ShadowTalk: Powered by ReliaQuest cover art

All Episodes

ShadowTalk: Powered by ReliaQuest — 483 episodes

#
Title
1

The Largest Patch Tuesday Ever: 622 CVEs, a 1,380% Phishing Surge, and the Two-Front War on Initial Access

2

FortiBleed, 70,000 Compromised Devices, and the Credential Economy Powering Every Breach

3

Inside Conti's Leaked Chats: 300,000 Messages, a Criminal Empire, and the Ransomware Playbook Still Running Today

4

How Hackers Are Using AI Right Now: Faster Attacks, Smarter Malware, and a New Arms Race

5

Klue, Kali365, OAuth: When the Front Door Is a Trusted Integration

6

ShinyHunters' Expanding Toolkit: Oracle PeopleSoft Zero-Day Exploitation and the BreachForums Defense Gaps

7

China-Linked Cyber Espionage: How OP-512 Exploited Legacy IIS Servers and Evaded Detection

8

SonicWall, MFA Bypass, IABs: Why Patched Devices Are Still Handing Attackers Initial Access

9

Device Code, OAuth, PhaaS: How Session Token Theft is Breaking the Phishing Playbook

10

SQLite, Mistral, OpenAI: How AI Attacks Are Reshaping the Attack Surface

11

Canvas, Trellix, Mini Shai-Hulud: How Defenders Respond When Supply Chain Attacks Become Weekly

12

Akira, ShinyHunters, and The Gentlemen: Extortion Lessons From Early 2026

13

What Happened to Black Basta's Playbook? The Automated Teams Phishing Threat Hitting Executives

14

Did ShinyHunters Compromise Vercel? Every CISO's Cloud Security Visibility Problem

15

What Claude Mythos Means for Organizations

16

Axios and Trivy — Supply Chain Gaps Organizations Must Fix

17

Faster, Smarter, and Already Escalated — What It Takes to Defend Against the Modern Threat Landscape

18

The Invisible Attack Surface: Iran-Aligned Threat Actors and Corporate Blind Spots

19

The 2026 Annual Threat Report Breakdown, Part 3: The Long Game — Nation-State Threats & What's Coming in 2026

20

The 2026 Annual Threat Report Breakdown, Part 2 — Once They're In: Post-Compromise Tactics, Ransomware & Exfiltration

21

The 2026 Annual Threat Report Breakdown, Part 1 — How AI Contributes to Attacker Speed, and the Malware That's Winning

22

Malware Isn't Required—How Ransomware Groups Turn Legitimate RMMs Into a Weapon

23

Ransomware vs. Exfiltration-Only—The Extortion Model Showdown

24

Patch Management Is Losing—The Case for Predictive Vulnerability Defense

25

Beyond Phishing Emails—Social Engineering Drives Initial Access

26

Malicious AI—The New Face of Cyber Threats

27

Maintainer Compromise: The Next Supply-Chain Attack Vector in 2026

28

Kicking Off 2026 with Ransomware Insights and Defense Strategies

29

React2Shell Attacks Evolve, ClickFix Attacks, and Holiday Season Threats

30

React2Shell Exploits, CISA’s Brickstorm Warning, ShadyPanda’s Browser Weaponization

31

Scattered Lapsus$ Hunters, SilverFox's ValleyRat Campaign, and More

32

Are Cyber Predictions Worth It? Plus Chinese AI Attacks, IoT Takeovers

33

Fortinet Flaw Exposed and Exploited! Plus, Threat Hunter Hacks: SEO Hits Hard

34

Gootloader's Return, LANDFALL Android Spyware, Sector-by-Sector Cyber Trends

35

Why Cloud Threats Are Escalating: Identity Risks, Automation Flaws, and Legacy Vulnerabilities, Plus the Latest on Chinese APT Campaigns and NPM Package Abuse

36

Why Cyber Threats Surge 20% During M&A, Plus the Latest on Qilin and Lazarus Group Campaigns

37

Automate to Defend: A Former FBI Agent's Ransomware Guide for CISOs

38

Is Your Software a Secret Backdoor? Flax Typhoon's Latest Campaign Unwrapped

39

Cl0p's Latest Heist: Exploiting Oracle's Critical Vulnerability

40

Should Governments Hoard Zero Days? Analyzing Brickstorm Malware and Storm-1849

41

Attacker Breakout Time Hits 18 Minutes, New Shai-hulud NPM Worm

42

Welcome to ShadowTalk

43

Do You Need AI to Fight AI? Plus Supply-Chain Attacks and Russia's Latest Backdoor

44

Salesforce Attack Fallout, Axios Abuse, and Cloud Ransomware

45

New Silk Typhoon Attacks, the Cybercriminal Recruitment Underworld, and More!

46

Warlock Ransomware Hits Telecoms, LLM Data Theft, and ShinyHunters Updates

47

ShinyHunters, Scattered Spider, and Salesforce? Plus, Kimsuky Data Breach!

48

Akira’s Zero-Day Chaos + The Rise of DRP Threats

49

Full CrushFTP Attack Chain, Plus BreachForums is Back!

50

New SharePoint Flaw, How Cybercriminals Use AI

51

Do You Really Need IOCs? Plus Zero-Day Exploits, AI Data Leaks, and Phishing for VIPs

52

SafePay Ransomware Rises, North Korea Adopts ClickFix

53

Citrix Bleed 2, Scattered Spider Hits Aviation

54

Analyzing Iran-Israel Cyber Threats, New Scattered Spider Attack Chain

55

Israel-Iran Cyber Warfare, Anubis Ransomware, and More Attacker Trends

56

Black Basta's Enduring Legacy, Qilin Exploits Fortinet Flaws

57

Scattered Spider's Evolving Playbook, SentinelOne Outage

58

SPECIAL: How Russian Market Fuels Credential-Based Attacks

59

The Threat Evolution: SAP Exploits, SEO Poisoning, and SkitNet Malware

60

Will US Politics Reshape Russian Cyber Threats?

