PLAY PODCASTS
Jared's Technology Podcast Network

Jared's Technology Podcast Network

450 episodes — Page 3 of 9

Ep 233The Security box, program 233: OneRep

E

Welcome to the security box, program 233. On this edition of the podcast, we've got news, notes and the landscape. We've even got our topic dealing with 1rep. What are they up to and why is it hitting the news in such a bad way? Full notes will be on our blog at http://technology.jaredrimer.net where you can read them without things breaking. We've got tons of news, tons of notes, Trivia is in here and much more. Strong Language is possible. Its not heavy but its there.

Apr 3, 20253h 3m

Sans News bites episode 2 for March 28, 2025

Sans News Bites covers several different items, one of which we've read, another in which we have covered, and another in which might not be surprising. Have you read the newsletter? What did you think? If you have not read the newsletter, here">https://view.email.sans.org/?qs=a93c3ebf1ea9caac5b6981b78d834685e0662448439563b9098ea40f1f5dfb4e58d82edd90a7b75366d9e35fa3e240fc71de7dcba9b9d3907685d787d00f858e26ce086bcb663763a58270e2103023190adf2b30db0e328b">here you go. Have a great day, and see you soon!

Mar 29, 202513 min

Throwback Saturday Night's security hour, episode 4

Here, I talk about what's going on this week. We take the Cyber Wire Daily episode dealing with highjacking. More specificly, remote hijacking.News, notes and the landscape too.

Mar 28, 20253 min

Ep 232Phishing and virtual wallets

E

Welcome to the security box, program 232. Phish data can be used in all kinds of things, including apple wallets. Google is also affected, so don't be complacent. Find out more about this within our podcast. This will be our main topic. We have news, notes and the landscape, some of which are highlighted within the notes on the RSS feed and full notes on the blog.Full news notes will be on the blog. Let's make things clear. This is not just an apple problem. This is also a Google problem. The article we're using for this topic is coming from Krebs on Security and is titled How">https://krebsonsecurity.com/2025/02/how-phished-data-turns-into-apple-google-wallets/">How Phished Data Turns into Apple & Google Wallets so if you have not read it, you should. This is going to get very interesting and we know that this is not going to be over any time soon.If you'd like to support our efforts on what this podcast is doing, you can feel free to donate">http://www.jaredrimer.net/donations.html">donate to the network, subscribing">https://www.986themix.com/mailman/listinfo/thesecuritybox_986themix.com">subscribing to the security box discussion list or sending us a note through contact information throughout the podcast. You can also find contact details on our blog">https://technology.jaredrimer.net/contact-admins/">blog page found here. Thanks so much for listening, reading and learning! We can't do this alone.

Mar 27, 20253h 22m

Sans News bites episode 1: a wordpress plug in needs to be updated, chrome and more

Sans News bites is going to be a news specific thing where we go through the newsletter and tell you what might be big from within it. Here">https://view.email.sans.org/?qs=31db83278ea7bc191ebc9de98fb22ea413065346a3ba7095d2eb0f7a5640deba06764173c87ac4597e25dd6e77af58c2e3fdd5ecb14d6522005f56ecaa90b02c6e1826492158dd7121d788f2242fc9d1">Here is the link for March 25, 2025 and we hope you check it out to see what is of importance. This short podcast will be released Wednesday and Saturday and this will give us time to get it read and recorded. See you next time!

Mar 26, 202510 min

TSN 3: LLMS and scams?

While calling Preston one day, I heard about a podcast through N2K networks called the Fight Files. It covers AI and tech and the legal aspect of all of this. Listen to this 50 minute podcast as we wlearn about services that are used to make this possible. The Independent channel will have the program at 5 pm PT, 7 CT and it'll be available through podcast through this link. We hope you can join!

Mar 22, 20257 min

Ep 382The technology podcast, podcast 382: contact forms, passwords and power school

Welcome to the technology blog and podcast, podcast 382. We're continuing where we left off last podcast by starting with something I posted from the blog, and we'll talk about something that probably should be old by now. I’ve">https://technology.jaredrimer.net/2025/03/15/ive-been-getting-these-emails-all-day-today-it-seems-maybe-the-last-few-days/">I’ve been getting these emails all day today it seems. Maybe the last few days. shows one of many emails I've been getting as of late dealing with how you can get TikTok followers to come to your website. Sorry to break it to you, but that is not how this works, folks. Next, can you believe that passwords are being handed out through the phone lines again? While this podcast was out on the lines for some time, we hear an announcement on how people are doing this and if caught, they will be removed from the line permanently. Learn">http://www.livewire.us">Learn more about Live Wire if you wih. Finally, what's going on with Power School? They're not forthcoming on their breach they had. Here">https://technology.jaredrimer.net/2025/03/12/here-is-some-more-news-about-power-school-and-its-still-looking-grim/">Here is some more news about Power School and its still looking grim is the latest update including the accompanying article. Have fun with this one. Please feel free to contact me through my">http://www.jaredrimer.net">my web site or contact info given in the cast. Thanks so much for listening!

Mar 21, 202554 min

TSB podcast 231: Encrypthub

Welcome to podcast 231. On this podcast, a very interesting ransomware program out there called EncryptHub. What can it do? This is bad in its own way. News, notes, trivia answers and more. EncryptHub">https://www.bleepingcomputer.com/news/security/encrypthub-breaches-618-orgs-to-deploy-infostealers-ransomware/">EncryptHub breaches 618 orgs to deploy infostealers, ransomware is the article from Bleeping Computer. This may be the new type of Ransomware, and if so, this could be very bad. Have you read this article or the blog post on it that I wrote? If you'd like to support our efforts on what this podcast is doing, you can feel free to donate">http://www.jaredrimer.net/donations.html">donate to the network, subscribing">https://www.986themix.com/mailman/listinfo/thesecuritybox_986themix.com">subscribing to the security box discussion list or sending us a note through contact information throughout the podcast. You can also find contact details on our blog">https://technology.jaredrimer.net/contact-admins/">blog page found here. Thanks so much for listening, reading and learning! We can't do this alone.

