Steven Kinnas

Tech Talks With Kinsoft

Tech Talks with Kinsoft is your insider pass to the ever-evolving world of technology. We break down the latest in tech news, cybersecurity trends, and emerging innovations shaping our digital future. Whether you’re a seasoned IT pro, a curious techie, or a business leader navigating digital transformation, our conversations are packed with insights, real-world takeaways, and a healthy dose of tech-savvy clarity. Hosted by the Kinsoft team with decades of industry expertise—because in tech, staying ahead isn’t optional.

Author

Steven Kinnas

Category

Technology

Podcast website

rss.com

Latest episode

Jul 9, 2026

Where to listen?

Podcasts in the app Replaio Radio Coming soon

Podcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts

Get it on Google Play Install for free Android 5M+ downloads · 4.8 rating iOS soon

Episodes

McGraw Hill – 13.5M Exposed via Salesforce Misconfig 14.05.2026

Edtech giant McGraw Hill confirmed a breach (dated around 10 April 2026, surfacing mid-April) after ShinyHunters' extortion threat; about 13.5 million accounts were exposed — emails, names, phone numbers and physical addresses — via a Salesforce misconfiguration. When negotiations failed, the group published over 100 GB of data. McGraw Hill said the exposed data was limited and did not include Soc...

Energy Action Breach – SafePay Ransomware Targets an Energy Giant 12.05.2026

In early May 2026, the SafePay ransomware group listed Energy Action — an Australian firm that manages energy procurement for a large share of the country's commercial businesses — on its dark web leak site, threatening to release stolen data. In this episode of Tech Talks with Kinsoft, we cover what Energy Action does, the kind of data potentially at risk, the fact that the volume and specifics h...

Last Week in Tech – Microsoft's Agents Go GA, the Canvas Mega-Breach Escalates, and DigiCert's Cert Compromise 10.05.2026

Your Monday catch-up, with a security lens. This week: Microsoft makes its AI agents generally available at Build, and the ShinyHunters Canvas breach escalates into what's being called the largest education-sector breach on record. On security: certificate authority DigiCert is socially engineered into issuing fraudulent code-signing certs, and Zara and an NVIDIA cloud-gaming partner are breached....

Medtronic – ShinyHunters Hits a Medical-Device Giant 07.05.2026

ShinyHunters listed Medtronic on its leak site on 17 April 2026, claiming more than 9 million records; Medtronic confirmed the breach on 24 April alongside an SEC Form 8-K, stating an unauthorized party accessed data in certain corporate IT systems. Potentially affected data included names, addresses, certain medical details, billing and health-insurance information, demographics and Social Securi...

Canvas LMS Data Breach – Australian Schools and Universities Hit 05.05.2026

In May 2026, Instructure disclosed a cyber security incident affecting Canvas, the learning management platform used widely across Australian universities, vocational providers and schools. In this episode of Tech Talks with Kinsoft, we cover the categories of data involved — names, email addresses, student ID numbers and messages between users — Instructure's statement that it found no evidence p...

Last Week in Tech – OpenAI Breaks Its Microsoft Lock-In, Big Tech's $650B AI Bill, and the Salesforce Breach Wave 03.05.2026

Your Monday catch-up, with a security lens. This week: OpenAI loosens its Microsoft exclusivity and goes live on AWS, and Big Tech's quarterly earnings push combined AI spending toward $650–700B for the year. On the breach desk: the ShinyHunters Salesforce-theft wave rolls on through Amtrak, Pitney Bowes and Vimeo, while a Hungarian media giant loses 8.5 terabytes. Worried about what's connected t...

France's ANTS ID Registry – 11.7M Accounts Exposed 30.04.2026

France's ANTS (Agence nationale des titres sécurisés / France Titres), the Interior-Ministry body managing ID cards, passports, driver's licences and immigration documents, detected a security incident around 15 April 2026 on its ants.gouv.fr portal. ANTS confirmed about 11.7 million accounts were impacted (a threat actor claimed up to 19 million). Exposed data reportedly included full names, cont...

Gregory Jewellers Data Breach – Kairos Ransomware Claims 574GB 28.04.2026

In April 2026, the Kairos ransomware group claimed responsibility for breaching Gregory Jewellers, an Australian family-owned luxury jewellery retailer, alleging it stole roughly 574GB of data and listing the company on its dark web leak site. In this episode of Tech Talks with Kinsoft, we cover what the attackers say they took — client personal information, internal corporate records and customer...

Last Week in Tech – Meta's 8,000 Job Cuts, Medtronic's Breach, and a $290M Crypto Heist 26.04.2026

Your Monday catch-up, with a security lens. This week: Meta cuts around 8,000 jobs to fund its AI build-out. On the breach desk it's a heavy week — Medtronic confirms a breach via an SEC filing, the Everest gang leaks two US banks through a shared vendor, North Korea-linked attackers pull off a $290M crypto heist, and ADT confirms customer data was stolen. Is a shared third-party vendor a hole in...

ADT – ShinyHunters Vishing Breach Hits 5.5M 23.04.2026

Home-security firm ADT detected unauthorized access around 20 April 2026; the breach became public when extortion group ShinyHunters listed ADT on its leak site on 24 April with a pay-or-leak deadline. The confirmed breach affected about 5.5 million people — emails, names, phone numbers and addresses, and in a small percentage of cases dates of birth and the last four digits of SSN/Tax IDs. The at...

NSW Treasury Insider Breach – 5,600 Sensitive Documents Exfiltrated 21.04.2026

In April 2026, NSW Treasury disclosed a significant insider data breach: a staffer on its commercial team allegedly exfiltrated more than 5,600 sensitive government documents to an external server. In this episode of Tech Talks with Kinsoft, we cover how internal security monitoring flagged the suspicious transfer, the involvement of NSW Police, the arrest and charges, the confidential commercial...

Last Week in Tech – Patch Tuesday's Two Zero-Days, Rockstar's Vendor Breach, and Amazon's $11.6B Satellite Bet 19.04.2026

Your Monday catch-up, with a security lens. This week: Microsoft's Patch Tuesday fixes 167 flaws including two zero-days, Rockstar Games is breached through a third-party vendor, Amazon bids $11.6B for a satellite operator to take on Starlink, and Snap cuts a sixth of its staff citing AI. Are you patching the flaws attackers are already using? Visit www.kinsoft.com.au to talk through your security...

Booking.com – Hotel-Partner Breach Fuels Travel Scams 16.04.2026

Around 13 April 2026 Booking.com began notifying customers that unauthorized third parties had accessed guest reservation data — not by breaching Booking.com directly, but by compromising hotel partner accounts (researchers point to ClickFix phishing of hotel staff, attributed to a group tracked as Storm-1865). Exposed data included booking details, names, email and physical addresses and phone nu...

3P Corporation – Space Bears Claims a Melbourne Finance Firm 14.04.2026

The Space Bears ransomware group listed Melbourne financial-services firm 3P Corporation in early April 2026 (post dated 10 April; incident said to be 7 April), claiming 200 GB+ including a database, financial documents and personal information of employees and clients. 3P disputes this — it told Cyber Daily its systems stopped the attack before data was compromised. We present both sides and how...

Last Week in Tech – Anthropic's Exploit-Writing Model, Meta Goes Closed-Source, and a Critical Notebook RCE 12.04.2026

Your Monday catch-up, with a security lens. This week: Anthropic gives security partners early access to a frontier model so capable it wrote 181 working exploits on its own, Meta breaks from open-source with its first proprietary model, and Amazon and OpenAI flash eye-watering AI numbers. On security: a critical flaw in a popular Python notebook tool is exploited within hours. Patching open-sourc...

Foster City, California – Ransomware Halts a City 09.04.2026

On 19 March 2026, IT staff in Foster City, California identified ransomware on the city's networks. The city declared a local state of emergency and suspended most non-emergency services while 911 and police dispatch stayed functional; phone, email and online access were disrupted and government meetings moved in-person, with phone and email restored around 29 March. Officials warned that public i...

