
Jared's Technology Podcast Network
450 episodes — Page 6 of 9

The Security Box, podcast 105: Vehicle Trackers are in deep trouble and there's nothing we can really do about it
Welcome to the Security box, podcast 105. On this program, we're going to talk about GPS systems and something that may affect everyone who drives and uses a certain product. This is a Cyberscoop article titled Attackers can surveil, disrupt vehicles outfitted with popular GPS tracker, CISA warns which was quite interesting. I also spotted this being covered by Kim Komando and her staff. I blogged about it in this blog post for those who want to link to it. We also will have news from around the landscape and whatever else people want to cover that they have read. Hope you enjoy the show!

The Technology blog and podcast, podcast 363: Scalars Publishing and their educational book and more
Hello flks, I am going to say that this is the first podcast we've done in about 2 months or so, maybe more. I'm happy to finally have something to present today, and this is going to get rather interesting for a 104 minute podcast. Here are the notes! On this episode, >Scalars Publishing has an educational book for learning UEB. They have other books as well, but we talk about the educational book today. How did I find out? Through a student who has asked for some help. Perky Duck from Duxbury Systems is discussed and demoed, and we also have some IOS news for those who don't know. This news is in regards to voices that some may know of, but some may not as we have sighted listeners that may not know. I hope to have another podcast soon! Thanks so much for listening, and I'll be back real soon!

The Security Box, podcast 104: Even Law Enforcement is not immune to the breach department and its probably not the first time either
Welcome to podcast 104 of the Security Box program. I hope that each and every one of you enjoyed our look back at the two year anniversary and what might have interested people during the past year. As I prepare for podcast 104, if you, the listener, want to contribute thoughts on what interested you from the past year or even since the show's inception, please contact me through the contact the DJ's page on 986themix.com or listen to the program for full contact details. On this edition of the program, we're going to talk about an older article titled DEA Investigating Breach of Law Enforcement Data Portal. Its a Krebs on Security article which was sent to the Security Box list in the month of May. The sad thing is, we've not heard anything since, and that may not necessarily be a good thing. Besides that, we'll check with listeners who have decided to join us on Clubhouse and other participants to see what has caught their attention through the landscape. If there are questions by people who are new to the program who have basic questions, we always allow those, so please submit them to us or participate live. I don't claim to know everything, and even the best don't, but with all of us working together, we can learn and give some advice to try that might help. I look forward in continuing this program, and I hope that people will at least check it out to see if they find it of value. I thank those people in the industry that post articles that we can ponder, discuss and possibly question. Thanks for listening and make it a great day!

The Security box, podcast 103: 1 person, multiple bad jobs
Hello everyone, welcome to the Security bbox, podcast 103. With only one week missed due to commitments, we've reached the two year anniversary of this program on the mix. I hope that we can continue to provide plenty of material as this community still needs to learn what is out there to protect themselves. Nobody is perfect, even yours truly has made mistakes. The question is, do you learn from yours? As we reflect, podcast 52 which was on July 14th of last year, delbt with the water hacks which could have done some serious damage. While we overcame that and learned from that, we've got a bigger issue and that has been the war that Russia has been involved with as Ukraine was its first target and now they're going ahead and targeting other nations. We talked about this war and its potential impacts on this very program and other rooms on Clubhouse. Now, some of what you might see and discussed on this and other circles will be coming true as predicted. No expert said when it would happen and if, but it seems that it is. With that said, today's main topic is going to cover two articles and one man. The first article is titled Meet the Administrators of the RSOCKS Proxy Botnet which was quite a read if I should say so myself. The second one even gets more interesting. Its titled The Link Between AWM Proxy & the Glupteba Botnet and maybe you'll have comments on this. Besides that, we'll have other topics that may not be listed here in our notes, like for example, things that caught people's eye from our list and or blog. Want to subscribe to our list? The Security Box list can be found by clicking on the link and going to its page through our partner, The Mix. I hope that you enjoy the program as much as the JRN and its participants enjoy bringing it to you. Remember, we can learn together. Thanks so much for listening, reading, and participating! Keep learning!

The Security box, podcast 102: July 6, 2022
Hello everyone! Welcome to podcast 102 of the podcast. On this edition of the podcast, we'll step through one of the best emails I've ever seen. I saw this at the end of June, and it woke me right up. It is the best email that would prompt an issue that may not be the case, if you actually stop, look and do your due dilligance. blog post As our topic, we're going to talk about the Cyberscoop article Lawmakers want to restrict user data sales to nations like China, Russia which was read. The article will end up getting blogged, so check the blog for thoughts on this one. We'll also see what else comes up in the landscape that people want to talk about as well. Hope you enjoy the program!

The Security box, podcast 101: Google finds Italian Spyware campaign that targets victimsWelcome to podcast 101 of the Security Box Podcast series. On this podcast, we did find another "Asshole of th
Welcome to podcast 101 of the Security Box Podcast series. On this podcast, we did find another "Asshole of the podcast" award. We also are going to talk about Google finding something very interesting in their research department. Asshole of the Week This time, our Asshole comes from an article by Brian Krebs of Krebs on Security titled “Downthem” DDoS-for-Hire Boss Gets 2 Years in Prison which was quite interesting. Wondering why only two years when DDOS is quite significant and can cause a lot of headaches among what's going on and how to fix it? Google This time, Google reveals sophisticated Italian spyware campaign targeting victims in Italy, Kazakhstan comes from Cyberscoop. Found this article quite interesting, and I bet you do too. Besides that, we'll see what the people on the Clubhouse have to say as well as possibly other things that might not be blogged or sent to the list. Thanks for listening to the show, and we'll see you on another edition!

