Chloe Thonus

Bite Sized Cyber Crime

Bite Sized Cyber Crime is a short true crime series about cyber crime, notorious viruses and scams, and dark web operations. You can learn how hackers are able to steal data from underneath your nose as well as ways to better protect your online life in manageable ways.

Author

Chloe Thonus

Category

Technology

Latest episode

Jul 6, 2026

Where to listen?

Podcasts in the app Replaio Radio Coming soon

Podcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts

Get it on Google Play Install for free Android 5M+ downloads · 4.8 rating iOS soon

Episodes

The Return of Prince of Persia 22.12.2025

Most threat actors come and go with the times, not lasting more than a couple years. Prince of Persia was assumed to be one such group, but it turns out they not only returned but never left in the first place.   Sources: https://pastebin.com/9yJ1fxP3

DroidLock Ransomware Targets Pirates 15.12.2025

Usually ransomware targets large entities, but as always no one is truly safe online. This specific malware targets individual android users sideloading apps from illegitimate sources. Sources: https://pastebin.com/3J3uAVHt

BRICKSTORM Backdoor Targetting VMWare VSphere Servers 08.12.2025

CIS recently released an advisory warning of a stealthy backdoor that has been targeting VMWare shots and stealing data from snapshots of virtual machines. These are the details of that backdoor Sources: https://pastebin.com/ppt9V3b1

HashJack: An AI Browser Attack 01.12.2025

In the security world it is becoming more and more necessarily to invest in controls around AI and the web browser. This attack targets both and often leaves absolutely no trace on your end, as the attack never leaves the browser. Sources: https://pastebin.com/rz744p1b

Cloudflare Internal Error Causes Massive Outage 24.11.2025

Cloudflare had a massive outage on Tuesday morning that many suspected was some kind of big attack by nation state hackers, however it turns out to have been a lot more simple than that. A little internal error caused a domino effect that took out much of the web for several hours. Sources: https://pastebin.com/ftmYtFv7

First Fully Autonomous AI Attacks Used Claude 17.11.2025

We have our fears of AI taking over the world and killing all the humans, which we are still rather far from, however a more urgent worry is the use of AI automomous agents taking the place of hackers themselves. Once such group managed to offload 80% of the technical hacking work to Claude Code. Sources: https://pastebin.com/PzTM7dZT

UPenn Data Stolen in Breach 10.11.2025

Last week we discussed a weird email sent to students, staff, alumni, or basically anyone associated with the University of Pennsylvania. This week some new developments in the case occurred that could leave data at risk, but the attacker's motivations and actions seem odd. Sources: https://pastebin.com/GDKhPmrE

UPenn Got Hacked 03.11.2025

I learned how to generate censorship bleeps! But also a strange and vulgar email was sent out to alumni, donors, clients, staff, and current students from the University of Pennsylvania warning that a data leak was inevitable. But is there any substance? Sources: https://pastebin.com/MbJwdrYA

Lazarus Group Steal Drone Data via Fake Job Offers 27.10.2025

We've talked about North Korean threat actors being hired for jobs in order to steal data, but what about North Korean threat actors hiring people to steal data? Seems backwards, but it's been going on for years and recently teh defense sector has become a target of these attacks. Sources: https://pastebin.com/yrWK4K20

Government ID Breached From Discord Support 20.10.2025

Discord is a popular chat app used by gamers, technologists, and even local communities. Recently however, it potentially had a very serious data breach involving the government identification of its users. Sources: https://pastebin.com/1QJdNW5b

Did AI Try To Blackmail An Executive? 13.10.2025

In many doomsday scenarios AI become sentient and try to kill mankind, but has this already started to happen? Many sensational headlines would lead you to believe so, but the answer is a little more complicated than that... Sources: https://pastebin.com/sgjfdr8j

3 Hacker Groups Team Up to Form Salesforce Extortion Site 06.10.2025

3 notorious hacking groups have teamed up to form one huge site threatening to extort 39 major organizations out of their Salesforce data, which was acquired through a series of phishing attacks. Though Salesforce was not actually a target themselves, they also face extortion and some reputational damage. Sources: https://pastebin.com/jNr9Qsrr

