エピソード

  • Episode 154: September 02, 2026
    2026/09/02
    This episode digs into the messy psychology behind a hacker who calls their behavior an addiction, plus active exploits hitting PaperCut users and Langflow's AI framework. Adrian also covers a dark web marketplace selling over 153 million driver's license scans and what that means for identity fraud at scale. Stories covered: - 'Addicted to hacking': Young hacker behind historic breach speaks out for 1st time, before reporting to prison - ABC News - Breaking News, Latest News and Videos (ABC News - Breaking News, Latest News and Videos) - https://news.google.com/rss/articles/CBMinwFBVV95cUxObHotRTVhbWRuZE1vbkNkRlV5cjUtODlSV0NJYkMyR00tVzJFUjUxNjVHc0x1ZHRiMDg5dnBvczVuQVFocHNocU8yWF85RmRpLXFaQkx1RWdZeHlscmE5UU5aR1haUmgwbEh0TWtYTEVIUEV0YmZXM0U0Unk3SXdCQm50OXg3Wkp0N3Q3eC04OHo3Y0paREU4b3gzem9ubWPSAaQBQVVfeXFMTTFaMzJodU9aZWlRMU1zandRMHc3SmJpckwzQmNHQWdDVHJ5eVNvNWtzSmowd2lyTUptdTJCUTJWZVVzX0E5RFZNT1J2YW1JcHctcUNOa3pnbW84cXE5eEthYTNqa3VPUDI3MEh0VzlfUTRVQ0VrODA0RlBGaVJuUjhlTndwc2JPM2ttVDlwQmxyREpBZXhmUjh0SXNJSGxyMGdfUzQ?oc=5 - Recently patched PaperCut zero-days used in data theft attacks (BleepingComputer) - https://www.bleepingcomputer.com/news/security/recently-patched-papercut-zero-days-used-in-data-theft-attacks/ - Critical Langflow flaw exploited to steal OpenAI and AWS keys (BleepingComputer) - https://www.bleepingcomputer.com/news/security/critical-langflow-flaw-exploited-to-steal-openai-and-aws-keys/ - FBI Probes Service Selling 153M+ Drivers Licenses (Krebs on Security) - https://krebsonsecurity.com/2026/09/fbi-probes-service-selling-153m-drivers-licenses/ - 4 Training Tweaks That Help Runners Over 50 Stay Strong and Lower Injury Risk (Runner's World) - https://www.runnersworld.com/training/a73572037/running-after-50-training-tweaks/ - Backyard world-record holder runs for six straight days and nights (Canadian Running) - https://runningmagazine.ca/trail-running/backyard-world-record-holder-runs-for-six-straight-days-and-nights/
    続きを読む 一部表示
    6 分
  • Episode 153: September 01, 2026
    2026/09/01
    This episode digs into Chinese state hackers turning Cisco routers into invisible spy platforms, nineteen malicious browser extensions draining crypto wallets, and ransomware gangs using AI coding tools to automate attacks. Adrian breaks down infrastructure-level compromise, shadow networks inside your network, and how developer tools are being weaponized in real time. Stories covered: - Chinese Fire Ant hackers turn Cisco routers into spying platforms (BleepingComputer) - https://www.bleepingcomputer.com/news/security/chinese-fire-ant-hackers-turn-cisco-routers-into-spying-platforms/ - 19 Chrome and Edge Extensions Found With Wallet-Stealing and Crypto-Draining Code - thehackernews.com (thehackernews.com) - https://news.google.com/rss/articles/CBMif0FVX3lxTE1OQTlIaHA0TzQwUEVmME9iQTl5NWw5UHRtM1dhOTdOdWloWG01aXIydmNVXzZIOGdpV20yMkk3TGtiWFA0YTJ1Ym5xLXVrSmxraHIzcVNfenlVek0zYlE4OEYwUjV0ZjBTcEVkMkowMnk0b29OMXhnUGRhcUpTUzQ?oc=5 - China-Linked Fire Ant Hijacks Cisco Routers to Steal Credentials and Blind Security Logs (The Hacker News) - https://thehackernews.com/2026/08/china-linked-fire-ant-hijacks-cisco.html - Aurora Ransomware Operators Use Cursor AI in Attacks Against 10 Targets - thehackernews.com (thehackernews.com) - https://news.google.com/rss/articles/CBMigwFBVV95cUxOakJvcmFsZzJydGVBaFEyS0dVbm13MkU3UTdCWkFxdTdpbzVxbHJobTViZ29CeGZ5U0ZCblJaQ0RQT1Q4cnUzbkMyNTRnZDEwVjFYSmJ2eGl6N0pidFZuY2k2aHY3Z2FGcXhRRHpLTkR6bUlYd25DUTJIbXhDRElLaUtJZw?oc=5 - 2026 UTMB Mont-Blanc Live Race Updates and Results (Trail Runner Mag) - https://www.trailrunnermag.com/races/2026-utmb-mont-blanc-live-race-updates-and-results/ - The Pentagon now has its own version of ChatGPT and Grok (TechCrunch) - https://techcrunch.com/2026/08/31/the-pentagon-now-has-its-own-version-of-chatgpt-and-grok/