The Security box, podcast 100 for June 22, 2022
Welcome to podcast 100 of the Security Box. I can't believe this series is already at 100, and its been growing strong with lots of discussion, and of course comments on things that people have found of interest. I hope that the show can continue to grow, and with partners in the industry, we will continue to bring you things that might not be covered elsewhere in much detail if any. Today, we're going to bring the bonehead award, with an article we'll summarize in a segment called interestingly, the "asshole award of the podcast." For this podcast, the article U.S. marshal used controversial cell phone location service to illegally access data, DOJ says from Cyberscoop. The Marshall definitely needs this award, and you never know who will be next. Don't abuse the privelage of the access you're granted to do your job or you'll possibly get caught. On this episode as well, we'll cover two different topics. The first, Privacy legislation might provide a powerful guard against online identity fraud might have some teeth if everyone is on board. I definitely think that this should be covered because we talk about the fact that companies have our data with no recourse if something goes wrong.. Maybe that'll change? In a related note, we've been getting calls from various folks about vehicle warranties, other notices from companies that don't identify themselves and the like. In an article titled INTERPOL raids hundreds of scammy call centers in sweep it talks about how many different people have been picked up due to the number one thing that gets people, social engineering. If you've not read this article, you should. It might be a start to something that hopefully should go down at some point. Of course, we'll have comments from others who participate in the taping and live broadcast on Wednesdays, and possibly other topics not listed here too. Thanks for reading, participating, and listening! I greatly appreciate your support.

The security box, podcast 99: Shields Up! The New Normal in Cyberspace
Welcome to the security box, podcast 99. We're excited to bring you another great show. First, in our chat section, we're going to talk about KrebsOnSecurity in New Netflix Series on Cybercrime which I've already bookmarked as I signed up for Netflicks. I also watched another movie titled Cyber Hell. (subscription required) Movies and documentaries like these are great to get out in the community, and the Cyber Hell movie I heard of somewhere, probably on clubhouse. There's more including one I talked about some time back, but this will get us started. If people have things they want us to talk about during other news, we can definitely talk about it. In our main segment, we're going to talk about Shields Up. No, not GRC's program, no not a submarine shield, but our shield. 'Shields Up': the new normal in cyberspace is our Cyberscoop article. All this, your thoughts, comments and other things on this week's edition of The Security box. Enjoy!

The Security box, podcast 98: China and 88 percent of searches on news sites
Welcome to the Security box, podcast 98. This is a bit of a technical difficulty show, starting with Clubhouse having some sort of trouble, and then the software too. Despite these, the show went on. We had a chat session that talked about social media and Paypal, see the blog for Paypal. The main topic is Chinese state media propaganda found in 88% of Google, Bing news searches which we step through. If you have any questions or comments, please reach out. Thanks so much for having an interest in our show, and we'll be back next week!

The Security box, podcast 97: Breach Fatigue
Hello everyone. Breach Fatigue is probably on everyone's minds, and I think its time that we talk about it. Luckily, there's an article titled Combatting Breach Fatigue comes from Lastpass and I thought it should be talked about. Even though last week's podcast had some good content and could in some minds be non-security related, between all of that stuff and this, who could blame me for last week? Besides all of that, we will see what people have for what they want to talk about in the news notes section. All of this and other thoughts will be part of the program. Enjoy what we have for you and I hope no tyraid today. Thanks for listening!

The Security box, podcast 96: 2 health care places targeted with ransomware
Welcome to podcast 96 of the security box podcast series. We're going to bring back news notes for this program, and we've picked out some good stuff. Some may be on this blog, other may not be on this blog. Our main topic is going to talk about the Health Care Industry and whether it is as secure as possible. The reason why we're going to talk about it is plain and simple, there have apparently been two more attacks on the health care industry, yet, one of them is a non-profit. The article is titled Ransomware group strikes second U.S. health care system in the last two months. I bet that there will be a lot of talk on this one, even as we read the notes on this. I've got plenty more things lined up for the podcast, so please feel free to stay tuned and learn with us. Some may be a bit older, but yet worth talking about. Remember to subscribe to The Security Box list as we post items and you're welcome to discuss them on list. We thank you for listening to the program and we'll see you on another edition of the program next time!

The Security box, podcast 95: A vulnerability of 9.8 in a Big-IP appliance
Hello everyone, welcome to the security box, podcast 95. On this program, we're going to talk about one vulnerability that affects big internet appliances at a CVSS score of 9.8. We'll see what else comes up including some Crypto news and things posted to our list and what type of order it'll all be in. The main article we'll be covering is titled Hackers are actively exploiting BIG-IP vulnerability with a 9.8 severity rating which comes from Ars Technica.. Ars is probably not going to be the only one covering this, there will be others out there too. The JRN hopes you enjoy the program, and thanks for listening!