61

Scattered Spider Strikes Again, Hunt for North Korean Insiders Heats Up

62

Demystifying CVE-2025-31324, The New Critical SAP NetWeaver Flaw

63

BreachForums Down: Hacktivist Attack or FBI Crackdown?

64

Hijacked and Hidden: ReliaQuest Identifies New Backdoor and Persistence Technique

65

Fast Flux DNS Challenges, Evolving Adversary Tactics, and Proactive Defense Strategies

66

From Oracle to AI: Everything You Need to Know About Emerging Cyber Threats

67

Guest Episode: Navigating Cyber Storms with Expert Insights on Incident Response

68

When Old Meets New: The Rise of VPN Exploits and Brute-Force Tools

69

Webcam Warfare, Supply Chains Under Siege, Insider Threats, and More!

70

Hooked and Hacked: Phishing Frenzy, Ransomware Recap, Zero-Day Fallout

71

SPECIAL: 'From Data to Defense' - Insights from ReliaQuest's Annual Cyber-Threat Report

72

BlackLock Ransomware, 8Base Seized, Storm-2372 Phishing

73

Brute Force Campaign, Ransomware Insider Recruiting, Manufacturing Threats

74

AI Spies, Unused AWS Buckets, New Lazarus Group Infrastructure

75

Attackers Accelerating Attacks, Lumma Infostealer, DeepSeek LLM

76

Ransomware Hits New Heights, FortiGate Data Leaked, Sneaky 2FA Phishing Kit

77

Guest Episode: Ways Threat Intel Can Prioritize Threats, Vulnerability Chaos, Biden Executive Order

78

Espionage Hits US Treasury, OtterCookie Tricks Jobseekers, ReliaQuest Tackles Pure Malware

79

Guest Episode: Are Cyber Predictions Worth It? Clop Strikes, BADBOX Crumbles, US Fights Back Against Chinese Espionage

80

Termite Ransomware, QR-Code Browser Bypass, CAPTCHA Hijacking

81

BootKitty Unleashed, Word Corruption Campaigns, M&A Cyber Threats

82

Guest Episode: Can Someone Non-Technical Be a CISO? New APT28 & Palo Alto Exploits

83

Black Friday Retail Risks, T-Mobile Troubles, AI Deceptions

84

2025 Cyber Threat Predictions, MOVEit Data Breach, Volt Typhoon Rebuilds

85

Credential Theft, LastPass Social Engineering, Interlock Ransomware

86

Guest Episode: Black Basta's TTP Shift, Diversity, Equity, and Inclusion (DEI) In Cyber Security

87

Scattered Spider x RansomHub, Anonymous Sudan Unmasked, APT41 Gamble

88

Ransomware in Q3 2024, Cisco Breached, ChatGPT Misuse

89

Healthcare Cyber Threat, Salt Typhoon Compromises US Telecoms, Gorilla Botnet DDoS Campaigns

90

Guest Episode: Importance of Cyber Insurance, Embargo Ransomware Target Cloud, Influence Ops Target US Election

91

Telegram's Pivot, Kaspersky's Surprise, Remediating Data Exfiltration Attacks

92

Fortinet Breach, Malware Locks Users in "Kiosk" Mode, Insider Threat Case Studies

93

GRU Orchestrate Sabotage and Assassination, Sextortion Scams, Inc. Ransom's Novel Attack

94

Guest Episode: Building Security Teams, Ransomware and Lawsuits, Top Attacker Techniques

95

Telegram CEO Arrested, Volt Typhoon, Cybercriminal Forum Insights

96

NPD Breach Latest, Election Disinformation, Service Account Abuse

97

Unusual Espionage, Vicious Vulnerabilities, Popular Exfiltration Tools and Malware Loaders

98

Special: LIVE from BlackHat 2024, Unauthorized RMM Useage, DEF CON 32 Preview

99

Deepfakes-The New Frontier in Deception, Ransomware Roundup, Threats Bypassing Your EDR

100

CrowdStrike Global IT Outage, Finance & Insurance Threats

101

Guest Episode: Ransomware in Q2 2024, Disney/AT&T Breach

102

GenAI Powers Cybercrime, Cobalt Strike Takedown, Record-breaking DDoS Attack

103

Weekly: TeamViewer Supply Chain Attack, MOVEit Horrors, Medusa Ransomware Case Study

104

Weekly: Lockbit Claim US Federal Reserve Breach, Protocol Tunneling, Kaspersky Banned in US

105

Weekly: Future of Scattered Spider, Supply Chain Compromise, Insider Threats

106

Guest Episode: Cyber Threats Facing Healthcare, Optum Impact, Ransomware, AI and Automation

107

Special: Live from InfoSec Europe 2024, Snowflake Breach, Cybercriminal AI reflections

108

Weekly: Microsoft Deprecates VBScript, Common Infostealers, GhostEngine Cryptominer, BlackSuit Attack Analysis

109

Weekly: Microsoft Enforce MFA, Fileless Malware, Rise of Deepfakes

110

Weekly: Ransomware Impacting Hospitals, Q1 Most Observed Attacker Techniques, BreachForums Advertise Access to Security Company

111

Special: AI and Automation at RSAC 2024

112

Cracking the Code: Getting a Job in Cybersecurity

113

Weekly: APT28 Activity, Iran/Israel Tensions, Ransomware Rebrands

114

Weekly: Palo Alto Critical Exploit, VPN Management, RansomHub Leak Optum Data

115

Weekly: HC3 Social Engineering Warning, ReliaQuest Q1 Phishing Report, Microsoft Copilot

116

Weekly: New Backdoor in XZ Utils, SEO Poisoning, Impersonation Scams

117

Weekly: Google AI Search, Spain Telegram Ban, Speculative Execution Vulnerabilities

