惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

小众软件
小众软件
博客园 - Franky
罗磊的独立博客
G
Google Developers Blog
The GitHub Blog
The GitHub Blog
P
Proofpoint News Feed
Recent Announcements
Recent Announcements
V
V2EX
F
Fortinet All Blogs
阮一峰的网络日志
阮一峰的网络日志
Blog — PlanetScale
Blog — PlanetScale
月光博客
月光博客
U
Unit 42
GbyAI
GbyAI
A
About on SuperTechFans
WordPress大学
WordPress大学
Engineering at Meta
Engineering at Meta
雷峰网
雷峰网
Microsoft Azure Blog
Microsoft Azure Blog
Martin Fowler
Martin Fowler
D
DataBreaches.Net
The Cloudflare Blog
H
Hackread – Cybersecurity News, Data Breaches, AI and More
MongoDB | Blog
MongoDB | Blog

Risky Business

Risky Business #840 -- Microsoft walks back researcher threats Risky Business #839 -- TeamPCP stole GitHub's internal repos Risky Business #838 -- GitHub investigates possible breach Soap Box: Where does AI fit into cloud security? Risky Business #837 -- GitHub Actions footgun claims TanStack Risky Business #836 -- You can't patch the bugpocalypse Snake Oilers: Ent AI, Spacewalk and Mondoo Risky Business #835 -- Why the Fast16 malware is badass Risky Business #834 -- Vercel gets owned, Mozilla dumps hundreds of Mythos bugs Risky Business #833 -- The Great Mythos Freakout of 2026 Snake Oilers: Burp AI, Sondera and Truffle Security Risky Business #832 -- Anthropic unveils magical 0day computer God How the World Got Owned Episode 2: The 1990s, Part One Risky Business #831 -- The AI bugpocalypse begins Soap Box: Red teaming AI systems with SpecterOps Risky Business #830 -- LiteLLM and security scanner supply chains compromised Risky Business #829 -- Sneaky lobsters: Why AI is the new insider threat Risky Biz Soap Box: It took a decade, but allowlisting is cool again Risky Business #828 -- The Coruna exploits are truly exquisite Risky Business #827 -- Iranian cyber threat actors are down but not out Risky Business #826 -- A week of AI mishaps and skulduggery Risky Biz Soap Box: The lethal trifecta of AI risks Risky Business #825 -- Palo Alto Networks blames it on the boogie Risky Business #824 -- Microsoft's Secure Future is looking a bit wobbly Risky Business #823 -- Humans impersonate clawdbots impersonating humans Risky Business #822 -- France will ditch American tech over security risks Risky Business #821 -- Wiz researchers could have owned every AWS customer Risky Business #820 -- Asian fraud kingpin will face Chinese justice (pew pew!) How the World Got Owned Episode 1: The 1980s Risky Business #819 -- Venezuela (credibly?!) blames USA for wiper attack
Risky Business #772 -- Salt Typhoon is truly a national s...
Patrick Gray · 2024-11-27 · via Risky Business

Risky Business Podcast

November 27, 2024

Presented by

Patrick Gray

Patrick Gray

CEO and Publisher

Adam Boileau

Adam Boileau

Co-host at large

On this week’s show, Patrick Gray and Adam Boileau discuss the week’s cybersecurity news, including:

  • A ransomware attack has crippled US supply chain software provider Blue Yonder
  • Russian spies hack nearby wifi to get to their targets, but that doesn’t seem surprising?
  • Salt Typhoon’s attacks on telcos are hard to solve and big on impact
  • China’s surveillance state workers sell their access at home
  • Palo Alto is bad and should feel bad
  • And much, much more.

In this week’s sponsor interview Patrick Gray chats with Matt Muller from Tines about Gartner’s “spicy take” that the SOAR category is dead. SOAR is dead! Long live SOAR!

This episode is also available on Youtube.

Your browser does not support the audio element.

Risky Business #772 -- Salt Typhoon is truly a national security disaster

0:00 / 61:05

Subscribe  

Logo

tines Logo

Brought to you by tines

The smart, secure workflow builder

Show notes

Retailers struggle after ransomware attack on supply chain tech provider Blue Yonder | The Record from Recorded Future News

Customer Update

Russian Spies Jumped From One Network to Another Via Wi-Fi in an Unprecedented Hack | WIRED

China’s Salt Typhoon hackers target telecom firms in Southeast Asia with new malware | The Record from Recorded Future News

Emerging Details of Chinese Hack Leave U.S. Officials Increasingly Concerned

Top senator calls Salt Typhoon “worst telecom hack in our nation’s history” - The Washington Post

Privacy-focused mobile phone launches for high-risk individuals | CyberScoop

China’s Surveillance State Is Selling Citizen Data as a Side Hustle | WIRED

Former Verizon employee gets four-year sentence for sharing cyber secrets with Chinese government | The Record from Recorded Future News

Surveillance Legislation (Confirmation of Application) Bill 2024 – Parliament of Australia

ParlInfo - BILLS : Surveillance Legislation (Confirmation of Application) Bill 2024 : Second Reading

ParlInfo - Surveillance Legislation (Confirmation of Application) Bill 2024

ParlInfo - Surveillance Legislation (Confirmation of Application) Bill 2024

Chris Bing: "Regarding the reported hack of the Gaetz-ethics committee report, the file storage platform (FileShare) that held the document said they weren't hacked. But rather: "this file was shared anonymously which allowed anyone to download. This was not a breach"" — Bluesky

Tether Has Become a Massive Money Laundering Tool for Mexican Drug Traffickers, Feds Say

Palo Alto Networks boasts as customers coalesce on its platforms | Cybersecurity Dive

Palo Alto Networks pushes back as Shadowserver spots 2K of its firewalls exploited | Cybersecurity Dive

RSF investigation: the Indian cyber-security giant silencing media outlets worldwide | RSF

Patrick Gray (@patrick.risky.biz) — Bluesky

metlstorm (@metlstorm.risky.biz) — Bluesky

Catalin Cimpanu (@campuscodi.risky.biz) — Bluesky

Tom Uren (@tom.risky.biz) — Bluesky