Episoder
-
Please enjoy this encore from our T-Minus Space Daily segment Deep Space.
Parker Wishik from The Aerospace Corporation explores how experts are turning data into decisions in the space industry on the latest Nexus segment. Parker is joined by Jackie Barbieri, Founder and CEO of Whitespace, and Dr. Steve Lewis, Leader of The Aerospace Corporations’s SPEAR team.
Remember to leave us a 5-star rating and review in your favorite podcast app.
Be sure to follow T-Minus on LinkedIn and Instagram.
Selected Reading
Aerospace Advances Massless Payloads for Space Missions
Aerospace Experts Are Turning Data into Decisions
Aerospace recently assembled a team of highly skilled scientists and engineers who play a critical role in addressing national and global disruptions in GPS and other radio frequency spectrums.
Want to hear your company in the show?
You too can reach the most influential leaders and operators in the industry. Here’s our media kit. Contact us at [email protected] to request more info.
Want to join us for an interview?
Please send your pitch to [email protected] and include your name, affiliation, and topic proposal.
T-Minus is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.
Learn more about your ad choices. Visit megaphone.fm/adchoices -
While the N2K CyberWire team is observing Independence Day in the US, we thought you'd enjoy this episode of Threat Vector from our podcast network. Listen in and bust those cyber myths.
In this episode of Threat Vector, David Moulton talks with Lisa Plaggemier, Executive Director of the National Cybersecurity Alliance. Lisa shares insights from this year’s “Oh Behave!” report and dives into why cybersecurity habits remain unchanged—even when we know better. From password reuse to misunderstood AI risks, Lisa explains how emotion, storytelling, and system design all play a role in protecting users. Learn why secure-by-design is the future, how storytelling can reshape behavior, and why facts alone won’t change minds. This episode is a must-listen for CISOs, security leaders, and anyone working to reduce human risk at scale.
Resources:
Kubikle: A comedy webseries about cybercriminals.
Oh Behave! The Annual Cybersecurity Attitudes and Behaviors Report 2024
Join the conversation on our social media channels:
Website: https://www.paloaltonetworks.com/
Threat Research: https://unit42.paloaltonetworks.com/
Facebook: https://www.facebook.com/LifeatPaloAltoNetworks/
LinkedIn: https://www.linkedin.com/company/unit42/
YouTube: @paloaltonetworks
Twitter: https://twitter.com/PaloAltoNtwks
About Threat Vector
Threat Vector by Palo Alto Networks is your premier podcast for security thought leadership. Join us as we explore pressing cybersecurity threats, robust protection strategies, and the latest industry trends.
The podcast features in-depth discussions with industry leaders, Palo Alto Networks experts, and customers, providing crucial insights for security decision-makers.
Whether you're looking to stay ahead of the curve with innovative solutions or understand the evolving cybersecurity landscape, Threat Vector equips you with the knowledge needed to safeguard your organization.
Palo Alto Networks
Palo Alto Networks enables your team to prevent successful cyberattacks with an automated approach that delivers consistent security across the cloud, network, and mobile. http://paloaltonetworks.com
Learn more about your ad choices. Visit megaphone.fm/adchoices -
Mangler du episoder?
-
Sudo patch your Linux systems. Cisco has removed a critical backdoor account that gave remote attackers root privileges. The Hunters International ransomware group rebrands and closes up shop. The Centers for Medicare and Medicaid Services (CMS) notifies 103,000 people that their personal data was compromised. NimDoor is a sophisticated North Korean cyber campaign targeting macOS. Researchers uncover a massive phishing campaign using thousands of fake retail websites. The FBI’s top cyber official says Salt Typhoon is largely contained. Microsoft tells customers to ignore Windows Firewall error warnings. A California jury orders Google to pay $314 million for collecting Android user data without consent. Ben Yelin shares insights from this year’s Supreme Court session. Ransomware negotiations with a side of side hustle.
Remember to leave us a 5-star rating and review in your favorite podcast app.
Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.
CyberWire Guest
Today our guest is Ben Yelin from UMD CHHS, who is sharing a wrap up of this year’s Supreme Court session. If you want to hear more from Ben, head on over to the Caveat podcast, where he is co-host with Dave as they discuss all things law and privacy.
