Skip to content
PodcastsBusinessCybersecurity Today

Cybersecurity Today

David Shipley
Cybersecurity Today
Latest episode

487 episodes

  • Cybersecurity Today

    ShinyHunters claims another health giant breach, PaperCut rushes second emergency patch, US bans foreign grid tech

    2026/08/31 | 11 mins.
    Shiny Hunters Claims 284M McKesson Records Stolen, PaperCut Patch Bypassed Again, and White House Bans Foreign Power Grid Tech
     
    Host David Shipley covers multiple cybersecurity headlines: Shiny Hunters claims it breached healthcare giant McKesson via voice phishing, compromised Okta SSO, and accessed Salesforce and Snowflake, allegedly exfiltrating about 1TB and 284 million patient records (records, not unique patients) and demanding a $55M+ ransom, though the claims aren't independently verified. PaperCut issued a second emergency patch after bypasses were found for fixes to two actively exploited vulnerabilities that can be chained for unauthenticated remote code execution; organizations on v23 or earlier must upgrade. Berlin confirms an extortion attempt tied to Rhysida, which claims 5.79TB stolen. WordPress discloses five critical plugin/theme flaws enabling full site takeover, including a 10/10 GiveWP RCE. The White House bans foreign-made bulk power grid equipment over backdoor concerns amid rising critical-infrastructure attacks.
     
    00:00 Top Headlines
    00:30 McKesson Breach Fallout
    03:18 PaperCut Patch Bypassed
    06:02 Berlin Rejects Ransom
    07:05 Critical WordPress Takeovers
    08:43 Power Grid Tech Ban
    10:35 AI Security Weekend Episode Promo
    11:10 Closing and Sign Off
  • Cybersecurity Today

    How Varonis hacks AIs into snitching on themselves

    2026/08/29 | 29 mins.
    Varonis AI Threat Lead on Copilot Exploits, Prompt Injection, and the AI Hacking Trifecta
    The host interviews Mark Vaitsman, AI threat research lead at Varonis, about Varonis Threat Labs' research into AI vulnerabilities, including a chain of single-click exploits in Microsoft Copilot (including "CoSnitch") and an Atlassian Confluence issue dubbed "RovoBlast" involving prompt injection, bypassing guardrails, and data exfiltration via a web-capable subagent.
    Vaitsman explains why built-in model guardrails are insufficient, citing AI's lack of loyalty and "unlimited hunger for data," and argues for layered controls like least privilege, monitoring, and restricting data access.
    He discusses psychological guardrail bypasses, introduces an "AI Hacking Trifecta" framework—enter, evade, escape—and comments on research showing AI-generated patches often fail, emphasizing human-led validation and guidance when using AI tools for security research.
    00:00 Weekend Show Kickoff
    00:44 Meet Mark Vaitsman
    03:38 Teaching the Next Gen
    04:19 Copilot Exploit Code Snitch
    06:04 Atlassian RoboBlast Breakdown
    08:52 Why Guardrails Fail
    13:15 Manipulating Models to Comply
    17:06 Securing Agents Without Handcuffs
    20:11 AI Hacking Trifecta Framework
    23:43 AI Patches and Human Research
    27:43 Hope and Closing Thoughts
  • Cybersecurity Today

    Alleged TeamPCP hackers arrested, Cyberattack halts medical shipments, FBI dismantles Chinese hacking platforms

    2026/08/28 | 11 mins.
    Team PCP Arrests, Boston Scientific Shipping Halt, FBI Disrupts Chinese Hacking, CISA Cuts Scrutinized, and AI Email Summarizers Poisoned
    Host David Shipley covers five cybersecurity stories: Australian police, working with the FBI, arrested and charged two alleged core members of Team PCP in connection with a long-running software supply chain campaign that compromised tools like Trivy, Kiks, and LightLLM, potentially affecting over 1,000 organizations and exposing large volumes of credentials and data.
    Boston Scientific disclosed a cyberattack that caused network outages and disrupted global operations, halting its ability to ship devices like pacemakers and stents, with recovery expected to take weeks. 
    The U.S. Justice Department disrupted QScan and Q2Router, platforms tied to China-linked QTFY, used to proxy intrusions against U.S. agencies and an election system.
    House Democrats asked GAO to assess how major workforce cuts have impacted CISA.
    Forcepoint demonstrated invisible-text prompt injection that fooled an AI email summarizer into fabricating invoice details.
    00:00 Headlines Overview
    00:29 Team PCP Arrests
    02:11 Krebs Investigation
    03:06 Boston Scientific Disruption
    04:50 Podcast Reviews Thanks
    05:07 FBI Disrupts QTFY Tools
    05:50 How QScan Pipeline Worked
    07:27 CISA Workforce Cuts
    08:53 Invisible Text AI Poisoning
    10:27 Wrap Up And Teaser
  • Cybersecurity Today

