
Sign up to save your podcasts
Or


In this episode of The Cybersecurity Podcast, Lucas and Luna explore a growing threat: malicious browser extensions that steal credentials, session cookies, and even two-factor authentication tokens. With the recent revelation that a popular productivity extension was compromised to exfiltrate data from thousands of users, they break down how these attacks work, why they're so hard to detect, and what you can do to protect yourself. They also discuss the market surge for cybersecurity stocks like CrowdStrike, Palo Alto Networks, and Okta, and what that says about investor sentiment in mid-2026. Plus, a look at the new Chrome policy changes aimed at curbing extension abuse.
#BrowserExtensionHacks #Cybersecurity #DataBreach #CredentialTheft #ChromeExtensions #Malware #SupplyChainAttack #CrowdStrike #PaloAltoNetworks #Okta #TwoFactorAuthentication #SessionCookies #TechSecurity #DigitalDefense #FexingoBusiness #CybersecurityPodcast #HacksAndBreaches #Technology
Keep every episode free: buymeacoffee.com/fexingo
This episode of The Cybersecurity Podcast unpacks the latest Pegasus spyware attack — a politician who investigated spyware abuses had their own phone hacked. Lucas and Luna walk through how the NSO Group's spyware continues to infect iPhones and Android devices years after Apple and Meta tried to shut it down. They discuss the zero-click exploit method, why the attack chain still works despite Apple's Lockdown Mode, and what this means for high-risk individuals in 2026. They also connect the news to this week's cybersecurity stock rally — CrowdStrike up nearly 11%, Palo Alto Networks up over 14%, and Zscaler up over 11% in the past five days — and ask whether the market is pricing in a permanent state of vulnerability. The episode closes on a sober question: if the people investigating spyware can't protect their own devices, what hope does anyone else have?
#Pegasus #NSOGroup #Spyware #ZeroClick #Apple #LockdownMode #iPhone #Android #CyberAttack #PoliticianHacked #Techcrunch #CrowdStrike #PaloAltoNetworks #CybersecurityStocks #ZeroDay #Exploit #FexingoBusiness #BusinessPodcast
Keep every episode free: buymeacoffee.com/fexingo
In this episode of The Cybersecurity Podcast, Lucas and Luna dive into the growing threat of data theft via smartwatches and wearable devices. They discuss how attackers are exploiting Bluetooth vulnerabilities and app permissions to siphon sensitive information, with real examples from recent research and incidents. The hosts also touch on the broader market impact, noting a 14.4% jump in Palo Alto Networks stock over the past week, reflecting investor anxiety around endpoint security. Tune in to learn how to protect yourself and what companies are doing to address these vulnerabilities.
#SmartwatchHacks #WearableSecurity #BluetoothVulnerabilities #DataTheft #Cybersecurity #Technology #PaloAltoNetworks #EndpointSecurity #IoT #PrivacyRisks #FitnessTrackerSecurity #AppleWatch #WearableTech #CyberAttack #FexingoBusiness #BusinessPodcast #TechPodcast #Podcast
Keep every episode free: buymeacoffee.com/fexingo
Episode 86 of The Cybersecurity Podcast dives into the hidden risks of self-hosted email. As more small businesses and tech-savvy individuals move their email off big providers like Gmail and Outlook for privacy reasons, a wave of IP blacklisting, SPF/DKIM misconfigurations, and targeted attacks is hitting the self-hosted community. Lucas and Luna walk through the story of a boutique marketing agency that had their email domain blocked by every major inbox provider after a single forwarding loop. They explain why the economics of self-hosting email have flipped—pointing to the 5-day surge in cybersecurity stocks like CrowdStrike and Zscaler as evidence that the security burden is shifting to specialized third parties. The hosts also share practical steps to secure email without going back to big tech, including how to use a transactional email API as a relay. If you've ever considered running your own mail server, this episode will save you weeks of headaches.