Selected Reading
Linux Users Urged to Patch Critical Sudo CVE (Infosecurity Magazine)
Cisco warns that Unified CM has hardcoded root SSH credentials (Bleeping Computer)
Hunters International ransomware shuts down after World Leaks rebrand (Bleeping Computer)
Feds Notify 103,000 Medicare Beneficiaries of Scam, Breach (Data Breach Today)
N Korean Hackers Drop NimDoor macOS Malware Via Fake Zoom Updates (Hackread)
China-linked hackers spoof big-name brand websites to steal shoppers' payment info (The Record)
Top FBI cyber official: Salt Typhoon ‘largely contained’ in telecom networks (CyberScoop)
Microsoft asks users to ignore Windows Firewall config errors (Bleeping Computer)
California jury orders Google to pay $314 million over data transfers from Android phones (The Record)
US Probes Whether Negotiator Took Slice of Hacker Payments (Bloomberg)
Audience Survey
Complete our annual audience survey before August 31.
Want to hear your company in the show?
You too can reach the most influential leaders and operators in the industry. Here’s our media kit. Contact us at [email protected] to request more info.
The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.
Learn more about your ad choices. Visit megaphone.fm/adchoices -
French authorities report multiple entities targeted by access brokers. A ransomware group extorts a German hunger charity. AT&T combats SIM swapping and account takeover attacks. A Missouri physician group suffers a cyber attack. Qantas doesn’t crash, but their computers do. Researchers uncover multiple critical vulnerabilities in Agorum Core Open. A student loan administrator in Virginia gets hit by the Akira ransomware group. The Feds sanction a Russian bulletproof hosting service. Johnson Controls notifies individuals of a major ransomware attack dating back to 2023. Will Markow, CEO of FourOne Insights and N2K CyberWire Senior Workforce Analyst shares the latest technology workforce trends. The ICEBlock app warms up to users.
Remember to leave us a 5-star rating and review in your favorite podcast app.
Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.
CyberWire Guest
Our guest is Will Markow, CEO of FourOne Insights and N2K CyberWire Senior Workforce Analyst, sharing the latest workforce technology trends. Will recently appeared on our CISO Perspectives podcast with host Kim Jones in the “What’s the “correct” path for entering cyber?” episode. If you are not already an N2K Pro member, you can learn more about that here.
Got cybersecurity, IT, or project management certification goals?
For the past 25 years, N2K's practice tests have helped more than half a million professionals reach certification success. Grow your career and reach your goals faster with N2K’s full exam prep of practice tests, labs, and training courses for Microsoft, CompTIA, PMI, Amazon, and more at n2k.com/certify.
Selected Reading
French cybersecurity agency confirms government affected by Ivanti hacks (The Record)
Ransomware gang attacks German charity that feeds starving children (The Record)
AT&T deploys new account lock feature to counter SIM swapping (CyberScoop)
Cyberattack in Missouri healthcare provider Esse Health exposes data of over 263,000 patients (Beyond Machines)
Australia's Qantas says 6 million customer accounts accessed in cyber hack (Reuters)
Security Advisories on Agorum Core Open (usd)
Virginia student loan administrator Southwood Financial hit by ransomware attack (Beyond Machines)
Russian bulletproof hosting service Aeza Group sanctioned by US for ransomware work (The Record)
Johnson Controls starts notifying people affected by 2023 breach (Bleeping Computers)
ICEBlock, an app for anonymously reporting ICE sightings, goes viral overnight after Bondi criticism (TechCrunch)
Audience Survey
Complete our annual audience survey before August 31.
Want to hear your company in the show?
You too can reach the most influential leaders and operators in the industry. Here’s our media kit. Contact us at [email protected] to request more info.
The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.
Learn more about your ad choices. Visit megaphone.fm/adchoices -
The Feds shut down a covert North Korean IT operation. Google releases an emergency update to fix a new Chrome zero-day. A major U.S. trade show and event marketing firm suffers a data breach. NetScaler patches a pair of critical vulnerabilities. A sophisticated cyber attack targets The Hague. An Iran-linked hacking group threatens to release emails allegedly stolen from aides to President Trump. A ransomware attack exposes sensitive data linked to multiple Swiss federal government offices. The U.S. Treasury Department faces scrutiny after a string of cyberattacks. The FBI’s phone security tips draw fire from Senator Wyden. Tim Starks from CyberScoop describes how ubiquitous surveillance turned deadly. AI proves its pentesting prowess.
Remember to leave us a 5-star rating and review in your favorite podcast app.
Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.
CyberWire Guest
We are joined today by Tim Starks, Senior Reporter from CyberScoop, discussing his story "Hacker helped kill FBI sources, witnesses in El Chapo case, according to watchdog report."
