A new member of the Winnti Cluster is described. Cobalt Strike used against unpatched...
A new member of the Winnti Cluster is described. Cobalt Strike used against unpatched VMware Horizon servers. Ukraine blames Russia for what seems to be a destructive supply chain...
A public-private conference takes up open source software security at the White House. MuddyWater...
A public-private conference takes up open source software security at the White House. MuddyWater attributed to Iran. Espionage and ransomware arrests.
A White House government-industry summit today addresses open-source software...
Influence operations in the grey zone. FSB raids REvil. Open Source Software Security Summit...
Influence operations in the grey zone. FSB raids REvil. Open Source Software Security Summit looks to public-private cooperation. Privateering and state-sponsored cybercrime.
A large-scale cyberattack against Ukrainian websites looks like...
Risky Biz Soap Box: Rolling your own threat intelligence with Steve Miller
In this edition of the soap box we’re chatting with Steve Miller, the head of threat intelligence...
The US and EU seek to shore up cybersecurity as Russo-Ukraininan tensions run high....
The US and EU seek to shore up cybersecurity as Russo-Ukraininan tensions run high. NIST updates secure system standards. Ransomware exploits Log4shell. Dog bites man: fraud in social media.
The...
The only locks you should pick are your own.
The only locks you should pick are your own.
Guest Tom Tovar, CEO and Co-Creator of AppDome, joins Dave and Joe to discuss the results of a recent consumer survey, Dave's...
Software supply chains and the free-rider problem. An APT is bitten by its own...
Software supply chains and the free-rider problem. An APT is bitten by its own RAT. Europol told to clean up its data. A leak investigation in Denmark. QR-code phishbait.
Log4shell...
Risky Business #650 — USG drops Russia advisory as Ukraine tensions mount
On this week’s show Patrick Gray, Katie Nickels and Joe Slowik discuss the week’s security news, including:
US...
EP 108: Marq
Full Transcript
This is the story of Marq (twitter.com/dev_null321). Which involves passwords, the dark web, and police.
Support for this podcast comes from Cybereason. Cybereason reverses the attacker’s advantage and puts...
CISA provides an account of progress toward Log4shell remediation. Other issues are reported in...
CISA provides an account of progress toward Log4shell remediation. Other issues are reported in open-source libraries. Undersea cable security. FIN7’s BadUSB campaign. Security and Yealink.
CISA describes progress toward remediating...















