Contributors from Around the World

It's 5:05! Daily cybersecurity and open source briefing

News EN ↓ 300 episodes

“It’s 5:05!'' is a daily audio news cast highlighting security and open source stories from around the world. We filter for the real cybersecurity and open source stories in the news, so you won't have to. Each day, a global team of journalists contribute stories they found interesting in their daily research from the previous 24 hours. We present them to you in an easy to listen to format, making the resources available at the end of each episode so you can do a deep dive on stories you find of interest.

Author

Contributors from Around the World

Category

News

Podcast website

www.505updates.com

Latest episode

Apr 5, 2024

Where to listen?

Podcasts in the app Replaio Radio Coming soon

Podcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts

Get it on Google Play Install for free Android almost 10M downloads · 4.8 rating iOS soon

Episodes

Episode #195 - Dear Jen, Merrick, and Lina. What's up with Microsoft?; Call of Duty? Watch out for the malware in the lobby; Here’s looking at you, Worldcoin!; 9mm smart gun? What took you so long; This Day, July 28 & 29 in Tech History 28.07.2023

🎙️ Free access to “It’s 5:05!” on your favorite podcast platforms: bit.ly/its505-free-access-on-all-podcast-platforms 📌 Dear Jen, Merrick, and Lina. What's up with Microsoft? 🇺🇸 Mark Miller, New York City↗ "Dear Director Easterly, Attorney General Garland, and Chair Khan. I write to request that your agencies take action to hold Microsoft responsible for its negligent cybersecurity practices."&nb...

Episode #194 - Microsoft Makes Access to Cloud Logging Free After Criticisms from Storm-0558 Breach; Cybersecurity Crisis: Citrix Vulnerability Exposes US Infrastructure; Cyber Implementation Plan; This Day, July 26, July 27 in Tech History 27.07.2023

🎙️ Free access to “It’s 5:05!” on your favorite podcast platforms: bit.ly/its505-free-access-on-all-podcast-platforms 📌 Microsoft Makes Access to Cloud Logging Free After Criticisms from Storm-0558 Breach 🇦🇺 Edwin Kwan, Sydney, Australia ↗ Microsoft is expanding access to cloud logging to all customers for free, with more becoming available in September, 2023. This came after they received strong...

Episode #193 - Unintentional Data Leak by VirusTotal Exposes 5,600 Account Details; Death of Twitter Info Sec; CT License Plate Scans; CITRIX Pwned 26.07.2023

🎙️ Free access to “It’s 5:05!” on your favorite podcast platforms: bit.ly/its505-free-access-on-all-podcast-platforms 📌 Unintentional Data Leak by VirusTotal Exposes 5,600 Account Details 🇦🇺 Edwin Kwan, Sydney, Australia ↗ VirusTotal has suffered a data leak. The popular online service was launched in 2004 and is used to analyze suspicious files and URLs to detect malicious content or malware. Th...

Episode #192 - Australian Cyber Crime Reporting Resource; Casualties of ChatGPT; Coast to Coast - The Rise of State Data Privacy Laws in 2023; Cloud Wars; This Day, July 25, in Tech History 25.07.2023

🎙️ Free access to “It’s 5:05!” on your favorite podcast platforms: bit.ly/its505-free-access-on-all-podcast-platforms 📌 Australian Cyber Crime Reporting Resource 🇦🇺 Edwin Kwan, Sydney, Australia ↗ The Australian Cybersecurity Centre, ACSC, is urging all Australians to report cyber crimes using their easy online service. The reporting can be done anonymously and reports by individuals will be refe...