#SelfHostedEmail #EmailSecurity #CyberSecurity #SPF #DKIM #DMARC #IPBlacklisting #EmailDeliverability #CrowdStrike #Zscaler #SmallBusinessSecurity #BoutiqueAgency #MXRecords #EmailInfrastructure #Technology #FexingoBusiness #BusinessPodcast #CyberPodcast
Keep every episode free: buymeacoffee.com/fexingo
In this episode of The Cybersecurity Podcast, Lucas and Luna dive into the new wave of AI-powered phishing attacks that use large language models to craft highly personalized, grammatically perfect emails at scale. They break down how these attacks work, why traditional email filters are struggling, and what recent stock surges in companies like CrowdStrike and Palo Alto Networks tell us about the market's response. The hosts also discuss a real-world example: a deepfake phishing campaign targeting a Fortune 500 CFO that used voice cloning and context-aware messages to steal $2.3 million. By the end, you'll understand why the 'human firewall' is more critical than ever and how to spot these sophisticated scams.
#Cybersecurity #Phishing #AI #LLM #Deepfake #EmailSecurity #CrowdStrike #PaloAltoNetworks #Fortinet #Zscaler #NetworkSecurity #SocialEngineering #Tech #CyberAttack #SecurityOperations #FexingoBusiness #BusinessPodcast #Technology
Keep every episode free: buymeacoffee.com/fexingo
In Episode 84 of The Cybersecurity Podcast, Lucas and Luna dive into the emerging threat of smart building attacks. They explore how attackers are compromising building management systems—HVAC, elevators, access controls—to infiltrate corporate networks and cause physical chaos. Lucas breaks down the attack surface: tens of thousands of internet-exposed building controllers, many running legacy protocols like BACnet with little to no encryption. Luna highlights a recent real-world incident where a casino's high-roller database was breached through an internet-connected fish tank thermometer. They discuss why this matters now in July 2026, with cybersecurity stocks surging but building controls still an overlooked frontier. Lucas notes that Palo Alto Networks is up 19.5 percent this week, yet building automation systems remain a gap. The conversation covers the economics of building hacks, from ransomware targeting physical infrastructure to state actors mapping vulnerable facilities. Practical takeaways: segment OT networks, monitor for anomalous BACnet traffic, and never assume a smart thermostat is harmless. A focused, eye-opening look at the weakest link in modern security.
#SmartBuildingHacks #BuildingManagementSystem #BACnetVulnerability #OTSecurity #IoTSecurity #Cybersecurity2026 #CasinoBreach #Ransomware #PhysicalCyberRisk #NetworkSegmentation #PaloAltoNetworks #TechPodcast #Technology #FexingoBusiness #BusinessPodcast #LucasAndLuna #IndustrialControlSystems #AttackSurface
Keep every episode free: buymeacoffee.com/fexingo
In this episode of The Cybersecurity Podcast, Lucas and Luna explore a major shift in the cyber threat landscape: ransomware gangs are moving away from encrypting on-premises servers and are now targeting cloud infrastructure directly. Lucas explains how attackers are exploiting misconfigured cloud storage buckets, compromised API keys, and weak identity and access management to hold cloud data hostage. He breaks down a recent incident where a mid-size SaaS company lost access to its entire cloud environment after attackers rotated encryption keys. The conversation covers why traditional backup strategies fail in the cloud, how the economics of cloud ransom demands differ from traditional ransomware, and what security teams can do to protect their cloud assets. Luna connects the trend to surging cybersecurity stock prices, noting that CrowdStrike and Palo Alto Networks have seen double-digit gains in the past week as enterprises scramble to secure cloud environments. The episode also touches on the role of AI in both enabling and defending against these attacks.