118

Weekly: AT&T Breach, Magnet Goblin, ReliaQuest's Annual Threat Report (ATR)

119

Weekly: TeamCity and Supply Chain Risk, BEC Detections, Midnight Blizzard

120

Weekly: ConnectWise Critical Vulnerabilities , Credential Theft, NIST Frameworks

121

Weekly: Lockbit Return, SAT Exercises, Optum Breach

122

Weekly: Lockbit Taken Down, RMM Tool Abuse, Chinese Gov't Documents Exposed

123

Weekly: SocGholish, Volt Typhoon, ToothBrush DDoS' and Flipper Zero

124

Weekly: AnyDesk Breach, Deepfake Social Engineering, Q1 2024 Priorities

125

Weekly: Killnet 2.0, Baselining Detection Rules, Ransomware in Q4 2023

126

Weekly: Midnight Blizzard Targets Microsoft, Recent Attacker Techniques, Citrix NetScaler Vulnerabilities

127

Weekly: Ivanti Zero-days, Valid Account Misuse, Emerging risk from (IoT) devices

128

Weekly: Cyber Threats Developments of 2023, Lockbit Targets Healthcare

129

Weekly: 2023 in Review, ALPHV Targeted by FBI, Predictions for 2024

130

Weekly: BYOVD Report, Log4Shell Two Years Later, ALPHV Site Outage, Delaying SEC Disclosures

131

Weekly: Ransomware Targeting ESXi, Threats to Airline Organizations, CNI Impacted

132

Weekly: EDR Pitfalls, Okta Intrusion Update, Secure AI Guidelines, Expired Google Cookies

133

Weekly: ALPHV SEC Complaint, Scattered Spider Case Study, Sandworm Attacks

134

Weekly: CitrixBleed, Taking a Proactive Approach to IR, BiBi wiper targets Israeli Organizations

135

Weekly: Apache ActiveMQ and Atlassian Confluence, SEC files charges, QR code phishing

136

Weekly: SolarWinds SEC Charges, Vulnerabilities Roundup, AI Executive Order

137

Weekly: Q3 Ransomware Report, ServiceNow Vulnerability, Okta Incident

138

Weekly: Critical CISCO IOS XE Vuln, Business Email Compromise (BEC) activity, malicious use of Discord

139

Weekly: Hamas Cyber Threat Implications, Top Adversary Techniques, Qakbot

140

Weekly: National Cyber Security Awareness Month (NCSAM), Progress FTP Server, RDP Sessions, IronNet

141

Weekly: Hunting for MFA bypass techniques, Libwebp Vuln exploited, VMWare ESXi

142

Weekly: MFA Bypass Techniques, Microsoft Data Leak, Latest ALPHV Attack

143

Weekly: Anonymous Sudan, Domain Redirection Attacks, UK Ransomware Report and Managed Engine Zero-Day Exploit

144

Weekly: SocGhoulish deep dive, AI security concerns, LockBit vs. UK MOD

145

Weekly: Qakbot Takedown, New Barracuda Zero-Day, Resurgence of Hacktivism

146

Weekly: Malware Loaders, Ransomware Runbooks, Generative AI and Barracuda ESG

147

Weekly: DefCon, Cl0p, Raccoon Stealer

148

Weekly: AI at BlackHat, Device Code Phishing, Russia-Ukraine War Trends and DEF CON Tips

149

Special: CISO Chat Live from BlackHat 2023

150

Weekly: Business Email Compromise (BEC), ReliaQuest Bi-Annual threat reports, influence of AI on the Cyber Threat Landscape

151

Weekly: What We're Seeing Right Now, Cl0p Cycle Continues, Ivanti Zero-Day, ALPHV API

152

Weekly: What We're Seeing Right Now, Cl0p Update, WormGPT

153

Weekly: Microsoft Cloud Breach, Strava App, Cl0p Update and Remote Management Monitoring

154

Weekly: Defense Evasion via Virtualization, LockBit target TSMC, CISA Identify New Exploited Vulnerabilities

155

Weekly: Legal Developments, New APT29 Campaign and ReliaQuest's Annual Threat Report

156

Weekly: Cl0p update, Killnet target European financial institutions, closed sources findings

157

Weekly: Cl0p releases company names, Gootloader, new Fortinet RCE, Ukrainians hackers take down Infotel.

158

Weekly: MOVEit Zero-day and Cl0p attribution, Infostealing ecosystem, DBIR 2023 Report

159

Weekly: MOVEit Zero-day, RaidForums Breach, Buhti Ransomware

160

Weekly: GootLoader, Intrusion Truth, Volt Typhoon, and Exponent conference debrief

161

Weekly: SocGholish, Cactus Ransomware, Greatness Phishing-as-a-service

162

Weekly: Snake malware takedown, Kubernetes hunts, and Caffeine Phishing-as-a-Service

163

Weekly: ReliaQuest Threat Management, ALPHV, Veeam Vulnerability Exploited

164

Weekly: RQ Ransomware Report, 3CX Update, Russia-Ukraine Cyber Operations, and Cybercriminal Ecosystems

165

Special: RSA Conference 2023

166

Weekly: Vulnerability Quarterly Roundup, Domino Backdoor, Lockbit Targeting MacOS

167

Weekly: Cobalt Strike takedown, latest MERCURY campaign, Patch Tuesday

168

Weekly: Genesis Market seizure, Vulkan Files, and new Microsoft Security Update

169

Weekly: 3CX supply chain attack, Rostec deanonymize Telegram, IcedID

170

Weekly: Outlook Vulnerability, TeamTNT and Breachforums closure

171

Weekly: SVB collapse, FBI IC3 report, and Cl0p update

172

Weekly: US National Cybersecurity Strategy, Emotet and Cl0p return

173

Weekly: HTML Smuggling, CISA Guidance on Logging

174

Weekly: Russia-Ukraine War - One-Year Later

175

Weekly: Trickbot/Conti Sanctions, OneNote Documents, and NATO DDoS Attacks

176

Weekly: VMware ESXI campaign and SocGholish overview

177

Weekly: Hive Ransomware Takedown and Dark Web Cybercriminal Jobs

178

Weekly: Ransomware Profits Drop, Russian ISP, and Microsoft Investigation

179

Weekly: 2022 Recap and Forecasting 2023 Trends

180

Weekly: Turla Target Ukraine, ChatGPT, and Lorenz Ransomware Activity

181

Weekly: Welcome to 2023!

