Episodios

  • Cybersecurity Today: DNS Malware, SonicWall Backdoor, Military Breach, and BigONE Crypto Hack
    Jul 18 2025

    In today's episode, host Jim Love covers recent cybersecurity threats, including malware hidden in DNS records, a custom backdoor targeting SonicWall SMA devices, the US military assuming a network compromise after Chinese hackers targeted VPNs and email servers, and a $27 million theft from the BigONE crypto exchange. The show highlights how attackers are using innovative techniques to evade detection and emphasizes the need for increased vigilance in monitoring and securing systems.

    00:00 Introduction to Cybersecurity News
    00:26 Malware Hidden in DNS Records
    02:26 SonicWall Devices Under Attack
    04:30 US Military Breach by Chinese Hackers
    07:07 $27 Million Crypto Theft
    08:58 Conclusion and Listener Engagement

    Más Menos
    10 m
  • Cybersecurity Today: GPU Vulnerabilities, Microsoft's Security Overhaul, and Major Flaws in Automotive Bluetooth
    Jul 16 2025

    In this episode hosted by Jim Love, 'Cybersecurity Today' celebrates its recognition as number 10 on the Feed Spot list of Canadian News Podcasts and approaches a milestone of 10 million downloads. Key topics include new research identifying Nvidia GPUs as vulnerable to Rowhammer style attacks, Microsoft's significant security improvements in Microsoft 365, a critical Bluetooth vulnerability affecting 350 million cars, and a data exposure incident involving the Fredericton Police. Additionally, the official 'Elmo' account on X was hacked to post offensive content, emphasizing security gaps in high-profile social media accounts. For detailed information, visit technewsday.com or .ca.

    00:00 Introduction and Milestones
    00:52 Nvidia's Rowhammer Vulnerability
    03:39 Microsoft's Security Overhaul
    05:45 PerfektBlue Bluetooth Flaw
    08:09 Police Data Leak Incident
    10:12 Elmo's Twitter Account Hacked
    12:43 Conclusion and Thanks

    Más Menos
    13 m
  • Urgent Cyber Threats: Citrix Exploit, Fortinet RCE, and AI Vulnerabilities
    Jul 14 2025

    In this episode of 'Cybersecurity Today,' hosted by David Shipley from the Exchange Security 2025 conference, urgent updates are provided on critical cybersecurity vulnerabilities and threats. CISA mandates a 24-hour patch for Citrix NetScaler due to a severe vulnerability actively being exploited, dubbed 'Citrix Bleed.' Fortinet’s FortiWeb also faces a critical pre-auth remote code execution flaw that demands immediate patching. Additionally, significant vulnerabilities in AI-driven developments are highlighted, including shortcomings in Jack Dorsey's BitChat app and a method to extract Windows keys from ChatGPT-4. The episode emphasizes the importance of timely updates, robust security measures, and the potential risks involved with AI-generated code.

    00:00 Introduction and Overview
    00:35 Urgent Citrix Vulnerability Alert
    03:26 Fortinet FortiWeb Exploit Details
    06:23 Ingram Micro Ransomware Recovery
    09:26 AI Coding and Security Risks
    14:03 ChatGPT Security Flaw Exposed
    17:20 Conclusion and Contact Information

    Más Menos
    18 m
  • Cybersecurity Month in Review: Key Insights and Emerging Threats July 11, 2025
    Jul 12 2025

    In this episode of 'Cybersecurity: Today's Month in Review,' the panel of experts, including Laura Payne, David Shipley, and new guest Tammy Harper, delve into major cybersecurity stories from the past month. Discussions range from the recent arrest of a Montreal scam operator, Scattered Spider's targeted attacks on various sectors, and the impacts of AI on the cybersecurity landscape. The panel also highlights industry shifts, new threat tactics, and the importance of strategic communication during incidents. The episode concludes with reflections on AI's integration into enterprise systems, emphasizing preparation and ethical considerations.

    00:00 Introduction to the Cybersecurity Month in Review
    00:12 Meet the Panelists
    00:26 Laura Payne's Introduction
    01:04 David Shipley's Introduction
    01:38 Tammy Harper's Introduction
    04:09 First Story: Montreal Scam Arrest
    10:52 David Shipley's Big Story: Scattered Spider
    16:40 The Rise of Young Cybercriminals
    32:36 Ingram Micro Ransomware Attack
    33:27 Government Breaches and Fast Recovery
    34:56 Ingram Micro Incident and Communication Failures
    35:55 Importance of Communication in Incident Response
    37:39 Ransomware Trends and Threat Actor Tactics
    39:55 Shift from Encryption to Exfiltration
    46:41 Government Actions and Market Impact
    51:27 AI in Cybersecurity: Risks and Opportunities
    58:53 Ethical AI and Future Considerations
    01:08:12 Final Thoughts and Wrap-Up

