惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

美团技术团队
T
The Blog of Author Tim Ferriss
月光博客
月光博客
阮一峰的网络日志
阮一峰的网络日志
Engineering at Meta
Engineering at Meta
量子位
I
InfoQ
Jina AI
Jina AI
Microsoft Security Blog
Microsoft Security Blog
H
Help Net Security
H
Hackread – Cybersecurity News, Data Breaches, AI and More
G
Google Developers Blog
J
Java Code Geeks
Recent Announcements
Recent Announcements
aimingoo的专栏
aimingoo的专栏
小众软件
小众软件
V
V2EX
腾讯CDC
P
Proofpoint News Feed
A
About on SuperTechFans
爱范儿
爱范儿
U
Unit 42
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
Last Week in AI
Last Week in AI

Risky Business

Risky Business #840 -- Microsoft walks back researcher threats Risky Business #839 -- TeamPCP stole GitHub's internal repos Risky Business #838 -- GitHub investigates possible breach Soap Box: Where does AI fit into cloud security? Risky Business #837 -- GitHub Actions footgun claims TanStack Risky Business #836 -- You can't patch the bugpocalypse Snake Oilers: Ent AI, Spacewalk and Mondoo Risky Business #835 -- Why the Fast16 malware is badass Risky Business #834 -- Vercel gets owned, Mozilla dumps hundreds of Mythos bugs Risky Business #833 -- The Great Mythos Freakout of 2026 Snake Oilers: Burp AI, Sondera and Truffle Security Risky Business #832 -- Anthropic unveils magical 0day computer God How the World Got Owned Episode 2: The 1990s, Part One Risky Business #831 -- The AI bugpocalypse begins Soap Box: Red teaming AI systems with SpecterOps Risky Business #830 -- LiteLLM and security scanner supply chains compromised Risky Business #829 -- Sneaky lobsters: Why AI is the new insider threat Risky Biz Soap Box: It took a decade, but allowlisting is cool again Risky Business #828 -- The Coruna exploits are truly exquisite Risky Business #827 -- Iranian cyber threat actors are down but not out Risky Business #826 -- A week of AI mishaps and skulduggery Risky Biz Soap Box: The lethal trifecta of AI risks Risky Business #825 -- Palo Alto Networks blames it on the boogie Risky Business #824 -- Microsoft's Secure Future is looking a bit wobbly Risky Business #823 -- Humans impersonate clawdbots impersonating humans Risky Business #822 -- France will ditch American tech over security risks Risky Business #821 -- Wiz researchers could have owned every AWS customer Risky Business #820 -- Asian fraud kingpin will face Chinese justice (pew pew!) How the World Got Owned Episode 1: The 1980s Risky Business #819 -- Venezuela (credibly?!) blames USA for wiper attack
Risky Business #778 -- Musk's child soldiers seize contro...
Adam Boileau · 2025-02-05 · via Risky Business

Risky Business Podcast

February 05, 2025

Presented by

Adam Boileau

Adam Boileau

Co-host at large

Patrick Gray

Patrick Gray

CEO and Publisher

On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news, including:

  • DeepSeek leaves an unauthed database on the internet
  • Russia hacked UK prime minister’s personal mail
  • Australia sanctions a Telegram group… which is more sensible than it sounds
  • Medical device backdoor turns out to be just poorly thought out upgrade feature
  • Google abuses weak hashing to patch AMD CPU microcode
  • And much, much more.

This week’s episode is sponsored by email security boffins Sublime. Their co-founder and CEO Josh Kamdjou joins to talk about how attackers’ abuse of legitimate services like Docusign is a challenge for email security vendors.

This episode is also available on Youtube.

Your browser does not support the audio element.

Risky Business #778 -- Musk's child soldiers seize control of FedGov IT systems

0:00 / 56:28

Subscribe  

Logo

Sublime Security Logo

Brought to you by Sublime Security

Agentic AI that stops email attacks at adversary speed

Show notes

Exclusive: Musk aides lock workers out of OPM computer systems | Reuters

Wiz Research Uncovers Exposed DeepSeek Database Leaking Sensitive Information, Including Chat History | Wiz Blog

Криптостилер SparkCat в магазинах Google Play и App Store | Securelist

Russian hackers suspected of compromising British PM’s personal email account | The Record from Recorded Future News

PowerSchool hack: missed basic security step resulted in data breach

Australia sanctions ‘Terrorgram’ white supremacist online group | The Record from Recorded Future News

‘Paid actors’ could be behind some antisemitic attacks, Albanese says | Australian security and counter-terrorism | The Guardian

Interview with James Glenday, ABC News Breakfast | Australian Minister for Foreign Affairs

WhatsApp says spyware company Paragon Solutions targeted journalists

Spyware maker Paragon confirms US government is a customer | TechCrunch

Former Polish justice minister arrested in sprawling spyware probe | The Record from Recorded Future News

Sweden releases suspected ship, says cable break ‘clearly’ not sabotage | The Record from Recorded Future News

Backdoor found in two healthcare patient monitors, linked to IP in China

Attackers exploit zero-day vulnerability in Zyxel CPE devices | Cybersecurity Dive

AMD: Microcode Signature Verification Vulnerability · Advisory · google/security-research · GitHub

22-year-old math wiz indicted for alleged DeFI hack that stole $65M - Ars Technica

A method to assess 'forgivable' vs 'unforgivable'... - NCSC.GOV.UK

Living Off the Land: Credential Phishing via Docusign abuse

Living Off the Land: Callback Phishing via Docusign comment

B2B freight-forwarding scams on the rise to evade financial fraud crackdowns

Callback phishing via invoice abuse and distribution list relays

Enhanced message groups: Improving efficiency in email incident response