CyberWire Daily

CISA’s steady hand in a stalled senate.

Oct 31, 2025
Emily Austin, a Principal Security Researcher at Censys, sheds light on the alarming trends of nation-state attacks targeting critical infrastructure. She discusses how exposed devices and default credentials make these systems enticing targets. Key points include the dangers of remote access and the risks posed by specific devices like PLCs and building controls. Emily emphasizes the importance of proactive measures such as using VPNs and eliminating internet exposure to protect against these sophisticated threats.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
INSIGHT

Luxury Brand Impersonation Surge

  • Attackers registered over 1,300 malicious domains impersonating luxury brands ahead of the 2025 holidays.
  • Coordinated registrations and recurring email operators indicate organized fraud preparing large-scale scams.
INSIGHT

Phishing Moves To LinkedIn

  • Phishing is migrating from email to LinkedIn using fake board invites that lead to spoofed Microsoft logins.
  • Attackers chain redirects through Google/Firebase to harvest credentials and session cookies outside traditional email channels.
ADVICE

Push To Stop Chatbot-Based Ad Targeting

  • Advocacy groups urge the FTC to block Meta from using chatbot interactions for ad targeting without opt-in consent.
  • They argue the practice would violate Section 5 of the FTC Act and constitute an industrial-scale privacy abuse.
Get the Snipd Podcast app to discover more snips from this episode
Get the app