    Más Menos
    1 h y 10 m
  • Cybersecurity Today: Marks and Spencer Hack, Brazilian Bank Breach, and McDonald's Data Vulnerability
    Jul 11 2025

    In this episode of Cybersecurity Today, host Jim Love discusses major updates on the recent cyber attack on Marks and Spencer, revealing new details and arrests. The breach involved sophisticated social engineering that infiltrated the company's network through an IT service provider, leading to 150GB of stolen data. Love then covers a massive insider breach at a Brazilian bank where an IT worker facilitated the theft of $140 million by selling login credentials. Lastly, the episode highlights a McDonald's HR data breach caused by weak security practices in an AI screening app, exposing millions of job applicant records. Key insights on these incidents emphasize the importance of robust cybersecurity measures and internal controls.

    00:00 Introduction and Headlines
    00:20 Marks and Spencer Hack: New Developments
    04:07 Brazilian Bank Breach: An Inside Job
    06:40 McDonald's HR Data Breach: A Comedy of Errors
    10:21 Conclusion and Upcoming Features

    Más Menos
    11 m
  • AI Threats, Enterprise Security, and Google's Confusing Gemini Release: Cybersecurity Today
    Jul 9 2025

    In this episode of 'Cybersecurity Today,' host Jim Love discusses the recent deep fake attack on high-ranking US government officials using AI voice cloning technology. The conversation highlights the growing ease and risks of AI-generated impersonations. The episode also covers the advancements in AI systems connecting with enterprise data and the security implications, alongside recent updates on events like Ingram Micro's ransomware attack and Google's confusing Gemini AI rollout for Android. Additionally, the show explores a new method called Info Flood that can trick chatbots into providing dangerous information by using academic-sounding language.

    00:00 Deep Fakes Hit US Government
    02:40 AI Integration in Enterprise Systems
    05:49 Ingram Micro Ransomware Attack Update
    07:22 Google's Confusing Gemini Release
    10:33 Exploiting AI with Academic Jargon
    12:34 Conclusion and Contact Information

    Más Menos
    13 m
  • Ingram Micro Ransomware Attack and the Rise of Linux SSH Server Compromises
    Jul 7 2025

    In this episode of Cybersecurity Today, host David Shipley discusses the recent Safe Play ransomware attack on technology distributor Ingram Micro, exploring its impact and ongoing recovery efforts. The script also examines a new campaign targeting misconfigured Linux servers to build proxy networks for cybercriminal activities. Additionally, the episode highlights the significant rise in Click Fix social engineering attacks and the criminal investigation into a former ransomware negotiator accused of profiting from extortion payments.

    00:00 Introduction and Headlines
    00:30 Ingram Micro Ransomware Attack
    03:57 Linux Servers Under Attack
    07:05 Rise of Click Fix Social Engineering Attacks
    08:45 Ransomware Negotiator Under Investigation
    10:13 Conclusion and Contact Information

    Más Menos
    11 m
  • AI and Cybersecurity: A Deep Dive into Enterprise Applications and Digital Sovereignty with Krish Banerjee
    Jul 4 2025

    In this episode of Cybersecurity Today, host Jim Love engages in a comprehensive conversation with Krish Banerjee, the Canada Managing Director at Accenture for AI and Data. They delve into the stark difference between perceived and actual preparedness for cybersecurity in the face of growing AI adoption. The discussion spans topics such as the role of AI in enterprise productivity, the need for better data management, and the integration of AI into various business functions. They also explore the importance of digital sovereignty, the challenges and opportunities in Canada's adoption of AI, and how open-source AI can benefit organizations. Krish emphasizes the significance of setting a clear value-driven goal, having the right tools and talent, and the necessity of adopting AI responsibly. The conversation wraps up with insights on how executives can navigate the AI landscape and prepare their organizations for future advancements.

    00:00 Introduction to Cybersecurity and AI Concerns
    02:10 Interview with Krish Banerjee: AI in Canada
    03:17 The Evolution and Impact of AI
    06:42 Enterprise AI: Challenges and Opportunities
    15:20 Digital Sovereignty and National AI Strategies
    25:07 Accelerating Technological Adoption
    26:18 Dream Projects in AI
    27:49 AI for Healthcare and Commercialization
    31:02 The Future of AI and Economic Impact
    35:31 Agentic AI: The Next Frontier
    41:14 Open Source AI and Democratization
    43:23 Advice for Executives and Parents
    49:10 Conclusion and Final Thoughts

    Más Menos
    51 m