

Cybersecurity Headlines
CISO Series
Daily stories from the world of information security. To delve into any daily story, head to CISOseries.com.
Episodes
Mentioned books

Nov 6, 2023 • 7min
Okta's hack explanation, Looney Tunables exploited, Lazarus likes KandyKorn
Okta explains hack source and response timeline. Looney Tunables now being exploited. Lazarus Group uses KandyKorn against blockchain engineers. Cyber attack via Discord and attacks on mortgage company and Ontario hospitals. Ransomware attacks on hospitals and American Airlines pilots union.

Nov 3, 2023 • 29min
Week in Review: Cloudflare's power outage, Washington breaches, Wiki-Slack attack
Shawn Bowen, CISO, World Kinect Corporation, joins the hosts to discuss a cloud outage at Cloudflare, government breaches, AI standards, and the SEC lawsuit against SolarWinds. The importance of CVSS score and CISO Sean Bowen's presence on LinkedIn are also highlighted.

Nov 3, 2023 • 8min
Cloudflare's power outage, Apache HelloKitty attempt, Boeing incident continues
Cloudflare experiences a power outage affecting their dashboard and APIs. An attempt to exploit a vulnerability in Apache Active MQ is discovered. Boeing faces a cyber attack on their parts and distribution process. The podcast also discusses other cybersecurity incidents, such as a ransomware attack in Germany and the spread of spyware through a WhatsApp mod. Microsoft's Secure Future Initiative is highlighted as an AI-based defense to enhance product security.

Nov 2, 2023 • 8min
UK summit pledge to tackle AI risks, 'Kill switch' shuts down Mozi botnet, EU regulator bans Meta's ad practices
UK summit pledges to tackle AI risks, 'Kill switch' shuts down Mozi botnet, EU regulator bans Meta's ad practices

Nov 1, 2023 • 6min
Canada bans WeChat, no ransom pledge, India's opposition sees state-sponsored attacks
Canada bans WeChat on government devices, 40 countries sign no ransom pledge, Apple warns Indian opposition about iPhone attacks.

Oct 31, 2023 • 8min
AI Executive Order, Russia' VirusTotal, Roaming leaks locations
Topics discussed include AI rules in the US, Russia's malware scanning service, potential geolocation data leak, ad changes from Meta, and SEC's lawsuit against SolarWinds. Also, security threats in Huawei, cyber attack on Toronto Public Library, Wiki Slack Attack method, and the value of security theater.

Oct 30, 2023 • 7min
DC Elections breach, LockBit Boeing breach, StripedFly's stealthy sting
DC Board of Elections breach, LockBit claims Boeing breach, StripedFly malware infects 1 million hosts. There is discussion about a new company offering unlimited security data, F5's big IP vulnerability warning, LinkedIn's AI tests, and upcoming events on trust, security, and compliance.

Oct 27, 2023 • 27min
Week in Review: Okta's compromise issues, Cisco's additional headache, CISA protests cuts
Former CISO, Arvin Bansal, discusses vulnerabilities in Okta and Cisco systems, budget cuts to CISA, and the tactics of the dangerous threat group, Scattered Spider. They also touch on the role of AI in threat identification and the benefits of automating security compliance.

Oct 27, 2023 • 8min
iLeakage threatens Apple, CISA's catastrophic cuts, HTTP DDoS surge
ILeakage attack steals emails, passwords from Apple devices. CISA protests potential budget cut. Surge in hyper-volumetric HTTP DDoS attacks.

Oct 26, 2023 • 7min
SMIC advanced chips, Roundcube exploit, Philadelphia email access
Topics discussed in the podcast include SMIC's use of advanced chip making equipment, exploitation of RoundCube webmail software, cyber attack on Philadelphia's municipal email systems, Amazon's plan for a European Sovereign Cloud, data transfer agreements between the EU and US, an ad from Vanta, and a case involving a Security Systems Designer violating the Espionage Act.


