惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Recent Announcements
Recent Announcements
爱范儿
爱范儿
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
宝玉的分享
宝玉的分享
T
Tailwind CSS Blog
博客园_首页
IT之家
IT之家
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
博客园 - 三生石上(FineUI控件)
有赞技术团队
有赞技术团队
大猫的无限游戏
大猫的无限游戏
雷峰网
雷峰网
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
博客园 - 司徒正美
WordPress大学
WordPress大学
Last Week in AI
Last Week in AI
人人都是产品经理
人人都是产品经理
Jina AI
Jina AI
月光博客
月光博客
小众软件
小众软件
S
SegmentFault 最新的问题
量子位
阮一峰的网络日志
阮一峰的网络日志
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知

Risky Business

Risky Business #840 -- Microsoft walks back researcher threats Risky Business #839 -- TeamPCP stole GitHub's internal repos Risky Business #838 -- GitHub investigates possible breach Soap Box: Where does AI fit into cloud security? Risky Business #837 -- GitHub Actions footgun claims TanStack Risky Business #836 -- You can't patch the bugpocalypse Snake Oilers: Ent AI, Spacewalk and Mondoo Risky Business #835 -- Why the Fast16 malware is badass Risky Business #834 -- Vercel gets owned, Mozilla dumps hundreds of Mythos bugs Risky Business #833 -- The Great Mythos Freakout of 2026 Snake Oilers: Burp AI, Sondera and Truffle Security Risky Business #832 -- Anthropic unveils magical 0day computer God How the World Got Owned Episode 2: The 1990s, Part One Risky Business #831 -- The AI bugpocalypse begins Soap Box: Red teaming AI systems with SpecterOps Risky Business #830 -- LiteLLM and security scanner supply chains compromised Risky Business #829 -- Sneaky lobsters: Why AI is the new insider threat Risky Biz Soap Box: It took a decade, but allowlisting is cool again Risky Business #828 -- The Coruna exploits are truly exquisite Risky Business #827 -- Iranian cyber threat actors are down but not out Risky Business #826 -- A week of AI mishaps and skulduggery Risky Biz Soap Box: The lethal trifecta of AI risks Risky Business #825 -- Palo Alto Networks blames it on the boogie Risky Business #824 -- Microsoft's Secure Future is looking a bit wobbly Risky Business #823 -- Humans impersonate clawdbots impersonating humans Risky Business #822 -- France will ditch American tech over security risks Risky Business #821 -- Wiz researchers could have owned every AWS customer Risky Business #820 -- Asian fraud kingpin will face Chinese justice (pew pew!) How the World Got Owned Episode 1: The 1980s Risky Business #819 -- Venezuela (credibly?!) blames USA for wiper attack
Risky Business #793 -- Scattered Spider is hijacking MX r...
Adam Boileau · 2025-05-28 · via Risky Business

Risky Business Podcast

May 28, 2025

Presented by

Adam Boileau

Adam Boileau

Co-host at large

Patrick Gray

Patrick Gray

CEO and Publisher

In this week’s edition of Risky Business Dmitri Alperovitch and Adam Boileau join Patrick Gray to talk through the week’s news, including:

  • EXCLUSIVE: A Scattered Spider-style crew is hijacking DNS MX entries and compromising enterprises within minutes
  • The SVG format brings the all horrors of HTML+JS to image files, and attackers have noticed
  • Brian Krebs eats a 6.3Tbps DDoS … ‘cause that’s how you demo your packet cannon
  • Law enforcement takes out Lumma Stealer, Qakbot, Danabot and some dark web drug traffickers
  • Iranian behind 2019 Baltimore ransomware mysteriously appears in North Carolina and pleads guilty
  • CISA’s leadership is fleeing in droves, even though the US needs them more than ever.

This week’s episode is sponsored by Thinkst Canary. Long time friend of the show Haroon Meer joins and talks through where he feels the industry is at, having just returned home from the AI-fueled hype at this year’s RSA conference.

This episode is also available on Youtube.

Your browser does not support the audio element.

Risky Business #793 -- Scattered Spider is hijacking MX records

0:00 / 64:52

Logo

Show notes

China-linked ‘Silk Typhoon’ hackers accessed Commvault cloud environments, person familiar says - Nextgov/FCW

Risky Bulletin: SVG use for phishing explodes in 2025 - Risky Business Media

KrebsOnSecurity Hit With Near-Record 6.3 Tbps DDoS – Krebs on Security

Midwestern telco Cellcom confirms cyber incident after days of service outages | The Record from Recorded Future News

Microsoft leads international takedown of Lumma Stealer | Cybersecurity Dive

Who said what? on X: "Message from the administrator of Lumma Stealer on the forums about the recent events🕊️👀 https://t.co/MOjCSMMErK" / X

Ransomware hackers charged, infrastructure dismantled in international law enforcement operation | The Record from Recorded Future News

Oops: DanaBot Malware Devs Infected Their Own PCs – Krebs on Security

DOJ charges man allegedly behind Qakbot malware | The Record from Recorded Future News

US, Europol arrest 270 dark web drug traffickers in Operation RapTor | The Record from Recorded Future News

Iranian pleads guilty to launching Baltimore ransomware attack, faces 30 years behind bars | The Record from Recorded Future News

Decentralized crypto platform Cetus hit with $223 million hack | The Record from Recorded Future News

Nearly 70,000 impacted by Coinbase breach involving $20 million ransom demand | The Record from Recorded Future News

USA: Crypto investor charged with kidnapping, torturing man in an NYC apartment

Vietnam orders ban on Telegram messaging app over security concerns | The Record from Recorded Future News

Exclusive: Hacker who breached communications app used by Trump aide stole data from across US government | Reuters

CISA loses nearly all top officials as purge continues | Cybersecurity Dive

White House dismisses scores of National Security Council staff - The Washington Post