Episode #191 - Cloud Build Vulnerable to Supply Chain Attacks; Cloud Shared Responsibility Model: Time for an (R)Evolution?; Microsoft Breach May Expose Deeper Problems; This Day, July 24, in Tech History 24.07.2023

🎙️ Free access to “It’s 5:05!” on your favorite podcast platforms: bit.ly/505-updates 📌 Cloud Build Vulnerable to Supply Chain Attacks 🇦🇺 Edwin Kwan, Sydney, Australia ↗ Security researchers have discovered a design flaw in Google Cloud Build, which can allow for supply chain attacks.  Cloud Shared Responsibility Model: Time for an (R)Evolution? 🇺🇸 Chris Hughes, Virginia Beach, Virginia ↗ Th...

Episode #190 - Thousands of Container Images Leaking Secrets; Google DeepMind; US Office of Management and Budget gathers software attestation letters; This Day, July 21, in Tech History 21.07.2023

🎙️ Free access to “It’s 5:05!” on your favorite podcast platforms: bit.ly/its505-free-access-on-all-podcast-platforms 📌 Thousands of Container Images Leaking Secrets 🇦🇺 Edwin Kwan, Sydney, Australia ↗ Researchers from a German university recently published a paper revealing that tens of thousands of container images hosted on Docker Hub contained confidential secrets. Google DeepMind 🇺🇸 Hillary C...

Episode #189 - What's Your Social Media OpSec?; The Dark Side of Generative AI; Typo Leak Sends Email to Mali; Microsoft expanding access to AI 20.07.2023

🎙️ Free access to “It’s 5:05!” on your favorite podcast platforms: bit.ly/its505-free-access-on-all-podcast-platforms 📌 What's Your Social Media OpSec? 🇦🇺 Edwin Kwan, Sydney, Australia ↗ Sharing on social media is a good way to keep in touch with friends, but sometimes that can get you in trouble. A Russian neighbor officer was recently killed near his home and it was believed that he may have be...

Episode #188 - Spike in Attacks Using Infected USB Drives; European Spyware Banned; Just - a language-agnostic build automation tool written in Rust; ChatGPT has an evil twin? WormGPT; Cyber Trust Mark; Today in Tech History 19.07.2023

Listen to the full episode on your favorite streaming platform: https://bit.ly/available-on-all-platforms📌. Edwin Kwan: Spike in Attacks Using Infected USB Drives Do using USB drivers as an initial infection vector still work today? Well, what is old is new again. Security researchers at Mandiant have observed a threefold increase in the number of attacks using infected USB drives to steal secret...

Episode #187 - Account Takeovers using Evil QR; SIM swap attacks on the rise; Crypto scams have dropped faster than Twitter’s user base; Navy Unveils New Cyber Operations Roles; This Day in Tech History 18.07.2023

Listen to the full episode on your favorite streaming platform: https://bit.ly/available-on-all-platforms📌. Edwin Kwan: Account Takeovers using Evil QR Logging in via QR code is something that more websites are starting to embrace. Security researcher. Kuba Gretzky, from breakdev.org, published an article demonstrating how attackers could take over accounts by convincing users to scan supplied QR...

Episode #186 - Ghostscript allows remote code access; FTC takes on OpenAI; Tax services playing fast and loose with client data 17.07.2023

Listen to the full episode on your favorite streaming platform: https://bit.ly/available-on-all-platforms📌. Edwin Kwan: Ghostscript allows remote code access Popular open source PDF library, Ghostscript, has been discovered to have a critical vulnerability that allows for remote code execution. The vulnerability can be exploited upon opening a malicious file. Katy Craig: Tax services playing fast...

Episode #185 - Critical Infrastructure Service Firm Takes Key System Offline Due to Cyber Attack; Ransomware gang targets US cancer center; Chinese Hackers Breach US Government; AI Junk is Starting to Pollute the Internet 14.07.2023

Resources for this episode available at 505updates.com . From Edwin Kwan in Sydney, Australia : Early this week, critical infrastructure service provider Ventia took some of its key systems offline to contain a cyber incident. The company provides management, maintenance and operation services for critical infrastructure to more than 400 sites across defense, electricity, water, and gas industries...