Qilin's WA Spree – Esperance Metaland 07.04.2026

Part of the same early-2026 Qilin spree: Esperance Metaland, a Western Australian regional business, was added to Qilin's leak site on 21 February 2026. With little evidence published, the episode uses it to discuss the concentrated targeting of regional WA businesses and how to assess unverified leak-site claims calmly, plus practical defences. Worried a leak-site listing might name you next? Vis...

Last Week in Tech – OpenAI's $122B Round, Oracle's Mass Layoffs, and a Backdoor in a Top npm Package 05.04.2026

Your Monday catch-up, with a security lens. This week: OpenAI closes a record $122B round, Oracle makes its largest-ever job cuts to fund AI, and Google ships open models that run on your phone. On the breach desk: North Korea-linked attackers backdoor the hugely popular "axios" npm package, and Apple patches a Spotlight flaw that could expose your files. Do you actually know what open-source pack...

Qilin Ransomware Hits Germany's Die Linke Party 02.04.2026

The Russian-speaking ransomware group Qilin compromised the network of German political party Die Linke in late March 2026, then claimed the attack on its leak site and threatened to publish internal party data and personal information of headquarters employees. The party's membership database was reportedly not affected. Die Linke filed a criminal complaint and characterised the timing as part of...

Qilin Hits WA's Mount Barker Co-operative 31.03.2026

As part of a Qilin ransomware spree against several WA and QLD businesses, Mount Barker Co-operative (a West Australian regional food and farm co-op) was listed on Qilin's leak site on 11 February 2026 with roughly 40 GB claimed. The reporting stresses Qilin posted little hard evidence, leaving real uncertainty about how much was actually taken. A lens on why regional and co-operative businesses a...

Last Week in Tech – OpenAI Pulls the Plug on Sora, a Court Backs Anthropic, and Hacktivists Claim a Lockheed Haul 29.03.2026

Your Monday catch-up, with a security lens. This week: OpenAI shuts down its standalone Sora video app to free up compute, and a federal judge rebukes the Pentagon over its Anthropic ban. On the breach desk: a pro-Iran group makes a huge (unverified) claim against Lockheed Martin, the FBI director's personal email is hacked, and Crunchyroll and a French education system are breached. Unsure how to...

Stryker – Pro-Iran Wiper Attack Disrupts a Medtech Giant 26.03.2026

In March 2026, medical-device maker Stryker suffered a global network disruption that hit order processing, manufacturing and shipments — though no patient-related services or connected medical products were affected. Investigators found no malware or ransomware; instead attackers abused Stryker's Microsoft Intune environment via a compromised administrator account to remotely wipe a large number...

DragonForce Hits Australian Health Software Vendor HMS 24.03.2026

Around 19 March 2026, the ransomware group DragonForce claimed an attack on Health Management Systems (hms.com.au), an Australian provider of healthcare software used by hospitals and clinics, listing the company on its leak site and threatening to release sensitive data unless it negotiated. We focus on the supply-chain angle — how compromising a healthcare software vendor can put many downstream...

Last Week in Tech 22.03.2026

Welcome to this episode of tech talks with kinsoft ! This week, we unpack a massive wave of cybersecurity incidents and technology updates. We explore the devastating attack on Stryker , where threat actors utilized a compromised Microsoft Intune administrator account to remotely wipe 80,000 employee devices without deploying malware. We also detail the ongoing supply-chain compromise of the Trivy...

Ivanti Zero-Days Breach the EU Commission & Dutch Govt 19.03.2026

Attackers exploited two critical Ivanti Endpoint Manager Mobile (EPMM) zero-days — CVE-2026-1281 and CVE-2026-1340, both CVSS 9.8 unauthenticated RCE — in a campaign hitting the European Commission, the Dutch government and other European entities. CERT-EU detected the Commission intrusion on 30 January 2026; it may have exposed some staff names and mobile numbers but was contained and the system...

Listen to the Tech Talks With Kinsoft podcast in Replaio

Radio and podcasts in one app - free, with no sign-up. Install today and do not miss the launch

Get it on Google Play

Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.