Risky Bulletin

Risky Bulletin

By Risky Business MediaNewsTechnologyTech News
Download on the App Store

Risky Bulletin episodes

  • Authorities dismantle KillSec group

    Authorities dismantle the KillSec hacking group, South Africa thwarts a ransomware attack against air traffic control systems, the US sanctions Venezuelan ATM hackers and a Chinese APT targets AI experts.

    Show notes
    • Risky Bulletin: Authorities dismantle KillSec group, arrest members across Europe
    • 10 min
    • Srsly Risky Biz: “Rogue AI” isn’t going anywhere

      Amberleigh Jack and James Wilson chat about OpenAI agents’ recent escapades into Australian government websites. OpenAI has promised to “rebuild trust with Australians” but we’re likely getting a glimpse into the new normal, here.

      They also discuss how the ShinyHunters hacking group has found itself on law enforcement’s target list after breaching FBI systems. The group played some stupid games and they appear to be in the “stupid prizes” stage.

      This episode is also available on YouTube

      Show notes
        17 min
      • ShinyHunters suspect arrested in the Netherlands

        A ShinyHunters suspect has been arrested in the Netherlands, Apple fixes an iOS zero-day found by Meta, recent Citrix zero-days see mass exploitation within hours and NVIDIA launches an AI sandboxing platform.

        Show notes
        • Risky Bulletin: Sanctions force CAs to revoke TLS certs in Iran, Russia
        • 8 min
        • Between Two Nerds: The AI crime machine

          In this edition of Between Two Nerds Tom Uren and The Grugq talk about the rise of fully automated LLM-driven hacking campaigns among criminals and even state hacking groups. For those with the right risk appetite, a move fast and break things hacking approach using AI can pay off.

          This episode is also available on YouTube.

          Show notes
          • Autonomous AI Agents are breaking into hundreds of Online Retailers
          • A Single Operator, Two AI Platforms, Nine Government Agencies
          • 28 min
          • Risky Bulletin: Intel ends paid bug bounties

            Intel removes cash rewards from its bug bounty program, OpenAI agents probed dozens of organizations, Fraudsters scam €95 million from an Italian bank and Bitget is hacked for $350 million.

            Show notes
            • Risky Bulletin: Intel ends paid bug bounties
            • 10 min
            • Sponsored: Robo-Burp is coming for your web apps

              In this Risky Business sponsored interview James Wilson chats to Kieron Hughes and Andrzej Matykiewicz from PortSwigger about the company’s latest AI pen-testing product, Burp AT. The model has different levels of autonomy modes and is natively integrated with Burp Suite so once it finds vulnerabilities it can spin up intruder attacks, configure everything and brute-force the code.

              The three also chat about the experiences of beta trial users, including one that found a vulnerability that disclosed reports from the company’s anonymous whistle blower platform.

              Show notes
                22 min
              • Risky Bulletin: Major vulnerability found in ancient TACACS+ networking protocol

                A major vulnerability has been found in the ancient TACACS+ networking protocol, Australia’s Prime Minister claims an OpenAI agent hacked the country’s Medicare website, OpenAI gives Ukraine access to its Daybreak cyber-defense program and the UK will establish an anti-disinformation center.

                Show notes
                • Risky Bulletin: Major vulnerability found in ancient TACACS+ networking protocol
                • 12 min
                • Srsly Risky Biz: Bring on the AI lawsuits

                  Tom Uren and Patrick Gray talk about US Treasury Secretary Scott Bessent ruling out liability exemptions for AI companies. Its a good move. Leaving the companies on the hook keeps the pressure on them to do better with their cyber security and testing controls.

                  They also discuss a Russian AI-powered cyberespionage campaign run by a group known as Midnight Blizzard. It used AI workflows to run the entire campaign so they got a lot more hacking done and accepted AI mistakes. This makes sense given that they want more intelligence from Ukrainian targets and don’t care at all about getting caught.

                  This episode is also available on YouTube.

                  Show notes
                    15 min
                  • Risky Bulletin: Team Cymru unmasks shady Chinese proxy network

                    A network of 10,000 AI servers is masking malicious Chinese AI activity, Ukrainian hackers leak Russia’s naval secrets, ShinyHunters hacks the FBI, and the EvilTokens phishing service is disrupted by tech companies.

                    Show notes
                    • Risky Bulletin: Team Cymru unmasks shady Chinese proxy network
                    • 9 min
                    • Between Two Nerds: Real-time cyber defence

                      In this edition of Between Two Nerds Tom Uren and The Grugq talk about whether there is such a thing as real-time cyber defence. Will agentic AI save us from hacking AI?

                      This episode is also available on YouTube.

                      Show notes
                      • Clem Delangue | X
                      • 25 min

                      About Risky Bulletin

                      From the publisher's feed

                      Regular cybersecurity news updates from the Risky Business team...

                      Best of Risky Bulletin

                      Ranked by our users in the last 21 days

                      More shows like Risky Bulletin

                      Hacked by Hacked

                      Hacked

                      192 Listeners

                      Security Now (Audio) by TWiT

                      Security Now (Audio)

                      2,012 Listeners

                      Windows Weekly (Audio) by TWiT

                      Windows Weekly (Audio)

                      888 Listeners

                      Software Engineering Daily by Software Engineering Daily

                      Software Engineering Daily

                      624 Listeners

                      Risky Business by Risky Business Media

                      Risky Business

                      375 Listeners

                      SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

                      SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

                      652 Listeners

                      CyberWire Daily by N2K Networks

                      CyberWire Daily

                      1,028 Listeners

                      Smashing Security by Graham Cluley

                      Smashing Security

                      318 Listeners

                      Click Here by Recorded Future News

                      Click Here

                      423 Listeners

                      Darknet Diaries by Jack Rhysider

                      Darknet Diaries

                      8,068 Listeners

                      Cybersecurity Today by David Shipley

                      Cybersecurity Today

                      180 Listeners

                      Hacking Humans by N2K Networks

                      Hacking Humans

                      314 Listeners

                      Cybersecurity Headlines by CISO Series

                      Cybersecurity Headlines

                      139 Listeners

                      Geopolitics Decanted with Dmitri Alperovitch by Silverado Policy Accelerator

                      Geopolitics Decanted with Dmitri Alperovitch

                      150 Listeners

                      The 404 Media Podcast by 404 Media

                      The 404 Media Podcast

                      397 Listeners