Selected Reading
US government takes down major North Korean 'remote IT workers' operation (TechCrunch)
Google fixes fourth actively exploited Chrome zero-day of 2025 (Bleeping Computer)
NetScaler Critical Security Updates for CVE-2025-6543 and CVE-2025-5777 (NetScaler)
International Criminal Court hit with cyber security attack (AP News)
Iran-linked hackers threaten to release Trump aides' emails (Reuters)
Swiss government data compromised in ransomware attack on health foundation Radix (Beyond Machines)
Trade show management firm Nth Degree hit by data breach, exposing sensitive data (Beyond Machines)
A Trio of US Treasury Hacks Exposes a Pattern Making Banks Nervous (Bloomberg)
Senator Chides FBI for Weak Advice on Mobile Security (Krebs on Security)
The top red teamer in the US is an AI bot (CSO Online)
Audience Survey
Complete our annual audience survey before August 31.
Want to hear your company in the show?
You too can reach the most influential leaders and operators in the industry. Here’s our media kit. Contact us at [email protected] to request more info.
The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.
Learn more about your ad choices. Visit megaphone.fm/adchoices -
CISA warns organizations of potential cyber threats from Iranian state-sponsored actors.Scattered Spider targets aviation and transportation. Workforce cuts at the State Department raise concerns about weakened cyber diplomacy. Canada bans Chinese security camera vendor Hikvision over national security concerns.Cisco Talos reports a rise in cybercriminals abusing Large Language Models. MacOS malware Poseidon Stealer rebrands.Researchers discover multiple vulnerabilities in Bluetooth chips used in headphones and earbuds. The FDA issues new guidance on medical device cybersecurity. Our guest is Debbie Gordon, Co-Founder of Cloud Range, looking “Beyond the Stack - Why Cyber Readiness Starts with People.” An IT worker’s revenge plan backfires.
Remember to leave us a 5-star rating and review in your favorite podcast app.
Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.
CyberWire Guest
On today’s Industry Voices segment, Debbie Gordon, Co-Founder of Cloud Range, shares insights on looking “Beyond the Stack - Why Cyber Readiness Starts with People.” Learn more about what Debbie discusses in Cloud Range’s blog: Bolstering Your Human Security Posture. You can hear Debbie's full conversation here.
Selected Reading
CISA and Partners Urge Critical Infrastructure to Stay Vigilant in the Current Geopolitical Environment (CISA)
Joint Statement from CISA, FBI, DC3 and NSA on Potential Targeted Cyber Activity Against U.S. Critical Infrastructure by Iran (CISA, FBI, DOD Cyber Crime Center, NSA)
Prolific cybercriminal group now targeting aviation, transportation companies (Axios)
U.S. Cyber Diplomacy at Risk Amid State Department Shakeup (GovInfo Security)
Canada Bans Chinese CCTV Vendor Hikvision Over National Security Concerns (Infosecurity Magazine)
Malicious AI Models Are Behind a New Wave of Cybercrime, Cisco Talos (Hackread)
MacOS malware Poseidon Stealer rebranded as Odyssey Stealer (SC Media)
Airoha Chip Vulnerabilities Expose Headphones to Takeover (SecurityWeek)
FDA Expands Premarket Medical Device Cyber Guidance (GovInfo Security)
'Disgruntled' British IT worker jailed for hacking employer after being suspended (The Record)
Audience Survey
Complete our annual audience survey before August 31.
Want to hear your company in the show?
You too can reach the most influential leaders and operators in the industry. Here’s our media kit. Contact us at [email protected] to request more info.
The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.
Learn more about your ad choices. Visit megaphone.fm/adchoices -
Please enjoy this encore of Career Notes.
Senior Vice President for Strategy, Partnerships, and Corporate Development at IronNet Cybersecurity, Jamil Jaffer, shares how his interest in technology brought him full circle. Always a tech guy, Jamil paid he way through college doing computer support. Jamil went to law school and worked in various jobs in Washington DC including a stint in the newly-created National Security division of the Justice Department just after 9/11. When talking about adversity, Jamil notes, "Adversity has happened in life, but you gotta run at those things. To me, you know, I like risk. I think risk is something that a lot of people shy away from." We thank Jamil for sharing his story with us.
Learn more about your ad choices. Visit megaphone.fm/adchoices -
This week we are joined by Kyle Lefton, Security Researcher from Akamai, who is diving into their work on "Two Botnets, One Flaw - Mirai Spreads Through Wazuh Vulnerability." Akamai researchers have observed active exploitation of CVE-2025-24016, a critical RCE vulnerability in Wazuh, by two Mirai-based botnets.
The campaigns highlight how quickly attackers are adapting proof-of-concept exploits to spread malware, underscoring the urgency of patching vulnerable systems. One botnet appears to target Italian-speaking users, suggesting regionally tailored operations.
