Daily Security Review
Daily Security Review
Daily Security Review, the premier source for news and information on security threats, Ransomware and vulnerabilities
Author
Daily Security Review
Category
Podcast website
Latest episode
Oct 29, 2025
Where to listen?
Podcasts in the app Replaio Radio Coming soonPodcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts
Episodes
Three CVEs, One Risk: Arbitrary Code Execution in Nessus Agent for Windows 16.06.2025 44:04
In this episode, we dive deep into one of the most critical attack techniques in modern cyber warfare: privilege escalation—and how it recently hit center stage with three high-severity vulnerabilities discovered in Tenable’s Nessus Agent for Windows. We break down CVE-2025-36631, CVE-2025-36632, and CVE-2025-36633, which, when exploited, allow a non-administrative user to gain SYSTEM-level access...
WestJet Cyberattack: Cracks in Aviation’s Digital Armor 16.06.2025 25:52
A major cyberattack has rocked Canada's second-largest airline, WestJet—crippling internal systems and prompting warnings for customers to monitor their accounts and change passwords. But this is more than just a corporate incident. It’s the latest sign of a broader, escalating crisis in aviation cybersecurity. In this episode, we examine the WestJet breach in the context of a rapidly evolving thr...
Silent Surveillance: The Hidden Risks in 40,000+ Unsecured Cameras 15.06.2025 49:37
In this episode, we dig into a disturbing yet underreported national security threat: the exploitation of internet-connected surveillance cameras—especially those manufactured in the People’s Republic of China—as a cyber weapon against U.S. critical infrastructure. Drawing from recent DHS intelligence briefings and independent cybersecurity analyses, we uncover how these seemingly benign devices a...
Paragon’s Promise vs. Reality: How Graphite Is Being Used Against Journalists and Activists 15.06.2025 1:10:32
In this episode, we dive deep into the alarming revelations surrounding Graphite , a powerful spyware tool developed by Israeli firm Paragon Solutions. Promoted as a “responsible alternative” to the NSO Group’s Pegasus, Graphite is now implicated in the surveillance of journalists, humanitarian activists, and civil society figures—contrary to the vendor’s public claims. We’ll examine new forensic...
zeroRISC Secures $10M to Commercialize OpenTitan and Reinvent Supply Chain Security 14.06.2025 51:51
zeroRISC just raised $10 million to bring OpenTitan—the first open-source silicon Root of Trust—to market. In this episode, we break down what this funding means for the future of supply chain security, and why investors are betting on open hardware to fix vulnerabilities baked into modern chips. We explore how geopolitical tension, forced labor enforcement (like the UFLPA), and cyber threats are...
Fog, RedFox, and the Rise of Silent Intruders: Cyberattacks Surge Against Financial Institutions 14.06.2025 34:42
The financial services industry is under siege. In this episode, we unpack the latest findings from Radware’s 2025 Financial Threat Analysis and multiple intelligence reports detailing a relentless rise in cyberattacks targeting banks and financial institutions across the globe. We examine the surge in sophisticated attacks that blend legitimate tools with malicious intent—an approach known as "li...
9.8 Severity and Counting: Inside Trend Micro’s Latest Security Emergency 13.06.2025 32:08
In this episode, we break down Trend Micro’s urgent June 10th security update that patched ten high- and critical-severity vulnerabilities—some with CVSSv3.1 scores as high as 9.8—across Apex Central and Endpoint Encryption PolicyServer (TMEE). While no active exploitation has been observed, the risks are too severe to ignore. We spotlight the most dangerous issues: pre-authentication remote code...
Zero-Day in the Call Center: Mitel MiCollab Exploited in Active Attacks 13.06.2025 12:27
In this episode, we dissect the critical vulnerabilities plaguing Mitel MiCollab, a widely used unified communications platform, and explore how attackers are exploiting these flaws in the wild. Recently, security researchers uncovered a trio of dangerous vulnerabilities, including CVE-2024-35286 (a SQL injection flaw), CVE-2024-41713 (an authentication bypass), and an unpatched arbitrary file rea...
