

Cybersecurity Headlines
CISO Series
Daily stories from the world of information security. To delve into any daily story, head to CISOseries.com.
Episodes
Mentioned books

Nov 20, 2024 • 8min
Easterly to step down, Maxar discloses breach, Microsoft hacking event
CISA's director Jen Easterly is stepping down amid rising cyber threats. Space tech giant Maxar reported a significant employee data breach. Meanwhile, Microsoft has launched a unique hacking event aimed at enhancing cloud and AI security. The discussion also highlights a surge in cyberattacks and the concerning recruitment strategies of ransomware groups like Akira and Helldown, underlining the growing need for cybersecurity professionals to connect and strategize.

Nov 19, 2024 • 8min
EPA warns of critical risks, Four million WordPress sites exposed, Sextortion scams bypass filters
The podcast dives into alarming cybersecurity risks, from critical flaws in drinking water infrastructure to the exposure of four million WordPress sites. It highlights sophisticated sextortion scams that slip past major security filters. Additionally, there's a discussion on vulnerabilities in cybersecurity tools and the persistent challenge of finding skilled professionals in the field. Keep your organization aware and protected from these evolving threats!

Nov 18, 2024 • 8min
T-Mobile confirms breach, AnnieMac data stolen, NewGlove malware threat
T-Mobile has reported a significant breach, revealing customer data was compromised. AnnieMac also suffered a data theft, raising concerns about personal information safety. In addition, a new malware threat called New Glove has emerged, successfully bypassing Chrome’s cookie encryption. The discussion highlights the latest tactics used by cybercriminals and the need for robust security measures to counteract evolving threats.

Nov 15, 2024 • 26min
Week in Review: Most common passwords, Secure-by-design, DNA firm vanishes
Brett Conlon, CISO at American Century Investments, dives into the pressing issues of cybersecurity. He discusses the alarming trend of weak password practices and the mysterious vanishing of a DNA firm that left sensitive data in limbo. Conlon highlights the implications of genetic data misuse and the importance of robust data protection laws. Additionally, he addresses the ongoing threat of zero-day vulnerabilities and the resurgence of Strela Steeler malware, stressing the need for proactive security measures in today’s digital landscape.

Nov 15, 2024 • 8min
NordPass popular passwords, Healthcare extortion sentence, China breached telecoms
Chinese hackers infiltrated U.S. broadband providers, raising concerns about national security. Meanwhile, the infamous password '123456' continues to top the charts for vulnerability. A hacker was sentenced to 10 years for orchestrating a healthcare extortion scheme, highlighting the serious risks in the sector. The conversation also touches on current cyber threats and the importance of strengthening password security to prevent breaches.

Nov 14, 2024 • 8min
Volt Typhoon's new botnet, China APT hits Tibet, DoD leaker sentenced
Explore the alarming resurgence of Volt Typhoon's botnet and its implications for global cybersecurity. Uncover a Chinese APT targeting Tibetan media, revealing the intricacies of espionage in the digital age. Get insights on a former National Guardsman’s sentencing for leaking classified data. Delve into ethical hacking revelations that expose vulnerabilities in handling personal information and the ransomware attack that crippled Sheboygan networks. Stay informed on the latest trends and threats in the constantly evolving world of cybersecurity.

Nov 13, 2024 • 8min
Giant Food cyberattack, Snowflake suspects indicted, zero-day vulnerability surge
A recent cyberattack has hit Giant Food and Hannaford, raising alarms in the e-commerce sector. The indictment of suspects linked to the Snowflake breach adds a new layer to the ongoing threat landscape. The Five Eyes Intelligence Alliance warns zero-day vulnerabilities are becoming the new normal. Additionally, emerging threats from Iranian and North Korean hackers, along with a troubling spear-phishing campaign targeting the aerospace industry, highlight the urgent need for improved cybersecurity measures.

Nov 12, 2024 • 8min
Halliburton cyberattack costs, Israel credit card DDoS, Forth announces breach
A massive cyberattack has cost Halliburton $35 million. In Israel, a DDoS attack caused credit card readers to malfunction, disrupting essential services. Meanwhile, Forth, a debt relief firm, reported a significant data breach affecting both customers and non-customers. The discussion highlights ongoing threats and the importance of adopting robust cybersecurity measures in a rapidly evolving digital landscape.

Nov 11, 2024 • 8min
Regulator limits phone use, Hacked police emails, UK seniors scammed
A U.S. financial regulator is pushing to limit cell phone use due to rising threats. Police departments are facing a surge in hacked email incidents and fake subpoenas. Cybercriminals are targeting seniors in the UK with deceptive Winter Fuel Payment texts. Plus, the discussion touches on new iPhone features and their implications for law enforcement. Emerging threats also include a malicious Python package stealing AWS credentials and vulnerabilities found in vehicle infotainment systems.

Nov 8, 2024 • 29min
Week in Review: Sophos Chinese hacker warning, AI flaws and vulnerabilities
Ken Athanasiou, CISO at VF Corporation, shares insights into the evolving landscape of cybersecurity. He discusses the increasing sophistication of Chinese hackers and the critical need for enhanced defenses. The conversation highlights significant AI vulnerabilities exposed in a recent bug bounty program and Google's advancements in using AI for vulnerability detection. Athanasiou also touches on the ethical dilemmas of whistleblowing and the challenges posed by cyberbullying on social media, stressing the urgent need for accountability and societal responsibility.


