Jason Edwards

BMC Daily Cyber News

News EN ↓ 59 episodes

The BCM Daily Cyber News brings you clear, timely updates on threats, breaches, patches, and trends every day. Stay informed in minutes with focused audio built for busy professionals. Learn more and explore at BareMetalCyber.com.

Author

Jason Edwards

Category

News

Podcast website

baremetalcyber.com

Latest episode

Dec 3, 2025

Where to listen?

Podcasts in the app Replaio Radio Coming soon

Podcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts

Get it on Google Play Install for free Android 5M+ downloads · 4.8 rating iOS soon

Episodes

Daily Cyber News – October 31st, 2025 31.10.2025

This is today’s cyber news for October 31st, 2025. Today’s brief opens with a polished LinkedIn “board invite” lure stealing Microsoft logins from finance leaders, then shifts to a one-click Chromium crash that can stall kiosks and call floors. We cover hundreds of Android apps abusing near field communication relays, a C I S A deadline to patch a VMware Tools privilege bug, and hacktivists toggli...

Daily Cyber News – October 30th, 2025 30.10.2025

This is today’s cyber news for October 30th, 2025. A broad Microsoft cloud outage led our coverage, reminding teams how identity and Domain Name System dependencies can stall entire workflows. Critical infrastructure risk followed, with Canada warning that hacktivists changed setpoints on exposed industrial gear. We then moved to active exploitation in factory software, a remote-code-execution fla...

Daily Cyber News – October 29th, 2025 29.10.2025

This is today’s cyber news for October 29th, 2025. Today’s brief tracks a hardware side-channel that weakens confidential computing on mainstream servers, real-world zero-day abuse in a major enterprise resource planning platform, and a trusted-update weakness that can turn patching into a malware pipeline. We also cover a ransomware twist that runs Linux encryptors through Windows Subsystem for L...

Daily Cyber News – October 28th, 2025 28.10.2025

This is today’s cyber news for October 28th, 2025. We lead with a fix-now warning on Windows update servers after confirmed abuse, a reminder that whoever shapes your patches shapes your posture. Google knocked down rumors of a massive Gmail breach, underscoring how misinformation burns time even when core services are fine. X set a hard deadline to re-enroll security keys, raising access risks fo...

Daily Cyber News – October 27th, 2025 27.10.2025

This is today’s cyber news for October 27th, 2025. We cover an emergency push by Microsoft to protect Windows Server Update Services from active attacks, Amazon’s explanation for a Domain Name System failure inside Amazon Web Services that rippled across major apps, and a cache-poisoning risk in BIND that threatens the trust behind logins and payments. You’ll also hear how LockBit’s upgraded ranso...

Weekly Cyber News Rollup, October 24th, 2025 24.10.2025

This is the Friday Rollup for October twentieth through October twenty-fourth, twenty twenty-five. A turbulent week put resilience and identity under the microscope: a broad Amazon Web Services disruption rippled through logins and checkouts, while a Windows change broke authentication on cloned machines with duplicate S I Ds. We saw active exploitation against Oracle E-Business Suite, critical fl...

Daily Cyber News – October 24th, 2025 24.10.2025

This is today’s cyber news for October 24th, 2025. We lead with an actively exploited flaw in a popular endpoint management tool that can hand attackers domain-level control if left unpatched. Retailers face session hijacking on Magento, while Microsoft is closing a quiet NTLM credential-leak path in File Explorer. An ill-timed agent update knocked some laptops off Entra I D, underscoring identity...

Daily Cyber News – October 23rd, 2025 23.10.2025

This is today’s cyber news for October 23rd, 2025. Attackers are raiding Magento stores, China-linked actors are revisiting SharePoint, and a Rust TAR parser flaw raises fresh supply-chain worries. We also cover why common AI agents can be tricked into running commands and how an MCP registry issue exposed thousands of servers and keys. The middle of the brief turns to policy and nation-state pres...

Daily Cyber News – October 22nd, 2025 22.10.2025

This is today’s cyber news for October 22nd, 2025. A major AWS outage reminded everyone how fragile single-cloud strategies can be, while a Windows update snag locked out cloned PCs with duplicate SIDs. CISA pressed urgency on an exploited Oracle E-Business Suite flaw, and a critical TP-Link Omada bug exposed small-business gateways to takeover. Researchers flagged outdated Chromium builds inside...

Daily Cyber News – October 21st, 2025 21.10.2025

This is today’s cyber news for October 21st, 2025. An AWS regional outage exposed hidden single-region dependencies, while CISA’s newest KEV entries pushed Oracle E-Business Suite to the front of many patch queues. We cover a supply-chain hit on developer ecosystems via “GlassWorm,” thousands of exposed WatchGuard firewalls, and a Windows SMB flaw now under active exploitation. Other stories inclu...

Daily Cyber News – October 20th, 2025 20.10.2025

This is today’s cyber news for October 20th, 2025. Social platforms and trusted clouds drive the lead stories: “ClickFix” videos walking viewers into info-stealers, and Microsoft Azure Blob Storage abused to deliver convincing Microsoft 365 phishing. We also cover a critical WatchGuard VPN flaw, certificate abuse behind fake Teams installers, and Microsoft’s severe Kestrel request-smuggling fix. R...

Weekly Cyber News Rollup, October 17th, 2025 17.10.2025

The Daily Cyber News— Friday Edition is your end-of-week cybersecurity intelligence wrap, turning five days of breaking threats into one fast, actionable update. For the week ending October 17th, 2025 , we unpack everything from nation-state intrusions and zero-day exploits to record-setting DDoS attacks, policy moves, and vendor fallout — all explained in plain English for business leaders, defen...

