

Talkin' Bout [Infosec] News
Black Hills Information Security
A weekly Podcast with BHIS and Friends. We discuss notable Infosec, and infosec-adjacent news stories gathered by our community news team.
Join us live on YouTube, Monday's at 4:30PM ET
Join us live on YouTube, Monday's at 4:30PM ET
Episodes
Mentioned books

May 17, 2023 • 60min
Talkin’ About Infosec News – 5/17/2023
The post Talkin’ About Infosec News – 5/17/2023 appeared first on Black Hills Information Security.
(00:00) - PreShow Banter™ — Hardcore Mountain J-Biking
(02:37) - BHIS - Talkin' Bout [infosec] News 2023-05-15
(03:37) - Story # 1: Discord discloses data breach after support agent got hacked
(12:12) - Story # 2: Cybersecurity firm Dragos discloses cybersecurity incident, extortion attempt
(13:02) - Story # 2b: Deconstructing a Cybersecurity Event
(29:02) - Story # 3: How Apple catches leakers: From color changes to comma placement
(31:32) - Story # 3b: The ingenious way ‘Star Trek Beyond’ is making sure its script doesn’t leak online
(34:34) - Story # 3c: Genius hid a Morse code message in song lyrics to prove Google was copying them
(40:17) - Story # 4: How one of Vladimir Putin’s most prized hacking units got pwned by the FBI
(43:03) - Story # 4b: Hunting Russian Intelligence “Snake” Malware
(51:26) - Story # 4c: Microsoft recommended driver block rules
(55:50) - Story # 4d: Bypassing PatchGuard 3
(58:15) - Story # 5: The Team of Sleuths Quietly Hunting Cyberattack-for-Hire Services

May 11, 2023 • 54min
Talkin’ About Infosec News – 5/11/2023
The post Talkin’ About Infosec News – 5/11/2023 appeared first on Black Hills Information Security.
(00:00) - PreShow Banter™ — Notes about Music
(01:19) - BHIS - Talkin' Bout [infosec] News 2023-05-08
(01:59) - Story # 1: China’s hackers outnumber FBI cyber staff ‘at least 50 to 1,’ Wray tells Congress
(06:57) - Story # 2: Drone goggles maker claims firmware sabotaged to ‘brick’ devices
(12:27) - Story # 3: Twitter says a 'security incident' led to private Circle tweets becoming public
(13:46) - Story # 4: Billy Corgan Paid Off Hacker to Prevent ATUM Leak
(21:15) - Story # 5: New Atomic macOS info-stealing malware targets 50 crypto wallets
(39:35) - Story # 5b ChatGPT maker OpenAI lost about $540 million last year
(47:51) - Story # 6: QR codes used in fake parking tickets, surveys to steal your money

May 5, 2023 • 1h 2min
Talkin’ About Infosec News – 5/5/2023
The post Talkin’ About Infosec News – 5/5/2023 appeared first on Black Hills Information Security.
(00:00) - PreShow Banter™ — Swords in San Francisco
(01:32) - BHIS - Talkin' Bout [infosec] News 2023- 04-24
(04:00) - Story # 1: Pentagon Leaks: What's the Damage?
(13:09) - Story # 2: Hacker Group Names Are Now Absurdly Out of Control
(21:15) - Story # 3: 3CX Breach Was a Double Supply Chain Compromise
(38:31) - Story # 4: What’s more prevalent than juice jacking? Fake public WiFi networks, says researcher
(45:23) - Story # 5: Hundreds of Southwest Airlines flights are delayed after FAA lifts nationwide ground stop
(49:06) - Story # 6: European air traffic control confirms website 'under attack' by pro-Russia hackers
(50:56) - Story # 7: APC warns of critical unauthenticated RCE flaws in UPS software
(53:16) - Story # 8: ‘AuKill’ EDR killer malware abuses Process Explorer driver

