

Cybersecurity Headlines
CISO Series
Daily stories from the world of information security. To delve into any daily story, head to CISOseries.com.
Episodes
Mentioned books

Sep 23, 2024 • 8min
LinkedIn halts AI training, Ukraine bans Telegram, hack-for-hire lawsuit
LinkedIn has paused its AI data processing in the UK amid privacy backlash. Ukraine has banned Telegram for military and government use, citing national security. Controversy arises with a former German cyber chief facing unfounded accusations of Russian ties. The discussion also dives into a legal battle over unfair dismissal and highlights Microsoft's updates on Windows Server. Plus, insights on spoofed traffic trends and alarming social media surveillance practices are unveiled, raising critical data privacy concerns.

Sep 20, 2024 • 23min
Week in Review: LinkedIn's AI chicanery, AT&T FCC settlement, Craigslist defense network
Mike Rosen, CISO at ZwillGen and advisor to NightDragon, dives into LinkedIn's controversial use of user posts for AI training without consent, raising vital privacy concerns. He discusses AT&T's minimal penalties for data breaches and the dire need for improved vendor management. The conversation highlights rising threats like credential theft and innovative community solutions for cybersecurity, including a new volunteer network to support small businesses. Additionally, Rosen shares his insights on Starlink's ability to detect stealth aircraft and its implications for privacy.

Sep 20, 2024 • 8min
INC targets healthcare, Providence schools cyberattack, Apple iPads bricked
A new ransomware strain is hitting the U.S. healthcare sector, raising alarms about cybersecurity in medical facilities. Providence public schools are grappling with strange internet activity linked to a cyberattack. Additionally, Apple has halted the rollout of iPadOS 18 due to significant bugs that are rendering M4 iPad Pro devices unusable. The conversation also uncovers new malware threats spreading via GitHub and the dangers of Hadouken malware affecting major systems.

Sep 19, 2024 • 7min
Derailing Raptor Train, Volunteer Civil Cyber Defense, US AI safety summit
The latest advancements in cybersecurity are front and center, including the dismantling of a Chinese botnet and an innovative volunteer network for civil cyber defense. A global AI safety summit is on the horizon, aiming to foster international collaboration. Shocking breaches are highlighted, such as police infiltrating the Ghost messaging app and a spearphishing attack on U.S. institutions. The call for enhanced security measures and a strong stance on cyber deterrence is more urgent than ever amid rising tensions.

Sep 18, 2024 • 7min
Exploding pager analysis, construction company vulnerability, cyberattack job loss
Experts discuss the shocking tragedy involving wireless pager failures linked to supply chain sabotage. They highlight the vulnerabilities lurking in construction companies' accounting software. Alarmingly, cyberattacks are driving significant job losses across various sectors. Additionally, the podcast touches on massive layoffs at Cisco, despite its robust finances, and a recent Cloudflare outage that disrupted website access. This episode sheds light on the far-reaching consequences of cybersecurity issues affecting both businesses and employees.

Sep 17, 2024 • 8min
Intellexa faces new sanctions, London hospitals impact, Apple releases update
A spyware giant faces fresh U.S. sanctions amid increased scrutiny. Almost a million patients were affected by a ransomware attack on London's hospitals, raising alarms on healthcare cybersecurity. Meanwhile, Apple finally rolls out a much-anticipated update to enhance security features. Discussions also dive into the complexities of securing emerging AI technologies and the implications of recent ransomware incidents, including severe data breaches and the burgeoning threat from disinformation campaigns.

Sep 16, 2024 • 8min
Fortinet confirms breach, RansomHub extorts Kawasaki, Update: TfL password resets
Fortinet confirms a customer data breach while RansomHub threatens to leak stolen data from Kawasaki. Meanwhile, Transport for London enforces in-person password resets after a recent hack. Notably, a teenager linked to TfL is arrested, and significant settlements arise from cybersecurity breaches at 23andMe and a medical entity. The Port of Seattle refuses to pay ransom after a cyberattack, revealing vulnerabilities in major infrastructure, alongside a malware outbreak impacting millions of devices.

Sep 13, 2024 • 28min
Week in Review: Wisconsin Medicare MOVEit, cop sues data broker, WHOIS vulnerability
This week features Patrick Heim, co-founder and partner at SYN Ventures, a seasoned expert in cybersecurity investment and strategy. They dive into the recent Medicare MOVEit breach and its impact on Wisconsin users, emphasizing the complexities of investigating software vulnerabilities. The discussion also touches on the challenges posed by the unregulated data broker industry and urgent staffing shortages in cybersecurity. Additionally, they highlight a critical WHOIS vulnerability and the implications of technological aging, sparking a conversation on regulatory needs in the sector.

Sep 13, 2024 • 8min
Lazarus spoofs CapitalOne, Mastercard buys RecordedFuture, WordPress imposes 2FA
The Lazarus Group launches a new malware campaign targeting CapitalOne, raising alarms in the cybersecurity community. Mastercard's acquisition of Recorded Future marks a significant move in enhancing security measures. WordPress mandates two-factor authentication for plugin developers, aiming to bolster protection. Additionally, the UK's classification of data centers as critical infrastructure highlights the escalating importance of cybersecurity in today's digital landscape.

Sep 12, 2024 • 7min
$20 WHOIS vulnerability, India's Cyber Commandos, Word hits drone makers
Discover a $20 WHOIS vulnerability that could pose risks in the digital space. Learn about India's ambitious training program producing thousands of 'cyber commandos' to strengthen defenses. Hear urgent warnings for Taiwanese drone makers facing new threats. The podcast also delves into emerging cyber risks like botnet attacks and shares insights into Microsoft's advancements in post-quantum cryptography. Stay informed on how these developments could impact cybersecurity across the globe!