The Security box, podcast 94: EDR's real or fake
Welcome to podcast 94 of the security box. On this edition of the program, we're going to talk about emergency direct requests (EDR's) as there are now actors out there that will use Fake EDR's for getting what they want. There are two articles, both which I read. Twitter may have given user's private data to a ransomware hacker, who then ran a researcher offline Cyberscoop Fighting Fake EDRs With ‘Credit Ratings’ for Police Krebs on Security I read the Krebs article first, and some time later, I found the Cyberscoop article which was quite interesting. Besides that, we'll be seeing what others have read, although I've been working and not blogging much between podcasts. I hope that you enjoy the program as much as we are putting it together, and thanks for listening!

The security box, podcast 93: Earth Berberoka
Welcome to the security box, podcast 93. We do cover some very interesting topics today including the recent news about our Amazon devices. blog post Besides our amazon devices, we're going to talk as well about an Antivirus program with interesting accessibility isues but also coming with a VPN that can monitor what you're doing. Maybe a problem much? Our final topic is a big huge problem which we need to be aware of. The article is titled New APT Group Earth Berberoka Targets Gambling Websites With Old and New Malware which is quite interesting and really worth the read. While it is only targeting gambling sites for now, this thing is packed full of problems and problems which can really cause you not to have a computer if you still have one. Have comments for the show? Contact details are in the program, and I hope you enjoy! This program was aired on the Independent channel on May 4, 2020 and was rebroadcasted on May 6, 2020 through Blue Streak Radio. It airs through their network on Fridays from 8 am CT until its conclusion. I hope that each and every one of you enjoy the program as much as I am bringing it to you, and next week, we've got a great topic dealing with emergency data requests. You don't want to miss it! See you all then!

The Security Box, podcast 92: Conti did not do what they said they would do, attacks health care providers and more
Hello everyone! Welcome to the security box, and this is program 92. On this program, we're going to talk about Conti, again. The article is titled: Conti’s Ransomware Toll on the Healthcare Industry which was quite interesting when I read it. Besides that, we'll see what others found of interest through the landscape and I'll talk about some stuff as well including the Who's Who directory and updates on it. I hope that you enjoy the program as much as I have bringing it to you, and welcome Blue Streak Radio to the program. They'll air this program on Friday morning Central time. Thanks so much for having an interest on the program.

The Security box, podcast 91: APT, the advanced persistent teenager
Hello folks, we're releasing two podcasts on the same day on two different set of subjects. This one, the security box. I hope you all enjoy the program, and below, please find the show notes! Hello everyone, welcome to podcast 91. We're dealing with the teenage hacker in two different articles. As I've determined, there is only one article on the advanced persistent teenager which can also be labeled APT. The first article we're covering is: A Closer Look at the LAPSUS$ Data Extortion Group which was read all the way back near the end of March. This will then lead us in to our other article The Original APT: Advanced Persistent Teenagers which was also good and in depth. I got confused by headings, but this article is only one article part long. We'll also be taking any comments and questions from the audience on Clubhouse and we'll see what else we have to offer. Make sure you check the blog for continuing article writing, we continue to post stuff although there was a lapse of posting lately, but it hasn't been that long. Thanks so much for listening and enjoy the program!

The Technology podcast, podcast 362: Michael in Tennessee
I'm looking to bring back the tech podcast after some time. On this podcast, we've got Michael in Tennessee. Here areh the notes from this program. Hello folks, welcome to the tech podcast. Its been quite awhile since we've done a tech podcast, but its appropriate seeing how the Security Box ran almost 3 and a half hours. Today on the first tech podcast since 2021, we're going to have Michael in Tennessee talking about some of the security landscape and what he's read of late. Lots to talk about and maybe there might be some solutions that people can think about here too. The program is over 1 and a half hours and I'm glad I did it this way. I'll be looking at releasing some more stuff soon! Thanks for reading, listening and finding what we have to say of value.

The Security box, podcast 90: 11 android apps to remove from your device and more
I thought the podcast was uploaded here, but I uploaded it to my other feed. Sorry about that folks! Here are the show notes. Hello everyone, welcome to podcast 90. On this edition of the podcast, we're going to have our main topic on Millions of Android users should delete these 11 apps after Google kicked them out of the Play Store which is an article talking about 11 different applications that we need to be aware of that may have been causing harm. I'd say that IOS users like myself should be aware of these in case these apps make it to the app store and we get messages from places to download them as well. Besides that, we'll have anything that comes from the community on things they want to talk about and I even think I can do my intros a little bit differently. I hope that you all enjoy the program and thanks for listening! If you go to the blog and you don't see it in RSS, please contact me so I can fix it quicker. Thanks.

The Security box, podcast 89: Spring4Shell that didn't spring
Hello folks, I thought I uploaded the show from Thursday, sorry about that. Notes are below. Hello folks, on today's podcast, we're going to cover Explaining Spring4Shell: The Internet security disaster that wasn’t as our main topic. We will cover some of the other landscape as well as any other topics the public has to offer. Note that today's program was done on Thursday to account for an event I attended the day before. We should be able to return to a Wednesday schedule next week. Enjoy the program and thanks so much for listening!