The Info-Stealer Sting: A Deep Dive into INTERPOL's Operation Secure 13.06.2025 14:39
Join us for a gripping discussion on "Operation Secure," a landmark international crackdown that reverberated through the dark corners of the cybercriminal world between January and April 2025. Led by INTERPOL and involving law enforcement from 26 countries, primarily across the Asia-Pacific region, this massive coordinated effort, bolstered by critical support from private sector cybersecurity gi...
Tomcat Manager Attacks: 400 IPs in Coordinated Brute-Force Attack 11.06.2025 34:49
On June 5, 2025, GreyNoise flagged a massive spike in coordinated brute-force login attempts targeting Apache Tomcat Manager interfaces. Nearly 400 unique IP addresses, many traced back to DigitalOcean infrastructure, were involved in a widespread and opportunistic campaign. In this episode, we dissect the attack pattern, what makes Apache Tomcat a recurring target, and why this surge should be tr...
TxDOT Data Leak: 423,391 Texans Exposed 11.06.2025 44:32
On May 12, 2025, the Texas Department of Transportation (TxDOT) disclosed a significant data breach that compromised crash reports containing personal data of over 423,000 individuals. In this episode, we take a forensic look at what went wrong, how one compromised account enabled unauthorized downloads of sensitive crash data, and what this means for the cybersecurity posture of government agenci...
Ghost Students and AI Scams: How Identity Theft is Gutting Financial Aid 11.06.2025 43:49
What happens when hundreds of thousands of college applications are submitted—not by hopeful students, but by bots using stolen identities? In this episode, we dive deep into the alarming rise of financial aid fraud in U.S. higher education, driven by "ghost students" and increasingly sophisticated scams powered by AI. From fraud rings applying for Pell Grants using inmate names to bots flooding o...
Inside the React Native NPM Supply Chain Breach: 16 Packages, 1 Million+ Downloads, and a RAT in the Code 10.06.2025 41:15
In this episode, we break down the massive supply chain attack that rocked the React Native ecosystem beginning on June 6, 2025. Over 16 NPM packages, collectively downloaded over one million times per week, were silently weaponized with a Remote Access Trojan (RAT) embedded in obfuscated code. The attack, linked to the same threat actor behind the May 2025 rand-user-agent breach, exploited a comp...
Mirai Strikes Again: Spring4Shell, Wazuh, and TBK DVRs Exploited in Live Campaigns 10.06.2025 43:52
In this episode, we dive into the latest wave of active Mirai botnet campaigns exploiting high-severity remote code execution (RCE) vulnerabilities in critical enterprise and IoT systems. The Mirai malware—still evolving nearly a decade after its first appearance—has adapted its tactics to weaponize recent CVEs with CVSS scores of 9.8 and 9.9 , impacting the Spring Framework (Spring4Shell) , Wazuh...
UNFI Breach: How One Cyberattack Shook the North American Food Supply 10.06.2025 36:53
On June 5, 2025, United Natural Foods Inc. (UNFI)—North America's largest publicly traded wholesale food distributor and primary supplier for Whole Foods—was struck by a major cyberattack that forced the company to shut down key IT systems. The result: widespread delivery disruptions to over 30,000 locations across the U.S. and Canada, eerily empty shelves at Whole Foods, canceled shifts for worke...
Malware-as-Code: The Rise of DaaS on GitHub and the Collapse of Open-Source Trust 07.06.2025 39:46
In this episode, we dissect one of the most sophisticated ongoing cybercrime trends—malware campaigns weaponizing GitHub repositories to compromise developers, gamers, and even rival hackers. By abusing GitHub’s search functionality and reputation signals, threat actors are pushing backdoored code under the guise of popular tools, game cheats, and exploit kits. These malicious repositories often l...
ClickFix: How Fake Browser Errors Became the Internet’s Most Dangerous Trap 05.06.2025 47:15
In this episode, we dive deep into ClickFix , also tracked as ClearFix or ClearFake —a highly effective and deceptive malware delivery tactic that emerged in early 2024. ClickFix exploits the human tendency to trust browser prompts by using fake error messages, CAPTCHA pages, and verification requests to convince users to execute malicious PowerShell commands via simple keyboard shortcuts. What ma...