The research can be found here:
Two Botnets, One Flaw: Mirai Spreads Through Wazuh Vulnerability
Learn more about your ad choices. Visit megaphone.fm/adchoices -
Hawaiian Airlines reports a cybersecurity incident. Microsoft updates its Windows Resiliency Initiative after the 2024 CrowdStrike crash. CitrixBleed 2 is under active exploitation in the wild. Researchers disclose a critical vulnerability in Open VSX. Malware uses prompt injection to evade AI analysis. A new report claims Cambodia turns a blind eye to scam compounds. Senators propose a ban on AI tools from foreign adversaries. An NSA veteran is named top civilian at U.S. Cyber Command. Maria Varmazis speaks with Ian Itz from Iridium Communications on allowing IoT devices to communicate directly with satellites. One Kansas City hacker’s bold marketing campaign ends with a guilty plea.
Remember to leave us a 5-star rating and review in your favorite podcast app.
Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.
CyberWire Guest
Our guest today is Ian Itz, Executive Director at the IoT Line of Business at Iridium Communications. Ian spoke with T-Minus Space Daily host Maria Varmazis on their Deep Space weekend show about how Iridium allows IoT devices, like sensors and trackers, to communicate directly with satellites, bypassing terrestrial infrastructure. We share an excerpt of their conversation on our show today. You can listen to the full conversation on Deep Space. And, be sure to check out T-Minus Space Daily brought to you by N2K CyberWire each weekday on your favorite podcast app.
Selected Reading
Hawaiian Airlines Hit by Cybersecurity Incident (Infosecurity Magazine)
Microsoft to Preview New Windows Endpoint Security Platform After CrowdStrike Outage (SecurityWeek)
CitrixBleed 2 Vulnerability Exploited (Infosecurity Magazine)
Vulnerability Exposed All Open VSX Repositories to Takeover (SecurityWeek)
Prompt injection in malware sample targets AI code analysis tools (SC Media)
Scam compounds labeled a 'living nightmare' as Cambodian government accused of turning a blind eye (The Record)
Bipartisan bill seeks to ban federal agencies from using DeepSeek, AI tools from ‘foreign adversaries’ (The Record)
NSA’s Patrick Ware takes over as top civilian at U.S. Cyber Command (The Record)
Man Who Hacked Organizations to Advertise Security Services Pleads Guilty (SecurityWeek)
Audience Survey
Complete our annual audience survey before August 31.
Want to hear your company in the show?
You too can reach the most influential leaders and operators in the industry. Here’s our media kit. Contact us at [email protected] to request more info.
The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.
Learn more about your ad choices. Visit megaphone.fm/adchoices -
Patches, patches and more patches.A patient death has been linked to the 2023 ransomware attack on an NHS IT provider. U.S. authorities indict the man known online as “IntelBroker”. A suspected cyberattack disrupts Columbia University’s computer systems. A major license plate reader company restricts cross-state data access after reports revealed misuse of its network by police agencies. Our guest is Andy Boyd, former Director of CIA's Center for Cyber Intelligence (CCI) and currently an operating partner at AE Industrial Partners. Discounted parking as a gateway cybercrime.
Remember to leave us a 5-star rating and review in your favorite podcast app.
Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.
CyberWire Guest
Our guest today joins us from this week’s Caveat podcast episode. Andy Boyd, former Director of CIA's Center for Cyber Intelligence (CCI) and currently an operating partner at AE Industrial Partners, a private equity firm focused on the national security and aerospace industries, joins Dave and co-host Ben Yelin to discuss offensive cyber and the United States government. You can listen to the full conversation here and catch new episodes of Caveat every Thursday on your favorite podcast app.
Selected Reading
Cisco reports perfect 10 critical remote code execution flaws in Identity Services Engine (ISE) (Beyond Machines)
Citrix releases emergency patches for actively exploited vulnerability in NetScaler Products (Beyond Machines)
CISA Warns of FortiOS Hard-Coded Credentials Vulnerability Exploited in Attacks (Cyber Security News)
CISA: AMI MegaRAC bug enabling server hijacks exploited in attacks (Bleeping Computer)
Patient's death linked to cyber attack on NHS, hospital trust says | Science, Climate & Tech News (Sky News)
British Man Charged by US in ‘IntelBroker’ Company Data Hacks (Bloomberg)
French police reportedly arrest suspected BreachForums administrators (The Record)
Potential Cyberattack Scrambles Columbia University Computer Systems (The New York Times)
Flock Removes States From National Lookup Tool After ICE and Abortion Searches Revealed (404 Media)
Student allegedly hacked Western Sydney University to get discounted parking and alter academic results | New South Wales (The Guardian)
Audience Survey
Complete our annual audience survey before August 31.
Want to hear your company in the show?
You too can reach the most influential leaders and operators in the industry. Here’s our media kit. Contact us at [email protected] to request more info.