Episode #184 - Gambling trial suffers cyber attack; Try Google Bard? Not in the EU!; Fluhorse malware targeting users in Eastern Asia; 200 organizations victimized by MOVEit bug 13.07.2023

Resources for this episode available at 505updates.com . From Edwin Kwan in Sydney, Australia : The New South Wales cashless gambling trial suffered a cyber attack. The state's gaming minister said that it would soon announce an oversight panel, which among other focuses, will also be looking into the data security and data privacy of trial participants. From Olimpiu Pop in Transylvania, Romania :...

Episode #183 - Solar System Compromising Home Network; EU’s AI Act; Hacking Water Facility; Discord Family Center; This Day in Tech History 12.07.2023

Resources for this episode available at 505updates.com . From Edwin Kwan in Sydney, Australia : As small households embrace green energy and install solar panels, they could unknowingly be exposing their home networks. Your home solar system could be connecting to the manufacturer's servers to send data that is displayed on the app. From Olimpiu Pop in Transylvania, Romania : The European AI Act i...

Episode #182 - Spyware in Google Play Store Stealing Users' Data; Crypto Rug Pulls; Massachusetts Bans Location Data Sales and Transfers; Venture Funding in Cybersecurity - From Boom to Bust; This Day in Tech History 11.07.2023

Resources for this episode available at 505updates.com . From Edwin Kwan in Sydney, Australia : Security researchers have discovered two spyware in the Google Play Store that have been installed by up to 1.5 million users. Both apps have similar malicious behaviors, such as launching silently without any user interaction. From Katy Craig in San Diego, California : In a jaw dropping twist, approxim...

Episode #181 - Mastodon Addresses TootRoot Hijacking Vulnerability; Natural Language the sharpest weapon to attack LLM Backed AIs?; Truebot Malware; This Day in Tech History 10.07.2023

Resources for this episode available at 505updates.com . From Edwin Kwan in Sydney, Australia : Mastadon has recently patched for vulnerabilities. One of those vulnerabilities is TootRoot. Attackers can exploit the vulnerability by using media files on Toots to perform attacks like denial of service and arbitrary remote code execution.  From Olimpiu Pop in Transylvania, Romania : Natural lang...

Episode #180 - Proof of Concept Program for Microsoft Teams Malware Delivery; OWASP Releases version 0.5 of Top 10 LLMs Risks; Shift Left is a Myth; Inflight Internet Access Systems; This Day in Tech History 07.07.2023

Resources for this episode available at 505updates.com. From Edwin Kwan in Sydney, Australia: A proof of concept program has been recently published that exploits an unresolved security vulnerability in Microsoft Teams. The program allows the bypass of Microsoft Teams file sending restraints to deliver malware from an external account. From Olimpiu Pop in Transylvania, Romania: OWASP moves fast. I...

Episode #179 - CWE Top 25 Most Dangerous Software Weaknesses; Robotaxis are Fire Hazard; This Day in Tech History 06.07.2023

Resources for this episode available at 505updates.com. From Edwin Kwan in Sydney, Australia: Mitre has recently released their CWE Top 25 Most Dangerous Software Weaknesses list for 2023. This list demonstrates the currently most common and impactful software weaknesses.  From Katy Craig in San Diego, California: Driverless cars may be the future, but are they ready for prime time? According...

Episode #178 - Ultimate Member Plugin Allows Ultimate Website Access; Army Soldiers and Nefarious Smartwatches; Biometric Airport Security; China curbs metal exports to slow US chip making; This Day in Tech History 05.07.2023

Resources for this episode available at 505updates.com. From Edwin Kwan in Sydney, Australia: WordPress plugin, Ultimate Member, is vulnerable to a privileged escalation vulnerability that allows attackers to gain administrator access to the WordPress site.  From Trac Bannon in Salem, Massachusetts: Over the past few weeks, a number of US soldiers opened their mail and found a pretty cool gif...