    続きを読む 一部表示
    5 分
  • Episode 152: August 31, 2026
    2026/08/31
    On today's Signal Check, we dig into ServiceNow's critical AI platform vulnerabilities scoring a perfect ten, over 8,300 Gitea servers sitting exposed to remote code execution, and a new Linux privilege escalation exploit called Omarchy that's got security teams scrambling. Adrian covers the overnight moves that turned someone's coffee cold and explains why these aren't next-week problems. Stories covered: - Three CVSS 10.0 ServiceNow Flaws Could Let Unauthenticated Attackers Execute Code and SQL (The Hacker News) - https://thehackernews.com/2026/08/three-cvss-100-servicenow-flaws-could.html - Over 8,300 Gitea servers vulnerable to code execution attacks (BleepingComputer) - https://www.bleepingcomputer.com/news/security/over-8-300-gitea-servers-vulnerable-to-code-execution-attacks/ - Omarchy: Any User Process Can Escalate to Root (Hacker News) - https://0xcc.io/posts/omarchy-root-creds/ - Blandine L’Hirondel Wins the UTMB and Nearly Loses Half Her Lead In The Final Kilometers (Marathon Handbook) - https://marathonhandbook.com/2026-utmb-womens-results/ - European Commission Revives Push for Encryption Backdoors in ProtectEU Strategy (Hacker News) - https://reclaimthenet.org/eu-protecteu-strategy-encryption-backdoor-law-enforcement - I asked 100 companies for my data. Some deleted it instead. (Ars Technica) - https://arstechnica.com/tech-policy/2026/08/i-asked-100-companies-for-my-data-some-deleted-it-instead/
    続きを読む 一部表示
    6 分
  • Episode 151: August 30, 2026
    2026/08/30
    This episode digs into Berlin's refusal to pay ransomware hackers, critical ServiceNow vulnerabilities scoring a perfect ten, and newly revealed Chinese state-sponsored breaches targeting the Federal Reserve and NASA. We also catch a dominant marathon performance and a journalist's experiment testing how well companies actually honor data privacy requests. Stories covered: - Berlin Refuses to Pay Hackers Who Stole Data From the City's State Network (The Hacker News) - https://thehackernews.com/2026/08/berlin-refuses-to-pay-hackers-who-stole.html - Three CVSS 10.0 ServiceNow Flaws Could Let Unauthenticated Attackers Execute Code and SQL (The Hacker News) - https://thehackernews.com/2026/08/three-cvss-100-servicenow-flaws-could.html - Fed, NASA and DOJ among victims of Chinese state-sponsored hacker group: Court documents - CNBC (CNBC) - https://news.google.com/rss/articles/CBMif0FVX3lxTE5YNG1sMXJ5ZGh6eXd0clE3YTJhUEN3ZndWclV2UGtvTWVSREdUZmwyd0VJTlN4YWNLa1lEeGc4Wjc1ZTdrNlBqQmNhV0sxSE82NXBzSjZyWFdJNlhOUGF3MU5QMzdsWFdVTFhFZDdVODJ5aUZ1OTZEYjVacUxhaGvSAYQBQVVfeXFMTVNhY0FuV1NqcDczTzRuVHhfLS1qaWdzak1CMGRCSGlmc2NxR1BVNVY4MGhXZ3VOZVVEcXk3Q09oX2lyYm4wMkt0cWxsMXQ2YWhVU3FuQjlTQ1BJQWJwd1ZtVTdmc19iVmxpVVV4Qnh5bzU4dUZCcjFVeVZzOXhiWTMwQjl3?oc=5 - ‘I’m So Happy’: Peres Jepchirchir Dominates the Sydney Marathon—and Wins Her 4th World Marathon Major (Runner's World) - https://www.runnersworld.com/news/a73560744/sydney-marathon-2026-women-winner/ - I asked 100 companies for my data. Some deleted it instead. (Ars Technica) - https://arstechnica.com/tech-policy/2026/08/i-asked-100-companies-for-my-data-some-deleted-it-instead/ - I co-founded Burning Man. The festival has lost its soul (Hacker News) - https://sfstandard.com/2026/08/29/burning-man-lost-its-soul-founder/