Mar 20, 20253h 50m

The Technology blog and podcast, podcast 381: Trend Micro, a man getting potential prison and more

Hello folks, welcome to program 381 of the technology blog and podcast series. We are going to start with an interesting video with Trend Micro that talks about customer success. Making sure customers are happy is the key to having a successful company, and this does not matter what the business is. Next, in our first article we're going to talk about, we're talking about one that should really have more of a punishment than 10 years. The article talks about a guy who basicly sabotoged his former employer after he got terminated. Thinking that he wouldn't be caught at whatever he got caught doing, he put in a kill switch which disabled the company computer network. If you read the article titled Developer">https://www.bleepingcomputer.com/news/security/developer-guilty-of-using-kill-switch-to-sabotage-employers-systems/">Developer guilty of using kill switch to sabotage employer's systems from Bleeping Computer, what did you think of it? Do you agree with the 10 years he ould get if found guilty? Why or why not? Email, imessage, text, WhatsApp or call and leave a comment on the comment line. Let me know if your comments should be aired. Microsoft">https://krebsonsecurity.com/2025/03/microsoft-6-zero-days-in-march-2025-patch-tuesday/">Microsoft: 6 Zero-Days in March 2025 Patch Tuesday comesfrom Krebs On security as we have a segment on Windows Update. If you can, get those updates going. Email/Imessage tech at menvi.orgtext/WhatsApp: 804-442-6975Leave a message or talk to me: (888) 405-7524 or (818) 527-4754. Enjoy the program!

Mar 17, 202545 min

TSN episode 2: Kim Komando

Lots of varying things coming from Kim Komando including a word not to use because its in scams, a DJI drone hit a plane used to deal with firefighting and much more.

Mar 15, 20257 min

TSB 230: Darcula, the next biggest threat

With the trivia, note that we can accept multiple answers today. Those who guessed already can't change their answers.Welcome to program 230 of the Security Box. I can't believe we've made it to program 230, but here we are. Between this milestone, and the relaunch of the tech podcast releasing 380, this is going to get very interesting. On this edition of the program, we're going to hear from Preston in regards to one of the newsletters from Kim Komando. We're going to hear from Trend Micro about the threat landscape thanks to one of their podcasts through Youtube, and we also have an interesting video about a London Story with a guy climbing Big Ben. Yes, its not security related, but you'll see why we've included it here and i'll talk about it for those who did not see it. If you'd like to watch this, let us know what's going on. We know it is a demonstration and I have no problem with it, but doing this with no shoes? Here">https://www.youtube.com/watch?v=SIkowhcFdfE">Here is the video from a news source if you wish to take a look. Phishing">https://technology.jaredrimer.net/2025/02/20/phishing-as-a-service-darcula-may-become-the-next-best-thing/">Phishing as a service Darcula may become the next best thing is the blog post that leads to the article in which we're going to use. This is one of a few items that we will need to watch.If you'd like to support our efforts on what this podcast is doing, you can feel free to donate">http://www.jaredrimer.net/donations.html">donate to the network, subscribing">https://www.986themix.com/mailman/listinfo/thesecuritybox_986themix.com">subscribing to the security box discussion list or sending us a note through contact information throughout the podcast. You can also find contact details on our blog">https://technology.jaredrimer.net/contact-admins/">blog page found here. Thanks so much for listening, reading and learning! We can't do this alone.

Mar 13, 20253h 3m

The Technology podcast, program 380: New Ideas for the program

Hello tech podcast subscribers. This has been awhile in the making, as i've been thinking of this podcast for awhile. I've already got some things lined up, but since now I can schedule items, I can put podcasts out once a week and have them dated too. So now this feed has three items: The Tech podcast TSB News on the security hour for throwback saturday night Each show has a set release schedule. This program will be on Mondays. TSB on Thursday or Friday, 24-48 hours of it being recorded live on the independent channel. TSN, short for Throwback Saturday Night will be released 24 hours before airing on the independent channel talking about what we'll talk about on the show. On this program, I'll talk about my ideas for the tech program, and we'll talk about the RSS feed and why it has changed from Anchor to where it is. Where is it now, you say? We're on the plan for networks on a web site called rss.com">http://ww.rss.com">rss.com. Learn more about what they're offering. I hope that this finds you well, and we'll see you on another edition of the program! This is going to be quite interesting and fun.

Mar 10, 202523 min

Throwback Saturday Night Security hour, episode 1: March 8, 2025

bonus

Discarded comes along this time and we're listening to how the defenders take down domains which may or may not lead to arrests. Its a disruption tactic which can work in examples given in the podcast.

Mar 8, 20257 min

TSB 229: Evading Antivirus Again?

E

Welcome to the security box, podcast 229. On this podcast, we've got three trivia questions from one Kim Komando Newsletter, we've got the news notes and landscape, and a topic dealing with a country that is messing with more stuff with something we definitely need to be aware of. According to KMOX, identity theft is up. Here's">https://www.ivoox.com/en/identity-theft-resource-center-reports-massive-spike-in-audios-mp3_rf_127374273_1.html">Here's a link to the podcast from the identity resource center. There is something out there called APV. Chinese">https://technology.jaredrimer.net/2025/02/18/chinese-hackers-are-abusing-more-microsoft-stuff/">Chinese hackers are abusing more Microsoft stuff leads to a blog that talks about this APV thing. Don't worry, if you think this is bad, than you haven't been reading the blog. We have more topics picked out so you'll want to give this a look and stay tuned to more podcasts for other topics that could be similar to this that you need to know about.If you'd like to support our efforts on what this podcast is doing, you can feel free to donate">http://www.jaredrimer.net/donations.html">donate to the network, subscribing">https://www.986themix.com/mailman/listinfo/thesecuritybox_986themix.com">subscribing to the security box discussion list or sending us a note through contact information throughout the podcast. You can also find contact details on our blog">https://technology.jaredrimer.net/contact-admins/">blog page found here. Thanks so much for listening, reading and learning! We can't do this alone.