182

Weekly: Recent Vulnerabilities, Clop Ransomware, New Year's Resolutions

183

Weekly: Russian and Ukraine Roundup, Lazarus Group Cryptocurrency Activity, Apple’s Right to Repair

184

Weekly: Sandworm targets Ukraine, Oracle RCE vulnerability, 300th Episode

185

Weekly: LockBit Arrest, Tech Layoffs, Black Friday Risks

186

Weekly: APT29 Credential Roaming, Russian Hacktivists Use Somnia Ransomware, Recent LockBit Activity

187

Weekly: British Government Scanning UK Devices, Twitter's Verification Process, Latest Emotet Return

188

Weekly: APT10 Deploy LODEINFO Malware, New Azov Data Wiper, Emotet Malicious Spam

189

Weekly: Ukraine Activity Roundup, Vice Society Targeting Schools, Iranian Hacktivism

190

Weekly: REvil connection to Ransom Cartel, Cryptocurrency hacks in Japan by Lazarus, Toyota T-Connect Attack

191

Weekly: US Airports DDoS’d, Fortinet Vulnerability, Deep Dive Into Information Stealers

192

Rick Holland with Michael Farnum & Greg Porterfield of Set Solutions: Uber breach & 2023 predictions

193

First use of LockBit Builder, Ransomware Groups Destroying vs. Encrypting Data, Domain Shadowing

194

LockBit Builder leak, Lapsus$ breaches Rockstar and Uber, Emotet pushes Quantum and Alphv ransomware

195

Weekly: Intermittent Encryption Tactics, Geopolitical Developments in Cyber Crime

196

Weekly: Revival of Hacktivism, Targeting the Education Sector, Terror NFTs

197

Weekly: LastPass Incident, Montenegro Attacks

198

Weekly: Cyber Threat Insurance, LockBit’s lockdown, Charming Kitten email attack

199

Weekly: BlackHat and Defcon Recap, Microsoft’s Patch Tuesday, North Korea Fake Coinbase Jobs

200

Weekly: A History of Ransomware, deBridge Hack Details, Advice for Multiple Ransomware Attacks

201

Weekly: 911 Proxy Service Ends, ALPHV claims attack on pipeline and Recent news from Taiwan & China

202

Weekly: Entrust Ransomware Attack, Coinbase Insider-Trading Case and Redeemer Ransomware Builder

203

Weekly: North Korea Makes Comeback with Ransomware, How Malware is Distributed, Russia Fines Google

204

Weekly: Microsoft Patch Tuesday, Russia Targeted, Hive Ransomware Upgrade, TrickBot Attacks Ukraine

205

Weekly: Chinese Data Leaked, Crypto Scam Targets British Army, Bug Bounty Reports Insider Threat

206

Weekly: Cyber Threat Intelligence Aids Ukraine, Conti Stops Data Leak, LockBit's New Bounty Program

207

Weekly: AlphV Publishes Victims' Data, 'BidenCash' Website Sells Credit Card Info, ATO Paper

208

Weekly: Follina Zero Day, Conti Shuts Down Affiliate Program, LockBit vs Mandiant Discussion

209

Weekly: LockBit PR Stunt Against Mandiant and Bohrium Targeted Users Via Spear-Phishing Operations

210

Special: Geoff White and the Lazarus Heist

211

Special: David Thejl-Clayton Talks Rolling Your Own Verizon DBIR

212

Weekly: Insider Threat Actor is Sentenced, Microsoft Patch Tuesday Mishap and NFT Scams

213

Weekly: Costa Rica Declares State of Emergency, EU Accuses Russia of Attack, 5 Years Since WannaCry

214

Weekly: The Return of REvil, China APT Activity, Russia-Ukraine RoundUp

215

Weekly: The Return of Lapsus$, 2 Months of Russia-Ukraine War

216

Weekly: Connection Found Between Conti and Karakurt, ICS Networks Targeted, Lazarus Uses Crypto Apps

217

Weekly: Cybercriminal Forums Go Down & Cyber Activity in the Russia-Ukraine War Go Up

218

Weekly: Spring4Shell, Borat RAT, FIN7 Evolves Toolset

219

Special: Structured Analytical Techniques and Office Banter

220

Especial: Desvendando o Grupo de Hackers Lapsus$

221

Weekly: Q1 Review Including Russia-Ukraine War, REvil Arrests, Emergence of Lapsus$ & More!

222

Especial: Lapsus$, Sus Ataques, y La Brecha de Okta

223

Weekly: Lapsus$ Targets Large Companies, Russia/Ukraine Ongoing War, TransUnion Data Breach

224

Special: Russia-Ukraine War Update 22 March 2022

225

Weekly: New Malware "CaddyWiper", Crypto ATM, Russia to Use TLS Certificates

226

Weekly: Linux Vulnerability "Dirty Pipe", 2022 Ransomware Landscape So Far, Coinbase Blocks Russia

227

Special: Russia-Ukraine War Update 07 March 2022

228

Especial: Rusia y Ucrania Guerra, SWIFT, y Consejos de Mitigación y Reducción del Riesgo

229

Weekly: Conti Leaks, Reactions from Cybercriminals, & Priority Intelligence Requirements

230

Special: Russia-Ukraine War Update 02 March 2022

231

Special: Russia and Ukraine - What We Know So Far - 28 February 2022

232

Weekly: Russian Offensive Cyber-Team, Conti-Trickbot, OpenSea NFT Breach, & More!

