惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

S
SegmentFault 最新的问题
J
Java Code Geeks
V
V2EX
Blog — PlanetScale
Blog — PlanetScale
博客园 - 司徒正美
Hugging Face - Blog
Hugging Face - Blog
F
Fortinet All Blogs
aimingoo的专栏
aimingoo的专栏
B
Blog
A
About on SuperTechFans
有赞技术团队
有赞技术团队
月光博客
月光博客
Microsoft Azure Blog
Microsoft Azure Blog
阮一峰的网络日志
阮一峰的网络日志
腾讯CDC
美团技术团队
大猫的无限游戏
大猫的无限游戏
爱范儿
爱范儿
N
Netflix TechBlog - Medium
C
Check Point Blog
Recent Announcements
Recent Announcements
博客园 - Franky
博客园 - 叶小钗
T
Tailwind CSS Blog

Risky Business

Risky Business #840 -- Microsoft walks back researcher threats Risky Business #839 -- TeamPCP stole GitHub's internal repos Risky Business #838 -- GitHub investigates possible breach Soap Box: Where does AI fit into cloud security? Risky Business #837 -- GitHub Actions footgun claims TanStack Risky Business #836 -- You can't patch the bugpocalypse Snake Oilers: Ent AI, Spacewalk and Mondoo Risky Business #835 -- Why the Fast16 malware is badass Risky Business #834 -- Vercel gets owned, Mozilla dumps hundreds of Mythos bugs Risky Business #833 -- The Great Mythos Freakout of 2026 Snake Oilers: Burp AI, Sondera and Truffle Security Risky Business #832 -- Anthropic unveils magical 0day computer God How the World Got Owned Episode 2: The 1990s, Part One Risky Business #831 -- The AI bugpocalypse begins Soap Box: Red teaming AI systems with SpecterOps Risky Business #830 -- LiteLLM and security scanner supply chains compromised Risky Business #829 -- Sneaky lobsters: Why AI is the new insider threat Risky Biz Soap Box: It took a decade, but allowlisting is cool again Risky Business #828 -- The Coruna exploits are truly exquisite Risky Business #827 -- Iranian cyber threat actors are down but not out Risky Business #826 -- A week of AI mishaps and skulduggery Risky Biz Soap Box: The lethal trifecta of AI risks Risky Business #825 -- Palo Alto Networks blames it on the boogie Risky Business #824 -- Microsoft's Secure Future is looking a bit wobbly Risky Business #823 -- Humans impersonate clawdbots impersonating humans Risky Business #822 -- France will ditch American tech over security risks Risky Business #821 -- Wiz researchers could have owned every AWS customer Risky Business #820 -- Asian fraud kingpin will face Chinese justice (pew pew!) How the World Got Owned Episode 1: The 1980s Risky Business #819 -- Venezuela (credibly?!) blames USA for wiper attack
Risky Business #790 -- Bye bye Signal-gate, hello TeleMes...
Adam Boileau · 2025-05-07 · via Risky Business

Risky Business Podcast

May 07, 2025

Presented by

Adam Boileau

Adam Boileau

Co-host at large

Patrick Gray

Patrick Gray

CEO and Publisher

On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news:

  • White House’s off-brand Israeli Signal fork logs cleartext messages with hard coded creds while getting hacked (twice). Just … Wow.
  • Ransomware attacks on UK retailers are linked, and Marks & Spencer has it extra bad
  • After six years dormant, a Magento eCommerce platform backdoor comes to life
  • The North Korean IT worker scam is truly webscale
  • NSO group owes Meta $168m for hacking WhatsApp

This week’s episode is sponsored by vulnerability management wranglers, Nucleus Security. Aaron Unterberger joins to talk through the complexities of tracking vulnerabilities in cloud components - left to the source, right to the deployments, and …sideways into the sidecars?

This week’s show also features an excerpt from Pat’s interview with Senator Mark Warner - Scoot back one in your podcast feed to check out the full chat, or find it on Youtube.

This episode is available on Youtube too.

Your browser does not support the audio element.

Risky Business #790 -- Bye bye Signal-gate, hello TeleMessage-gate

0:00 / 56:12

Logo

Show notes

Mike Waltz Accidentally Reveals Obscure App the Government Is Using to Archive Signal Messages

Despite misleading marketing, Israeli company TeleMessage, used by Trump officials, can access plaintext chat logs

The Signal Clone the Trump Admin Uses Was Hacked

App used by Mike Waltz suspends services after hacking claims

Senator Demands Investigation into Trump Admin Signal Clone After 404 Media Investigation

MG on X: "Looks like TeleMessage was probably procured and rolled out under Biden. There are public records for it. https://t.co/XCuZpi8PL3" / X

Harrods becomes latest retailer to announce attempted cyberattack | The Record from Recorded Future News

Co-op DragonForce cyber attack includes customer data, firm admits

Co-op cyber attack: Staff told to keep cameras on in meetings

Hundreds of e-commerce sites hacked in supply-chain attack - Ars Technica

Microsoft’s new “passwordless by default” is great but comes at a cost - Ars Technica

Windows RDP lets you log in using revoked passwords. Microsoft is OK with that. - Ars Technica

North Korean operatives have infiltrated hundreds of Fortune 500 companies | CyberScoop

US wants to cut off key player in Southeast Asian cybercrime industry | The Record from Recorded Future News

Myanmar militia leader sanctioned by US over cyber scam connections | The Record from Recorded Future News

Trump proposes major cut to CISA’s budget, citing false ‘censorship’ claims | Cybersecurity Dive

NSA to cut up to 2,000 civilian roles as part of intel community downsizing | The Record from Recorded Future News

NSO Group owes $168M in damages to WhatsApp over spyware infections, jury says | CyberScoop