Mar 6, 20253h 14m

The Security box, program 228: What is going on with TLDs today?

Welcome to the Security box, podcast 228 for the last week of February. With 28 days in February, this will be the last podcast of the month. I can't believe it! On this podcast we're going to cover news, notes, the landscape and thanks to the Pennsylvania">https://patf.us/">Pennsylvania Assistive Technology Foundation we're bringing you a webinar that you're going to get something out of that talks about identity theft. We'll also talk about domains. Yes, we're seeing ones that were talked about in the past in new twists, so we better rehash this topic and talk about how you can stay safe. If you'd like to support our efforts on what this podcast is doing, you can feel free to donate">http://www.jaredrimer.net/donations.html">donate to the network, subscribing">https://www.986themix.com/mailman/listinfo/thesecuritybox_986themix.com">subscribing to the security box discussion list or sending us a note through contact information throughout the podcast. You can also find contact details on our blog">https://technology.jaredrimer.net/contact-admins/">blog page found here. Thanks so much for listening, reading and learning! We can't do this alone.

Feb 27, 20254h 42m

The Security Box, podcast 227: Lifelock

E

Welcome to podcast 227 of the Security box. On this program, we're going to talk about Lifelock. They're now promoting how good their services are, but yet, we found a program through A&E and other channels. Let's see what you think. Also, there are going to be different findings either on Youtube or other places talking about experiences. Bug">https://technology.jaredrimer.net/2018/07/25/bug-in-lifelock-exposes-millions/">Bug in lifelock exposes millions July 25, 2018 The">https://technology.jaredrimer.net/2023/01/18/the-fcc-is-to-strengthen-breach-notifications-it-cant-come-soon-enough/">The FCC is to strengthen breach notifications … it can’t come soon enough uly 18, 2023 Lastpass">https://technology.jaredrimer.net/2023/01/17/lastpass-is-not-the-only-one-target-norton-life-lock-is-now-the-next-victim/">Lastpass is not the only one target, Norton Life Lock is now the next victim January 17, 2023 If you'd like to support our efforts on what this podcast is doing, you can feel free to donate">http://www.jaredrimer.net/donations.html">donate to the network, subscribing">https://www.986themix.com/mailman/listinfo/thesecuritybox_986themix.com">subscribing to the security box discussion list or sending us a note through contact information throughout the podcast. You can also find contact details on our blog">https://technology.jaredrimer.net/contact-admins/">blog page found here. Thanks so much for listening, reading and learning! We can't do this alone.

Feb 20, 20253h 22m

Ep 226The Security box, program 226: The Stupid Jungle

E

Welcome to program number 226. On this program, we're going to have a discussion on what has happened across the network the prior month, including the scare of the fires. But the main topic does talk about a company in which did things completely wrong.So, what should I read you ask? Read the post mortem report: Post">https://technology.jaredrimer.net/2025/02/11/post-mortem-how-important-are-mailing-lists-across-the-jrn/">Post Mortem: How important are mailing lists across the JRN? which will discuss the bulk of what we discuss. We do cover news including some IOS 18.3 updates which Kim Komando says to go ahead and install on phones now. We also have Trivia from last week and a very interesting question we did write down this time. If you'd like to support our efforts on what this podcast is doing, you can feel free to donate">http://www.jaredrimer.net/donations.html">donate to the network, subscribing">https://www.986themix.com/mailman/listinfo/thesecuritybox_986themix.com">subscribing to the security box discussion list or sending us a note through contact information throughout the podcast. You can also find contact details on our blog">https://technology.jaredrimer.net/contact-admins/">blog page found here. Thanks so much for listening, reading and learning! We can't do this alone.

Feb 14, 20253h 52m

TSB 225: Mastercard and its stupidity

E

Welcome to the security box, podcast 225. On this program, we're going to talk about a company that earned our stupid fuck award for January. We'll also cover the news, notes, landscape and more. Newsy items Not that we care, but Microsoft Defender is disabling VPN. Microsoft kills of Defender Privacy protection VPN services for more. Deep Seek is being abused, not much of a surprise here, but worth looking at. Should this not be surprising, DeepSeek now being abused for more. Gemini and other tools are being abused, and some have been abused more than others. Enter the AI aspect of these tools and we've penned an article titled Gemini AI tools are being abused … so are others if you want to read it. Globe Life is yet another breach with yet another update. Globe life confirms breach after investigation, 850k more affected if you wish. Meta is in Chaos mode, it seems should not be surprising to some, maybe surprising to others. You decide. Tata tech hit with ransomware You’ve got to be kidding me … another two databases open but now closed? if you've not read it already. Who got charged this podcast? A Canadian Man got charged this month with pilfering $65m in Crypto. Our blog post Canadian man charged with stealing $65m using crypto exploits has the entire details. Who got our stupid fuck award in January we're talking about now? We mentioned this as part of podcast 224, but it became our topic. Its the Krebs On Security article MasterCard DNS Error Went Unnoticed for Years which really is stupid. We'll stop to explain some things on the way, and we hope this leads to some great conversations. Supporting the podcast If you'd like to support our efforts on what this podcast is doing, you can feel free to donate to the network, subscribing to the security box discussion list or sending us a note through contact information throughout the podcast. You can also find contact details on our blog page found here. Thanks so much for listening, reading and learning! We can't do this alone.

