Cybersecurity Headlines

CISO Series
undefined
21 snips
Feb 17, 2026 • 33min

Department of Know: VoidLink threatens multi-cloud, flaw threatens Claude extension, China practices on infrastructure

Adam Palmer, CISO at First Hawaiian Bank, brings pragmatic risk and governance perspective. Jon Collins, Field CTO at GigaOm, offers cloud architecture and threat analysis. They discuss AI-assisted VoidLink multi-cloud malware, zero-click flaws in AI extensions, shadow AI and insecure defaults, and national cloud rehearsal practices. Short, sharp takes on resilience, visibility, and treating AI as privileged.
undefined
18 snips
Feb 16, 2026 • 8min

Ivanti actor identified, search overviews manipulated, ClickFix leverages Nslookup

A deep dive into a surge of Ivanti RCE activity traced to a single bulletproof IP. An explanation of how scammers manipulate AI-generated Google overviews to embed phishing links. A rundown of a DNS-based ClickFix technique that uses nslookup to retrieve malicious payloads. A mail-based scam targeting hardware wallet users is also covered.
undefined
25 snips
Feb 13, 2026 • 9min

Hackers abuse Gemini, Apple patches ancient bug, CISA criticizes shutdown

State-backed actors allegedly used an AI model across the entire attack lifecycle, from profiling to exfiltration. Apple released a fix for a decade-old iOS vulnerability that could allow arbitrary code execution. Federal cybersecurity leadership warned about impacts of a DHS funding lapse on operations and staffing. Russia and NYC tech trials also raise tech and privacy concerns.
undefined
16 snips
Feb 12, 2026 • 8min

Crazy gang abuses employee monitoring tool, Nevada unveils new data classification, Georgia healthcare breach impact grows

Attackers repurpose employee-monitoring tools to maintain stealthy access. Nevada rolls out a statewide data classification framework. A Georgia healthcare breach now affects over 626,000 people. An abandoned Outlook add-in becomes a phishing kit. Hundreds of Chrome extensions are caught harvesting browsing histories.
undefined
21 snips
Feb 11, 2026 • 7min

Google gets EU Wiz approval, Microsoft secures Secure Boot certificates, North Korean hackers target crypto exec

Antitrust clearance for a major cloud acquisition and its market ripple effects. A large vendor refreshes Secure Boot certificates ahead of expiration and what that means for devices. A nation-state uses deepfake video calls to target cryptocurrency executives. Exploits of help-desk software and a noisy Linux botnet using IRC round out the headlines.
undefined
18 snips
Feb 10, 2026 • 7min

UNC3886 targets Singapore telecoms, VoidLink exhibits multi-cloud capabilities and AI code, 135,000+ OpenClaw instances exposed

China-linked UNC3886 exploiting zero-days and rootkits against Singapore telecoms. VoidLink malware showing multi-cloud persistence, credential theft, container escape and kernel hiding. Analysts spotting AI-generated code artifacts in malware development. Over 135,000 OpenClaw instances exposed due to default network settings and high-risk flaws.
undefined
9 snips
Feb 9, 2026 • 32min

Department of Know: GSA's CMMC requirements, AWS intruder AI heist, Moltbook raises the stakes

Chris Ray, Field CTO at GigaOm, brings practical security architecture insight. Nick Ryan, former CISO, offers hands‑on risk and incident response experience. They discuss viral Maltbook misconfigurations and shadow AI apps. They unpack an AI-assisted AWS takeover, machine‑speed attacks, and behavioral defenses. They debate new GSA CMMC‑style contract requirements and implications for small vendors.
undefined
13 snips
Feb 9, 2026 • 8min

OpenClaw embraces VirusTotal, CISA EOL Deadline, ransomware hits BridgePay

OpenClaw is using VirusTotal hashing to scan uploaded skills. CISA orders federal agencies to purge end-of-life network and IoT devices within a year. Ransomware cripples BridgePay and forces merchants offline. Microsoft Office exploits target transport and diplomatic sectors. Researchers reveal router-hijacking D-Knife malware and AI-assisted AWS intrusions.
undefined
23 snips
Feb 6, 2026 • 6min

Substack admits breach, Russian attacks target Winter Olympics, GitHub Codespaces enable RCE

A data exposure at a major newsletter platform is discussed alongside attacks tied to the Winter Olympics that targeted infrastructure. A cloud development feature is shown to allow remote code execution and token theft. Reports of large-scale cyber espionage campaigns and ransomware disruptions to critical services are also highlighted.
undefined
14 snips
Feb 5, 2026 • 7min

Ukraine tightens controls on Starlink terminals, VMware ESXi flaw now exploited, SolarWinds Web Help Desk bug under attack

Coverage of Ukraine limiting Starlink terminal mobility and whitelisting to curb UAV misuse. A patched VMware ESXi sandbox escape is now being exploited in the wild. A critical SolarWinds Web Help Desk deserialization bug is under active attack. Reports of U.S. cyber operations affecting Iranian air defenses and leaks exposing sensitive victim data are also discussed.

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app