How A Bad Password Killed A Decades Old Firm 29.09.2025

Oh how the mighty have fallen. It takes a lot for a business to survive even 5 years after an attack, let alone 158. So what could kill such a strong business that clearly has it figured out? It turns out the Achilles heel is often just a single bad password. Sources: https://pastebin.com/7M6vKycy

Spear Phishing Using AI Generate South Korean Military Documents 22.09.2025

Spear phishing can potentially get even more realistic with the use of generative AI. Recently North Korean threat actors leveraged prompt injection to create surprisingly realistic South Korean military documents Sources: https://pastebin.com/H4qH2YuK

Biggest Yet Most Anticlimactic Supply Chain Attack 15.09.2025

Supply chain attacks are one of the most devastating if done right, and one of the biggest in the history of NPM just occurred. However it was probably less fruitful than the attackers were hoping... Sources: https://pastebin.com/GfquiVgZ

France Fines Google For Cookie Violations 08.09.2025

Tech giants have been collecting a lot of data on us for years with the use of cookies, and though efforts have been made to reduce this they have been futile. France recently fined Google hundreds of millions for cookie consent violations, but it may only be a minor cost of business to them. Sources: https://pastebin.com/GkPf9W1c

Victims Email Phishers First in Zipline Campaign 01.09.2025

Usually in phishing cases, you are emailed by the attackers first, but can attackers lie in wait for you to email them first? Surprisingly, yes. How is this even possible? Find out today! Sources: https://pastebin.com/4b2vsrwH

Former Dev Gets 4 Years for Sabotaging Workplace 25.08.2025

Everyone may get elaborate revenge fantasies but few follow through due to the bad outweighing the satisfaction. One man, sensing he was to be terminated soon, however, decided if he were to go he would try to take the whole company down with him. Last week he was sentenced to 4 years in prison. Sources: https://pastebin.com/Pi0YSFUt

Hydroelectric Dam in Norwary Hacked 18.08.2025

Water and energy are both critical resources to society. In a display of fear, pro-Russia hacktivists compromised a dam in Norway remotely, demonstrating that cyberattacks can have very physical implications. Sources: https://pastebin.com/mwwrPwtR

UK To Ban Public Sector from Paying Ransomware 11.08.2025

The UK recently proposed the banning of public sector organizations from paying ransomware ransoms, in an effort to discourage cybercriminals from targeting them. How may this end up working out though? Sources: https://pastebin.com/37jGGd9X

CISA Opens Thorium Tool to Public 04.08.2025

CISA has developed many interesting and powerful tools over the year for cybersecurity, but recently they made one of malware analysis and automation open source and available for the public to use. Thorium. Let's talk about what this tool can do. Sources: https://pastebin.com/zhmAvguE

Inside a North Korean Laptop Farm Scheme 28.07.2025

An Arizona woman was arrested for running a North Korean IT worker laptop farm out of her home, and this gave us a little look into the strange world of how these threat actors are able to infiltrate US organizations. Sources: https://pastebin.com/qvrWirYa

New FIDO MFA Downgrade Attack Exploited 21.07.2025

FIDO is the passwordless authentication set of protocols of the future, however that doesn't mean it's perfect and as cyber defenders attack, so do attackers. This novel exploit isn't a flaw within FIDO exploit but does threaten improperly implemented versions of it. Sources: https://pastebin.com/fmUZEBAM

PerfektBlue Vulnerabilities Impacts Vehicle Bluetooth 14.07.2025

With cars becoming just another type of computer, and having rather complicated implementations, vulnerabilities in one system are major. A recent series of vulnerabilities discovered in OpenSynergy's BlueSDK could prove dangerous. Sources: https://pastebin.com/5JHAyuAV

Ransomware Negociator Received Payments from Ransomware Groups 07.07.2025

Ransomware negotiators may be called in to save some financial burden on organizations suffering from one of the worst cyberattacks they can. However, they seem like the natural people for ransomware groups to corrupt, and allegedly one such group did corrupt one such person.   Sources: https://pastebin.com/fANnhtTj

Listen to the Bite Sized Cyber Crime podcast in Replaio

Radio and podcasts in one app - free, with no sign-up. Install today and do not miss the launch

Get it on Google Play

Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.