The Security box, podcast 88: The Different types of internet
Happy Thursday! The podcast file was created yesterday, but we're relasing now. I hope you enjoy the program and thanks for listening! The Internet is a complex thing. There are different types of internet connections, some are most common than others, but all are important. In a recent article I spotted, the connection known as Sattelite Internet was targeted apparently by Russia, but that is not confirmed. The article is titled A mysterious satellite hack has victims far beyond Ukraine. We'll also have other topics that might be of interest and we'll see what others have to say as well. Thanks so much for listening and enjoying the program!

The Security box, podcast 87: SMS PVA: What is it and should we be concerned?
Hello folks, welcome to podcast 87 of the security box. On this podcast, we talk about a wide range of topics, but we also talk about a three part article set dealing with SMS services that can be used to sign you, the consumer up for services that you may not even know about or even want. While the applications discussed here are potentially Android based, we need everyone to know what is out there in case something is developed for IOS or any other system you may use. Below, please find the links to the articles we are going to be taking from as part of this discussion. SMS PVA Part 1: Underground Service for Cybercriminals SMS PVA Part 2: Underground Service for Cybercriminals SMS PVA Part 3: Countries Most Impacted by Service What caught me on wanting to talk about this is the fact that the United States is affected by this, although we don't know by how much. Understand that I think everyone should be aware of what is out there, and hopefully the articles and information can give you a sense on how you can stay as safe as possible. Thanks for listening, reading and participating in this important topic.

The Security box, podcast 86: Windows Updates, emoticons potentially going to be an issue, books and more
Welcome to podcast 86. On this podcast, we'll cover Windows Update. I only have one article now instead of the two, so we'll have to see how I can get the other back. Besides that, we'll have comments from the Clubhouse room and other topics they may want to bring up. Microsoft Patch Tuesday, March 2022 Edition Krebs On Security I hope you'll enjoy the program as much as I am bringing it to you.

The Security box, podcast 85: A look at how I got in to this industry, some newsy stuff and more
Today, the Security box takes a break from day to day activity although we've covered some scam type activities and even went through how I got started in this industry and how I think information can be given out successfully. We also have some tracks that play as well. The program lasts almost 3 and a half hours, and I hope you enjoy it. I even talk about why we've temporarily retired the normal theme we use for the program. Check the blog for complete details on things that may have been mentioned.

The Security box, podcast 85: What's happening with Russia? They're at it again!
Russia is the hot topic right now, and with good reason. On this podcast, we'll talk a little bit about what we've learned, talk about the scams, recommend books and more. Here are the complete show notes for this week's podcast. Welcome to podcast 84 of the security box. This time, let's discuss Russia's involvement in pure problems. Now, they have decided to go to war, and its against Ukraine. They've been known to do DDOS attacks, ransomware attacks, spreading information that is not true or partially true or even completely false, denying many different things through the years ike the 2016 and 2020 presidential campaigns, and even more may be in the pipeline. Below, please find links to some of the recent blog posts that I've done since the war started. In no way am I linking to everything, but you need to understand what's going on so you can make the most informed decision on your needs based on what is actually happening. McDonalds apparently hacked? Russia has started going after U.S. businesses Conti supports Russia, threatens retaliation Ukrainian officials warn of new phishing attacks Russia VS Ukraine, could it affect us? Info from Kim Komando’s Weekend Newsletters The war starts with DDOS attacks against Ukraine, this is the beginning of things Russia and Ukraine, the battle has begun Cyber Security Experts weigh in on the war on Ukraine I put the link to the video last, because while informative, we know that things are changing rapidly. I put McDonalds first because it was the last we posted and most viewed on linkedin. It got a retweet in France according to a comment. What should you read? There are several books you can definitely read. Zero Day: A Novel Rogue Code: A Novel Trojan Horse: A Novel All of these books are written by Mark Russinovich , someone who works at Microsoft. To learn more about Mark, the various books he's written including those I've linked in these notes, please visit zero day the book which is his web site. All books linked from his site I've read, zero day may be more of what we're dealing with possibly right now. Some books may be available through NLS's bard and Amazon as well as Apple Books.

The Security box, podcast 83: Sim Swapping and Trick Bot
Hello folks, This is Jared here, and its time for another Security Box. In this almost three hour program, we cover the olden days of Spam and what someone was seeing during our live program. Besides that, we've got Trick Bot and Sim Swapping as our two main topics. Here are the show notes with links, and we'll be back on another show! Hello folks, welcome to podcast 83. Let's start with something that came to my attention on Monday. Let's recap a little bit about Sim Swapping. This actually came up on Monday when someone who comes to assist me was saying to me that someone they knew had their phone cloned. They told me that T-Mobile, the company they were with, told them the phone was cloned. As we know, T-Mobile was breached, and I don't know about you, but I definitely don't trust them. Remember the following? Are you a T-Mobile customer? Better pay attention to this Are you a T-mobile customer? Better read this one Another t-mobile breach, the 4th in several years Remember too, that Podcast 47 covered this in news notes and comments came in too. So there is plenty I covered. Please also read SIM swap scam from Wikipedia. As our main topic, I want to catch people up on what is going on with Trick Bot. The article TrickBot developers continue to refine the malware's sneakiness and power from Cyberscoop will be used in this discussion. The public on Clubhouse got in to a Spam discussion with one talking about the spam messages they were getting. While educational, we did some good laughs in this program and we thank everyone for participating on clubhouse's platform. Tunes were also played during the program. We thank you so much for listening and make it a great day!