The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.
Learn more about your ad choices. Visit megaphone.fm/adchoices -
Cybercriminals target financial institutions across Africa using open-source tools. Threat actors are using a technique called Authenticode stuffing to abuse ConnectWise remote access software. A fake version of SonicWall’s NetExtender VPN app steals users’ credentials. CISA and the NSA publish a guide urging the adoption of Memory Safe Languages. Researchers identify multiple security vulnerabilities affecting Brother printers. Fake AI-themed websites spread malware. Researchers track a sharp rise in signup fraud. A new Common Good Cyber Fund has been launched to support nonprofits that provide essential cybersecurity services. Tim Starks from CyberScoop joins us to discuss calls for a federal cyberinsurance backstop. A Moscow court says ‘nyet’ to more jail time for cyber crooks.
Remember to leave us a 5-star rating and review in your favorite podcast app.
Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.
CyberWire Guest
We are again joined by Tim Starks, Senior Reporter from CyberScoop. Tim discusses his recent piece on “Federal cyber insurance backstop should be tied to expiring terrorism insurance law, report recommends.”
Selected Reading
Cybercriminals Abuse Open-Source Tools To Target Africa’s Financial Sector (Unit 42)
Hackers Abuse ConnectWise to Hide Malware (SecurityWeek)
Fake SonicWall VPN app steals user credentials (The Register)
CISA Publishes Guide to Address Memory Safety Vulnerabilities in Modern Software Development (GB Hackers)
New Vulnerabilities Expose Millions of Brother Printers to Hacking (SecurityWeek)
Black Hat SEO Poisoning Search Engine Results For AI (ThreatLabz)
Half of Customer Signups Are Now Fraudulent (Infosecurity Magazine)
Common Good Cyber Fund Launched to Support Non-Profit Security Efforts (Infosecurity Magazine)
Russia releases REvil members after convictions for payment card fraud (The Record)
Audience Survey
Complete our annual audience survey before August 31.
Want to hear your company in the show?
You too can reach the most influential leaders and operators in the industry. Here’s our media kit. Contact us at [email protected] to request more info.
The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.
Learn more about your ad choices. Visit megaphone.fm/adchoices -
Cybersecurity warnings about possible Iranian retaliation have surged. A potential act of sabotage disrupts the NATO Summit in The Hague. Canadian cybersecurity officials discover Salt Typhoon breached a major telecom provider. The U.S. House bans WhatsApp from all government devices. APT28 uses Signal chats in phishing campaigns targeting Ukrainian government entities. A China-linked APT has built a covert network of over 1,000 compromised devices for long-term espionage. FileFix is a new variant of the well-known ClickFix method. SparkKitty targets Android and iOS users for image theft. Scammers steal $4 million from Coinbase users by posing as support staff. On today’s Threat Vector, host David Moulton sits down with Tyler Shields, Principal Analyst at ESG, to discuss the fine line between thought leadership and echo chambers in the industry. War Thunder gamers just can’t resist state secrets.
Remember to leave us a 5-star rating and review in your favorite podcast app.
Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.
Threat Vector Segment
In this segment of Threat Vector, host David Moulton sits down with Tyler Shields, Principal Analyst at ESG, entrepreneur, and cybersecurity marketing expert, to discuss the fine line between thought leadership and echo chambers in the industry. You can hear David and Tyler's full discussion on Threat Vector here and catch new episodes every Thursday on your favorite podcast app.
Selected Reading
Warnings Ratchet Over Iranian Cyberattack (BankInfoSecurity)
NATO Summit in The Hague hit by potential sabotage as rail cables set on fire (The Record)
Canada says Salt Typhoon hacked telecom firm via Cisco flaw (BleepingComputer)
Scoop: WhatsApp banned on House staffers' devices (Axios)
APT28 hackers use Signal chats to launch new malware attacks on Ukraine (Bleeping Computer)
Chinese APT Hacking Routers to Build Espionage Infrastructure (SecurityWeek)
FileFix - A ClickFix Alternative (mr.d0x)
Photo-Stealing Spyware Sneaks Into Apple App Store, Google Play (SecurityWeek)
Hackers Impersonate Coinbase User Support To Scam Victims of $4,000,000 Before Blowing Most of Money on Gambling: ZachXBT (The Daily Hodl)
Reset the clock! War Thunder fan posts restricted Harrier data to game forum (Cyber Daily)
Audience Survey
Complete our annual audience survey before August 31.
Want to hear your company in the show?
You too can reach the most influential leaders and operators in the industry. Here’s our media kit. Contact us at [email protected] to request more info.
The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.
