

Cybersecurity Headlines
CISO Series
Daily stories from the world of information security. To delve into any daily story, head to CISOseries.com.
Episodes
Mentioned books

7 snips
Jan 21, 2025 • 9min
HPE breach claims, CIA analyst guilty, Hotel data exposed
Hewlett Packard Enterprise is investigating a major breach, raising concerns about data security. A former CIA analyst has pleaded guilty for leaking top-secret information, highlighting risks within government operations. Nearly half a million hotel guest records have been exposed due to unauthorized access, prompting a discussion on cybersecurity measures within the hospitality industry. The podcast also delves into the growing threats posed by InfoStealer malware and highlights the vulnerabilities former employees present to businesses.

7 snips
Jan 20, 2025 • 9min
Tik Tok returns, Noem's CISA plans, Avery labels breach
TikTok is back in the spotlight, facing pressure to secure a buyer while users eye alternatives like RedNote. Meanwhile, the nominee for Secretary of Homeland Security shares bold plans to reshape CISA's role in the fight against misinformation. In another twist, Avery Labels reveals a data breach affecting over 61,000 customers and their compromised payment info. The impact of cybersecurity incidents leads to discussions about surveillance and its influence on consumer pricing.

10 snips
Jan 17, 2025 • 30min
Week in Review: IRS PIN available, AI ransomware group, UK ransomware ban
Phil Beyer, Head of Security at Flex, shares his expertise on urgent cybersecurity issues. They discuss the IRS's new PIN system for tax submissions, emphasizing its role in identity protection. The rise of AI-driven ransomware groups is highlighted, alongside the proposed UK ban on public sector ransomware payments, raising questions about its effectiveness. Beyer urges the importance of resilience in cybersecurity and the urgent need for transparent privacy policies amid escalating threats and ongoing data practices lawsuits.

13 snips
Jan 17, 2025 • 8min
Biden EO, Star Blizzard Using WhatsApp, Healthcare Breaches
President Biden takes decisive action with a new executive order aimed at strengthening cybersecurity against foreign threats. A new breach impacts the healthcare sector, revealing a staggering 585 incidents in 2024. Meanwhile, Star Blizzard is under fire for using WhatsApp, raising questions about data privacy. The discussion also shines a light on emerging phishing tactics and the latest AI innovations from NVIDIA, emphasizing the critical need for better cybersecurity practices across federal platforms.

16 snips
Jan 16, 2025 • 7min
Get Meta out of your life, GoDaddy slapped, TikTok could stay alive
Wondering how to escape the clutches of social media? Discover the process of deleting your Facebook and Instagram accounts completely. GoDaddy faces scrutiny for its history of lax security, raising alarm bells. Meanwhile, TikTok’s fate hangs in the balance as a potential ban looms. Dive into discussions about significant cyber breaches, the rising concerns over spyware, and the evolution of drone regulations. Plus, learn about exciting updates in digital IDs and Microsoft’s security enhancements coming in 2025.

7 snips
Jan 15, 2025 • 7min
Snyk's mysterious package, Baltic cable suspicions, second BeyondTrust vulnerability
A mysterious deployment of potentially malicious packages raises alarm bells in the cybersecurity community. The EU tech chief suggests that recent damage to Baltic sea cables is likely not coincidental. Additionally, a new warning has emerged regarding a second vulnerability in BeyondTrust's systems. The conversation dives into how these incidents highlight ongoing challenges in safeguarding our digital infrastructure.

8 snips
Jan 14, 2025 • 9min
Telefonica breach, new ransomware group leverages AI, Allstate accused of selling data
A recent breach at Telefonica has revealed sensitive employee credentials, raising alarms about data security. Meanwhile, a new ransomware group is making waves by using AI to enhance their attacks. Allstate faces accusations of selling consumer driving data, sparking controversy over privacy rights. The episode also delves into rising phishing threats and the challenges posed by open-source software, showcasing the ever-evolving landscape of cyber threats today.

7 snips
Jan 13, 2025 • 7min
IRS PIN available, CISA infrastructure enrollments, Winston-Salem cyberattack
The IRS has launched its Identity Protection PIN for the filing season, helping to enhance taxpayer security. Meanwhile, CISA reports a notable rise in enrollment for cyber hygiene practices aimed at safeguarding critical infrastructure. In Winston-Salem, a significant cyberattack has disrupted city services, raising concerns about municipal security. Additionally, Watchtower Labs neutralized 4,000 hijacked backdoors, and legal actions are being taken against a foreign group exploiting AI in cyberattacks. Stay alert and informed!

7 snips
Jan 10, 2025 • 25min
Week in Review: Flax Typhoon sanctioned, French military ransomware, ICAO breach claims
Bil Harmer, an Operating Partner and CISO at Kraft Ventures, dives into critical cybersecurity topics. They discuss U.S. sanctions on a Chinese tech firm linked to cyber-attacks and the challenges military contractors face with ransomware allegations. The conversation highlights alarming recruitment risks in aviation and the surge of ransomware threats to critical infrastructure. With a look at legislative efforts for a dedicated cyber force, Harmer also sheds light on the impact of AI in warfare and the urgent need for community-based cyber defense.

11 snips
Jan 10, 2025 • 7min
Worldwide Proton outage, Baymark Health breach, Treasury breach update
Proton recovers from a worldwide outage, shedding light on the importance of robust infrastructure. BayMark Health Services reveals a serious data breach affecting patient information, raising alarms about healthcare cybersecurity. Updates on the U.S. Treasury breach connect it to the notorious Silk Typhoon group, revealing sophisticated infiltration techniques. The conversation also touches on recent high-profile attacks, including those by Hafnium and vulnerabilities in Ivanti products, showcasing the ever-evolving threat landscape in cybersecurity.


