

Cybersecurity Headlines
CISO Series
Daily stories from the world of information security. To delve into any daily story, head to CISOseries.com.
Episodes
Mentioned books

17 snips
Mar 7, 2025 • 9min
Company hacked via webcam, Toronto Zoo update, federal contractor obligations
A surprising cyberattack used a webcam to bypass high-tech security measures, revealing new vulnerabilities. The Toronto Zoo updates show the fallout from the January 2024 ransomware incident. Meanwhile, a proposed house bill aims to enforce stricter security protocols for federal contractors, requiring them to have vulnerability disclosure policies in place. Additionally, innovations in password management technology are coming to the forefront in response to escalating cyber threats.

Mar 6, 2025 • 8min
Probationary firing protest, hacker names frustration, conversational scam detector
Former top NSA cyber official protests probationary firings Differing names for hackers hinders law enforcement, says security agent Google releases AI scam detection for Android to fight conversational fraud Huge thanks to our sponsor, ThreatLocker ThreatLocker® is a global leader in Zero Trust endpoint security, offering cybersecurity controls to protect businesses from zero-day attacks and ransomware. ThreatLocker operates with a default deny approach to reduce the attack surface and mitigate potential cyber vulnerabilities. To learn more and start your free trial, visit ThreatLocker.com. Find the stories behind the headlines at CISOseries.com.

Mar 5, 2025 • 8min
Apple vs UK encryption backdoor, VMware bugs allow sandbox escape, JavaGhost targets AWS
Apple goes to court to fight UK demand for iCloud encryption backdoor 3 VMware Zero-Day bugs allow sandbox escape The Firefox I loved is gone - how to protect your privacy on it now Huge thanks to our sponsor, ThreatLocker ThreatLocker® is a global leader in Zero Trust endpoint security, offering cybersecurity controls to protect businesses from zero-day attacks and ransomware. ThreatLocker operates with a default deny approach to reduce the attack surface and mitigate potential cyber vulnerabilities. To learn more and start your free trial, visit ThreatLocker.com.

Mar 4, 2025 • 9min
CISA denies claims, Ransomware group claims attack, Latin America's security crisis
CISA denies claims of deprioritizing Russian threats Ransomware group claims attack on U.S. newspaper publisher Latin America's escalating cybersecurity crisis Huge thanks to our sponsor, ThreatLocker ThreatLocker® is a global leader in Zero Trust endpoint security, offering cybersecurity controls to protect businesses from zero-day attacks and ransomware. ThreatLocker operates with a default deny approach to reduce the attack surface and mitigate potential cyber vulnerabilities. To learn more and start your free trial, visit ThreatLocker.com.

21 snips
Mar 3, 2025 • 8min
Hegseth orders standdown, Microsoft terminates Skype, Cuban offers lifeline
U.S. Cyber Command has been ordered to pause operations against Russia, stirring diplomatic discussions. Microsoft bids farewell to Skype after 14 years, shifting focus to Teams. Mark Cuban steps in, offering to fund a tech unit that was cut. Amid layoffs, encouragement is provided for engineers to start consulting firms, while 18F technology unit showcases successes in public access systems. The podcast also delves into recent alarming cybersecurity incidents, including a global hacking scheme and a breach affecting the Philippine Army.

5 snips
Feb 28, 2025 • 25min
Week in Review: Apple encryption, gamification for security, DISA breach
This week, Andrew Wilder, CISO at Vetcor, delves into the shifting landscape of cybersecurity. He discusses Apple's controversial decision to withdraw end-to-end encryption in the UK and its implications for user privacy. The conversation also highlights innovative training techniques like gamification, showcasing how they can re-engage employees in cybersecurity awareness. Additionally, Wilder addresses the fallout from a significant data breach and the real risks tied to recent layoffs in cybersecurity roles, raising alarms about national security in an evolving threat landscape.

16 snips
Feb 28, 2025 • 8min
Cyber espionage increase, Nakasone cyber warning, PolarEdge exploits Cisco
Chinese cyber espionage surged by 150%, posing major threats to sectors like finance and manufacturing. A dire warning from Nakasone underscores the risks of the U.S. trailing behind adversaries in cyberspace. Meanwhile, the PolarEdge botnet exploits vulnerabilities in major brands including Cisco and ASUS. A serious cyber incident led to the closure of the Cleveland Municipal Court, highlighting urgent cybersecurity issues. Lastly, the Lazarus Group's cybercrime activities involving stolen Ethereum raise alarm bells in the digital realm.

7 snips
Feb 27, 2025 • 6min
GitHub repos exposed, HaveIBeenPwned adds 244M stolen passwords, Anagram gamifies cybersecurity training
Explore the alarming misuse of Microsoft’s Copilot accessing private GitHub repositories. Learn about Signal's potential withdrawal from Sweden amidst rising cybersecurity concerns. Discover how Belarusian cyber espionage targets opposition activists with Ghostwriter’s advanced malware. Uncover the deceptive tactics of the Crazy Evil group, tricking job seekers into spreading malware. Plus, insights on Anagram's innovative cybersecurity training solutions and Bybit's bounty campaign for recovering stolen Ethereum, highlighting the ongoing battle against cybercrime.

15 snips
Feb 26, 2025 • 8min
DISA breach, Swedish backdoors, Dems looking into system access
A data breach at a US employee screening firm raises alarms about cybersecurity. Swedish law enforcement is probing messaging app backdoors, stirring debates on privacy and security. Meanwhile, Democratic lawmakers are voicing concerns over vulnerabilities in government systems, highlighting potential entry points for attackers. The discussion also touches on new threats like the Autocolor backdoor and Lightspy spyware, emphasizing the ongoing battle against escalating cyber risks.

24 snips
Feb 25, 2025 • 10min
Australia bans Kaspersky, Government screens hijacked, EU sanctions Lazarus Group
Australia has taken a bold step by banning Kaspersky products due to security risks. An alarming incident involving AI-generated videos of public figures raises ethical concerns. The EU targets a North Korean official linked to cyber operations, while the infamous Lazarus Group is scrutinized for a massive crypto heist. Meanwhile, a major botnet poses threats to Microsoft 365 accounts, and a ransomware group experiences internal turmoil. Google is enhancing security with QR code authentication, reflecting the ongoing challenges in the cybersecurity landscape.