Learn more about your ad choices. Visit megaphone.fm/adchoices -
US warns of heightened risk of Iranian cyberattacks. Cyber warfare has become central to Israel and Iran’s strategies. Oxford City Council discloses data breach. Europe aiming for digital sovereignty. Michigan hospital network says data belonging to 740,000 was stolen by ransomware gang. RapperBot pivoting to attack DVRs. A picture worth a thousand wallets. New Zealand’s public sector bolsters cyber defenses. On our Industry Voices segment today, we are joined by Imran Umar, Zero Trust Lead at Booz Allen Hamilton, discussing Zero Trust and Thunderdome. And a cyberattack spoils Russia’s dairy flow.
Remember to leave us a 5-star rating and review in your favorite podcast app.
Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.CyberWire Guest
On our Industry Voices segment today, we are joined by Imran Umar, Zero Trust Lead at Booz Allen Hamilton, discussing Zero Trust and Thunderdome. Hear the full conversation here. Find resources below to learn more about the topic Imran discusses.
For additional information:
Zero Trust, More Confidence
Zero Trust: Translating Results into Action
Selected Reading
US Warns of Heightened Risk of Iranian Cyber-Attacks After Military Strikes (Infosecurity Magazine)
Bank hacks, internet shutdowns and crypto heists: Here’s how the war between Israel and Iran is playing out in cyberspace (Politico)
Oxford City Council suffers breach exposing two decades of data (Bleeping Computer)
Europeans seek 'digital sovereignty' as US tech firms embrace Trump (Reuters)
Data of more than 740,000 stolen in ransomware attack on Michigan hospital network (The Record)
RapperBot Attacking DVRs to Gain Access Over Surveillance Cameras to Record Video (Cyber Security News)
CoinMarketCap Doodle Image Vulnerability Lets Attackers Run Malicious Code via API Call (GB Hackers)
NZ NCSC mandates minimum cybersecurity baseline for public sector agencies, sets October deadline (Industrial Cyber)
Russian dairy supply disrupted by cyberattack on animal certification system (The Record)
Audience Survey
Complete our annual audience survey before August 31.
Want to hear your company in the show?
You too can reach the most influential leaders and operators in the industry. Here’s our media kit. Contact us at [email protected] to request more info.
The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.
Learn more about your ad choices. Visit megaphone.fm/adchoices -
Please enjoy this encore of Career Notes.
Jadee Hanson, CIO and CISO at Code 42, started her technology journey thanks to the help of a teacher in high school. She began college studying computer science and ended with a degree in computer information systems as it had more of the business side. Working in the private sector for companies such as Deloitte, Target and Code 42, Jadee gained experience and specialized in insider risk. She notes "utopia for me and my team is to get to a spot where the team is just firing on all cylinders and being really proactive about what's coming and what's changing." Jadee mentions she tries hard to do things that might scare her every day. For those interested in the field, especially young women, Jadee recommends they get involved and then stay curious. We thank Jadee for sharing her story with us.
Learn more about your ad choices. Visit megaphone.fm/adchoices -
Dustin Childs, Head of Threat Awareness at Trend Micro Zero Day Initiative, joins to discuss their work on "ZDI-23-1527 and ZDI-23-1528: The Potential Impact of Overly Permissive SAS Tokens on PC Manager Supply Chains." The research explores two critical vulnerabilities (ZDI-23-1527 and ZDI-23-1528) that could have enabled attackers to hijack the Microsoft PC Manager supply chain via overly permissive SAS tokens in WinGet and official Microsoft domains.
While the issues have since been resolved, the findings highlight how misconfigured cloud storage access can put trusted software distribution at risk. The post also includes detection strategies to help defenders identify and mitigate similar threats.
The research can be found here:
ZDI-23-1527 and ZDI-23-1528: The Potential Impact of Overly Permissive SAS Tokens on PC Manager Supply Chains
Learn more about your ad choices. Visit megaphone.fm/adchoices -
An historic data breach that wasn’t. Aflac says it stopped a ransomware attack. Cloudflare thwarts a record breaking DDoS attack. Mocha Manakin combines clever social engineering with custom-built malware. The Godfather Android trojan uses a sophisticated virtualization technique to hijack banking and crypto apps. A British expert on Russian information warfare is targeted in a sophisticated spear phishing campaign. A federal judge dismisses a lawsuit against CrowdStrike filed by airline passengers. Banana Squad disguises malicious code as legitimate open-source software. The U.S. Justice Department wants to seize over $225 million in cryptocurrency linked to romance and investment scams. Ben Yelin explains the recent Oversight Committee request for Microsoft to hand over GitHub logs related to alleged DOGE misconduct. This one weird audio trick leaves AI scam calls speechless.
