risky Business #723 -- MGM and Caesars: Western youths are working with ransomware gangs

Field CISO Ken Westin from Panther joins the show to discuss western youths collaborating with Russian ransomware groups, Russia's new targets in Ukraine, a breach of Russian flight data, Cisco's purchase of Splunk, and more cybersecurity news highlights.
undefined
Sep 21, 2023 • 39min

Snake Oilers: Sublime Security, VulnCheck and Devicie

Snake Oilers features product pitches from Sublime Security for email security tuning, VulnCheck for vulnerability intelligence, and Devicie for device management with Intune. Topics include detection engineering, prioritizing vulnerability patching, IoT security, and specialized security services.

Get the Snipd
podcast app

Unlock the knowledge in podcasts with the podcast player of the future.
App store bannerPlay store banner

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode

Save any
moment

Hear something you like? Tap your headphones to save it with AI-generated key takeaways

Share
& Export

Send highlights to Twitter, WhatsApp or export them to Notion, Readwise & more

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode