Talkin' About [Infosec] News, Powered by Black Hills Information Security  By  cover art

Talkin' About [Infosec] News, Powered by Black Hills Information Security

By: Black Hills Information Security
  • Summary

  • Download and listen to our weekly infosec podcast where we discuss the latest attacks, breaches, and how they happened and why. We’re a team of penetration testers (ethical hackers) and friends that love how new technology can be broken and made to do things it was never intended to do.
    Copyright 2024 Talkin' About [Infosec] News, Powered by Black Hills Information Security
    Show more Show less
Episodes
  • 2024-04-29 - Hack All The Things!
    May 1 2024

    00:00 - BHIS - Talkin’ Bout [infosec] News 2024-04-29

    02:33 - Story # 1: Cyber Hygiene Helps Organizations Mitigate Ransomware-Related Vulnerabilities

    10:38 - Story # 2: ‘Admin’ and ‘12345’ banned from being used as passwords in UK crackdown on cyber attacks

    16:34 - Story # 3: Maximum severity Flowmon bug has a public exploit, patch now

    21:06 - Story # 3b: CVE-2024-2389: Command Injection Vulnerability In Progress Flowmon

    22:45 - Story # 4:GitHub comments abused to push malware via Microsoft repo URLs

    30:52 - Story # 5: Security bugs in popular phone-tracking app iSharing exposed users’ precise locations

    36:47 - Story # 6: Biden signs bill criticized as “major expansion of warrantless surveillance”

    49:38 - Story # 7: ChatGPT’s hallucinations draw EU privacy complaint

    57:46 - Story # 8: Sweden’s liquor shelves to run empty this week due to ransomware attack

    Show more Show less
    1 hr
  • 2024-04-24 - Exploits, Breaches and, Lawsuits!
    Apr 24 2024

    00:00 - PreShow Banter™ — A Parent Process

    03:01 - BHIS - Talkin’ Bout [infosec] News 2024-04-22

    04:13 - Story # 1: Exploit code for Palo Alto Networks zero-day now public

    07:44 - Story # 1b: (Timeline) Zero-Day Exploitation of Unauthenticated Remote Code Execution Vulnerability in GlobalProtect (CVE-2024-3400)

    23:22 - Story # 2: MGM says FTC can’t possibly probe its ransomware downfall – watchdog chief Lina Khan was a guest at the time

    31:37 - Story # 3: MITRE was breached through Ivanti zero-day vulnerabilities

    32:27 - Story # 4: Cisco Integrated Management Controller CLI Command Injection Vulnerability

    41:20 - Story # 5: Cisco Duo’s Multifactor Authentication Service Breached

    46:01 - Story # 6: DevSecOps security practices are doggone disastrous

    54:57 - Story # 7: FYI: This site claims to have harvested 4B+ Discord chats, today all yours for a price

    Show more Show less
    1 hr
  • 2024-04-17 - SoCal Man Arrested, EPA Leaks, Net Neutrality returns?
    Apr 17 2024

    00:00 - PreShow Banter™ — Retro Actions

    04:48 - BHIS - Talkin’ Bout [infosec] News 2024-04-15

    07:05 - Story # 1: FCC to vote on net neutrality rules on April 25

    18:52 - Story # 2: “All Your Secrets Are Belong To Us” — A Delinea Secret Server AuthN/AuthZ Bypass

    23:40 - Story # 2b: Delinea has cloud security incident in Thycotic Secret Server gaff

    28:23 - Story # 3: CISA Releases Malware Next-Gen Analysis System for Public Use

    40:36 - Story # 4: Hacker Leaks 8.5M U.S. Environmental Protection Agency (EPA) Contact Data

    45:55 - Story # 5: SoCal Man Arrested on Federal Charges Alleging He Schemed to Advertise and Sell ‘Hive’ Computer Intrusion Malware

    Show more Show less
    1 hr

What listeners say about Talkin' About [Infosec] News, Powered by Black Hills Information Security

Average customer ratings

Reviews - Please select the tabs below to change the source of reviews.