The Security box, podcast 82: Windows update, Scam talk and more
I ended up falling sick, sorry for the delayed release of Wednesdays program. I'll be fine and have already started the process of getting medicated. This past Wednesday, we had several people on Clubhouse and we talked about Windows Update and a bunch of other stuff too. Here are the show notes. Hello everyone! Welcome to podcast 82 of the Security Box. This week, we'll catch up on Windows Update, and we will also cover a lot of other stuff from the blog as well. We'll also see what else the listenership and participents in Clubhouse want to talk about. What happened in Windows Update? Our good buddy Brian Krebs from Krebs on Security has the full details. Microsoft Patch Tuesday, February 2022 Edition is the article. Lots of linked material that we links to some CVE numbers if you're interested.

The Security box, podcast 81: Fake Investor does not go away, Fake investor is back and still the same
Title: Fake Investor does not go away, Fake investor is back and still the same Hello folks, welcome to podcast 81 of the Security Box! It seems like its time for an update on a very interesting character isn't it? Its time for another update on the fake investor we've covered since podcast 10. I know that I've linked somewhere on the blog all of the podcasts we've covered John Bernard, and this is going to be one of those podcasts. What has he done lately? This article titled Fake Investor John Bernard Sinks Norwegian Green Shipping Dreams from Krebs on Security has the entire details on what he has been up to now and a reminder of his past. Besides all of this, we'll step through the news that has been posted to the TSB list as well as on our blog. We also had a new person come in and aask some stuff they've heard and we debunk the myths and facts of everything. Want to subscribe to the Security Box discussion list? We'll post stuff we're reading, you can discuss it with us, and even post your own stuff too. Here is a link to the Security Box discussion list hosted through 986themix. Just put your email address and name if you wish, and hit that subscribe button. Follow any email instructions you get. Just subscribing will not get you on by default. Confirmations last about 3 days. I hope you enjoy the program as much as I am bringing it to you! Its going to be a great show.

The Security Box, podcast 79: This App is completely safe to use
Welcome to podcast 80 of the Security box. On this edition, let's talk about Wordpress. While it is a good platform for people to use for web sites and even blogging as I do, it can come with risks we need to be aware of. Part of those risks include keeping it up to date and of course the plug ins you install. A lot of plugins can be found through the install section of your plug ins management facility, but you can also install plugins manually. The article we're going to cover today comes to us from Ars Technica and was sent by our godd friend, Michael. Supply chain attack used legitimate WordPress add-ons to backdoor sites is the article. I hope that you find the discussion of interest, and if you saw the write up, you found it of value. We'll also touch on other things blogged as well as ask any audience members what they learned and/or read during our discussion today. Remember, you can always contact me through the tech blog or even through the show's contact info as well. Thanks so much for listening, and make it a great day!

The Security box, podcast 79: The Security Box, podcast 79: This App is completely safe to use
Welcome to the security box, podcast 79. I probably am not surprised really about what we're going to talk about, and it was talked about on Throwback Saturday Night's security segment. Now, we're going to take our time on it, because I feel we need to. What are we talking about you might ask? Toronto lab finds security vulnerabilities, censorship framework in Olympic app is an article talking about the olympics and a new app the IOC basically says is completely safe to use. Researchers are saying differently, and one major problem that two of us see brings this to full circle. I'd like to thank DJ Terry of The Mix for calling and asking about this after he heard very little on his news channel. With the games so close away now, this is the perfect time for someone to take advantage and do something they think is a good idea to do in their mind. Thanks for listening whether live or through the podcast or replay, and we'll catch up with you very soon!

The Security box, podcast 78: Windows Update includes a Wormable Flaw
The Security box, podcast 78: Windows Update includes a Wormable Flaw Welcome to podcast 78 of the Security Box. As we do typically on the podcast, we spend some time catching people up on what has been going on in Redmond, Washington with Windows Update. We've only got one article, however, News of the week for January 14th has the other article. ‘Wormable’ Flaw Leads January 2022 Patch Tuesday comes to us from Krebs on Security, and it covers this huge problem and others across Redmond and others too. Please feel free to send your messages, topics and the like for consideration. Thanks for listening!

The Security box, podcast 77: Google, this wasn't a critical bug?
I realized I said podcast 75 at some point in my audio, this is podcast 77. Too late for me to change it however. Below is the notations which include a link to today's program. We return to a Wednesday schedule next week. Hello folks, welcome to the security box, podcast 77. Google fixes nightmare Android bug that stopped user from calling 911 is our main topic of today's program, but I also cover other tech and other odds and ends too. We did have one guest available to chat with us, and we thank them for coming. We hope you enjoy the program and the few tracks at the end, and thanks so much for listening!

The Security box, podcast 76: Advertisers sucking up student data
Welcome to the Security box, podcast 76. On this podcast, we're going to talk about advertisers who are sucking up student data, even though legal action was taken. We'll also have comments and news items from the public if any, maybe some other topics if it turns in to one, and we'll see what else comes up. Topic Advertisers are sucking up student data, even after legal action, researchers say Cyberscoop

The Security box, podcast 75: Predictions 2022
Besides the hour plus discussion we had, we've got music too for the holiday. Hope you have a happy holiday season. No TSB next week unless something breaks, see you in 2022! Welcome to the Security Box, podcast 75. On this edition of the podcast, come with me as we do a little predicting for 2022 with a Trend Micro article titled Pushing Forward: Key Takeaways From Trend Micro’s Security Predictions for 2022. We'll also have thoughts on recent news read, and its been decided that the full news notes segment will be no more in favor of topics that need discussion. This doesn't mean that we won't cover news, but we'll cover it a little differently. Topic Pushing Forward: Key Takeaways From Trend Micro’s Security Predictions for 2022 Trend Micro

The Security box, podcast 74: Log4J
Hello folks, This is still developing and there are more articles than listed here. We'll provide the show notes as is, and check the blog and future podcasts for more. Thanks so much for listening! Welcome to the Security Box, podcast 74. On this podcast, something breaking this week called Log4j. We'll break down three different articles that talk about this. Instead of me doing news notes, we'll ask listeners if they have any thoughts on what they have read. There may be questions, comments and other topics not mentioned here for you to enjoy too. Topic Log4J CISA warns 'most serious' Log4j vulnerability likely to affect hundreds of millions of devices Cyberscoop CISA to brief critical infrastructure companies about urgent new Log4j vulnerability Cyberscoop Patch Now: Apache Log4j Vulnerability Called Log4Shell Actively Exploited Trend Micro

The Security box, podcast 73: AT&T has a vulnerable device you need to know about, news notes and much more
Hello folks, welcome to the security box, podcast 73. On this podcast, plenty of news notes and a very interesting topic dealing with AT&T and appliances that are made to bridge the gap between the ISP and the managing of phone calls, conference video systems and similar real-time applications. We hope that you'll enjoy the program and thanks for listening! Topic Business customers need to be aware if they use AT&T products of potential malware. Thousands of AT&T customers in the US infected by new data-stealing malware Ars Technica News Notes Here are the links to News Notes. Some may be blogged already through the blog, so see if there is something that interests you. There are two articles here talking about the same thing. This is a very interesting story about a guy that worked for Ubiquiti until he was recently arrested. Ubiquiti Developer Charged With Extortion, Causing 2020 “Breach” from Krebs on Security and Former Ubiquiti employee charged with stealing data, extorting employer from Cyberscoop are the two articles. They both are similar, but both worth the read. US hacker jailed for role in multimillion-dollar SIM swapping campaign Tech Crunch Is the UK government’s new IoT cybersecurity bill fit for purpose? Tech Crunch Ransomware attack on Planned Parenthood steals data of 400,000 patients Ars Technica Emails show what happened before Missouri gov. falsely called journalist a “hacker” Ars Technica Please enjoy the program and thanks so much for listening.

The Security box, podcast 72: A Linux vulnerability, news notes and more
Welcome to the security box, podcast 72. On this program, we're going to play with Linux a little bit as we discuss a vulnerability in the way it works as it can cause DNS cache poisoning. We'll also have news, notes, commentary and more if people have things they want to share. Our Linux Vulnerability Linux has a serious security problem that once again enables DNS cache poisoning Ars Technica News Notes The ‘Zelle Fraud’ Scam: How it Works, How to Fight Back Krebs On Security Tech CEO Pleads to Wire Fraud in IP Address Scheme Krebs On Security SMS About Bank Fraud as a Pretext for Voice Phishing Krebs On Security Ransomware gang targeting schools, hospitals reinvents itself to avoid scrutiny Cyberscoop Apple sues NSO Group, spyware vendor known for helping governments hack critics Cyberscoop More may be on the blog, thanks so much for listening and participating!

The Security box, podcast 71: Windows Update, Treat Trends Report, News notes and more
Welcome to the Security box, podcast 71. On this podcast, we're going to cover things we did not cover last podcast including windows update and a very interesting report dealing with the threat trends for November 2021. We'll have news notes and plenty of it too. Hope you enjoy the show! Patch Tuesday Microsoft Patch Tuesday, November 2021 Edition Krebs On Security November Continues Streak of Quiet Patch Tuesdays Trend Micro Threat trends and intelligence report new-quarterly-threat-trends-intelligence-report-available Phishlabs News Notes Below, please find the links for the news items that are going to be talked about for this week. We may have blog posts on some of these, so make sure you check out the blog for complete details on things and maybe you'll find something you want to comment on. The US closes Huawei loophole, will no longer grant exceptions for ISPs Ars Technica More than 1,000 Android phones found infected by creepy new spyware Ars Technica Malware downloaded from PyPI 41,000 times was surprisingly stealthy Ars Technica US charges Ukrainian and Russian nationals over ransomware attacks Ars Technica US says Iran-backed hackers are now targeting organizations with ransomware Tech Crunch Researchers wait 12 months to report vulnerability with 9.8 out of 10 severity rating Ars Technica I hope you enjoy the program, we'll have more news notes and another great program next time. Thanks for listening!

The Security box, podcast 70: Its an open forum edition!
Hello folks, better late than never. We have a full open forum show for TSB for this week. While only two of us in the room, we cover quite a bit of various things. See you next week!

