Risky Business  By  cover art

Risky Business

By: Patrick Gray
  • Summary

  • Risky Business is a weekly information security podcast featuring news and in-depth interviews with industry luminaries. Launched in February 2007, Risky Business is a must-listen digest for information security pros. With a running time of approximately 50-60 minutes, Risky Business is pacy; a security podcast without the waffle.
    Copyright 2007-2024 Patrick Gray
    Show more Show less
Episodes
  • Risky Business #750 -- Why Microsoft's Recall is an attacker's best friend
    May 29 2024
    On this week’s show Patrick and Adam discuss the week’s security news, including: Russian delivery company gets ransomware-wiper’dA supply-chain attack targets video software used in US courtsCheckpoint firewalls get hacked, details as clear as mudMicrosoft Recall delights hackersAussie telco Optus gets told its IR report isn’t legal adviceCyber insurer says you’re 5x more likely to get rekt if you have a Cisco ASAAnd much, much more. This week’s episode is sponsored by Kroll Cyber. Alex Cowperthwaite, Kroll’s technical director research and development for offence joins to talk about how his team attacks AI models, in ways both classic and new. Show notes Major Russian delivery company down for three days due to cyberattackStark Industries Solutions: An Iron Hammer in the Cloud – Krebs on SecurityCVE-2024-4978: Backdoored Justice AV Solutions Viewer Software Used in Apparent Supply Chain Attack | Rapid7 BlogCheck Point Software customers targeted by hackers using old, local VPN accounts | Cybersecurity DiveUS pharma giant Cencora says Americans' health information stolen in data breach | TechCrunchMicrosoft’s New Recall AI Tool May Be a ‘Privacy Nightmare’ | WIREDKevin Beaumont: "I got ahold of the Copilot+ so…" - CyberplaceKevin Beaumont: "For those who aren’t aware, Mi…" - CyberplacePatrick Gray on X: "You know it’s coming… Microsoft Defender Advanced Security for Recall"Microsoft Edge for Business: Revolutionizing your business with AI, security and productivity - Microsoft Edge BlogOptus loses appeal to keep Deloitte report on cyberattack secretOptus says it will defend allegations it failed to protect confidential details of 9 million customers in cyber attack - ABC NewsNearly 3 million affected by Sav-Rx data breachSpyware app pcTattletale was hacked and its website defaced | TechCrunch#F**kStalkerware pt. 6 - tattling on pcTattletaleSpyware maker pcTattletale shutters after data breach | TechCrunchJeremy Kirk: "Cyber insurer Coalition releas…" - Infosec ExchangeCoalition_2024-Cyber-Claims-ReportTikTok says it disrupted 15 influence operations this year — including one from ChinaIsraeli private eye accused of hacking was questioned about DC public affairs firm, sources say | ReutersRansomHub claims attack on Christie’s, the world’s wealthiest auction houseOpen-Source Assessments of AI Capabilities: The Proliferation of AI Analysis Tools, Replicating Competitor Models, and the Zhousidun DatasetShashank Joshi on X: "Additionally, OpenAI will retain and consult with other safety, security, and technical experts to support this work, including former cybersecurity officials, Rob Joyce [@RGB_Lights], who advises OpenAI on security, and John Carlin."
    Show more Show less
    1 hr and 2 mins
  • Risky Business #749 -- Google answer to Microsoft's insecurity? Buy Google stuff!
    May 23 2024
    This week’s episode was recorded in front of a live audience at AusCERT’s 2024 conference. Pat and Adam talked through: Google starts using security as a marketing tool against Microsoft, along with steep discountsMicrosoft announces a creepy desktop recording AIUK govt proposes ransom payment controlsArizona woman runs a laptop farm for North KoreaJulian Assange just keeps on with his malarkyAnd much, much more This week’s episode is sponsored by Tines. Its CEO Eoin Hinchy joins the show to talk about how AI can be genuinely useful in automation. Show notes (1) Dina Bass on X: "Google is offering deep discounts to government and corporate customers to entice them to switch from Microsoft Office as it attacks Microsoft's cybersecurity over recent breaches, citing US gov't cybersecurity review board report https://t.co/43sIJmBWi5" / XMicrosoft president set to testify before Congress on ‘security shortcomings’ | Cybersecurity DiveChairman Green, Ranking Member Thompson Announce Microsoft President Will Testify on Company’s Security Shortcomings Following Hack of Government Accounts – Committee on Homeland SecurityGoogle leverages Microsoft’s cyber gaps to woo Workspace customers | Cybersecurity DiveCSRB report highlights the need for a new approach to security(1) vx-underground on X: "tl;dr Microsoft introduces 24/7 surveillance functionality for the NSA and/or CIA but markets it as a feature that you'll like" / XEverything You Need to Know About Windows 11's Recall FeatureAustralian government warns of 'large-scale ransomware data breach'(1) National Cyber Security Coordinator on X: "The Australian Government continues to assist MediSecure, an electronic prescriptions provider, respond to a cyber incident. We are still working to build a picture of the size and nature of the data that has been impacted by this data breach impacting MediSecure. This https://t.co/oyNeRonurZ" / XHHS offering $50 million for proposals to improve hospital cybersecurityRemote-access tools the intrusion point to blame for most ransomware attacks | Cybersecurity DiveUK insurance industry begins to acknowledge role in tackling ransomwareExclusive: UK to propose mandatory reporting for ransomware attacks and licensing regime for all paymentsHacktivists turn to ransomware in attacks on Philippines governmentArizona woman accused of helping North Koreans get remote IT jobs at 300 companies | Ars TechnicaUS offers $5 million for info on North Korean IT workers involved in job fraudFCC might require telecoms to report on securing internet's BGP technologyFCC to probe ‘grave’ weaknesses in phone network infrastructureEPA says it will step up enforcement to address ‘critical’ vulnerabilities within water sectorEPA takes steps to address cybersecurity weaknesses at water utilitiesBritish signals agency to protect election candidates’ phones from cyberattacksFeds seize BreachForums platform, Telegram pageDark web narcotics market’s alleged leader arrested and charged in New YorkWikiLeaks’ Julian Assange Can Appeal His Extradition to the US, British Court Says | WIRED
    Show more Show less
    54 mins
  • Wide World of Cyber: Krebs and Stamos on How AI Will Change Cybersecurity
    May 17 2024

    In this podcast SentinelOne’s Chief Trust officer Alex Stamos and its Chief Intelligence and Public Policy Officer Chris Krebs join Patrick Gray to talk all about AI.

    It’s been a year and a half since ChatGPT landed and freaked everyone out. Since then, AI has really entrenched itself as the next big thing. It’s popping up everywhere, and the use cases for cybersecurity are starting to come into focus.

    Threat actors and defenders are using this stuff already, but it’s early days and as you’ll hear, things are really going to change, and fast.

    Show more Show less
    45 mins

What listeners say about Risky Business

Average customer ratings
Overall
  • 5 out of 5 stars
  • 5 Stars
    1
  • 4 Stars
    0
  • 3 Stars
    0
  • 2 Stars
    0
  • 1 Stars
    0
Performance
  • 5 out of 5 stars
  • 5 Stars
    1
  • 4 Stars
    0
  • 3 Stars
    0
  • 2 Stars
    0
  • 1 Stars
    0
Story
  • 5 out of 5 stars
  • 5 Stars
    1
  • 4 Stars
    0
  • 3 Stars
    0
  • 2 Stars
    0
  • 1 Stars
    0

Reviews - Please select the tabs below to change the source of reviews.