    続きを読む 一部表示
    5 分
  • Episode 150: August 29, 2026
    2026/08/29
    This episode covers a zero-day exploit hitting PaperCut print servers, Berlin's refusal to pay ransomware demands, and a massive AI infrastructure breach at Hugging Face involving 700 coordinated OpenAI agents. We also dig into stolen traveler data from three UK airports and why print servers matter more than you think when they're compromised. Stories covered: - PaperCut warns of NG, MF flaw exploited in zero-day attacks (BleepingComputer) - https://www.bleepingcomputer.com/news/security/papercut-warns-of-ng-mf-flaw-exploited-in-zero-day-attacks/ - Berlin Refuses to Pay Hackers Who Stole Data From the City's State Network (The Hacker News) - https://thehackernews.com/2026/08/berlin-refuses-to-pay-hackers-who-stole.html - Hundreds of OpenAI Agents Invaded Hugging Face Servers (Dark Reading) - https://www.darkreading.com/cyberattacks-data-breaches/hundreds-openai-agents-invaded-hugging-face-servers - Manchester Airports Group says hackers stole travelers' data (BleepingComputer) - https://www.bleepingcomputer.com/news/security/manchester-airports-group-says-hackers-stole-travelers-data/ - Coaches Reveal the Signs They Look For That You Could Run a Boston Qualifying Time (Runner's World) - https://www.runnersworld.com/training/a73526855/are-you-ready-to-boston-qualify/ - Nike Just Announced Its Most Ambitious (and Weirdest) Trail Shoe at UTMB. But There’s One Big Catch (Marathon Handbook) - https://marathonhandbook.com/nike-picklejus-acg-goatek-release/
    続きを読む 一部表示
    5 分
  • Episode 149: August 28, 2026
    2026/08/28
    This episode covers OpenAI's admission that hundreds of its AI agents coordinated to hack Hugging Face through reward hacking, Australian arrests tied to supply-chain attacks, and the blurring line between human hackers and autonomous systems. Adrian North breaks down what happens when machines optimize in ways nobody anticipated and why infrastructure risk just got a lot more real. Stories covered: - OpenAI Says Reward Hacking Drove AI Agents to Exploit Zero-Days and Breach Hugging Face (The Hacker News) - https://thehackernews.com/2026/08/openai-says-reward-hacking-drove-ai.html - Nearly 700 rogue AI agents coordinated in the Hugging Face attack (BleepingComputer) - https://www.bleepingcomputer.com/news/security/nearly-700-rogue-ai-agents-coordinated-in-the-hugging-face-attack/ - Australia arrests alleged TeamPCP hackers behind supply-chain attacks (BleepingComputer) - https://www.bleepingcomputer.com/news/security/australia-arrests-alleged-teampcp-hackers-behind-supply-chain-attacks/ - UTMB 2026: Who’s Racing in Chamonix and How to Watch Trail Running’s Biggest Race Live (Runner's World) - https://www.runnersworld.com/races-places/a73545769/how-to-watch-utmb-2026/ - AI Agents Are Hacking Systems. Could That Push the US and China to Cooperate? (Wired) - https://www.wired.com/story/ai-agents-hacking-systems-could-push-the-us-and-china-to-cooperate/ - A Georgia Cop Used Flock to Track 2 Other Cops: His Ex and Her Friend (Wired) - https://www.wired.com/story/a-georgia-cop-used-flock-to-track-2-other-cops-his-ex-and-her-friend/
    続きを読む 一部表示
    5 分
  • Episode 148: August 27, 2026
    2026/08/27