233

Special: Russia and Ukraine Conflict

234

Weekly: US DoJ Indictment, Grey Hat & ETH's Bounty, Crypto Ads

235

Weekly: Microsoft to Enable Macros in Office, Russia Arrests Hacking Group, Valentine's Day Concerns

236

Weekly: Cyber Operations As Part of Hybrid Warfare in Russia-Ukraine Context

237

Weekly: Malicious QR Codes, Ransomware Insider Attacks, Russia/Ukraine Conflict Escalates

238

Weekly: Attacks Against Ukrainian Websites, REvil Arrests, and Microsoft Wiper

239

Weekly: H2 Database Vulnerability, DDoS Extortion, and Alternate ransomware techniques

240

Especial: Servicios financieros, ransomware, y ciberdelincuencia

241

Weekly: Closing out 2021 with Log4j Updates, Karakurt News, and a Cybercriminal Arrest

242

Special: Log4j Zero-day Vulnerability

243

Weekly: NICKEL Targets LATAM and Europe, Quantum Computing, and UK Cyberattack

244

Weekly: IKEA Hack, Sabbath Ransomware Group, Proofpoint Rich Text Format and More!

245

Weekly: GoDaddy Breach, MosesStaff Political Attacks, and Conti Orchestrates Emotet Comeback

246

Weekly: Exploit-as-a-Service, Emotet’s Return, and FBI Fake Email Campaign

247

Special: NCSAM Takeaways and Key Resources

248

Weekly: Robinhood data leak, NSO in US Appeals Court and Iranian-linked hackers target ISPs

249

Weekly: NRA under the gun, Groove hoax, and Conti gulf apology

250

Weekly: NOBELIUM is back, Ransomware Decryptors and Employers, and Spooky Halloween Tales

251

Weekly: REvil Rep Death, Ransomware Trends, and BlackMatter Advisory

252

Weekly: FIN12 targets healthcare, Google Phishing, and Pentagon Official Resigns

253

Weekly: Twitch Hack, Facebook blackout, and Pandora Papers

254

Weekly: NOBELIUM Malware, BEC scheme, and EU Condemns Russian Cyberactivity

255

Weekly: FBI under fire, Microsoft goes passwordless, and RaidForums

256

Special: Dr. Tom Robinson - Threats to Crypto and Tracking Ransomware with Blockchain Analytics

257

Weekly: Mozi arrest, Fortinet credentials, and Splunk PowerShell Release

258

Weekly: ProxyToken and Lockfile, AlphaBay’s Comeback

259

Weekly: #tbt Throwback Thursday Edition

260

Weekly: Prometheus, Ransomware Updates, and Microsoft Morse Code

261

Weekly: Phishing Site Targets Scammers, China Pulls False Flag in Israel, $600 Million Crypto Hack

262

Weekly: Wiper Malware Targets Tokyo Olympics, MeteorExpress Attack, PwnedPiper, Hopper and More!

263

Weekly: CISA guidelines, Q2 Ransomware roundup, and PunkSpider’s back!

264

Weekly: Microsoft Exchange attribution, NSO Spyware, Zero-days, and Clippy

265

Special: Bryson Bort, Cyber Gandalf and MORE!

266

Weekly: Kaseya Attack Updates, Fancy Lazarus, and Spyware on Google Play

267

Weekly: LinkedIn Breach, Marketo Marketplace, Playstation Breach, Western Digital MyBook, Nobelium

268

Special: Cyber Threat Intel Leader Gert-Jan Bruggink, legos, and MORE!

269

Weekly: Google Releases Supply-Chain Framework, New NATO Agreements, and More!

270

Special: Pulsedive Founders Dan and Grace Talk Origins, IOCs, and More

271

Weekly: VPN Vulnerabilities, EA Gets Attacked, Plus Clop Deals With Affiliate Arrests

272

Special: Anomali’s AJ Nash Talks Origin Story, Building Threat Intel Teams, and More!

273

Weekly: Chinese Cyber Espionage, GitHub Takedowns, and EURO 2020 Predictions

274

Weekly: Nobelium Attacks, VMWare Exploits, and the Biden Administration’s Letter on Ransomware

275

Special: The State of the APAC Cyber Threat Landscape

276

Weekly: Drug Kingpin Taken Down by Cheese and Ransomware Makes a Comeback

277

Special: Jeff Stone Discusses His Origin Story, Interviewing Cybercriminals, and More!

278

Weekly: Colonial Pipeline Updates, DarkSide Feels the Pressure, and More!

279

Weekly: The Colonial Pipeline Incident, BEC Gift Card Campaigns, and More!

280

Special: David Thejl-Clayton Talks Data Driven Incident Response and Verizon DBIR

281

Weekly: VPN Vulnerabilities, Supply Chain Attacks, and Babuk Says “Bye”!

282

Special: Amy Bejtlich Talks Culture of Candor Within Intel Teams and More!

283

Special: ShadowTalk’s 200th Episode!

284

Weekly: Supply Chain Attacks Rule The Day, Plus The FBI Takes On Web-Shells

285

Weekly: Q1 Ransomware Round-Up - Looking Back at Early 2021

286

Weekly: Facebook Data Breach, Ransomware Cartel, and More!

287

Weekly: It’s A Ransomware Round-Up - CNA , Clop, and Much More!

288

Special: Dr. Chase Cunningham Talks Zero Trust, His Book on Cyber Warfare, and More!

289

Weekly: More on Microsoft and Acer Receives $50 Million in Ransom Demands

290

Special: Creator of Zero Trust John Kindervag Talks Origins and the Future of Zero Trust!

291

Weekly: Ransomware Resurgence - The Return of FIN8, DarkSide, and More!