Daily Cyber News – October 17th, 2025 17.10.2025

This is today’s cyber news for October 17th, 2025. Today’s brief tracks rising pressure on edge security and third-party risk: lawmakers want clearer answers from Cisco on zero-day firewalls, while Microsoft’s certificate purge aims to blunt Teams-delivered lures. On offense, North Korea hides malware in blockchain contracts and ships Trojanized “job tests,” while rootkits and loaders push deeper...

Daily Cyber News – October 16th, 2025 16.10.2025

This is today’s cyber news for October 16th, 2025. F5 confirmed a nation-state breach with BIG-IP source code and vulnerability research stolen, while the U.K.’s regulator fined Capita £14 million for its 2023 data breach. We covered a massive misconfigured Elasticsearch cache exposing six billion records, evolving social engineering that impersonates password managers and the “ClickFix” copy-past...

Daily Cyber News – October 15th, 2025 15.10.2025

October 15th, 2025. This is today’s cyber news for October 15th, 2025. We lead with new research showing widespread eavesdropping risk on geostationary satellite traffic, then pivot to Microsoft’s heavy Patch Tuesday and the end of free support for Windows 10. You’ll also hear how the U.K. is grappling with a sharp rise in nationally significant incidents, why a no-permission “Pixnapping” side cha...

Daily Cyber News – October 14th, 2025 14.10.2025

This is today’s cyber news for October 14th, 2025. We open with Microsoft tightening Internet Explorer mode in Edge after credible reports of real-world abuse. From there, we cover widespread SonicWall SSLVPN account compromises with stolen credentials, an emergency Oracle E-Business Suite fix following active exploitation, and a U.S.-focused botnet brute-forcing RDP from more than one hundred tho...

Trailer 14.10.2025
Daily Cyber News – October 13th, 2025 13.10.2025

This is today’s cyber news for October 13th, 2025. The brief leads with fresh exploitation against Oracle E-Business Suite and reports of SonicWall customer backup configurations viewed by attackers, raising concerns about blueprint-level exposure and data theft. We also cover an actively exploited Gladinet CentreStack/Triofox zero-day, a record ~30 Tbps “Aisuru” DDoS, and Apple doubling its top b...

Daily Cyber News – October 10th, 2025 10.10.2025

This is today’s cyber news for October 10th, 2025. Today’s brief leads with SonicWall confirming its cloud firewall backups were accessed for all users of its backup service—turning configuration data into a roadmap for attackers. We also cover an actively exploited WordPress authentication bypass, an Android spyware family impersonating WhatsApp and TikTok, and Microsoft 365 disruptions tied to a...

Weekly Cyber News Rollup, October 10th, 2025 10.10.2025

This week’s wrap cuts through the noise. We break down North Korea’s multi-billion-dollar crypto theft problem, the Salesforce-adjacent extortion wave targeting customer exports, and active exploitation against Oracle E-Business Suite. We also cover a critical Redis flaw with app-wide blast radius, Cisco edge firewall abuse with public exploit code, Zimbra’s KEV-listed email bug, GoAnywhere MFT ra...

Daily Cyber News – October 9th, 2025 09.10.2025

This is today’s cyber news for October 9th, 2025. A new cloud-focused extortion crew targets AWS, a three-way ransomware alliance promises faster, louder campaigns, and Qilin pressures Asahi with leaked data. We cover a coordinated push against Salesforce tenants by a “Scattered Lapsus$ Hunters” collective and a Microsoft 365 outage that rippled through Teams and Exchange. Rounding out the brief:...

Daily Cyber News – October 8th, 2025 08.10.2025

This is today’s cyber news for October 8th, 2025. A Fortune-scale standoff leads the brief as Salesforce refuses to pay after a mass data-theft extortion attempt. We also cover ShinyHunters’ new leak portal, active exploitation against Oracle E-Business Suite, Medusa’s push through GoAnywhere MFT, and a critical Redis flaw dubbed “RediShell.” Rounding out the lineup: CISA’s KEV addition for Zimbra...

Daily Cyber News – October 7th, 2025 07.10.2025

 This is today’s cyber news for October 7th, 2025. We cover active exploitation and high-impact enterprise risks: an Oracle E-Business Suite zero-day, Red Hat’s data-theft/extortion saga, ransomware crews abusing a GoAnywhere MFT flaw, a critical Redis issue enabling code execution, and a Zimbra zero-day via booby-trapped calendar invites. We then shift to platform and infrastructure risks—from Li...

Daily Cyber News – October 6th, 2025 06.10.2025

This is today’s cyber news for October 6th, 2025. We open with a Zimbra zero-day delivered through malicious calendar files and why auto-parsing turns invites into compromise. Then we look at researchers repurposing Amazon’s X-Ray tracing for command-and-control, a fivefold surge of scans on Palo Alto portals, and fresh additions to CISA’s Known Exploited Vulnerabilities list. Rounding out the top...

Daily Cyber News – October 3rd, 2025 03.10.2025

This is today’s cyber news for October 3rd, 2025. We cover Red Hat’s internal GitLab breach and what “customer engagement records” could expose, Microsoft’s move to block inline SVG in Outlook, and a critical remote-code-execution flaw in DrayTek Vigor routers. We also break down Android spyware impersonating Signal and ToTok, and the “Gemini Trifecta” weaknesses that show how AI assistants can in...

Listen to the BMC Daily Cyber News podcast in Replaio

Radio and podcasts in one app - free, with no sign-up. Install today and do not miss the launch

Get it on Google Play

Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.