Feb 5, 20253h 3m

The Security box, podcast 224: A day in the life as a voice phisher

E

Hello gang, welcome to podcast 224 of the security box. On this program, we're going to talk a little bit about something I spotted through Brian Krebs, an article that really goes in to how voice phishing really works. Also, we'll cover the news and landscape, with a brand new model which started a discussion from within the group which I saw a few items on and we'll see what else comes along. Our topic: Voice Phishing Have you read this interesting article titled A Day in the Life of a Prolific Voice Phishing Crew by Brian Krebs before? Its going to lead our discussion. Talk about an insight, this article I think does it. Supporting the podcast If you'd like to support our efforts on what this podcast is doing, you can feel free to donate to the network, subscribing to the security box discussion list or sending us a note through contact information throughout the podcast. You can also find contact details on our blog page found here. Thanks so much for listening, reading and learning! We can't do this alone.

Jan 29, 20253h 36m

The Security box, podcast 223: Q4 Social Media

E

I realize in one part of the intro I said 2024, but another I said 2025 as I wrote the show notes intro which were read. Sorry about that! Hello folks, welcome to program number 223 for Wednesday, January 22, 2025. Its already been a busy month, and now its time to tackle our first topic dealing with a Q4 report from Phishlabs. We also have news, notes, the landscape and we also will talk about our new blog post talking about the stupid fucks of the year. Contact info will always be given throughout the program. Our topic: Risky social media For the first major topic of 2025, an article talking about a Q4 report that Phishlabs did. Riskiest Social Media Platforms, Q4 2024 is tthe article. This is going to get very interesting. Please find full show notes including links to some of the news we talk about on our blog. Supporting the podcast If you'd like to support our efforts on what this podcast is doing, you can feel free to donate to the network, subscribing to the security box discussion list or sending us a note through contact information throughout the podcast. You can also find contact details on our blog page found here. Thanks so much for listening, reading and learning! We can't do this alone.

Jan 23, 20253h 59m

The Security box, podcast 222: Scams and natural disasters

E

Hello folks, welcome to podcast 222. This week, we take a look at the fact that we in California have had it bad in some counties and what scammers are up to. This is unfortunate, and while I'm in California, I think the bad news of what they are doing will not help. Here are some resources and articles covering the ordeal. L.A. wildfire devastation: Here's how to help KNX Mayor Bass issues executive order to expedite fire recovery KNX 3 arrested for allegedly setting fires in San Fernando Valley, West L.A. KNX Looter in LA caught posing as firefighter KNX 8 charged with looting homes during L.A. fires: DA KNX Lawsuits claim Eaton Fire started by SoCal Edison equipment KNX For complete details, please visit some of these news sites in no particular order: KNX KTLA Los Angeles NBC Los Angeles CNN National News MSNBC Fox 11, Los Angeles The list here is not exhaustive and you can find other news sites that might cover this. Always use thes or other news sites to get your news, and also social media you trust with these and other sources you trust. Want to help out? Here's the link to the red cross. Supporting the podcast If you'd like to support our efforts on what this podcast is doing, you can feel free to donate to the network, subscribing to the security box discussion list or sending us a note through contact information throughout the podcast. You can also find contact details on our blog page found here. Thanks so much for listening, reading and learning! We can't do this alone. Internet Radio affiliates airing our program Our Internet Radio stations that carry us include International Friends Radio Network. The program is also carried live through the Independent Channel which is part of 98.6 the mix, KKMX, International. If you want to carry us, please use the Jared Rimer Network site to do that and let me know about your station. Please allow 3-4 hours for airplay, although we try to go 3 hours for this program. Thanks so much!

Jan 15, 20252h 5m

The Security box, podcast 221: Happy New Year!

E

missing description

Jan 9, 20252h 57m

TSB podcast 220 for Dec 18, 2024

E

Sorry we're late on this, other commitments. We've got the news, the landscape and much more as the team takes the rest of the year off. Next scheduled program will be on January 8th. Happy new year!

Dec 21, 20243h 35m

TSB 219: 3 trivia questions and lots in the landscape

E

Lots of stuff in the landscape. Three thrivia questions and no show next week. We'll have one more in 2 weeks.

Dec 6, 20242h 57m

TSB 218: open forum

E

News, notes and the landscape. Other odds and ends too including a trivia question. (888) 405-7524 or 818-527-4754 iss the way to participate or use other contact info during the show.

Nov 20, 20242h 34m

TSB podcast 217: What the hell is the braille space and why is it being discussed?