292

Weekly: Supply Chain Compromise Round-Up - Microsoft, Verkada, and More!

293

Weekly: New Australian Legislature, VMware Bugs, and More!

294

Weekly: When Initial Access Brokers Attack

295

Weekly: Egregor Arrests, SIM-Swapping, and Oldsmar Updates!

296

Weekly: Ransomware Updates - CDPR Victimized, Ziggy’s End, and the Oldsmar Water Incident

297

Weekly: Lebanese Cedar, Nefilim Ghost Credentials, and More on SolarWinds and Emotet

298

Weekly: Law Enforcement Wins the Week - The Fall of NetWalker and Emotet!

299

Weekly: CISA Security Advisory, IObit Attack, and more SolarWinds!

300

Weekly: Sunburst, Sunspot, and more on SolarWinds!

301

Weekly: SolarWinds Updates, TicketMaster Fraud, Apex Cyber Attack, and More!

302

Weekly: SolarWinds Supply-Chain Attack Round-Up

303

Weekly: FireEye Breach, Phishing for the Covid-19 Vaccine, and More!

304

Special: Guest Brian Wrozek Talks Origin Story, Planning for 2021, and More!

305

Weekly: Gootkit & REvil, Spam Haus Findings, and More!

306

Weekly: Egregor Ransomware, IoT Regulations, Black Friday Threats and More!

307

Weekly: FunnyDream, Ragnar Locker on Facebook, and Egregor Ransom Notes

308

Weekly: RegretLocker, OceanLotus, Millions Seized in Cryptocurrency, and more!

309

Weekly: Election Update, Kimsuky Activity, Maze Group Announces Closing, Wroba Mobile Malware

310

Special: Guest Phillip Wylie Talks Origin Story, Bear Wrestling, and Much More!

311

Weekly: The Team Gets Spooky with Fancy Bear, Ryuk, and More!

312

Weekly: SandWorm Indicted by DOJ, Darkside Has A Soft Spot, and Ryuk's Super Speedy Attack!

313

Weekly: Microsoft Derails Trickbot, Ransomware Running Rampant, Fitbit Customers At Risk, and More!

314

Special: Guest Marcus Carey Talks Origin Story, BBQ, Diversity, and More!

315

Weekly: Sanctions from the DOT, Fancy Bear Targets the US Government, and Foreign Spies in Disguise!

316

Weekly: It’s A Ransomware Roundup: Mount Locker, Old Gremlin, REvil, and More!

317

Weekly: Law Enforcement Cracks Down On Cybercriminals, Fancy Bear Goes Phishing, And More

318

Special: Discussing Deception with Chris Sanders

319

Weekly: Ed Merrett Joins To Talk HackableYou And The Latest In Threat Intel

320

Weekly: The Team Talks Baka, Epic Manchego, and Smaug, Plus Emotet Rides Again

321

Weekly: New Zealand Stock Exchange faces DDoS, Tesla avoids cyberattack, and Pioneer Kitten updates

322

Weekly: Photon Team Talks BeagleBoys, DarkSide, and DeathStalker, oh my!

323

Special: Guest David Bianco Talks Origin Story, Pyramid of Pain, and More

324

Weekly: Emotet Gets a Vaccine, NSA Drovorub Advisory, and North Korean Activity plus Bureau 121

325

Weekly: Defaced Subreddits, Intel Leak Drama on Twitter, and HIBP Goes Open-Source

326

Weekly: CWT pays ransom, data leaked for 900+ Pulse Secure Servers, EU issues first cyber sanctions

327

Special: Guest Geoff White Talks Best-Selling Book Crime Dot Com

328

Weekly: Garmin ransomware attack, QSnatch malware, and ShinyHunters Stage 2

329

Weekly: Trickbot trojan mishaps, Emotet resurgence, Twitter takeovers, and APT group updates

330

Weekly: Twitter takeovers, Data Viper breached by NightLion, and a look at CryptBB

331

Weekly: PAN-OS Vulnerability, Lazarus Group, BEC scammer “Hushpuppi”, and New Photon ATO Research

332

Weekly: Torigon, Nulledflix, and BlueLeaks, Plus DevSecOps Insights From DS CISO Rick

333

SPECIAL: Guest Speaker Tom Schmitt Talks About His Origins in Cyber Threat Intel and TITO

334

WEEKLY: Lookback Operators Deploy New Malware Against US Utilities Sector And Honda Cyber Attack

335

SPECIAL: What Goes Into The Verizon DBIR With Alex Pinto

336

WEEKLY: Maze Ransomware Alliance, EndGame DDoS Protection Tool, And Ransomware Disguises

337

WEEKLY: Hacktivist Chooses Destruction Over Profit w/ Ransomware and Collection 1 Hacker Identified

338

WEEKLY: Verizon DBIR, ShinyHunters, Sodinokibi Ransomware, And More Phishing

339

SPECIAL EPISODE: Contact Tracing and COVID-19

340

SPECIAL EPISODE: Remote Worker Security: Tech & ISP Providers, Data Security, And The Future

341

WEEKLY: WannaCry Anniversary, Wordpress Plugin Vuln, WeLeakData Compromised

342

WEEKLY: Competitions On English Forums, Purple Teaming, & Hacker Bribes 'Roblox' Insider

343

SPECIAL EPISODE: The Human Element Of Cybersecurity Programs With Hacker Valley Studio

344

WEEKLY: Microsoft Teams ATO Vulnerability, APT32, & Uptick In Ransomware

345

WEEKLY: Maze Ransomware Infiltrates Cognizant, Czech NCISA Warning, And Third Party Risk Assessment