The Security box, podcast 69: Bullying over the phone lines?
Welcome to the security box, podcast 69. On this edition of the podcast, we turn our attention to another story, bullying over the telephone lines. We have some news, notes and commentary as well, but the bulk of this program is to think about what might go on these lines whether it is one you are on now, or one you've been on. Thanks for listening!

The Security box, podcast 68: NCSAM Extra! Social Media and other aspects to go along with it
Welcome to the Security Box, podcast 68. On this edition of the program, let's talk about social media and phone line issues as it relates to cyberbullying and other related topics. We'll also have news, notes and more. Social Media discussion In a very interesting turn of events, I wasn't necessarily going to put anything in to this section because I was going to do a full vocal discussion. But when I saw my own digest on my blog, I saw a very interesting post dealing with Social Media and other things related that I'll link here. I'll still do vocal talk with no notations, but this post is worth bringing up. , Don’t miss what’s happening People on Twitter are not the first to know. The Technology blog and Podcast's Shaun Everiss News Notes Zales.com Leaked Customer Data, Just Like Sister Firms Jared, Kay Jewelers Did in 2018 Krebs On Security 'Cyber event' knocks dairy giant Schreiber Foods offline amid industry ransomware outbreak Cyberscoop A Russian-speaking ransomware gang says it hacked the National Rifle Association Cyberscoop We hope you enjoy the program, and thanks for listening!

The Security Box, podcast 67: Protecting Your Children Online
Welcome to Week 4 of NCSAM. This week, we're going to cover protecting your children online. Notations are taken from a presentation I heard about the topic, and I've summarized it to tell possibly some stories that may be similar to something you've heard or seen. We'll also have news, notes and other comments as the program gets started. Protecting Our Children online Protecting your kids online. Including topics like grooming, cyberbullying and more. News Notes The following are some of the items that have been read within the past week. Feel free to read the ones that are of interest to you. FBI, others crush REvil using ransomware gang’s favorite tactic against it Ars Technica PurpleFox Adds New Backdoor That Uses WebSockets Trend Micro Sinclair Broadcast Group suffers ransomware attack, the latest affecting media Cyberscoop Candy corn producer says ransomware incident 'not likely' to sour Halloween supplies Cyberscoop Conti Ransom Gang Starts Selling Access to Victims Krebs On Security I'll try and blog some of this older news we've got, so stay tuned. Hope you enjoy the show!

The Security box, ppodcast 66: Verizon, T-Mobile, AT&TT, Oh My!
Welcome to the Security Box, podcast 66. Is 66 a lucky number? T-Mobile and Verizon are in the news with Spam messages, AT&T is in the mix as well in passing, Google is getting in the mix with two-factor authentication on more accounts, as well as news, notes and more. Topics Verizon subscribers are the target of a phishing expedition; do not respond to this text message Phone Arena T-Mobile customers are receiving spam texts possibly related to August's data breach Phone Arena NCSAM Google will enable two-step verification by default on 150 million accounts before year's end Phone Arena News Notes read from around the landscape The following are links to stories that have been read from across the landscape. In October, we do news notes live so that you, the listener, can get a benefit of this being a discussion. If you like the way this is being done, please let us know and I may do it full time. How Coinbase Phishers Steal One-Time Passwords Krebs On Security Some versions of Android share users' personal data with no chance to opt-out Phone Arena US gov’t will slap contractors with civil lawsuits for hiding breaches Ars Technica Millionaire Twitch streamers react to their leaked earnings Ars Technica Hope you all enjoy the program, and thanks for listening!

The Security box, podcast 65: Twitch, NCSAM, News Notes and more
A few technical issues, but what is a show without those? In this 3 hour episode, we've got quite a lot for you, so sit back and check out the links to the following items for your perusal. Welcome to the Security Box, podcast 65. On this podcast, let's discuss an article we read after the release of last week's program in regards to Twitch and their recent breach we were alerted to during the live taping of the program. After that, we're going to cover more NCSAM and even have some news notes. We'll do news notes the same as we did last week, as it turned in to a lively discussion. I hope you'll enjoy the program, and thanks so much for listening! Breach topics Stolen Twitch source code, creator payment data revealed in apparent data leak Cyberscoop Trolls defaced Twitch's website with pictures of Jeff Bezos, the latest security concern Cyberscoop NCSAM: Scam apps Hundreds of scam apps hit over 10 million Android devices Ars Technica News Notes read from around the landscape Electronic Frontier Foundation will deprecate HTTPS Everywhere plugin Ars Technica Company that routes SMS for all major US carriers was hacked for five years Ars Technica Former TD Bank, Bank of America employee allegedly helped email scammers launder money Cyberscoop Suspected Chinese hackers masqueraded as Indian government to send COVID-19 phishing emails Cyberscoop

The Security box, podcast 64: NCSAM week 1: News notes and more
NCSAM is now in full swing, this week, Are You Cyber Smart? A Checklist from Lastpass will be what you need to look at with 5 great tips and things that might be of interest to you. In my writeup of this, I talked about the Neiman Marcus breach and how people should be aware of it even if they aren't affected. We'll have news, notes and more. Hope you'll enjoy the show! News Notes Police raid in Ukraine results in arrests of 2 alleged ransomware hackers Cyberscoop The Rise of One-Time Password Interception Bots Krebs On Security Thanks so much for reading and participating in the show!