E

Hello folks, welcome to the security box, podcast 217. Its been a long time since we did how notes, as NCSAM doesn't necessarily need show notes per see. We've got a great topic on something I blogged and we talked about awhile back about the braille space. No, not the way braille is written as you know it, but a hexidecimal character used to cause havoc. We'll explain on this podcast. Besides that, we're going to have the news, the notes, the landscape, answers to trivia and more. Please feel free to participate. Starting with this podcast, we're going to have our click to call wigit available so you can feel free to use it to call the comment line and leave your message or talk to us, depending on availability. Thanks so much for listening to the program, and we hope you enjoy! The braille space When writing braille, it is no different than writing print. But braille can be written with hexidecimal characters just like other languages using a computer keyboard. We found an article talking about the fact that this braille character is used to actually hide file extensions, amking you think you're opening one type of file, but opening another. On September 16, 2024: Robert Stepp responded to the email I sent him iquiring to the braille space as a character, and he wrote the following. Hi, There is nothing special about a "braille" space. The 0x2800 character is simply a space in the 8-dot braille page of Unicode (three bytes in UTF-8). Apparently 0x2800 is interesting because is shows as nothing but is parsed as non-whitespace. A bogus filename SomeName.pdfxxxxxxxxxxxxxxxxxxxx.hta where x is the braille space, when written to a FileName box (whose length is too short to show the final .hta without scrolling) appears to be a .pdf file when it is actually a .hta (private malware) file. Any Unicode character, not known by Windows controls to be whitespace (space, thin-space, zero-width- space, etc) would work just as well for this visualization spoof. To read the entire blog post including the article which will lead to our discussion, I did not know there was something called a braille space is the article in which I wrote, linking to the article from Bleeping Computer. For those that just want to dive in to the Bleeping computer article, Windows vulnerability abused braille “spaces” in zero-day attacks will be your article. Thanks Bob for your great insite! Its much appreciated. Contacting the podcast If you would like to contact the podcast folk, please use the following info which goes to Jared and can be shared with the rest of the contributors as needed: Email/imessage: [email protected] or [email protected] which go to Jared. Text or WhatsApp: 804-442-6975 Call the comment line at (888) 405-7524 or use the click to call button located in the show notes. If available, Jared can take your call below. You may also call long distance by calling (818) 527-4754. Supporting the podcast If you'd like to support our efforts on what this podcast is doing, you can feel free to donate to the network, subscribing to the security box discussion list or sending us a note through contact information throughout the podcast. You can also find contact details on our blog page found here. Thanks so much for listening, reading and learning! We can't do this alone. Inte

Nov 15, 20243h 15m

TSB 216 reissue

E

This is a reissue. Unfortunately, it has come to my attention that the podcast was only 7 seconds, and I don't know why. So we're retrying the program upload again. On this program, we've got the news, the notes and the landscape. We've got the book discussion and what we think. We apologize for the inconvenience this causes you! More later.

Nov 15, 20243h 45m

The Security box, podcast 216

E

On this episode, we're going to cover the landscape, the news, the notes and even a very interesting email we got. Is this really a writer? I think not. Want to participate during the trivia? Call (888) 405-7524 or (818) 527-4754. No purchase necessary, learning is the key. Enjoy the show!

Nov 7, 20240 min

TSB 215: Lots of stuff including news, notes, the landscape, credit cards and more

E

Wooo! This podcast is packed! On this edition of the podcast, we've got tons of topics including one we wrote about prior to going on air. We're going to cover the landscape and things that Nick has wanted to comment on since he missed a few weeks, participating only through SMS. We even have a replay of a 36 minute segment from podcast 193 where we take you through the setting up of virutal cards on Capital One's app. I hope that each and every one of you have enjoyed this extended version of the show as much as we have bringing it together for you. Next week, books. We'll see you then!

Oct 30, 20244h 17m

The Security box, podcast 214: NCSAM continues with social media and more

E

Sorry for the late release. If I put this up before, I apologize for the inconvenience. We talk about all kinds of stuff including our aforemention topic of social media. We hope you enjoy the program.

Oct 26, 20243h 18m

The security box, podcast 213: upgrading software

E

Upgrading software is important. But sometimes it may not be so good, and we discuss thoughts as part of NCSAM. Trivia and more on this edition of the program.

Oct 17, 20243h 1m

The Security box, program 212: week 2 of NCSAM: scams

E

Scams are everywhere. We break down an article we found, talk about the news and the landscape and much more. We hope you enjoy the program.

Oct 10, 20243h 24m

TSB 211: week 1 of the 2024 NCSAM discussion

E

On this podcast, passwords, password managers, news, notes, multi-factor and more. Thanks for joining!

Oct 3, 20242h 57m

The Security box, podcast 210: OCR can be used for bad?

E

Hello folks, welcome to program number 210 of the security box. What do you think when it comes to OCR? If you're disabled, you know that it helps you identify print in to spoken word for you to know what is on the printed page. However, this is not what we're talking about. OCR is now being used to get information, and it may be information you don't want escaping. Besides this topic, we're going to have the news, the notes, and the landscape as well. We appreciate those of you who are downloading and listening to our podcast whether its through RSS, the direct links we provide through TSB's directory or blog, or even if you listen through replays through your respective channel or the independent channel directly. OCR used for bad Yes, we said OCR for bad. This is bad. How many Android applications are known to be using something to steal Crypto currency? is the blog post which leads to the article Found: 280 Android apps that use OCR to steal cryptocurrency credentials. I guess we'll have to see what happens with this, but if this is any indication, Android is going to be a big breed and IOS may end up following in their own way too. Stay tuned! Supporting the podcast If you'd like to support our efforts on what this podcast is doing, you can feel free to donate to the network, subscribing to the security box discussion list or sending us a note through contact information throughout the podcast. You can also find contact details on our blog page found here. Thanks so much for listening, reading and learning! We can't do this alone. Internet Radio affiliates airing our program Our Internet Radio stations that carry us include International Friends Radio Network. The program is also carried live through the Independent Channel which is part of 98.6 the mix, KKMX, International. If you want to carry us, please use the Jared Rimer Network site to do that and let me know about your station. Please allow 3-4 hours for airplay, although we try to go 3 hours for this program. Thanks so much!

Sep 27, 20243h 6m

The Security box, podcast 209: Volt Typhoon is back in the news

E

Welcome to the Security box, podcast 209. On this program, we'll do questions by hand, and some will be from the news. Of course besides the news, we've got to talk about Volt Typhoon again. If anyone has any questions we can answer, we'll do that as well. Volt Typhoon in the news again KrebsOn Security takes on a journey of New 0-Day Attacks Linked to China’s ‘Volt Typhoon’. which caught our attention. I wrote this up, in a way I think is fair, as we take the article apart. Supporting the podcast If you'd like to support our efforts on what this podcast is doing, you can feel free to donate to the network, subscribing to the security box discussion list or sending us a note through contact information throughout the podcast. You can also find contact details on our blog page found here. Thanks so much for listening, reading and learning! We can't do this alone. Internet Radio affiliates airing our program Our Internet Radio stations that carry us include International Friends Radio Network. The program is also carried live through the Independent Channel which is part of 98.6 the mix, KKMX, International. If you want to carry us, please use the Jared Rimer Network site to do that and let me know about your station. Please allow 3-4 hours for airplay, although we try to go 3 hours for this program. Thanks so much!

Sep 20, 20244h 2m

The Security box, podcast 208 for Sept 11, 2024

E

missing description

Sep 12, 20243h 28m

The Security box, podcast 207: open forum

E

Open forum, an a very interesting set of emails.

Sep 4, 20242h 50m

The Security box, podcast 206: EDR Kill Shifter

E

Hello, welcome to program number 206. We've got tons of questions that could lead our news discussion, we've got an interesting discussion on a type of malware that could be disruptive and Antivirus may not help and more. Here are the questions. What happens when someone decides to be a complete moron? We talk about it, and this story is just out of this world. Who was it, what did they do, and how much trouble will he be in? Next, what happened to a telecom company who also did moronic things who also deserves our moron of the podcast? What type of technique has been around since 2017 and is now being used for delivering something we've been talking about for a number of years now? Who in Russia recently got arrested because he stole from a certain ransomware group? Name the group, and while we don't know the suspect, name him by the initials given within the article. Speaking of arrests, which new ransomeware group which was once known as Conti had a member arrested? What was his position? What is his fine as a minimum and what might his prison sentence as a minimum according to the article be? What type of malware is now going to break records if last year's number was 1.1 billion dollars alone? What was it that I thought could be the number for this year based on last year's number and what was the percentage? Finally for our topic, what new ransomware might we be talking about this time, that kills a certain type of antivirus protection? I hope that you enjoy the program as much as we are bringing it together. Thanks for listening and make it a great day! Our complete morons of the podcast Get a load of this for our first moron. This guy's name is Jesse Kipf and he's got a wrapsheet. Man sentenced for hacking registry to fake his own death is the first blog post and it did get a comment from Shaun. But that wasn't all. Once I went on Ars Technica, I found We’ve got more on the dad who refused to pay child support which I blogged after reading the story. On page 2 of the story, it talks about the wrapsheet he's going to face. Speaking of facing wrapsheets, Karakurt negociater arrested, sent to U.S. could be talked about because of that potential sentencing for the suspect, but we'll have to see about that. Speaking of morons, Telecommunications company to pay 1 million dollars should be read if you haven't read it already. We even found >Here’s more on the lingo telecom fiasco which has an update. Our Topic EDR Kill Shifter Our topic is quite interesting and one in which we also need to talk about. Ransomware gang deploys malware that kills security programs is the blog post in which we talk about this and it leads to the article. It leads to the article itself Ransomware gang deploys new malware to kill security software which comes to us from Bleeping computer. Supporting the podcast If you'd like to support our efforts on what this podcast is doing, you can feel free to donate to the network, <a href="https://www.986themix.com/mailman/listinf

Aug 28, 20242h 36m

The Security box, podcast 205: Magniber

E

Welcome to the security box, program number 205. Which Ransomware gang is now responsible for deploying ransomware that actually disables security programs? Which types of security programs are affected? Which major company which was talked about last podcast confirmed that there was a breach that occured and when did it occur? Which car company is recalling cars that have not been serviced for a 9 year old problem? Finally, for those who haven't participated in the discussion, do you share your location or accounts with your spouse or partner? This week's topic talks about something we may have talked about called Magniber. We hope you enjoy the program, thanks so much for listening! Magniber back in the news Magniber is back, old decryptors don’t work is the blog post that people can read. It leads to this article titled Magniber ransomware targets home users. This article leads to another article from Bleeping computer, so there's no need for us to link to it. We also talk about the reorganization of 6 different items. But wait, we even talk about our guide we wrote on how to check links if the malicious things you get are by links. Getting Link information via access technology is the link. Please utalize it! Supporting the podcast If you'd like to support our efforts on what this podcast is doing, you can feel free to donate to the network, subscribing to the security box discussion list or sending us a note through contact information throughout the podcast. You can also find contact details on our blog page found here. Thanks so much for listening, reading and learning! We can't do this alone. Internet Radio affiliates airing our program Our Internet Radio stations that carry us include International Friends Radio Network. The program is also carried live through the Independent Channel which is part of 98.6 the mix, KKMX, International. If you want to carry us, please use the Jared Rimer Network site to do that and let me know about your station. Please allow 3-4 hours for airplay, although we try to go 3 hours for this program. Thanks so much!

