Risky Business Media

Risky Bulletin

News EN ↓ 100 episodes

Regular cybersecurity news updates from the Risky Business team...

Author

Risky Business Media

Category

News

Podcast website

risky.biz

Latest episode

Jul 10, 2026

Where to listen?

Podcasts in the app Replaio Radio Coming soon

Podcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts

Get it on Google Play Install for free Android 5M+ downloads · 4.8 rating iOS soon

Episodes

Risky Bulletin: FCC relaxes foreign router security patch ban 11.05.2026

The FCC relaxes its foreign router ban to allow for security updates, the ShinyHunters group disrupts schools across the globe, a 21-year-old remote code execution bug turns up in FreeBSD, and another Linux privilege escalation bug was disclosed… without a patch. Show notes Risky Bulletin: FCC relaxes foreign router ban to allow for security updates

Sponsored: Knocknoc built a Greynoise integration 10.05.2026

In this sponsored interview Patrick Gray chats with Knocknoc CEO Adam Pointon about their Greynoise integration. Knocknoc allowlists network connections from users’ IPs after they’ve been through an SSO challenge. It’s great for protecting vulnerable or risky assets that your org has to connect to the internet. But what happens when one of your users tries to authenticate from a bad IP? You probab...

Risky Bulletin: State sponsored group exploits Palo 0day 08.05.2026

Palo Alto Networks patches a firewall zero-day, Google patches an Android remote takeover bug, Ivanti also patches one, and a leak exposes Russia’s spy and hacker school. Show notes Risky Bulletin: Google patches Android remote takeover bug

Srsly Risky Biz: After Mythos, US government weighs AI regulation 07.05.2026

Tom Uren and James Wilson talk about the sudden drive to put regulation around the releases of new AI models because of their cyber security implications. A standardised approach is desirable, but clamping down too hard won’t achieve as much as might be hoped. Experts with older or even open models can get just as far as novices with the latest models. They also discuss Australia’s new Cyber Incid...

Risky Bulletin: Targeted supply chain attack hits DAEMON Tools 06.05.2026

The DAEMON Tools website was hit in a targeted supply chain attack, Australia gets its own CSRB, the US arrests a wanted VOIP server hacker after 17 years, and Oracle switches to monthly security updates. Show notes Risky Bulletin: Extremely targeted supply chain attack hits DAEMON Tools

Between Two Nerds: The wild wild west 04.05.2026

In this edition of Between Two Nerds Tom Uren and The Grugq discuss the breakdown of cyber norms. What would have been an unthinkable cyber operation just a few years ago is now a regular occurrence. This episode is also available on YouTube . Show notes Fast16 analysis by SentinelOne Fast16 malware Zero Day on the wiper targeting Venezuela's state oil company

Risky Bulletin: DigiCert hacked with a malicious screensaver file 04.05.2026

DigiCert got hacked via a malicious screensaver file, two ransomware negotiators each get four years in prison, Trellix discloses a security breach, and another Russian hacker gets arrested while vacationing in the wrong place. Show notes Risky Bulletin: DigiCert hacked with a malicious screensaver file

Sponsored: James Kettle built an AI hacker 03.05.2026

In this sponsored interview, James Wilson talks with James Kettle and Daf Stuttard from PortSwigger about the incredible research James will unveil at Black Hat US this July, and how that research will be productised into Burp Suite. It shouldn’t be surprising that when James Kettle bolts an LLM into his research methodology that insanely dangerous things happen. This interview is a window into th...

Risky Bulletin: cPanel auth bypass exploited in wild 01.05.2026

The Copy Fail vulnerability impacts all Linux distros going back to 2017, hackers are exploiting a cPanel auth bypass, every Moldovan citizen has their data stolen, and some scam compounds got raided raided… in Dubai. Show notes Risky Bulletin: The mysterious hack of Moldova's healthcare database

Srsly Risky Biz: US Vows to Fight Distillation Attacks 30.04.2026

Tom Uren and Amberleigh Jack talk about the US government stepping in to fight ‘distillation attacks’ by Chinese AI labs. These are methods used to steal the special sauce of frontier AI models simply by asking questions. They also discuss the wide-spread shift amongst Chinese threat actors to using botnets for all aspects of their operations. It’s a problem for defenders, but also a disruption op...

