CyberWire Daily

AI meets the chain of command.

Nov 21, 2025
Cyber Command appoints a new AI chief, emphasizing responsible tech adoption. The UK introduces a significant Cyber Security and Resilience Bill, stirring concerns over readiness. A critical flaw in Oracle Identity Manager raises alarms about potential zero-day exploitation. Salesforce warns of a breach linked to Gainsight, involving sensitive customer data. Meanwhile, four individuals face charges for illegally exporting Nvidia AI chips to China, while NSO Group seeks to pause a legal injunction. The episode also features insights from Lt. General Daniel Karbler on missile defense and his role in a Netflix film.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
INSIGHT

AI Is A Strategic Military Inflection Point

  • The U.S. is at a pivotal moment as AI reshapes military competition, operations, and adversary behavior.
  • Reid Novotny stresses responsible innovation, rapid integration, and cultural change are as important as technology.
INSIGHT

UK Law Widens Cybersecurity Responsibility

  • The UK's Cybersecurity and Resilience Bill expands obligations to suppliers and managed service providers and grants ministers emergency powers.
  • Enforcement is delayed until 2027, raising questions about regulatory readiness and capacity.
INSIGHT

Oracle Identity Manager Zero-Day Activity

  • A critical Oracle Identity Manager flaw enabled pre-auth remote code execution and was patched in October 2025.
  • SANS found likely zero-day exploitation in late August–early September, indicating active attacker scanning.
Get the Snipd Podcast app to discover more snips from this episode
Get the app