
Sign up to save your podcasts
Or


Multiple sources discuss User and Entity Behavior Analytics (UEBA), a cybersecurity technology that analyzes user and entity behavior to detect anomalies indicating potential threats, contrasting it with Security Information and Event Management (SIEM) systems which primarily aggregate and analyze security event logs. The articles highlight that UEBA and SIEM are often complementary, offering enhanced threat detection, faster incident response, and improved risk management when used together. Specific UEBA tools and their features are reviewed, along with common use cases for UEBA, such as detecting insider threats, compromised accounts, and automating risk management, while also noting challenges in implementation and the projected significant growth of the UEBA market.
Become a Patron:
https://www.patreon.com/DecodedPodcast
Other ways to contribute:
https://buymeacoffee.com/decodedcybersecurity
On Instagram:
Follow @decodedthecybersecuritypodcast to level up your cybersecurity skills
TLDR InfoSec's issue highlights various cybersecurity concerns, including a flaw in SSL.com's domain validation that could lead to unauthorized certificate issuance. The newsletter also reports on the Proton66 network's alleged involvement in numerous malware campaigns and confirms a cybersecurity incident affecting retailer Marks & Spencer. Additionally, it explores strategies for enhancing detection with UEBA, discusses security vulnerabilities in AI model interactions via MCP, and covers topics like diversity in cybersecurity and Google's new agent communication protocol. Finally, it notes security incidents involving a fake Alpine Quest app targeting Russian military and a hack of Ripple's XRP library.
Become a Patron:
https://www.patreon.com/DecodedPodcast
Other ways to contribute:
https://buymeacoffee.com/decodedcybersecurity
On Instagram:
Follow @decodedthecybersecuritypodcast to level up your cybersecurity skills
This newsletter covers a range of current events in technology, including OpenAI's potential interest in acquiring Chrome to create an AI-first browser and Microsoft's revised policies for managing employee performance. It also highlights advancements in space travel with a private mission and the potential of lab-grown chocolate as a sustainable alternative. Additionally, the newsletter features opportunities in AI curation, insights on running Python in production, and internal changes occurring within Apple's Siri team. Finally, it touches on the evolving landscape of compute with NVIDIA's market position and various quick links to news in big tech and programming tools.
Become a Patron:
https://www.patreon.com/DecodedPodcast
Other ways to contribute:
https://buymeacoffee.com/decodedcybersecurity
On Instagram:
Follow @decodedthecybersecuritypodcast to level up your cybersecurity skills
Generative AI models are now capable of rapidly creating exploit code from software patches, significantly reducing the time attackers need to weaponize vulnerabilities. Security researchers demonstrated that models like GPT-4 and Claude can analyze vulnerability disclosures and code differences to develop working exploits within hours, a process that previously required extensive specialized knowledge and manual effort. This automation of exploit creation drastically shrinks the window of opportunity for defenders to patch systems. Consequently, organizations must prioritize swift patching and adopt a security posture that assumes immediate potential for exploitation upon vulnerability disclosure. The increasing speed and coordination of threat actors, amplified by AI, necessitate a heightened state of readiness and automation in defense strategies.
Become a Patron:
https://www.patreon.com/DecodedPodcast
Other ways to contribute:
https://buymeacoffee.com/decodedcybersecurity
On Instagram:
Follow @decodedthecybersecuritypodcast to level up your cybersecurity skills
This cybersecurity newsletter covers a range of current information security topics. It highlights new attack methods and vulnerabilities, such as Google phishing scams and Microsoft Entra lockouts, alongside strategies and tactics for improving security, including insights on Windows 11 Recall and IoT network analysis. The publication also reports on new product launches and tools in the security space, like Kenzo Security and peeko. Finally, it includes important news updates such as CISA's budget-related contract changes and recent security incidents affecting Microsoft, WordPress, and Booking.com.