Episode #177 - How Not To Do A Force Password Reset; Facial Recognition Explained; Online Age Checks 04.07.2023

Resources for this episode available at 505updates.com. From Edwin Kwan in Sydney, Australia: A high school in Illinois recently demonstrated how not to do a false password reset. The high school decided to set all the students' passwords to be change me exclamation mark. That's right. They changed all the students' password to the same password.  From Hillary Coover in Washington, DC: When s...

Episode #176 - American Tech Used by Chinese to Spy on Americans; Stalkerware App Suffers Data Breach; US Cyber Command’s “Under Advisement”; Real or Fake? It’s up to you to decide 03.07.2023

Resources for this episode available at 505updates.com. From Hillary Coover in Washington, DC: Many of you might be thinking enough with the Chinese balloon story, but did you know it was fitted with American technology? From Edwin Kwan in Sydney, Australia: It's bad enough when apps you use suffers a data breach. It's worse when apps you didn't know you have gets breached.  From Katy Craig i...

Episode #175 - Proton Launches Password Manager with Email Aliases; Soldiers get free smartwatches with malware; Balance Privacy and National Security; This Day in Tech History 30.06.2023

Resources for this episode available at 505updates.com. From Edwin Kwan in Sydney, Australia: Everyone deserves privacy by default. That's Proton's slogan. This week they announced the global launch of their password manager, Proton Pass.  From Katy Craig in San Diego, California: The US Army's Criminal Investigation Division (CID) is sounding the alarm advising soldiers who received unsolici...

Episode #174 - JavaScript NPM Registry Exposed to Manifest Confusion Vulnerability; Sysmon's Latest Features Unveiled; Mockingjay Process Injection; This Day in Tech History 29.06.2023

Resources for this episode available at 505updates.com. From Edwin Kwan in Sydney, Australia: The JavaScript NPM registry has a manifest confusion vulnerability which can allow the installation and execution of malicious files without the user's knowledge.  From Ian Garrett in Arlington, Virginia: Microsoft Sysmon just got a beefy upgrade. Sysmon is a free Microsoft Sysinternals tool that can...

Episode #173 - Super Mario 3: Malware Edition; North Korean Hackers Tap Mics; YouTube Demands Invidious.io Cease and Desist; This Day in Tech History 28.06.2023

Resources for this episode available at 505updates.com. From Edwin Kwan in Sydney, Australia: There is a new version of Super Mario 3 making its way on gaming forums and social media groups. It's a Trojanized version. From Katy Craig in San Diego, California: APT37 is taking surveillance to a whole new level. They're using a Go-based backdoor to exploit a real-time data transform platform called A...

Episode #172 - AI Chatbot Used for Sex; Medibank Nightmare Continues; He's not stupid... he's lazy; Today in Tech History 27.06.2023

Resources for this episode available at 5:05updates.com. From Katy Craig in San Diego, California: Get ready for an AI showdown folks. Meta's new open source AI chatbots were just offered up to people and they're using them for sex. From Edwin Kwan in Sydney, Australia: Medibank Private, a health insurance provider, suffered a data breach in October, 2022, and that resulted in the compromise of 9....

Episode #171 - Australia's First Cyber Security Coordinator, SBOBS are a security staple in the software supply chain, UPS Breach, Follow the Money 26.06.2023

It's 5:05 on Monday, June 26th, 2023. From the Sourced Podcast Network in New York city, this is Pokie Huang. Stories in today's episode come from Edwin Kwan in Sydney, Australia, Julie Chatman in Washington, DC, Katy Craig in San Diego, California, Hillary Coover in Washington, DC, and Marcel Brown in St. Louis, Missouri. Let's get to it! Australia's First Cyber Security Coordinator Announced 🇦🇺...

Listen to the It's 5:05! Daily cybersecurity and open source briefing podcast in Replaio

Radio and podcasts in one app - free, with no sign-up. Install today and do not miss the launch

Get it on Google Play

Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.