The Security box, podcast 63: Psychology of passwords 2021, ransomware paid or not, news notes and more
Welcome to podcast number 63 of the Security Box series. On this podcast, come and learn about the password trends of 2021, thanks to lastpass's article. Next, a 5.9 million dollar ransomware paid by a farming co-op and a very interesting discussion I heard recently about this. We'll definitely have some news and notes from around the landscape, and even some commentary from any guests that participated through Clubhouse on the live program as well as anyone else through email, imessage and other contact points. Topics New Report: 2021 Psychology of Passwords Lastpass $5.9 million ransomware attack on farming co-op may cause food shortage Ars Technica ">Phone scammers use COVID-19 vaccine appointments to try tricking victims into downloading malware Cyberscoop Nation-state espionage group breaches Alaska Department of Health Ars Technica Hackers are using CAPTCHA techniques to scam email users Cyberscoop Apple users warned: Clicking this attachment will take over your macOS Ars Technica Thanks so much for listening to today's program, and we'll be back for a month of NCSAM. Enjoy!

The Security box, podcast 62: Windows Update, a very interesting botnet, news notes and more
Welcome to the Security box, program number 62. On this program, we're going to cover Windows Update as well as a very interesting article from Krebs about a new botnet that seems to have done quite a bit of damage. It is an IOT botnet called Meris. We'll also have news, notes and lots more. Windows Update There are the usual two articles on Windows Update. This time, Krebs has quite a bit on these updates while Trend Micro covers the highlights but also gives some info of value too. They're both good for their reasons, so read them both. Microsoft Patch Tuesday, September 2021 Edition Krebs on Security September Patch Tuesday: 66 Bulletins, Only 3 Critical Trend Micro Meris There is one article which we're taking from for this one, but did you listen to podcast 836? KrebsOnSecurity Hit By Huge New IoT Botnet “Meris” Krebs On Security News Notes Security researchers at Wiz discover another major Azure vulnerability Ars Technica Apple patches “FORCEDENTRY” zero-day exploited by Pegasus spyware Ars Technica Trial Ends in Guilty Verdict for DDoS-for-Hire Boss Krebs On Security Customer Care Giant TTEC Hit By Ransomware Krebs On Security I hope you enjoy the program and thanks so much for listening!

The Technology podcast, podcast 361: A very interesting security discussion
Scott Schober is on Clubhouse, and he invited me over to his club which talks about cyber security topics. Here is a link to his Cyber Security club where members can join the conversation. The discussion started with whether we've gotten the vaccine or not, whether restaurants and other places are collecting that data let alone securely, and more. I decided to join the stage and while I applauded the conversation about covid-19 vaccines, what aout other problems we're still dealing with lik the open databases problem? Take a listen to this, and let's discuss whether I'm right, or whether we need to be concerned about this. I'll have more talks soon. Scott Schober's web site

The Security box, podcast 61: CSAM gets updated by Apple as they listened to some stuff from the security industry and much more
Welcome to the Security Box, podcast 61. On this podcast, let's discuss the updates on CSAM as it pertains to Apple. We'll have news, notes and more. Topics Under fire from privacy advocates, Apple delays controversial photo scanning plan Cyberscoop News Notes “FudCo” Spam Empire Tied to Pakistani Software Firm Krebs On Security 15-Year-Old Malware Proxy Network VIP72 Goes Dark Krebs on Security Microsoft: Attackers Exploiting Windows Zero-Day Flaw Krebs on Security IRS used vape store receipts to gather evidence against alleged Ukrainian scammer Cyberscoop

The Security box, podcast 60: The Security Landscape as it relates to the latest in T-Mobile land
The Security box, podcast 60: The Security Landscape as a whole from broadcasting software and web site services to T-Mobile's Fiasco What has changed on the security landscape? We learn about T-Mobile's recent failure, and even web sites are braught up as well as broadcasting software among other things. This turned out to be a very interesting show. What do you think has changed? What have we done wrong? What do you think it'll take to fix it if it can be fixed at all? No news notes this week, but they'll be back next week.

The Security box, podcast 59: Scott Schober, the q2 intelligence report and more
Hello folks, welcome to the Security box, podcast 59. On this edition of the program we have two different prerecorded segments for you. First, we interview Scott Schober of Berkeley Varitronics Systems, Inc. He's written various books which we talk about, as well as some of what is going on in the security landscape. Next, we have a talk that was done by Phishlabs, who did the Quarter 2 Phishing Trends report. To top it all off, we'll have news and notes from around the landscape as well as questions and comments after each segment if any. > BV Systems Scott's Web Site new-quarterly-threat-trends-intelligence-report-now-available Phishlabs News Notes from around the web FBI warns that Hive ransomware hackers are calling victims by phone Cyberscoop What the Norton-Avast Merger Means for Cybersecurity Trend Micro FCC proposes record $5 million robocall fine for voter suppression scam Cyberscoop Poly Network fully recovers assets stolen in unusual $600M cryptocurrency hack Cyberscoop Microsoft Azure vulnerability exposed thousands of cloud databases Cyberscoop Scammers impersonate Europol chief in an effort to defraud Belgians Cyberscoop Thanks for listening!