    Iranian hackers darken UK power plant, ShinyHunters breaches the threat hunters, Zombie Visa cards

    2026/08/26 | 10 mins.
    Iran-Linked Cyberattack Hits UK Power Facility, ShinyHunters Phish ReliaQuest, LockBit Claims US Bancorp, Teams Blocks Bots, Expired Visa Card Flaw
    Cyber Security Today host David Shipley reports a UK power facility was taken offline for four days in July by a cyberattack linked to Iran Nexus hackers, though damage was contained to a single small generator.
    ReliaQuest confirms ShinyHunters targeted its staff with phone-based social engineering and a fake reliaquest.claims SSO page, gaining only temporary view-only Okta dashboard access before being blocked by device trust controls, with no customer data affected. 
    LockBit claims it hacked US Bancorp, but the bank says the incident traces to a fourth-party contractor outside its environment and LockBit has provided no proof. Microsoft is rolling out a Teams policy to automatically block detected external bots from meetings.
    UMass Amherst researchers found some expired Visa cards can be "zombified" for contactless payments via a two-phone relay, depending on issuer and bank checks.
    00:00 Top Headlines
    00:26 Iran Linked Power Attack
    01:44 ShinyHunters Targets ReliaQuest
    04:16 LockBit Claims Bank Hack
    05:46 Teams Blocks External Bots
    07:42 Expired Visa Card Zombie
    09:25 Closing Notes Tribute
  • Cybersecurity Today

    Microsoft patches perfect-ten Entra ID flaw, Defender driver deletes Defender at boot, Malware turns cars into proxy botnet

    2026/08/24 | 8 mins.
    Entra ID Perfect 10 Patch, Defender Driver Weaponized, SickKids Breach, Live Leaked AWS Keys, and Car Head Unit Malware
    Microsoft patched a maximum-severity Entra ID deserialization RCE (CVE-2026-69836) after briefly indicating it was exploited in the wild before correcting that claim; the fix is already deployed server-side with no customer action required. Check Point Research detailed how Microsoft Defender's signed BTR.sys remediation driver can be weaponized to remove Defender components during a reboot "golden window," though it requires administrator privileges and no real-world abuse has been seen.
    Toronto's SickKids reported a cyber incident tied to a third-party application exposing employee-related personal data but not patient systems, offering two years of credit monitoring. Truffle Security found hundreds of thousands of leaked AWS secrets, with 88% of re-verified keys still active, including many root and full-admin keys.
    Kaspersky described a supply-chain malware chain targeting Android-based car head units, mainly for proxying and ad fraud, reportedly now resolved by DoFun.
    00:00 Top Stories Rundown 
    00:30 Entra ID Perfect 10 Patch
    01:55 Defender Driver Weaponized
    03:31 SickKids Hit Again
    05:10 Leaked AWS Keys Still Live
    06:48 Car Head Unit Botnet
    08:25 Wrap Up And Sign Off
More Business podcasts
About Cybersecurity Today
Updates on the latest cybersecurity threats to businesses, data breach disclosures, and how you can secure your firm in an increasingly risky time.
Podcast website

Listen to Cybersecurity Today, BigDeal and many other podcasts from around the world with the radio.net app

Get the free radio.net app

  • Stations and podcasts to bookmark
  • Stream via Wi-Fi or Bluetooth
  • Supports Carplay & Android Auto
  • Many other app features