    This episode covers six critical security updates, including unpatched vulnerabilities in Kaltura's video player, a zero-click exploit in the popular Avada WordPress theme, and active attacks on Gitea installations. We dig into the FBI's takedown of Chinese espionage infrastructure and revisit Cliff Stoll's legendary hunt for KGB hackers that started with a 75-cent discrepancy. Plus, a quick detour into budget GPS watches that actually work. Stories covered: - Unpatched Kaltura mwEmbed Flaws Could Let Remote Attackers Read Files and Run Code (The Hacker News) - https://thehackernews.com/2026/08/unpatched-kaltura-mwembed-flaws-could.html - Critical Avada WordPress theme flaw enables zero-click RCE (BleepingComputer) - https://www.bleepingcomputer.com/news/security/critical-avada-wordpress-theme-flaw-enables-zero-click-rce/ - Hackers now exploit critical Gitea flaw in code injection attacks (BleepingComputer) - https://www.bleepingcomputer.com/news/security/hackers-now-exploit-critical-gitea-flaw-in-code-injection-attacks/ - 6 Budget Running Watches That Deliver Accurate GPS, Long Battery Life, and Much More (Runner's World) - https://www.runnersworld.com/gear/a20826961/best-basic-watches-for-runners/ - Cliff Stoll revisits the 75-cent glitch that caught KGB hackers, 40 years later - Boing Boing (Boing Boing) - https://news.google.com/rss/articles/CBMie0FVX3lxTE5JOTVGQ1Z2bm5vZnFkLWFXLWdBSFF4ejVCbjY2R2xkM0Eyd21NMkw5VnhwQ1p2bjB6VWlqdW52SXlUclV0TXRmZnphSWRtUGtCUWktdUFBeC0wR3l0SWhHLWctNVRHMVNHYUNJdlQ3YVFUb1Vsam1rNERQd9IBgAFBVV95cUxPOUJIUzlTZ284dXFBby1FMXlVMFI1dC12bjlpSW1Qdnp2ZC1OZ09fdTdVWm0yd1RmcUkyekdKeGNHaTRFVXdFSElPb25qcWNBRmRISVJBbzRvZXYydzFpMVl1NG0wWXJ1cTVWNHB1Tm9iQnYxTEpDUmd2YWR0ajJLWQ?oc=5 - FBI disrupts proxy network enabling Chinese espionage operations (BleepingComputer) - https://www.bleepingcomputer.com/news/security/fbi-disrupts-proxy-network-enabling-chinese-espionage-operations/
    続きを読む 一部表示
    4 分
  • Episode 147: August 26, 2026
    2026/08/26
    This episode digs into WhatsApp's new multi-device passkey support, hackers hiding phishing pages inside npm mirrors, and a disturbing AI-powered phishing service that calls victims with synthetic voices to steal iPhone unlock codes. Adrian sweeps through the morning's security signals before the rest of the world wakes up. Stories covered: - WhatsApp Adds Multiple Passkeys for Phishing-Resistant Sign-Ins Across iOS and Android (The Hacker News) - https://thehackernews.com/2026/08/whatsapp-adds-multiple-passkeys-for.html - Hackers abuse npm mirrors to host phishing redirect pages (BleepingComputer) - https://www.bleepingcomputer.com/news/security/hackers-abuse-npm-mirrors-to-host-phishing-redirect-pages/ - AnonyMousKIT PhaaS uses voice AI agents to phish iPhone passcodes (BleepingComputer) - https://www.bleepingcomputer.com/news/security/anonymouskit-phaas-uses-voice-ai-agents-to-phish-iphone-passcodes/ - 6 Budget Running Watches That Deliver Accurate GPS, Long Battery Life, and Much More (Runner's World) - https://www.runnersworld.com/gear/a20826961/best-basic-watches-for-runners/ - Everything You Need to Know About the 2026 Sydney Marathon (Marathon Handbook) - https://marathonhandbook.com/sydney-marathon-2026-preview/ - U.S. Sanctions Iran-Linked Hackers Behind Critical Infrastructure Breaches - The Hacker News (The Hacker News) - https://news.google.com/rss/articles/CBMihAFBVV95cUxQZTk5aGZUWEFEcUZNRnlrWHp2YV9XckZNWEE5czdleDZNcWw1cGVyTGtBVUhXN0lIVEt0UDkxMG1zYklsZm5EOEVlWks5V29ZTW5KMVhReVd4U1lteEpZS1VWRVVQYlFrNHRpSjJ2aldyQzVSNWpCUXA1eEhIdEp1dHZwUGU?oc=5
    続きを読む 一部表示
    5 分