Technado  By  cover art

Technado

By: ACI Learning
  • Summary

  • The Technado crew covers a whirlwind of tech topics each week from interviews with industry experts and up-and-coming companies to commentary on topics like security, vendor certifications, networking, and just about anything IT related.
    The Technado Podcast is released under a Creative Commons Attribution Non-Commercial No-Derivatives 4.0 International license. ITProTV and the ITProTV logo are registered trademarks of EdutainmentLIVE.
    Show more Show less
Episodes
  • 358: New Android Banking Malware! (It Tracks EVERYTHING)
    May 2 2024

    Patches abound on this week's Technado! In our Rapid Fire segment, we kick things off with the UK ban on weak default passwords. Then, a warning from Okta on cred-stuffing attacks, and a critical bug in R that exposes orgs to supply chain risks. Collection agency FBCS got pwned this week, with millions of records being exposed - but in happier news, the Japanese police are starting a new effort to keep elderly citizens from falling prey to payment card scams.

    The ArcaneDoor was a big story this week, as was yet anothrer WordPress plugin vulnerability - and in this week's D'oh! segment, the popular iSharing app was found to be sharing users locations (even when services were disabled). FInally, in our deep dive, we take a look at new Android banking malware Brokewell.

    Like what you heard? Take a look at this week's articles:

    https://www.theregister.com/2024/04/29/uk_lays_password_legislation/
    https://thehackernews.com/2024/04/okta-warns-of-unprecedented-surge-in.html
    https://www.darkreading.com/application-security/r-programming-language-exposes-orgs-to-supply-chain-risk
    https://techcrunch.com/2024/04/24/security-flaws-isharing-tracking-app-exposed-millions-precise-locations/
    https://www.techradar.com/pro/security/collection-agency-data-breach-affects-millions-of-users
    https://www.bleepingcomputer.com/news/security/japanese-police-create-fake-support-scam-payment-cards-to-warn-victims/
    https://www.msspalert.com/news/cyber-spies-burrow-into-cisco-firewall-platforms-in-zero-day-exploits
    https://arstechnica.com/security/2024/04/hackers-make-millions-of-attempts-to-exploit-wordpress-plugin-vulnerability/
    https://www.threatfabric.com/blogs/brokewell-do-not-go-broke-by-new-banking-malware

    Show more Show less
    1 hr and 11 mins
  • 357: Malware in Microsoft's GitHub Repo?!
    Apr 25 2024

    Cheats, breaches, and weaknesses abound on this week's Technado! Cybercriminals are threatening to leak millions of records from the World-Check database, and millions more were affected by this week's Frontier Communications broadband shutdown. In our biggest story of the week, MITRE got pwned by nation-state hackers via our old friends, the Ivanti zero-days. CrushFTP is dealing with a vuln that lets attackers download system files, and our Don't Make No Sense feature is a twofer: fake game cheats are being used to spread malware, and it all started with...Microsoft's GitHub repo?

    Of course, it wouldn't be Technado without a deep dive, and this one's a doozy: a SafeBreach researcher uncovered FOUR CVEs by exploiting a long-standing issue that supports Windows backwards-compatibility.

    Like what you heard? Check this episode's stories below:

    https://www.theregister.com/2024/04/19/cybercriminals_threaten_to_leak_all/
    https://www.itpro.com/security/cyber-attack-takes-frontier-communications-systems-offline-affecting-millions-of-broadband-customers
    https://www.helpnetsecurity.com/2024/04/22/mitre-breached/
    https://www.infosecurity-magazine.com/news/crushftp-file-transfer/
    https://thehackernews.com/2024/04/new-redline-stealer-variant-disguised.html
    https://www.bleepingcomputer.com/news/security/github-comments-abused-to-push-malware-via-microsoft-repo-urls/
    https://www.safebreach.com/blog/magicdot-a-hackers-magic-show-of-disappearing-dots-and-spaces/

    Show more Show less
    1 hr and 12 mins
  • 356: Russian Spies Stole US Emails?! (Microsoft Breach Update!)
    Apr 18 2024

    This week on Technado, we start off strong with some breaking news: geospatial intelligence firm Space-Eyes has allegedly been breached by IntelBroker. From there, we cover TWO 10.0 command injection vulnerabilities - one affecting Windows, one affecting Palo Alto. Apple has issued warnings to more than 90 countries concerning Mercenary spyware attacks. We've got updates on the most recent Microsoft and AT&T breaches, as well as a new breach involving Sisense. And of course, we can't forget this week's Behind Bars subject: an ex-Amazon engineer who stole millions in cryptocurrency is facing prison time.

    In our deep dive segment, it's a double whammy: we return to one of our Rapid Fire articles to get into the details of Palo Alto's 10.0 vulnerability. Then, we unpack Blackjack's newest venture, Fuxnet malware.

    Want to know more? Check out the stories we covered this week:

    https://www.hackread.com/windows-batbadbut-vulnerability-comment-injection/
    https://blog.rust-lang.org/2024/04/09/cve-2024-24576.html
    https://www.theregister.com/2024/04/12/microsoft_cisa_order/
    https://www.bleepingcomputer.com/news/security/att-now-says-data-breach-impacted-51-million-customers/amp/
    https://www.hackread.com/iphone-users-mercenary-spyware-attacks/
    https://www.securityweek.com/former-security-engineer-sentenced-to-prison-for-hacking-crypto-exchanges/
    https://www.infosecurity-magazine.com/news/cisa-urges-reset-sisense-breach/
    https://thehackernews.com/2024/04/palo-alto-networks-releases-urgent.html
    https://www.volexity.com/blog/2024/04/12/zero-day-exploitation-of-unauthenticated-remote-code-execution-vulnerability-in-globalprotect-cve-2024-3400/
    https://unit42.paloaltonetworks.com/cve-2024-3400/
    https://claroty.com/team82/research/unpacking-the-blackjack-groups-fuxnet-malware

    Show more Show less
    1 hr and 10 mins

What listeners say about Technado

Average customer ratings

Reviews - Please select the tabs below to change the source of reviews.