#Ransomware #CloudSecurity #CloudInfrastructure #CyberAttack #DataBreach #EncryptionKeyAttack #CloudMisconfiguration #IdentityAndAccessManagement #CrowdStrike #PaloAltoNetworks #CRWD #PANW #CybersecurityStocks #AIinCybersecurity #CyberDefense #FexingoBusiness #BusinessPodcast #Technology
Keep every episode free: buymeacoffee.com/fexingo
Episode 82 of The Cybersecurity Podcast with Fexingo digs into the decades-old SS7 protocol vulnerability that remains a gaping hole in telecom security. Lucas and Luna discuss how hackers are still exploiting SS7 to intercept two-factor authentication codes, drain bank accounts, and track location in real time—despite years of warnings. They anchor the conversation with a recent incident involving a German fintech breach, and tie in the market surge for identity-focused security stocks like Okta (OKTA, up 11% this week) as a signal that investors are betting on a shift toward authentication-over-SMS. The hosts walk through why SS7 was designed for trust, why carriers haven't patched it, and what alternatives like passkeys and SIM-swap-resistant two-factor mean for the future. No ads, no hype—just a clear-eyed look at one of cybersecurity's oldest and most persistent flaws.
#SS7 #TelecomSecurity #ProtocolVulnerability #TwoFactorAuthentication #SMSSecurity #FintechBreach #Okta #CybersecurityStocks #Passkeys #SIMSwap #Infosec #Hackers #DataBreach #NetworkSecurity #Technology #FexingoBusiness #BusinessPodcast #TheCybersecurityPodcast
Keep every episode free: buymeacoffee.com/fexingo
In June 2026, a midwest telecom outage triggered by a routine network reset exposed a deeper vulnerability: SS7 protocol exploits that let hackers reroute calls and intercept two-factor authentication codes. Lucas and Luna break down the specific exploit chain — how a 40-year-old signaling protocol still underpins modern phone networks, why carriers are slow to patch, and what the recent stock surge in cybersecurity names like Palo Alto Networks (+14.1% in five days) and CrowdStrike (+9.1%) tells us about the market's bet on telecom security. They discuss the real-world impact: a journalist whose SIM was swapped via SS7 during the outage window, and why the FCC's new 'Network Integrity' rules, proposed in April 2026, might not close the loophole. No alarmism — just the mechanics of a vulnerability that won't die.
#SS7 #TelecomSecurity #SIMSwap #TwoFactorAuthentication #NetworkOutage #PaloAltoNetworks #CrowdStrike #CyberSecurity #Technology #BusinessPodcast #FexingoBusiness #SignalProtocol #FCC #MFA #ZeroTrust #Vulnerability #Infosec #Hacking
Keep every episode free: buymeacoffee.com/fexingo
In Episode 80 of The Cybersecurity Podcast, Lucas and Luna dive into a newly disclosed vulnerability affecting the baseband processor in billions of smartphones—not just old models, but recent flagship devices sold through mid-2026. The exploit, dubbed 'BaseFail,' allows a remote attacker to silently intercept calls, read messages, and track location without any user interaction. Lucas walks through how the bug works at the chip level, why it went undetected for years, and why a patch may take months to reach every device. They connect it to the broader market reaction: cybersecurity stocks like SentinelOne and Palo Alto Networks are up sharply this week, as enterprise buyers rush to upgrade endpoint detection tools that can catch anomalous baseband behavior. The episode also touches on the growing tension between wireless carriers and phone manufacturers over who should bear the cost of baseband patching. Listeners come away understanding why the baseband processor—the component that connects your phone to the cell tower—is both invisible to the user and the most dangerous attack surface in modern mobile computing.
#BaseFail #BasebandVulnerability #MobileSecurity #SmartphoneHacking #Cybersecurity #PaloAltoNetworks #SentinelOne #EndpointDetection #Technology #ZeroDay #RemoteExploit #CellularAttack #PatchManagement #FexingoBusiness #BusinessPodcast #CyberPodcast #Episode80 #Infosec
Keep every episode free: buymeacoffee.com/fexingo
From the publisher's feed