Apr 19, 2023 • 60min
Talkin’ About Infosec News – 4/18/2023
The post Talkin’ About Infosec News – 4/18/2023 appeared first on Black Hills Information Security.
(00:00) - PreShow Banter™ — Hardest to Handle
(02:41) - BHIS - Talkin' Bout [infosec] News 2023-04-17
(04:22) - Story # 1: Actually, Charging Your Phone in a Public USB Port Is Fine
(16:04) - Story # 2: Israeli Irrigation Water Controllers & Postal Service Breached
(16:48) - Story # 2b: Did someone really hack into the Oldsmar, Florida, water treatment plant? New details suggest maybe not.
(27:30) - Story # 2c: Ridley turns a horrific true story involving Hurricane Katrina into a scripted drama
(29:13) - Story # 3: 3CX blames North Korea for supply chain mass-hack
(35:09) - Story # 4: FBI arrests 21-year-old Air National Guardsman suspected of leaking classified documents
(53:59) - Story # 5: Montana lawmakers vote to completely ban TikTok in the state

Apr 11, 2023 • 57min
Talkin’ About Infosec News – 4/11/2023
The post Talkin’ About Infosec News – 4/11/2023 appeared first on Black Hills Information Security.
(00:00) - PreShow Banter™ — Canada Man
(03:49) - BHIS - Talkin' Bout [infosec] News 2023-04-10
(05:10) - Story # 1: IRS-authorized eFile.com tax return software caught serving JS malware
(11:52) - Story # 2: Hackers using Log4j bug to profit from victim IP addresses through ‘proxyjacking’ scheme
(19:45) - Story # 3: Two-Fifths of IT Pros Told to Keep Breaches Quiet
(27:27) - Story # 4: Samsung reportedly leaked its own secrets through ChatGPT
(30:16) - Story # 4b: Introducing Microsoft Security Copilot: Empowering defenders at the speed of AI
(32:07) - Story # 5: Tesla workers shared images from car cameras, including “scenes of intimacy”
(47:37) - HBS News Hour
(52:01) - Story # 6: KFC, Pizza Hut owner discloses data breach after ransomware attack

Apr 5, 2023 • 1h 1min
Talkin’ About Infosec News – 4/5/2023
The post Talkin’ About Infosec News – 4/5/2023 appeared first on Black Hills Information Security.
(00:00) - PreShow Banter™ — Jazzy Saxophone
(01:13) - BHIS - Talkin' Bout [infosec] News 2023-04-03
(02:40) - Story # 1: He Would Still Be Here': Man Dies by Suicide After Talking with AI Chatbot, Widow Says
(08:45) - Story # 1b: Elon Musk, Steve Wozniak Join AI Experts In Pushing To 'Pause Giant AI Experiments'
(14:51) - Story # 2: S.686 - RESTRICT Act
(26:01) - Story # 3: Leaked IT contractor files detail Kremlin's stockpile of cyber-weapons
(29:27) - Story # 4: 3CX thought supply chain attack was a false positive
(35:46) - Story # 5: Twitter takes its algorithm ‘open-source,’ as Elon Musk promised
(39:40) - Story # 6: 20-Year-Old BreachForums Founder Faces Up to 5 Years in Prison
(44:16) - Story # 7: Hacker Agrees to Return $197 Million Stolen from Euler Finance
(47:46) - Story # 8: India-based cybergang busted for selling fake KFC franchises
(51:50) - Story # 8b: https://twitter.com/cyberabadpolice
(52:42) - Story # 8c: https://www.cyberabadpolice.gov.in
(56:07) - Story # 9: Meta wants EU users to apply for permission to opt out of data collection

Apr 3, 2023 • 1h 3min
Talkin’ About Infosec News – 4/3/2023
The post Talkin’ About Infosec News – 4/3/2023 appeared first on Black Hills Information Security.
(00:00) - PreShow Banter™ — Always Checking For Leaks
(02:56) - BHIS - Talkin' Bout [infosec] News 2023-03-27
(04:31) - Story # 1: Data breach leak site BreachForums shuts down
(12:06) - Story # 2: Ralph's personal cybercrime story
(21:43) - Story # 3: North Korean hackers using Chrome extensions to steal Gmail emails
(31:13) - Story # 4: Gordon Moore, Intel Co-Founder, Dies at 94
(32:37) - Story # 4b: Beloved hacking veteran Kelly ‘Aloria’ Lum passes away at 41
(32:59) - Story # 5: Twitter Says Parts of Its Source Code Were Leaked Online
(37:00) - Story # 6: AI image of Pope Francis in a puffer jacket fooled the internet and experts fear there’s worse to come
(41:07) - Story # 6b: Samsung’s Moon Shots Force Us to Ask How Much AI Is Too Much
(44:00) - Story # 7:New MacStealer macOS malware steals passwords from iCloud Keychain
(45:22) - Story # 8: Windows 11, Tesla, Ubuntu, and macOS hacked at Pwn2Own 2023
(49:39) - Story # 9: Ferrari discloses data breach after receiving ransom demand
(52:03) - Story # 10: How hackers took over Linus Tech Tips