Become a Patron:
https://www.patreon.com/DecodedPodcast
Other ways to contribute:
https://buymeacoffee.com/decodedcybersecurity
On Instagram:
Follow @decodedthecybersecuritypodcast to level up your cybersecurity skills
This podcast script from "Decoded: The Cybersecurity Podcast by Edward Henriquez" features a fictional expert named Sentinel, who provides an in-depth look at various techniques used in data leaks. The discussion covers how these leaks occur, ranging from cloud misconfigurations and insider threats to phishing and unsecured APIs. Furthermore, Sentinel outlines key strategies for data leak detection and defense, including data classification, DLP, and employee training. The episode also addresses listener questions on identifying past leaks and the role of encryption, emphasizing a proactive approach to data protection.
Become a Patron:
https://www.patreon.com/DecodedPodcast
Other ways to contribute:
https://buymeacoffee.com/decodedcybersecurity
On Instagram:
Follow @decodedthecybersecuritypodcast to level up your cybersecurity skills
Decoded: The Cybersecurity Podcast episode focuses on file upload attacks, explaining how malicious files can be uploaded to web servers to gain control. The podcast features an ethical hacker, Sentinel, who details techniques like bypassing security filters and embedding malware in various file types. The discussion covers tools used for both exploiting and testing upload vulnerabilities, alongside a step-by-step breakdown of a typical attack. Crucially, the episode also outlines defense mechanisms that developers and security teams can implement to mitigate these risks, and it suggests practice labs for safe learning.
Become a Patron:
https://www.patreon.com/DecodedPodcast
Other ways to contribute:
https://buymeacoffee.com/decodedcybersecurity
On Instagram:
Follow @decodedthecybersecuritypodcast to level up your cybersecurity skills
The provided texts explore the landscape of outsourced cybersecurity solutions, specifically Security as a Service (SECaaS) and SOC as a Service (SOCaaS). They detail the benefits and challenges of these models, such as cost savings and scalability versus control and potential vulnerabilities. The sources also compare various providers like Arctic Wolf, Rapid7, Reliaquest, CrowdStrike, Alert Logic, and BitLyft, outlining their features, pricing, and suitability for different business sizes and industries. Furthermore, they discuss key security risks facing modern businesses, especially with the rise of SaaS applications and cloud migration, and how SECaaS and SOCaaS can help mitigate these threats. Finally, one article offers predictions for the cybersecurity landscape in 2025, touching on AI-driven attacks and evolving threat actor tactics.
Become a Patron:
https://www.patreon.com/DecodedPodcast
Other ways to contribute:
https://buymeacoffee.com/decodedcybersecurity
On Instagram:
Follow @decodedthecybersecuritypodcast to level up your cybersecurity skills
This collection of tech news covers a range of current events and discussions. A significant piece examines OpenAI's potential shift away from its nonprofit structure. Other articles explore advancements in areas like nuclear energy with thorium reactors and the progress of humanoid robotics in China. The newsletter also addresses topics relevant to software development, including AI-assisted coding practices and tools like Claude Code and Windsurf. Finally, it touches upon developments in other tech sectors, such as Meta's internal discussions on Facebook's relevance and emerging technologies in treating heart disease. Brief updates on topics like object storage, cryptocurrency developer activity, and Figma's new site-building feature are also included.
Become a Patron:
https://www.patreon.com/DecodedPodcast
Other ways to contribute:
https://buymeacoffee.com/decodedcybersecurity
On Instagram:
Follow @decodedthecybersecuritypodcast to level up your cybersecurity skills
Decoded: The Cybersecurity Podcast episode "Cybersecurity AI Bot Army Attacks: The New Frontier" explores the increasing role of artificial intelligence in cyberattacks. The podcast examines how AI is being used to create sophisticated malware, automate phishing, and generate deepfakes. It also details real-world incidents involving AI misuse, the mechanics of AI bot armies in conducting attacks like DDoS, and the global implications, including state-sponsored threats. Finally, the episode considers defense strategies leveraging AI and the need for regulatory and collaborative responses to this evolving landscape.
Become a Patron:
https://www.patreon.com/DecodedPodcast
Other ways to contribute:
https://buymeacoffee.com/decodedcybersecurity
On Instagram:
Follow @decodedthecybersecuritypodcast to level up your cybersecurity skills
From the publisher's feed