346

WEEKLY: SFO Airport Hack, Fin6, And Sodinokibi Switching From Bitcoin To Monero

347

WEEKLY: COVID-19 Third Party App Risks, Zoom, And DarkHotel Hackers

348

WEEKLY: Zoom Zero-Day Vulnerabilities and Fin7 Delivering Malware Via Snail Mail

349

WEEKLY: Remote Worker Threat Model And Cybercrime Updates

350

WEEKLY: Slack Vulnerability, Apollon Dark Web Exit Scam, And Online Brand Protection

351

SPECIAL EPISODE: Coronavirus: Cybercrime Reactions And CISO Advice

352

WEEKLY: Necurs Botnet, SMB Vulnerability, Coronavirus Scams, And Dark Web Updates

353

WEEKLY: Banking Trojan Steals Google Authen Codes, Ransomware Attacks Epiq, & Tesco Clubcard Fraud

354

SPECIAL EPISODE: FBI Releases Its Internet Crime Complaint Center (IC3) Report 2019

355

WEEKLY: Data Breaches, Stalkerware, and Dopplepaymer ransomware

356

WEEKLY: OurMine hacks FC Barcelona & Olympics twitter handles, Adsense email extortion, & phishing

357

WEEKLY: yOurMine, Equifax Indictment, and SWIFT POC attack

358

SPECIAL EPISODE: Threat Report ATT&CK Mapping (TRAM) With MITRE’s Sarah Yoder & Jackie Lasky

359

WEEKLY: CTI Frameworks, Wawa Breach Updates, APT34, And Coronavirus Phishing Scams

360

WEEKLY: SANS CTI Summit, Snake Ransomware, CacheOut, And Citrix Vuln Update

361

WEEKLY: Citrix Vulnerability, Microsoft Data Breach, and Telnet Credentials Published

362

WEEKLY: NSA Vulnerability Disclosure, Ransomware News, And Iran Updates

363

WEEKLY: Iranian Cyber Threats, Travelex Ransomware Attack, And Exploit Forum Updates

364

SPECIAL EPISODE: Iranian Cyber Threats: Practical Advice From CISO Rick Holland

365

Jingle Bell Ryuk: NOLA Ransomware, Ring Doorbells, And 2020 Predictions

366

Tochka Dark Web Market Offline, Market.ms Closes, And Data Leakage Stories

367

Cybercriminal Forum Research, Mixcloud Breach, and International Crackdown On RAT Spyware

368

Black Friday Deals On The Dark Web, Phineas Fisher Manifesto, And DarkMarket

369

BSidesDFW Recap, Dynamic CVV Analysis, And The Facebook Camera Bug

370

BlueKeep Attacks, Megacortex Ransomware, and Web.com Breach

371

7.5M Adobe Creative Cloud User Records Exposed, City Of Joburg Ransomware Attack, and APT28 Updates

372

Avast Breach Attempt, NordVPN Breach, And Wifi Security Risks

373

Singapore Cyber Threat Landscape Updates 1H 2019

374

Typosquatting and the 2020 U.S. Election, Honeypots, And Sudo Vulnerability

375

Iran-Linked APT35, Skimming By Magecart 4, Rancour, And Emotet Resurgence

376

The Tyurin Indictment- Mapping To The Mitre ATT&CK™ Framework

377

Magecart Five Widens Attack Vectors, Targeting of Airbus Suppliers, & Tortoiseshell Developments

378

Tortoiseshell Targets IT Providers, The Tyurin Indictment, And Emotet’s Return

379

NCSC Threat Trends And Ransomware Updates

380

Purple Teaming: An Interview With Eliza May Austin

381

Metasploit Project Publishes Exploit For Bluekeep, plus APT3 and Silence Cybercrime Group Updates

382

Ryuk Ransomware, Twitter Rids SMS Tweets, And Facebook Records Exposed

383

More Sodinokibi Activity, Imperva Breach, And Weirdest Food At The Texas State Fair

384

Approaching Cybersecurity As A Third Party Defense Contractor

385

Texas Ransomware Outbreaks And Phishing Attacks Using Custom 404 Pages

386

Breach! Exploring The Modern Digital Breach With Cyber Defense Lab’s CEO Bob Anderson: Part 2

387

Nightmare Market In Disarray And SEC Investigation Into Data Leak At First American Financial Corp

388

Breach! Exploring The Modern Digital Breach With Cyber Defense Lab’s CEO Bob Anderson - Part 1

389

Capital One Breach, Ransomware Trends, and Threat Actors

390

2FA - Advice For Deployment & A Technical Assessment

391

More BlueKeep updates, FSB contractor hacked, and the Enigma Market

392

Interview With Dir Of Threat Intelligence At McDonalds, Brian Hillegas

393

FaceApp Overblown, BlueKeep Updates, And Libra’s Lawmaker Showdown

394

Interview With Deputy CISO At Accenture, Jason Lewkowicz

395

TA505 Global Attacks, Zoom 0-Day, and New Magecart Activity

396

Marriott Faces GDPR Fines - A DPO and CISO Discussion

397

Operation Soft Cell, Libra Cryptocurrency Impersonations, and New Cyber Espionage Activity

398

Google Calendar Phishing, Exim Email Server Vulnerability, and Diversity in Cybersecurity

399

XMRig Cryptocurrency Mining, FIN8 Backdoor, and Attacks Against Office 365

400

“HiddenWasp” and “BlackSquid” malware, TA505 and Turla actvity, and Too Much Information: The Sequel

401

JasperLoader, APT28 URL shortening, and RDP vulnerability discussion

402

CVE-2019-0708 RDP vulnerability and GDPR’s anniversary

403

ElectricFish malware attributed to "Lazarus Group"