Mar 16, 2023 • 1h 1min
Talkin’ About Infosec News – 3/16/2023
00:00 – PreShow Banter™ — Tossing Money at Problems00:58 – BHIS – Talkin’ Bout [infosec] News 2023-03-1301:41 – Story # 1: Silicon Valley Bank collapse: Treasury, Fed, and FDIC announce […]
The post Talkin’ About Infosec News – 3/16/2023 appeared first on Black Hills Information Security.
(00:00) - PreShow Banter™ — Tossing Money at Problems
(00:58) - BHIS - Talkin' Bout [infosec] News 2023-03-13
(01:41) - Story # 1: Silicon Valley Bank collapse: Treasury, Fed and FDIC announce steps to ensure deposits will be paid in full
(17:23) - Story # 1b: Silicon Valley Bank exec was Lehman Brothers CFO prior to 2008 collapse
(21:21) - Story # 2: FBI investigates data breach impacting U.S. House members and staff
(30:33) - Story # 3: Acronis downplays intrusion after 12GB trove leaks online
(34:40) - Story # 4: Acer confirms breach after 160GB of data for sale on hacking forum
(51:26) - Story # 5: The privacy loophole in your doorbell
(57:28) - Spearfish General Store

Mar 8, 2023 • 1h 7min
Talkin’ About Infosec News – 3/8/2023 (v2)
THIS IS A TEST
The post Talkin’ About Infosec News – 3/8/2023 (v2) appeared first on Black Hills Information Security.
(00:00) - PreShow Banter™ — Lil NAS
(06:52) - BHIS - Talkin' Bout [infosec] News 2023-03-06
(08:13) - Story # 1: LastPass says employee’s home computer was hacked and corporate vault taken
(28:32) - Story # 2: An Uncomfortable Reality: Occupational Hazards Associated with Thought Leadership in CTI
(35:18) - Story # 3: FACT SHEET: Biden-Harris Administration Announces National Cybersecurity Strategy
(45:17) - Story # 4: Roku Doesn’t Support IPv6 and It Might Be a Big Deal
(51:05) - Story # 5: Secret crawlspace cryptomine discovered in routine inspection of MA high school
(57:18) - Story # 6: ATM thieves use glue and 'tap' function to drain accounts at Chase Bank

Mar 8, 2023 • 1h 7min
Talkin’ About Infosec News – 3/8/2023
00:00 – PreShow Banter™ — Lil NAS06:52 – BHIS – Talkin’ Bout [infosec] News 2023-03-0608:13 – Story # 1: LastPass says employee’s home computer was hacked and corporate vault takenhttps://arstechnica.com/information-technology/2023/02/lastpass-hackers-infected-employees-home-computer-and-stole-corporate-vault/28:32 […]
The post Talkin’ About Infosec News – 3/8/2023 appeared first on Black Hills Information Security.
(00:00) - PreShow Banter™ — Lil NAS
(06:52) - BHIS - Talkin' Bout [infosec] News 2023-03-06
(08:13) - Story # 1: LastPass says employee’s home computer was hacked and corporate vault taken
(28:32) - Story # 2: An Uncomfortable Reality: Occupational Hazards Associated with Thought Leadership in CTI
(35:18) - Story # 3: FACT SHEET: Biden-Harris Administration Announces National Cybersecurity Strategy
(45:17) - Story # 4: Roku Doesn’t Support IPv6 and It Might Be a Big Deal
(51:05) - Story # 5: Secret crawlspace cryptomine discovered in routine inspection of MA high school
(57:18) - Story # 6: ATM thieves use glue and 'tap' function to drain accounts at Chase Bank