Aug 21, 20243h 3m

The Security box, podcast 204 for August 14, 2024

E

Welcome to the security box, podcast 204. What big story is coming out about a company who has apparently gained access to tons of data illegally? The names, potential relative information, possible address information and social security numbers may be affected. Our topic today talks about how IT workers are getting hit with a new ransomware strain called Rino. All of this as well as the news, notes, questions and comments from any participents that may come in. The next possible biggest breach There's a lot of conflicting information, especially when it comes to which particular group supposedly hacked the company to begin with. This particular incident reminds me of the OPM breach of 2018. search the blog for opm breach Here are our blog posts which talk about the subject as of writing these notes. There's still a lot for us to learn. We’ve got more on this NPD databreach was written on august 11, 2024 and it links to a Bleeping Computer article. There are a lot of questions here including the exact number of people and the fact that there are conflicts within the data that was seen by the publication. 2.9 billion users, National public data gained data illegally is the blog post that links to the hackread article that Kim Komando linked to within her newsletter. This one talks about a lawsuit and that lawsuit deals with the fact that this company got the info illegally and orders the court to delete the illegal data. We highlighted this article on the Throwback Saturday Night program for August 10th. The RSS for that show is on this link. What is Sharp Rino? Ransomware gangs target IT workers with sharp rino malware is the blog post which leads to today's discussion from Bleeping Computer titled Ransomware gang targets IT workers with new SharpRhino malware which should be a very interesting discussion. Supporting the podcast If you'd like to support our efforts on what this podcast is doing, you can feel free to donate to the network, subscribing to the security box discussion list or sending us a note through contact information throughout the podcast. You can also find contact details on our blog page found here. Thanks so much for listening, reading and learning! We can't do this alone. Internet Radio affiliates airing our program Our Internet Radio stations that carry us include International Friends Radio Network. The program is also carried live through the Independent Channel which is part of 98.6 the mix, KKMX, International. If you want to carry us, please use the Jared Rimer Network site to do that and let me know about your station. Please allow 3-4 hours for airplay, although we try to go 3 hours for this program. Thanks so much!

Aug 15, 20242h 36m

The Security box, podcast 203: Data breach victims up 1k percent thanks to a study

E

What is the number of percentage points that we recently saw when it came to our data being pilfered as victims go? What email seems to be making a comeback that we've not seen in a number of years, yet a customer of mine has gotten two of them within days of each other? What might be the subject matter of these emails and what are they trying to get this customer to do? Hint, its something we talked about probably in 2018 when The Mix and the JRN got these types of emails. Besides all of these questions, we're going to cover the landscape and some of what we've blogged or spotted in the news. We hope that you enjoy the program, and thanks for listening! What percentage of victims are up when it comes to Data Breaches? We blogged our thoughts on this topic, as well as linked to the original Article thanks to MalwareBytes. The number is staggering, although it would be a lot less percentage wise except for a couple of breaches as part of a Q2 report. If you guessed close to 500 percent, you're not far off, that number is only there at 490% without the breaches at Snowflake and other companies. The correct answer is 1,000% and we played the article as part of Saturday's Throwback Saturday Night program. Here is the link to their RSS. Supporting the podcast If you'd like to support our efforts on what this podcast is doing, you can feel free to donate to the network, subscribing to the security box discussion list or sending us a note through contact information throughout the podcast. You can also find contact details on our blog page found here. Thanks so much for listening, reading and learning! We can't do this alone. Internet Radio affiliates airing our program Our Internet Radio stations that carry us include International Friends Radio Network. The program is also carried live through the Independent Channel which is part of 98.6 the mix, KKMX, International. If you want to carry us, please use the Jared Rimer Network site to do that and let me know about your station. Please allow 3-4 hours for airplay, although we try to go 3 hours for this program. Thanks so much!

Aug 7, 20243h 5m

The security box, podcast 202: the CFAA, revisited

E

On podcast 202 of the Security box, we revisit a topic that we think isn't doing any good today. That is, the Computer Fraud and Abuse Act. We take from Wikipedia's article discussing it, and we discuss whether its worth having it or doing something else. We also covered the news and the landscape, and yes, we had people out and about this week. We push on. Enjoy the program and thanks for listening! Thanks to our affiliates for playing our program, and those that provide the content for publishing it. See you next time!

Jul 31, 20243h 4m

The Security box, podcast 201: traffic lights and controlers on the Internet

E

Hello folks, welcome to the security box. There might be a light news week this week, but we do have now a topic which came out of something read over the weekend. Traffic lights on the Internet. We'll cover what news and notes we have, then dive right in to our topic and answer anything people have. Traffic lights Hackers could create traffic jams thanks to flaw in traffic light controller, researcher says is the article, we're taking from and it was read this weekend that passed. This is one of those theoretical things, and one that could be out there. The researchers were slapped with a legal threat with one company, was that right or wrong?

Jul 28, 20242h 46m

The Security box, podcast 200: Our 4th year anniversary show

E

Hello folks, welcome to program 200. On this edition, we're going to cover the landscape, one of the biggest breaches that will possibly affect everyone in one form or another, as well as hear from participents on what they found of value from the last 4 years. Thanks so much for listening! AT&T breach Snowflake is going to be the biggest talk in town. One of the biggest carriers got hit by this disaster. Here are blog posts that might be of interest. Cybernews reports: AT&T paid hackers to delete data Here are some thoughts from someone on Mastodon about the recent AT&T breach Now its time to guess, who is next in the snowflake fiasco? Supporting the podcast If you'd like to support our efforts on what this podcast is doing, you can feel free to donate to the network, subscribing to the security box discussion list or sending us a note through contact information throughout the podcast. You can also find contact details on our blog page found here. Thanks so much for listening, reading and learning! We can't do this alone. Internet Radio affiliates airing our program Our Internet Radio stations that carry us include Blue Streak Radio and International Friends Radio Network. The program is also carried live through the Independent Channel which is part of 98.6 the mix, KKMX, International. If you want to carry us, please use the Jared Rimer Network site to do that and let me know about your station. Please allow 3-4 hours for airplay, although we try to go 3 hours for this program. Thanks so much!

Jul 18, 20243h 30m

The Security box, podcast 199: Don't be Blinded by Snowblind

E

Hello folks, welcome to the security box. On this edition of the podcast, we're going to talk about something called Snowblind. We also have news, notes, te landscape; and something I heard via a podcast that we can discuss in regards to scams. We also have a laugh that might have you laughing as well. We hope you enjoy the program! How about a laugh We have a good one that we will read. Its not necessarily tech related, but worth the share. We even have a comment on it by Shaun. Here's the link to the blog post. I hope you enjoy! Don't be Blinded by Snowblind Our topic this week comes to us from Bleeping Computer Here's my blog post and here is the article we'll be taking from.

