エピソード

  • Hackers Turn Whistleblowers: Ransomware Gang Files SEC Complaint
    2023/11/20

    Howdy friends. This week I discuss how ALPHV/Blackcat filed a SEC complaint against one of their ransomware victims, ALPHV/Blackcat’s use of Google Ads to target victims, LockBit’s leak of Boeing’s files, Google’s confirmation that they will disable uBlock in Chrome in 2024, the release of new CVSS 4.0 vulnerability severity rating standard, YouTube’s requirement on creators to disclose the use of generative AI, the latest Move-it breach affecting 1.3 million individuals, the cyber incident forcing an Australian port operator to suspend operations, the vulnerability of Bitcoin user’s wallets for those that created them before 2016, Dolly.com’s ransomware payment and subsequent leak, the FBI’s challenges with stopping a casino hacking gang, and Toyota’s recent breach.

    We’re sticking with just the news on this video, but you can find more Vulnerable U personal and professional growth content on my blog:
    https://www.mattjay.com/blog/

    Check out my free weekly newsletter Vulnerable U:
    https://www.mattjay.com/newsletter/

    続きを読む 一部表示
    12 分
  • Biden’s 8 Rules for AI Usage & What it Means For You
    2023/11/11

    Howdy friends. This week I cover Biden’s AI executive order, the pledge that 40 countries took to not pay ransom to cybercriminals, Prolific Puma, Lazarus hacking group’s focus on infecting blockchain experts with malware, the pwning of the JFK taxi system by Russian hackers, and Boeing’s recent ‘cyber incident’.

    We’re sticking with just the news on this episode, but you can find more Vulnerable U personal and professional growth content on my blog:
    https://www.mattjay.com/blog/

    Check out my free weekly newsletter Vulnerable U:
    https://www.mattjay.com/newsletter/

    続きを読む 一部表示
    16 分
  • Okta hacked! 1Password and Cloudflare caught in the splash damage
    2023/11/02

    Howdy friends. This week I go over the Okta security breach, SolarWinds and their Chief Information Security Officer charged by the SEC with Fraud, Cisco’s second recent 0-day, Browser-based attacks on Apple devices, Telegram’s continued leaks, and the 34 Spanish cyber criminals arrested for stealing 4 million people's data.

    We’re sticking with just the news on this video, but you can find more Vulnerable U personal and professional growth content on my blog:
    https://www.mattjay.com/blog/

    Check out my free weekly newsletter Vulnerable U:
    https://www.mattjay.com/newsletter/

    続きを読む 一部表示
    11 分
  • Is Your Co-Worker a North Korean Spy?
    2023/10/24

    Howdy friends. This week I discuss the North Korean IT workers found to have been sending wages from their remote jobs back to North Korea to fund weapons programs, the massive Cisco device 0-day, the fall of the ACG hacking group, a complex malvertising campaign that was recently uncovered, and the discovery of government-backed hackers exploiting WinRAR vulnerability.

    We’re sticking with just the news on this video, but you can find more Vulnerable U personal and professional growth content on my blog:
    https://www.mattjay.com/blog/

    Check out my free weekly newsletter Vulnerable U:
    https://www.mattjay.com/newsletter/

    続きを読む 一部表示
    8 分
  • October 10: 23andMe data breach hate crime, attack against iPhone encryption by dark-money network, the massive increase in police use of Google’s data, hacking scams on the elderly community, Cisco Emergency Responder vulnerability, the iOS 17 0-day, Qu
    2023/10/10

    Howdy friends. This week I explain the 23andMe data breach, the new group responsible for attacking iPhone encryption backed by a political dark-money network, the uptick in police use of Google’s data, the increase in hacking scam on the elderly community, Cisco Emergency Responder static credential vulnerability, the iOS 17 0-day, Qualcomm's three 0-day patches reported by Google, Vulnerabilities in Supermicro BMCs, Critical TorchServe Flaws that Could Expose the AI Infrastructure of Major Companies, Sony’s confirmation of latest data breach, and the link between the Clorox security breach and the recent casino hacks.

    We’re sticking with just the news on this video, but you can find more Vulnerable U personal and professional growth content on my blog:
    https://www.mattjay.com/blog/

    Check out my free weekly newsletter Vulnerable U:
    https://www.mattjay.com/newsletter/

    続きを読む 一部表示
    10 分
  • October 2: WebP 0day, a youth hacking ring at the center of recent cybercrime sprees, the UNC3944 threat actor’s shift to ransomware attacks, University of Minnesota’s data breach, the $200 million crypto hack on Mixin, and the discovery of China-linked t
    2023/10/02

    Howdy friends. This week I dive into the WebP 0day, the Youth hacking ring at the center of recent cybercrime spree, the financially motivated UNC3944 threat actor that has shifted its focus to ransomware attacks, University of Minnesota’s data breach, the $200 million crypto hack on Mixin, and the discovery of China-linked threat actors who have modified Cisco router firmware to compromise intellectual property and sensitive data.

    We’re sticking with just the news on this video, but you can find more Vulnerable U personal and professional growth content on my blog:
    https://www.mattjay.com/blog/

    Check out my free weekly newsletter Vulnerable U:
    https://www.mattjay.com/newsletter/

    続きを読む 一部表示
    9 分
  • September 22: The MGM and Caesars hacks, Github launches passkeys, the scam on Mark Cuban's crypto wallet, Microsoft AI researchers data leak, the Microsoft teams' phishing problem, Cisco’s Splunk acquisition, and the T-mobile data breach
    2023/09/26

    Howdy friends. This week I will discuss the MGM Resorts and Caesars Entertainment hacks, Github’s launch of passkeys, Mark Cuban’s crypto wallet hack, the Microsoft AI researchers accidental data leak, the Microsoft teams phishing problem, Cisco’s acquisition of Splunk, and the latest T-mobile data breach

    We’re sticking with just the news on this video, but you can find more Vulnerable U personal and professional growth content on my blog:
    https://www.mattjay.com/blog/

    Check out my free weekly newsletter Vulnerable U:
    https://www.mattjay.com/newsletter/

    続きを読む 一部表示
    11 分
  • September 5: Flax Tycoon hacks, Brazilian phone spyware hack, MOVEit hack stats, the dismantling of QakBot infrastructure, a fake Signal app, and Saudi’s death penalty over a man’s tweets
    2023/09/05

    Howdy friends. This week I am covering the China-backed Flax Tycoon hack on Taiwan, a Brazilian phone spyware that was hacked, the MOVEit hack statistics, the FBI and partners dismantling of Qakbot infrastructure in a massive international cyber takedown, a fake Signal app planted on the Google Play store, and the tragic death of a Saudi man by death penalty over his tweets.

    We’re sticking with just the news on this video, but you can find more Vulnerable U personal and professional growth content on my blog:
    https://www.mattjay.com/blog/

    Check out my free weekly newsletter Vulnerable U:
    https://www.mattjay.com/newsletter/


    続きを読む 一部表示
    10 分