Risky Bulletin: Ukrainians hacked Russian satellite comms platform 29.04.2026

Ukrainians hack Russian satellites, Vimeo is being extorted, Greece wants to ban anonymity on social media, and a Scattered Spider hacker was arrested in Finland. Show notes Risky Bulletin: UK NCSC blasts SOC metrics

Between Two Nerds: Hackers from the future 27.04.2026

In this edition of Between Two Nerds Tom Uren and The Grugq discuss what the North Korean hack of Drift can tell us about the future of hacking. This episode is also available on YouTube . Show notes Drift Protocol incident update on X Cointelegraph coverage CredShields incident post-morten

Risky Bulletin: New fingerprinting technique can track Tor users 27.04.2026

A fingerprinting technique can track Tor users, Intellexa had an American exploit provider, the US accuses China of copying its AI, and the US router ban also covers WiFi hotspots. Show notes Risky Bulletin: New fingerprinting technique can track Tor users

Sponsored: RunZero accidentally got good at OT 26.04.2026

In this Risky Business sponsored interview Casey Ellis chats to runZero’s founder and CEO HD Moore about runZero’s new release: 4.9. It drops this week and doubles down on OT scanning. Animated world and network maps add another layer to visualisation and for those that have been asking: yes, there’s a dark mode. Show notes

Risky Bulletin: Sean Plankey withdraws CISA nomination 24.04.2026

Sean Plankey withdraws his CISA Director nomination, Russians hacked the Bundestag President, Discord users gain unauthorised access to Anthropic’s Mythos, and the US sanctions a Cambodian senator for running cyber scam compounds. Show notes Risky Bulletin: There are now SIM-Farm-as-a-Service providers

Srsly Risky Biz: Musk snubs French authorities 23.04.2026

Tom Uren and James Wilson talk about the French criminal investigation into bias and illegal content on X. Elon Musk and former X CEO Linda Yaccarino didn’t appear for voluntary interviews scheduled this week, but refusing meetings won’t make X’s problems go away. European countries are concerned about X’s influence and regulators will be exploring all other options beyond criminal investigations....

Risky Bulletin: Former FBI official calls for terrorism designations for ransomware groups that target hospitals 22.04.2026

A Former FBI official wants terrorism designations for some ransomware groups, China threatens the EU over new cybersecurity regulations, Europe commits to €180 million for a sovereign cloud and a novel data wiper was found in Venezuela during US military operations. Show notes Risky Bulletin: Former FBI official calls for terrorism designations for ransomware groups that target hospitals and crit...

Between Two Nerds: AI as the mythical 10x hacker 20.04.2026

In this edition of Between Two Nerds Tom Uren and The Grugq take a deep dive into how a single hacker used OpenAI and Anthropic’s tools to help hack nine Mexican government organisations in quick time. This episode is also available on YouTube . Show notes Gambit security report

Risky Bulletin: ShinyHunters claim credit for Vercel hack 20.04.2026

ShinyHunters claim credit for the Vercel hack, a malware strain attempted to sabotage Israel’s water system, the US government wants access to Mythos, and a Supreme Court hacker gets probation. Show notes Risky Bulletin: New malware tries to sabotage Israel's water system but fails because it's buggy

Sponsored: Nebulock on hunting shadow AI 19.04.2026

In this Risky Business sponsor interview, Catalin Cimpanu talks with Sydney Marrone, Head of Threat Hunting at Nebulock, about hunting shadow AI agents on corporate networks. Show notes Sydney Marrone LinkedIn profile Hunting OpenClaw and Agentic AI Through Behavior

Risky Bulletin: NIST gives up enriching most CVEs 17.04.2026

NIST says it won’t be enriching most CVEs, Russian hackers tried to disrupt a Swedish power plant, the EU releases its age verification app, and OpenAI announces its own private cyber model. Show notes Risky Bulletin: NIST gives up enriching most CVEs

Srsly Risky Biz: Time to ban sale of precise geolocation data 16.04.2026

Tom Uren and Amberleigh Jack talk about a new Citizen Lab report into Webloc, a tool to identify and track mobile devices. It demonstrates how the collection and sale of mobile phone geolocation data presents privacy and national security risks. They also discuss a deep-dive into how a single hacker was able to breach nine Mexican government agencies in just weeks using AI assistants. They enabled...

Risky Bulletin: Malicious LLM proxy routers found in the wild 15.04.2026

Researchers find malicious LLM proxy routers, a fake Ledger crypto-wallet on the Mac App Store stole $10 million dollars, a ransomware crew leaks data from 38 law firms, and Google cracks down on back button hijacking. Show notes Risky Bulletin: Malicious LLM proxy routers found in the wild

Between Two Nerds: How AI will upset state cyber competition 13.04.2026

In this edition of Between Two Nerds Tom Uren and The Grugq discuss how the rise of AI, which is very good at vulnerability and exploit development, will change the cyber security industry and competition between states. This episode is also available on YouTube Show notes The Grugq on X: People are freaking out about an impending flood of 0days Patrick Gray with former NSA and CIA cyber leaders

Risky Bulletin: France takes first steps to ditch Windows for Linux 13.04.2026

France prepares to ditch Windows for Linux, OpenAI was impacted by the Axios supply chain attack, Rockstar Games gets hacked again, and Adobe patches a reader zero-day. Show notes Risky Bulletin: France takes first steps to ditch Windows for Linux

Listen to the Risky Bulletin podcast in Replaio

Radio and podcasts in one app - free, with no sign-up. Install today and do not miss the launch

Get it on Google Play

Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.