Jul 11, 20243h 3m

The Security box, podcast 198: Week 2 of the 2 weeks of open forum

E

Hello folks, welcome to the security box. On this program, an open forum full of stuff from scams, to articles on the blog and the most important ones of those. Hope you enjoy the program. Running time, 4 hrs, 5 minutes.

Jul 4, 20244h 5m

The Security box, podcast 197 intermediate a: The Language of the Business

Welcome to podcast 197, intermediate A. J Wolfgang Goerlich is along with a very interesting talk. While I've not listened to it in full, I did think of putting this out as it talks about risk. Maybe its a risk you don't know much about, so let's learn together. J Wolfgang Goerlich: My RSA talk is up. Join me in dismantling the myth of the weakest link, and building human-centric and human-first security programs. The Language of the Business: Applying Behavior Science for Risk Management https://www.youtube.com/watch?v=BFkM9FxTP8g link to the video

Jul 4, 202452 min

The Security box, podcast 197: week 1 of two for open forum

E

We realize after the podcast was created that we did not put the file in for thanking our affiliates. This was an oversite and that should not happen again. The podcast had lots of discussion though, and I hope you enjoy it. We'll have another week of open forum, next week. We hope you enjoy.

Jun 27, 20242h 53m

The Security Box, podcast 195: What Are .env Files and why should I care?

E

Hello folks, welcome to podcast 195 of the security box. Let's start off with a set of questions that came out of something we did not cover as part of last week's box. If you listen via the podcast, please submit your guesses before the answers are revealed. I'll personally give you credit where credit is due, and we can work out what you will get upon correct answers. The questions are: What 8 companies, 1 of which was part of the big ticket master breach were attacked? What small time actor group took responsibility for these 8 company attacks?which two companies disputed the hack? Finally, what was the most recent company that came out with confirming they were part of the actors fiasco? We also are going to cover the news, the landscape, Lastpass' recent fiasco that can happen to anyone and more. Our topic this week will be the talking about environment files that are used to store secrets including keys, usernames and passwords. Apparently these files, known as .env files are wide open and can be taken for use. Enjoy the program and thanks so much for listening! Our Scam of the Week Kelly, formerly Kelly Services has been targeting users who know the JRN's work. Kelly informed the JRN that this scam has been going around in this form for at least 5 months. The first report came from TSB's participant, Preston Gaylor. The second came from another subscriber who assists me in another capacity. Please read this blog post titled New scam from work provider, Kelly (formerly Kelly Services) for complete details on this. We link to the official web site where you too, can alert them about this scam. The representative informed me that they have over 500 copies of this and asked about the version that is going around. We'll be discussing this as part of the program, don't worry! Our Question If you intend to play, please do not look at the answers given below. We also are linking to sources of further reading too. Our Question What 8 companies, 1 of which was part of the big ticket master breach were attacked? What small time actor group took responsibility for these 8 company attacks?which two companies disputed the hack? Finally, what was the most recent company that came out with confirming they were part of the actors fiasco? The Answer: Skip if you intend to participate and win Answer: Snowflake, Anheuser-Busch, State Farm, Mitsubishi, Progressive, Neiman Marcus, Allstate, and Advance Auto Parts. Progressive and Mitsubishi disputed the threat actor’s claims while Advance Auto Parts recently came out with details of their breach. Sources from the blog: Live Nation confirms breach at Ticketmaster Advance auto parts confirms breach, numbers don’t match Snowflake’s breach may be bigger than we think, let’s add yet another company to the mix The links lead to our blog, where you can read more. Lastpass needs a break here, this can happen to anyone This can happen to anyone. While people want to jump ship because of this most recent outage, I don't blame them. It turns out, it was because of their chrome extension that somehow went completely ape and could have sent a DDOS attack. I don't want to go that far, but it was a 12-hour outage if not longer. I recently had to sign in and I was successful, and this happened on Thursday, June 6, 2024. <a href="https://technology.jaredrimer.net/2024/06/07/this-can-happen-to-anyone-lastpass-had-a-bad-extension-c

Jun 14, 20245h 3m

The Security box, podcast 194: News, notes and section 230 discussion

E

Hello folks, welcome to the security box podcast 194. On this podcast, we're going to talk about section 230 and its potential repeal. We've also got the news, the notes and the landscape. True stories are also told, one dealing with crypto and one dealing with a potential job. Running time, 4 hrs 21 minutes. We hope that you enjoy the program as much as we have. News and notes Here's what we're reading and potentially talking about. This list may not all be covered, but at the same time, some folk may miss things. Some may also be blogged too, so make sure you check out the blog where its free to register and comment. Over 90 malicious Android apps with 5.5M installs found on Google Play Is Your Computer Part of ‘The Largest Botnet Ever?’ Treasury Sanctions Creators of 911 S5 Proxy Botnet Chinese national arrested for operating proxy service linked to billions in cybercrime Police seize over 100 malware loader servers, arrest four cybercriminals Police seize over 100 malware loader servers, arrest four cybercriminals Microsoft: Windows 11 preview update causes taskbar crashes Live Nation finally confirms massive Ticketmaster data breach macOS version of elusive 'LightSpy' spyware tool discovered TikTok vaguely disputes report that it’s making a US-only app X tweaks rules to formally allow adult content Crooks threaten to leak 3B personal records 'stolen from background check firm' Data firm execs convicted for helping fraudsters target the elderly Section 230 Lawmakers say Section 230 repeal will protect children—opponents predict chaos is a two page article on the subject of section 230 and its potential update. We'll try to do our best and give you a fair balance of both sides. If you have not read this, what do you think? Other coverage from the blog on section 230 Section 230 is still valid, holds up for now Any time

Jun 6, 20244h 21m