Remember to leave us a 5-star rating and review in your favorite podcast app.
Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.
CyberWire Guest
Today, we are joined Ben Yelin, co host of Caveat podcast and Program Director for Public Policy & External Affairs at the University of Maryland Center for Health and Homeland Security, discussing the recent Oversight Committee request for Microsoft to hand over GitHub logs related to alleged misconduct by Elon Musk’s "Department of Government Efficiency" (DOGE). You can learn more here.
Selected Reading
No, the 16 billion credentials leak is not a new data breach (Bleeping Computer)
Aflac says it stopped ransomware attack launched by ‘sophisticated cybercrime group’ (The Record)
Record-Breaking 7.3 Tbps DDoS Attack Targets Hosting Provider (SecurityWeek)
New Mocha Manakin Malware Deploys NodeInitRAT via Clickfix Attack (Hackread)
Godfather Android Trojan Creates Sandbox on Infected Devices (SecurityWeek)
Russia Expert Falls Prey to Elite Hackers Disguised as US Officials (Infosecurity Magazine)
Judge Axes Flight Disruption Suit Tied to CrowdStrike Outage (GovInfo Security)
Banana Squad Hides Data-Stealing Malware in Fake GitHub Repositories (Hackread)
DOJ moves to seize $225 million in crypto stolen by scammers (The Record)
Boffins devise voice-altering tech to jam 'vishing' ploys (The Register)
Audience Survey
Complete our annual audience survey before August 31.
Want to hear your company in the show?
You too can reach the most influential leaders and operators in the industry. Here’s our media kit. Contact us at [email protected] to request more info.
The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.
Learn more about your ad choices. Visit megaphone.fm/adchoices -
We put together an open conversation between our podcast hosts, CyberWire Daily's Dave Bittner, T-Minus Space Daily’s Maria Varmazis, and CISO Perspectives podcast’s Kim Jones. Their conversation goes deeper than just the historical significance of Juneteenth, diving into candid conversations on allyship, representation, and the enduring value of diversity in the cybersecurity and space fields. Grab your coffee and join us in the room.
Resources:
Juneteenth
CISO Perspectives podcast:
Does diversity matter in cyber?
Mid season reflection with Kim Jones.
T-Minus Space Daily podcast:
Dr. Sian Proctor sharing her poem "Space to Inspire" on Instagram.
Deep Space: Inspiration4 with Dr. Sian “Leo” Proctor.
Learn more about your ad choices. Visit megaphone.fm/adchoices -
Viasat confirms it was breached by Salt Typhoon. Microsoft’s June 2025 security update giveth, and Microsoft’s June 2025 security update taketh away. Local privilege escalation flaws grant root access on major Linux distributions. BeyondTrust patches a critical remote code execution flaw. SMS low cost routing exposes users to serious risks. Erie Insurance says their ongoing outage isn’t ransomware. Backups are no good if you can’t find them. Veeam patches a critical vulnerability in its Backup software. SuperCard malware steals payment card data for ATM fraud and direct bank transfers. We preview our Juneteenth special edition. Backing up humanity.
Remember to leave us a 5-star rating and review in your favorite podcast app.
Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.
CyberWire Guest
Today, we are sharing an excerpt of our Juneteenth Special Edition conversation between Dave Bittner, T-Minus Space Daily’s Maria Varmazis, and CISO Perspectives podcast’s Kim Jones. Enjoy this discussion on the eve of Juneteenth and tune into your CyberWire Daily feed tomorrow on your favorite podcast app to hear the full conversation.
Selected Reading
Viasat hacked by China-backed Salt Typhoon in 2024 US telecom attacks (Cybernews)
Microsoft's June Patches Unleash a Cascade of Critical Failures (WinBuzzer)
New Linux udisks flaw lets attackers get root on major Linux distros (Bleeping Computer)
BeyondTrust warns of pre-auth RCE in Remote Support software (Bleeping Computer)
Two Factor Insecurity (Lighthouse Reports)
Erie Insurance: ‘No Evidence’ of Ransomware in Network Outage (Insurance Journal)
Half of organizations struggle to locate backup data, report finds (SC Media)
New Veeam RCE flaw lets domain users hack backup servers (Bleeping Computer)
Russia detects first SuperCard malware attacks skimming bank data via NFC (The Record)
Why one man is archiving human-made content from before the AI explosion (Ars Technica)
Audience Survey
Complete our annual audience survey before August 31.
Want to hear your company in the show?
You too can reach the most influential leaders and operators in the industry. Here’s our media kit. Contact us at [email protected] to request more info.
The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.