Exposed and Extorted: The ViLE Hackers and the Legal Gaps Enabling Doxing 05.06.2025 47:31
Cybercrime is rapidly evolving—and so are its tactics. In this episode, we dissect the findings of SoSafe’s Cybercrime Trends 2025 report and explore the six key trends reshaping the global threat landscape, including AI as an attack surface, multichannel intrusions, and the rising exploitation of personal identities. But we don’t stop at theory. We go deep into the real-world case of the ViLE hac...
Chrome Under Fire: Three Zero-Days, One Month, and Nation-State Exploits 04.06.2025 28:23
In this episode, we dive deep into three actively exploited zero-day vulnerabilities discovered in Google Chrome in 2025, each of which was patched in rapid succession following targeted attacks. At the center is CVE-2025-5419, a high-severity out-of-bounds read/write flaw in the V8 JavaScript engine that allows attackers to exploit heap corruption through crafted HTML pages — and it’s already bei...
Australia Forces Transparency: The World’s First Mandatory Ransomware Payment Reporting Law 04.06.2025 1:02:01
Australia just made cyber history. On May 30, 2025, the nation became the first in the world to enforce mandatory ransomware payment reporting under the newly enacted Cyber Security Act 2024 . In this episode, we dissect what this means for businesses, law enforcement, and the global cybersecurity landscape. We break down the key aspects of the legislation, including which organizations are affect...
$25M for AI Email Security: Trustifi’s Big Bet on the MSP Market 04.06.2025 32:00
In this episode, we dive into Trustifi’s recent $25 million Series A funding round, led by growth equity firm Camber Partners. Specializing in AI-powered email security, Trustifi has now raised a total of $29 million to accelerate its product development, go-to-market strategy, and global marketing initiatives—especially in the MSP space. We unpack what makes Trustifi’s platform stand out in a cro...
Google Chrome vs. Failing CAs: The Policy Behind the Distrust 03.06.2025 55:25
In this episode, we dissect Google's recent and upcoming decisions to distrust several Certificate Authorities (CAs) within the Chrome Root Store, including Entrust, Chunghwa Telecom, and Netlock. These high-impact moves are rooted in Chrome's strict enforcement of compliance, transparency, and security standards for public trust. We explore the role of the Chrome Root Store and Certificate Verifi...
CVE-2025-48827 & 48828: How vBulletin’s API and Template Engine Got Weaponized 03.06.2025 1:35:55
Two critical, actively exploited vulnerabilities in vBulletin forum software— CVE-2025-48827 and CVE-2025-48828 —have put thousands of websites at immediate risk of full system compromise. In this episode, we dissect how these flaws, triggered by insecure usage of PHP’s Reflection API and abuse of vBulletin’s template engine, allow unauthenticated attackers to execute arbitrary PHP code and gain r...
JINX-0132: How Cryptojackers Hijacked DevOps Infrastructure via Nomad and Docker 03.06.2025 1:07:22
In this episode, we dissect the JINX-0132 cryptojacking campaign — a real-world example of how threat actors are exploiting cloud and DevOps environments to mine cryptocurrency at scale. We unpack how cybercriminals targeted misconfigured Docker APIs, publicly exposed HashiCorp Nomad and Consul servers, and vulnerable Gitea instances — turning enterprise-grade compute resources into crypto-mining...
Password Hashes Leaked via Linux Crash Handlers: The Truth Behind CVE-2025-5054 & 4598 02.06.2025 16:11
In this episode, we unpack two newly disclosed Linux vulnerabilities—CVE-2025-5054 and CVE-2025-4598—discovered by the Qualys Threat Research Unit (TRU). These race condition flaws impact Ubuntu’s apport and Red Hat/Fedora’s systemd-coredump , exposing a little-known but critical attack vector: core dumps from crashed SUID programs. We dive into how these TOCTOU (Time-of-Check to Time-of-Use) race...
Similar podcasts
Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.