404

“Buckeye” APT group used Equation Group tools before 2017 leak

405

Weekly Intelligence Summary: Ep 17

406

Weekly Intelligence Summary: Ep 16

407

Weekly Intelligence Summary: Ep 15

408

Weekly Intelligence Summary: Ep 14

409

Weekly Intelligence Summary: Ep 13

410

Weekly Intelligence Summary: Ep 12

411

Episode 60: Cyber Risks and High-frequency Trading

412

Weekly Intelligence Summary: Ep 11

413

Weekly Intelligence Summary: Ep 10

414

Episode 59: Practitioner’s Guide to Email Spoofing

415

Weekly Intelligence Summary: Ep 9

416

Weekly Intelligence Summary: Ep 8

417

Weekly Intelligence Summary: Ep 7

418

Episode 58: A Tale of Epic Extortions

419

Weekly Intelligence Summary: Ep 6

420

Weekly Intelligence Summary: Ep 5

421

CISO Spotlight: Security Goals and Objectives for 2019

422

Weekly Intelligence Summary: Ep 4

423

Weekly Intelligence Summary: Ep 3

424

Weekly Intelligence Summary: Ep 2

425

Episode 57: Singapore Healthcare Breach

426

Weekly Intelligence Summary: Ep 1

427

Weekly Intelligence Summary: Ep 0

428

Episode 56: Positive cyber security developments for 2019

429

Episode 55: Tackling Phishing

430

Episode 54: Marriott Breach And 2019 Trends

431

Episode 53: Threat Actors Use of Cobalt Strike & How Attacker Actions Can Inform Defenses

432

Episode 52: Black Friday and Cybercrime

433

Episode 51: Phineas Fisher and the Hacking Team Investigation

434

Episode 50: CISCO ASA 0-day and VirtualBox Vulnerability

435

Episode 49: 81,000 Hacked Facebook Accounts For Sale

436

Episode 48: Tesco Bank Fraud And £16.4m FCA Fine

437

Episode 47: Ransomware Surges in October, Cathay Pacific Breach, and Triton Attributed

438

Episode 46: Supply Chain and Third-Party Risks

439

Episode 45: FASTCash Hidden Cobra, MSP Risks, Five Eyes Tooling Report

440

Episode 44: Business Email Compromise

441

Episode 43: Security Flaws Affect 50 Million Facebook Accounts and Equifax Fined £500,000

442

Episode 42: Security Layering and Usability Trade-offs

443

Episode 41: Magecart Payment Card Thefts

444

Episode 40: DoJ Complaint Charges North Korean Actor For Sony Attacks, WannaCry, and More

445

Episode 39: Credential Hygiene

446

Episode 38: Midterm meddling and threat modeling

447

Episode 37: ATM Fraud and Cashout Operations

448

Episode 36: FIN7 Arrests and Phishing Threats

449

Episode 35: Cyber threats to ERP Applications

450

Episode 34: Satori Botnet, OilRig, PowerShell Security, and the Dragonfly Campaign

451

Episode 33: Digital Risk Protection

452

Episode 32: MITRE ATT&CK™ Framework and the Mueller GRU Indictment

453

Episode 31: Carbanak Files and Source Code Leaked?

454

Episode 30: SSL Inspection and Interception: Uses, Abuses and Trade-offs

455

Episode 29: Reducing Your Attack Surface: From a Firehose to a Straw

456

Episode 28: Diversity in Security and Women’s Network Launch

457

Episode 27: Attribution: The How, The What and The Why

458

Episode 26: Mythbusting Vulnerabilities and Exploits

459

Episode 25: Combating Security Debt, Ticketfly Defacement And Data Breach

460

Episode 24: Seize and Desist: Changes in the cybercriminal underground

461

Episode 23: L0pht 20 years on and combating cyber threats with military-style tactics

462

Episode 22: VPN Filter targeting Ukraine, TRITON malware, Roaming Mantis, VBScript & Spectre vulns

463

Episode 21: eFail vulns affecting Open PGP and S-MIME, and interbank payment systems risks

464

Episode 20: Winnti Umbrella, DarkHotel, Office 365 Vulnerability, and Olympus Dark Web Marketplaces

465

Episode 19: Loki Bot, LoJack, GPON Vulnerabilities, and Blackrouter Ransomware

466

Episode 18: Healthcare hacking, BGP hijacking, crypto jacking, and more

467

Episode 17: Network Infrastructure Compromise, Magnitude EK Development, the Gold Galleon, & more

468

Episode 16: Cisco Smart Install Client flaw, Microsoft Outlook vuln, OpIcarus, RSAC, and more

469

Episode 15: 1.5 Billion Files Exposed Through Misconfigured Services

470

Episode 14: Panera Breach Lessons, WannaCry’s Re-emergence, Genesis Marketplace, and more

471

Episode 13: Cambridge Analytica, Trickbot Updates, SamSam Surge Continues, And Dragonfly Attributed

472

Episode 12: Tax Fraud, AMD Vulnerability, Slingshot Targets Mikrotik Routers, And Hermes Ransomware

473

Episode 11: Memcached attacks, disinformation in ME, Spectre exploit, German gov network intrusion

474

Episode 10: Memecached Server DDoS, Flash Vuln in Spam Campaign, Trustico Cert Issues, & Ransomware

475

Episode 9: SWIFT Attacks, Business Email Compromise, Return Of Thedarkoverlord, And APT - 37

476

Episode 8: Lazarus Group, Olympics opening ceremony, Bitgrail Theft, and Outlook vulnerabilities

477

Episode 7: Operation Pzchao, Threats To The Winter Olympics, Infraud Forum Arrests, And More

478

Episode 6: Cryptocurrency Fraud In-Depth

479

Episode 5: $530 Million Cyber Heist, DDoS Against Dutch Banks, And The Future Of Anonymous

480

Episode 4: Dridex, Dark Caracal, Turla, Cozy Bear, And More

481

Episode 3: CVE-2018 -0802, Mirai Okiru, Bancomext Targeted, and Triton Malware

482

Episode 2: CoffeeMiner, Turla, and Cyber Threats to the Winter Olympics

483

Episode 1: Spectre, Meltdown, Satori, and OpNetNeutrality