Learn more about your ad choices. Visit megaphone.fm/adchoices -
A House oversight committee requests DOGE documents from Microsoft. Predatory Sparrow claims a cyberattack on an Iranian bank. Microsoft says data that happens in Europe will stay in Europe. A complex malware campaign is using heavily obfuscated Visual Basic files to deploy RATs. A widely used CMS platform suffers potential RCE bugs. North Korea’s Kimsuky targets academic institutions using password-protected research documents. Asus patches a high-severity vulnerability in its Armoury Crate software. CISA’s new leader remains in confirmation limbo. Our guest is Brian Downey, VP of Product Management from Barracuda, talking about how security sprawl increases risk. Operation Fluffy Narwhal thinks it’s time to rethink adversary naming.
Remember to leave us a 5-star rating and review in your favorite podcast app.
Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.
CyberWire Guest
We are joined by Brian Downey, VP of Product Marketing and Product Management from Barracuda, talking about how security sprawl increases risk. You can find more information about what Brian discussed here.
Selected Reading
Following Whistleblower Reports, Acting Ranking Member Lynch Demands Microsoft Hand Over Information on DOGE’s Misconduct at NLRB | The Committee on Oversight and Accountability Democrats (House Committee on Oversight and Government Reform)
Pro-Israel hackers claim breach of Iranian bank amid military escalation (The Record)
Microsoft lays out data protection plans for European cloud customers (Reuters)
New Sophisticated Multi-Stage Malware Campaign Weaponizes VBS Files to Execute PowerShell Script (Cyber Security News)
Chained Flaws in Enterprise CMS Provider Sitecore Could Allow RCE (Infosecurity Magazine)
Beware of Weaponized Research Papers That Delivers Malware Via Password-Protected Documents (Cyber Security News)
Organizations Warned of Vulnerability Exploited Against Discontinued TP-Link Routers (SecurityWeek)
Asus Armoury Crate Vulnerability Leads to Full System Compromise (SecurityWeek)
Trump’s Pick to Lead CISA is Stuck in Confirmation Limbo (Gov Infosecurity)
Call Them What They Are: Time to Fix Cyber Threat Actor Naming (Just Security)
Audience Survey
Complete our annual audience survey before August 31.
Want to hear your company in the show?
You too can reach the most influential leaders and operators in the industry. Here’s our media kit. Contact us at [email protected] to request more info.
The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.
Learn more about your ad choices. Visit megaphone.fm/adchoices -
International law enforcement takes down a darknet drug marketplace. The Washington Post is investigating a cyberattack targeting several journalists' email accounts. Anubis ransomware adds destructive capabilities. The GrayAlpha threat group uses fake browser update pages to deliver advanced malware. Researchers uncover a stealthy malware campaign that hides a malicious payload in a JPEG image. Tenable patches three high-severity vulnerabilities in Nessus Agent. Attackers can disable Secure Boot on many Windows devices by exploiting a firmware flaw. Lawmakers introduce a bipartisan bill to strengthen coordination between CISA and HHS. Harry Coker reflects on his tenure as National Cyber Director. Maria Varmazis checks in with Brandon Karpf on agentic AI. When online chatbots overshare, it’s no laughing Meta.
CyberWire Guest
Joining us today to discuss Agentic AI and it relates to cybersecurity and space with T-Minus Space Daily host Maria Varmazis is Brandon Karpf, friend of the show, founder of T-Minus Space Daily, and cybersecurity expert.
Selected Reading
Police seizes Archetyp Market drug marketplace, arrests admin (Bleeping Computer)
Washington Post investigating cyberattack on journalists' email accounts, source says (Reuters)
Anubis Ransomware Packs a Wiper to Permanently Delete Files (SecurityWeek)
GrayAlpha Hacker Group Weaponizes Browser Updates to Deploy PowerNet Loader and NetSupport RAT (Cyber Security News)
Malicious Payload Uncovered in JPEG Image Using Steganography and Base64 Obfuscation (Cyber Security News)
Tenable Fixes Three High-Severity Flaws in Vulnerability Scanner Nessus (Infosecurity Magazine)
Microsoft-Signed Firmware Module Bypasses Secure Boot (Gov Infosecurity)
Bipartisan bill aims to create CISA-HHS liaison for hospital cyberattacks (The Record)
Coker: We can’t have economic prosperity or national security without cybersecurity (The Record)
The Meta AI app is a privacy disaster (TechCrunch)
Audience Survey
Complete our annual audience survey before August 31.
Want to hear your company in the show?
You too can reach the most influential leaders and operators in the industry. Here’s our media kit. Contact us at [email protected] to request more info.
The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.
Learn more about your ad choices. Visit megaphone.fm/adchoices - Se mer