

Cybersecurity Headlines
CISO Series
Daily stories from the world of information security. To delve into any daily story, head to CISOseries.com.
Episodes
Mentioned books

Jan 9, 2025 • 8min
PowerSchool hacked, Cyber Force study, EC gets GDPR fine
PowerSchool faces a major hack, impacting over 50 million students' data. Lawmakers are pushing for a revived Cyber Force to tackle escalating cyber threats. The European Commission receives its first GDPR fine related to a data mishap with Facebook. Phishing schemes targeting Microsoft 365 raise alarms, while Akamai pulls out of China amid regulatory challenges. Emerging threats are highlighted, including vulnerabilities affecting the UN and the Green Bay Packers, adding urgency to cybersecurity measures.

11 snips
Jan 8, 2025 • 8min
Cyber Trust label, UK deepfake laws, Treasury attack details
Exciting advancements in cybersecurity are on the horizon with the upcoming Cyber Trust label set for 2025. The UK is making moves to criminalize sexually explicit deepfakes, which marks a significant legislative shift. Recent discussions reveal a limited yet concerning attack on the U.S. Treasury linked to government-sponsored hackers. Moreover, there's an alarming rise in ransomware demands and connections between Tencent and the Chinese military. Tune in for insights on these urgent and complex cyber threats!

Jan 7, 2025 • 9min
Wallet drainer impact, U.S. telecom breach list grows, Moxa router vulnerabilities
Wallet drainer malware is wreaking havoc, leading to significant cryptocurrency losses. The U.S. telecom sector faces increasing breach threats, particularly from the Salt Typhoon incident. Urgent security concerns are raised regarding vulnerabilities in Moxa routers. Phishing tactics are evolving, with a new fraudulent site mimicking a Russian app store. Important malware attacks are targeting ISPs and schools, underscoring the urgency for improved cybersecurity measures.

Jan 6, 2025 • 8min
Flax Typhoon sanctions, Atos dismisses ransomware, German airport outage
U.S. sanctions target a Chinese tech company linked to cyber attacks, sparking discussions about international security measures. A French contractor confidently dismisses claims of a ransomware attack, raising eyebrows in the cybersecurity community. Meanwhile, significant IT outages at German airports disrupt travel, leading to long wait times and security concerns. The conversation also touches on increasing vulnerabilities tied to SaaS usage and emphasizes the urgent need for stronger digital safeguards.

Jan 3, 2025 • 32min
Week in Review: China hacks Treasury, Chrome extension hijack, tanker sabotages cables
Quincy Castro, CISO at Redis, brings his cybersecurity expertise to discuss alarming breaches, including a China-linked hack on U.S. Treasury systems. He highlights how such incidents could impact financial sanctions and the broader geopolitical landscape. The conversation shifts to the vulnerabilities of popular platforms like Google Chrome, emphasizing the urgent need for stronger security measures. Castro also addresses corporate responsibility in the wake of the Volkswagen breach, stressing the importance of data protection in an interconnected world.

7 snips
Jan 3, 2025 • 8min
China hacks Treasury, Russian tanker sabotage, Lumen ejects Typhoon
Hackers linked to Beijing infiltrated U.S. Treasury systems, raising alarms about national security. A Russian tanker is suspected of sabotaging undersea data cables, amplifying concerns over infrastructure attacks. Meanwhile, Lumen successfully blocked the Salt Typhoon group from accessing its network. The discussion highlights the importance of proactive cybersecurity measures and the urgency of responding to escalating threats.

13 snips
Jan 2, 2025 • 8min
U.S. soldier arrested, Election interference sanctions, RI data leak
A U.S. soldier faces arrest for allegedly leaking classified call logs related to Trump and Harris. Iranian and Russian entities are sanctioned for their attempts at election interference. In a shocking revelation, Rhode Island's health benefits data has been leaked, raising privacy concerns. The discussion also touches on the rise of hijacked Chrome extensions and the growing worries about smart appliances compromising user privacy. Stay informed about these pressing cybersecurity issues!

4 snips
Dec 31, 2024 • 10min
Cisco data leak, Microsoft domain transition, stories of the year
Cisco reveals a significant data leak while Microsoft rushes to transition Azure Edge.NET domains. A shocking deepfake heist steals $25 million, showcasing the need for employee vigilance. The discussion pivots to pressing issues in cybersecurity, including the challenges faced by the National Vulnerability Database and the lack of diversity, stressing the importance of inclusivity and proactive measures in combating modern threats.

8 snips
Dec 30, 2024 • 8min
Cyberhaven extension hacked, ZAGG data breach, Volkswagen cloud leak
Hackers have hijacked a cybersecurity company’s Chrome extension, leading to significant data theft. A breach involving stolen credit card information has impacted ZAGG customers as a third-party security lapse is uncovered. Meanwhile, Volkswagen's software subsidiary Cariad has suffered a cloud breach, raising alarms about data safety. The podcast also touches on the rise of DDoS attacks and vulnerabilities plaguing telecom firms and healthcare institutions, making cybersecurity a hot topic of discussion.

Dec 27, 2024 • 32min
Week in Review: Microsoft deactivation flaw, BeyondTrust on KEV, LLM generated malware
Steve Zalewski, a seasoned cybersecurity advisor and CISO in residence, joins to dive into the current landscape of cyber threats. He discusses the ongoing vulnerabilities in Microsoft 365, particularly concerning product deactivation and phishing risks. Zalewski also critiques traditional responses like rebooting systems to solve flaws, advocating for a more robust cybersecurity strategy. The conversation highlights the dangers of large language models creating malware and underscores the critical need for innovative defenses in today’s tech-driven world.


